Information Security Engineer

Cloudxtreme

Hyderabad, Chennai District, Bengaluru

On-site

INR 1,200,000 - 2,100,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Cloudxtreme in Hyderabad, India seeks a Vendor Information Security Risk Manager to join the Cyber Security team. You will implement and monitor the vendor information security risk management program to meet the firm's GRC objectives, review vendors' security programs, and report findings to stakeholders.

You will drive remediation follow-ups with vendors and business teams, coordinate with onshore and offshore stakeholders, and promote cyber security initiatives across the organization.

Qualifications

  • Bachelor's degree in computer science, Business Administration or equivalent educational or professional experience and/or qualifications.
  • 3-5 years of relevant experience.
  • Experience with information technology security programs, audits, controls, assessments, risk assessments, or remediation management.
  • Demonstrated proficiency in Security and Compliance, including information security and technology regulatory requirements (SOC 2, ISO27001, NIST800-53, PCAOB, CSA, etc.).
  • Experience with Governance, Risk & Compliance tools.
  • Strong communication, report writing and presentation skills.
  • Ability to work independently and cross-functionally.
  • Excellent time management and related organizational skills including appropriate sense of urgency and a proactive approach.
  • Industry certifications (e.g., CISA, CISM, CISSP, CCSP and/or other equivalent licenses/certifications).

Responsibilities

  • Reviewing and assessing vendor security controls to protect facilities, systems and data.
  • Ensuring vendors work within clearly laid out security policies.
  • Maintaining regular communications with vendor risk management team.
  • Follow-up with vendors and business teams to ensure timely remediation.
  • Driving security awareness program across the organization and promoting cyber security initiatives.

Skills

Security risk management
Communication
Report writing
Cross-functional collaboration

Education

Bachelor's degree in CS/Business Admin

Tools

Governance, Risk & Compliance tools

Job description

Work youll do

This role would be part of Cyber Security team and would actively engage in implementing our vendor information security risk management program for achieving firm's GRC objectives. As part of this team, you will be assisting in reviewing and assessing vendor's information security program, processes and controls to identify weaknesses in their information system and discover potential threats to and its assets. You would be reporting assessment results to necessary stakeholders, following up on remediation plan, ensuring timely remediation and providing appropriate recommendations to the vendor for ensuring adequate protection of information assets. You would collaborate and coordinate with various key stakeholders, both onshore and offshore, such as vendors, internal business clients, internal teams, SMEs and Cyber Security management.

  • Responsible for reviewing and assessing vendor security controls to protect facilities, systems (assets and networks) and data
  • Responsible for ensuring vendors working within the framework of security policies that is being clearly laid out for them
  • Maintaining regular communications with vendor risk management team on progress status
  • Followup with vendors and business teams to ensure timely remediation of assessment findings
  • Driving security awareness program across the organization and promoting cyber security firm initiatives
Educational Qualification:
  • Bachelor's degree in computer science, Business Administration or equivalent educational or professional experience and/or qualifications
  • 3-5 years of relevant experience
  • Experience with information technology security programs, audits, controls, assessments, risk assessments, or remediation management
  • Demonstrated proficiency in Security and Compliance, including information security and technology regulatory requirements (SOC 2, ISO27001, NIST800-53, PCAOB, CSA, etc.)
  • Experience with Governance, Risk & Compliance tools
  • Strong communication, report writing and presentation skills
  • Ability to work independently and cross-functionally
  • Excellent time management and related organizational skills including appropriate sense of urgency and a proactive approach
  • Industry certifications (e.g., CISA, CISM, CISSP, CCSP and/or other equivalent licenses/certifications)
Work Experience
  • Good knowledge of information security principles, policies, processes and practices.
  • Good knowledge about security controls for cloud services.
  • Good to have information security program implementation and/or audit experience.
  • Good to have certifications such as ISO 27001, ISO 27002, ISO 22301, CEH, CISAse
  • Cyber Resilience
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security (Infosec) Manager
Information Security (Infosec) Manager

Vinculum Solutions • Dadri

On-site
INR 1,200,000 - 1,800,000
Cybersecurity - Risk & Compliance Analyst
Cybersecurity - Risk & Compliance Analyst

Scybers • Chennai District

On-site
INR 900,000 - 1,500,000
Information Security GRC Manager
Information Security GRC Manager

Mount Talent Consulting • Mumbai

On-site
INR 3,000,000 - 5,000,000
Security Analyst - IT GRC & Audit (CSCRF)
Security Analyst - IT GRC & Audit (CSCRF)

Kotak Alternate Asset Managers Limited • Mumbai

On-site
INR 3,000,000 - 5,500,000
Information Security Analyst
Information Security Analyst

Tek Systems • Karnataka

Hybrid
INR 1,400,000 - 2,200,000
Information Security Engineer
Information Security Engineer

Angel and Genie • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Assistant Vice President – Information Security
Assistant Vice President – Information Security

IndiaFirst Life • Mumbai

On-site
INR 1,000,000 - 1,500,000
Security, Risk & Compliance Lead
Security, Risk & Compliance Lead

RedDoorz • Dadri

On-site
INR 2,400,000 - 4,800,000
Security Engineer / Analyst
Security Engineer / Analyst

Lodha • Mumbai City

On-site
INR 1,200,000 - 1,800,000
Manager- GRC
Manager- GRC

CyberCube Services • Gurugram District

On-site
INR 1,500,000 - 2,100,000