Information Security Auditor & Standards Lead

Bridgesoftsol

India

On-site

INR 1,000,000 - 1,500,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A leading technology service provider in India is seeking an experienced Information Security Auditor & Standards Lead. This role involves leading security governance, audit, and compliance activities related to ISO 27001 and SOC 2 standards. Ideal candidates should have 5–8 years of direct auditing experience, excellent communication skills, and strong knowledge of security frameworks. The position is a permanent full-time role with opportunities to drive continuous improvement in security practices.

Qualifications

  • 5–8 years of experience in Information Security Auditing / GRC.
  • Strong hands-on experience with ISO 27001 and SOC 1 / SOC 2 audits.
  • Strong understanding of security principles and control frameworks.
  • Excellent communication and documentation skills.

Responsibilities

  • Act as Subject Matter Expert (SME) for ISO 27001, SOC 1 / SOC 2, NIST, and CIS frameworks.
  • Plan and manage ISO 27001 and SOC audits end-to-end.
  • Conduct internal audits and ongoing compliance assessments.
  • Track audit findings, non-conformities, and corrective actions to closure.

Skills

Information Security Auditing
ISO 27001
SOC 1 / SOC 2
GRC
Communication
Documentation

Job description

Information Security Auditor & Standards Lead

5 days ago

India

Full Time

Job Code
  • BSISA-1115
No. of Positions
  • 1
Job Role
  • Information Security Auditor & Standards Lead
Job Description

We are seeking a highly experienced Information Security Auditor & Standards Lead with deep, hands‑on knowledge of global information security standards and best practices. The individual will independently lead security governance, audit, and compliance activities across frameworks such as ISO 27001 and SOC 2, and continuously enhance the organization’s security and compliance maturity.

Responsibilities
Standards Ownership & Expertise
  • Act as Subject Matter Expert (SME) for ISO 27001, SOC 1 / SOC 2, NIST, and CIS frameworks
  • Interpret security standards and translate requirements into auditable controls
  • Ensure controls are designed, implemented, and maintained effectively
  • Provide guidance on mandatory requirements versus best practices
Audit & Compliance Management
  • Plan and manage ISO 27001 and SOC audits end-to-end
  • Conduct internal audits and ongoing compliance assessments
  • Serve as primary point of contact for auditors and certification bodies
  • Track audit findings, non-conformities, and corrective actions to closureOwn and maintain the Information Security Management System (ISMS)
  • Maintain risk assessments, risk treatment plans, and Statement of Applicability (SoA)
  • Develop, review, and enforce security policies, standards, and procedures
New Implementations & Security Enablement
  • Provide standards-driven guidance for new systems, applications, and infrastructure
  • Review new implementations for compliance alignment
  • Advise on control selection, design, and evidence requirements
  • Ensure new implementations are audit‑ready by design
Advisory & Continuous Improvement
  • Provide compliance guidance to Security, Network, IT, Cloud, and HR teams
  • Identify gaps and drive continuous improvement initiatives
  • Support management reviews and executive‑level reporting
Qualifications
  • 5–8 years of experience in Information Security Auditing / GRC
  • Strong hands‑on experience with ISO 27001 and SOC 1 / SOC 2 audits
  • Strong understanding of security principles and control frameworks
  • Excellent communication and documentation skills
Years of Exp
  • 5 - 8 Years
Employment Type
  • Permanent

Bridgesoft is a leading provider of technology, consulting, and information security managementsolutions. Bridgesoft's products and services cover a range of areas from physical and logical access and identity management to security risks and threats.

Copyright 2025 Bridgesoft. All rights reserved.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Associate - IT
Senior Associate - IT

Eurofins • Bengaluru

Hybrid
INR 800,000 - 1,200,000
Information Security - Manager
Information Security - Manager

Promaynov Advisory Services Pvt. Ltd • Delhi

On-site
INR 1,800,000 - 2,400,000
Information Security Analyst
Information Security Analyst

ASSA ABLOY Global Solutions • Chennai District

Hybrid
INR 900,000 - 1,500,000
IT Compliance Lead
IT Compliance Lead

Mobileum • Bengaluru

Hybrid
INR 2,500,000 - 4,000,000
InfoSec Executive
InfoSec Executive

Qualitykiosk Technologies • Thane, Mumbai

On-site
INR 1,500,000 - 2,500,000
Security, Risk & Compliance Lead
Security, Risk & Compliance Lead

RedDoorz • Dadri

On-site
INR 2,400,000 - 4,800,000
Cybersecurity GRC Analyst
Cybersecurity GRC Analyst

Power Bridge • Arishinakunte

On-site
INR 1,200,000 - 2,400,000
Health insurance
Long-term benefit savings plan with em
Professional development opportunities
Senior Executive | IT Audits | Chennai | Cyber Strategy & Transformation
Senior Executive | IT Audits | Chennai | Cyber Strategy & Transformation

Deloitte & Touche GmbH Wirtschaftsprüfungsgesellschaft • Chennai District

On-site
INR 1,800,000 - 2,800,000
Cybersecurity GRC Analyst
Cybersecurity GRC Analyst

Powerbridge • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Health insurance
Long-term benefit savings plan
Professional development opportunities
ISO Lead Auditor
ISO Lead Auditor

Lucideus • India

On-site
INR 600,000 - 1,000,000