InfoSec Executive

Qualitykiosk Technologies

Thane, Mumbai

On-site

INR 1,500,000 - 2,500,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Qualitykiosk Technologies is seeking an Information Security Executive to oversee ISO 27001 ISMS, PIMS, and SOC 2 programs. You will conduct internal audits, raise security awareness, and ensure the protection of information systems across the organization.

The candidate must hold ISO 27001 Lead Auditor or Lead Implementer certification and have at least 3 years of information security experience, with leadership and strong communication skills.

Qualifications

  • Minimum 3 years of experience in information security.
  • ISO 27001:2022 Lead Auditor or Lead Implementer certification required.
  • ISO 27001, PIMS and SOC 2 experience preferred.

Responsibilities

  • Develop, implement, and maintain ISMS (ISO 27001).
  • Lead ISO 27001 certification and surveillance audits.
  • Oversee PIMS implementation and data privacy compliance.
  • Manage SOC 2 program and liaise with external auditors.
  • Develop and deliver information security awareness training.
  • Plan and conduct internal audits of security controls.
  • Lead incident response and post-incident reviews.
  • Develop and maintain Third-Party Risk Management framework.
  • Ensure secure SDLC practices and OWASP alignment.

Skills

Information security
ISO 27001 knowledge
Auditing
Leadership
Communication

Job description

Hiring for InfoSec Executive for our organization !!

Experience: 3+ Years

Work Location: Mahape, Navi Mumbai

Preferred Immediate Joiner.


Job Summary:

We are seeking an Information Security Executive to oversee and manage our organization's information security programs, including ISO 27001, PIMS, and SOC 2 compliance. The ideal candidate will be responsible for conducting internal audits, enhancing employee awareness, and ensuring the security of our information systems. The candidate must be certified as an ISO 27001 Lead Auditor (LA) or Lead Implementer (LI).


Key Responsibilities:

1) ISO 27001 Management:

  • Develop, implement, and maintain the ISO 27001 Information Security Management System (ISMS).
  • Conduct regular risk assessments and ensure compliance with ISO 27001 standards.
  • Leadthe preparation and execution of ISO 27001 certification and surveillance audits.

2) PIMS (Privacy Information Management System):

  • Oversee the implementation and management of PIMS in accordance with relevant privacy regulations.
  • Ensure the protection of personal data and compliance with data privacy laws.

3) SOC 2 Compliance:

  • Manage the SOC 2 compliance program, including the development and maintenance of controls.
  • Coordinate with external auditors for SOC 2 Type I and Type II audits.

4) Employee Awareness:

  • Develop and deliver information security awareness training programs for employees.
  • Promote a culture of security awareness and best practices across the organization.

5) Internal Audits:

  • Plan and conduct internal audits to assess the effectiveness of the ISMS and other security controls.
  • Identify and report on areas of non-compliance and recommend corrective actions.

6) Incident Response:

  • Lead the incident response team in identifying, managing, and mitigating security incidents.
  • Conduct post-incident reviews and implement lessons learned.

7) Third-Party Risk Management (TPRM):

  • Develop and maintain a TPRM framework to assess and monitor vendor security posture.
  • Conduct due diligence and risk assessments for new and existing third-party vendors.

8) Application Security Review:

  • Ensure compliance with OWASP standards and secure SDLC practices.
  • Conduct duediligence and risk assessments for new and existing third-party vendors.

Experience:
  • Minimum of 3 years of experience in information security role
  • Experience in managing ISO 27001, PIMS, and SOC 2 compliance programs.

Skills & Certifications:
  • Strong knowledge of information security principles, practices, and technologies.
  • Excellent communication and leadership skills.
  • Ability to work collaboratively with cross-functional teams.
  • ISO 27001:2022 Lead Auditor (LA) or Lead Implementer (LI) certification is required.
  • Additional certifications such as CISSP, CISM, or CISA are preferred.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Manager
Information Security Manager

Altraize • Mumbai

On-site
Sr. Information Security Analyst – ISMS and SOC2 Implementor (Immediate Joiner - Thane Hybrid)
Sr. Information Security Analyst – ISMS and SOC2 Implementor (Immediate Joiner - Thane Hybrid)

Gleren • Thane

On-site
INR 1,200,000 - 1,700,000
Information Security Manager
Information Security Manager

Rahi Platform Technologies • Pune District

On-site
INR 1,000,000 - 1,500,000
Compliance Associate - ISO 27001 Implementation
Compliance Associate - ISO 27001 Implementation

IAMOPS | Growth Fanatics DevOps • Pune District

On-site
INR 800,000 - 1,400,000
Admin
Admin

OneMetric • Gurugram District

On-site
INR 800,000 - 1,200,000
Information Security Manager
Information Security Manager

Shell Infotech • Hyderabad

On-site
INR 180,000 - 300,000
IT Security & ISO Implementation Support Engineer
IT Security & ISO Implementation Support Engineer

PrivacyPillar Inc. • Gurgaon

On-site
INR 600,000 - 900,000
Information Security Analyst
Information Security Analyst

ACL Digital • Chennai District, Bengaluru

On-site
INR 600,000 - 900,000
ISO Lead Auditor
ISO Lead Auditor

Lucideus • India

On-site
INR 600,000 - 1,000,000
Lead - Information Security Governance & Compliance
Lead - Information Security Governance & Compliance

Larsen & Toubro (L&T) • Mysuru, Bengaluru

On-site
INR 1,400,000 - 2,000,000