As Information Security Engineer, you will be responsible for protecting the organization's information assets through proactive monitoring, incident response, vulnerability management, security hardening, and implementation of cybersecurity controls.
What You'll Own
- Manage and lead Innodata's ISMS policy, procedure, and records review and documentation
- Coordinate all ISMS initiatives for the organization
- Help ensure organizational compliance with ISMS policies and ISO 27001:2022 standard requirements
- Ensure ongoing ISMS updates/initiatives are presented to management on an annual basis
- Help ensure implementation of the employee awareness program
- Coordinate and manage internal audits, management reviews, and execution of corrective/preventive actions per defined timelines
- Track and facilitate closure of observations, gaps, and non-conformities identified during internal/external audits
- Follow up on all reported incidents, coordinate with the ISO team on root cause analysis, and share learning opportunities across departments
- Follow up with respective departments to ensure adherence to ISMS policies and procedures
- Proven experience managing audit teams and delivering risk-based audit programs across multiple business units or regions
- Experience in industries such as manufacturing, BPO/shared services, insurance, or conglomerate/group structures (advantageous)
- Demonstrated experience handling special investigations, fraud examinations, or compliance-related inquiries
What You'll Bring
- Bachelor's degree in Accountancy, Finance, Business Administration, or a related field
- Minimum 10 years of progressive experience in internal audit, risk management, or compliance, including 3–5 years in a leadership/managerial capacity
- Excellent written and verbal communication skills, with the ability to present complex findings clearly to senior stakeholders and Board-level committees.
- Strong leadership and people-management skills, with a track record of mentoring and developing audit teams
- Readiness to manage cross-functional teams and drive organization-wide security changes, building a security-first culture
- Proficiency in audit management tools, MS Office, and data analysis tools
Expertise of the following areas (at least 5)
- ISO/IEC 27001:2022 ISMS, ISO/IEC 22301:2019 BCMS
- Risk Assessment and Gap Assessments
- SOX, SOC 1, SOC 2
- HIPAA and HITRUST
- Internal Audit and External Audit
- Policies and Procedures Review
- Control Testing and Incident Response Activities
- Stakeholder Management
- Cyber Security
- Privacy laws (Regional + Global)
- Governance, Risk, and Compliance
Strong understanding of tools/technologies such as:
- Windows AD, O365
- Security infrastructure: SASE, WAF, Firewall (Network and Application)
- IAM and IGA, MFA, application security
- RSA Archer
- Cloud security (AWS/Azure/GCP/OCI)
Our Commitment to Diversity, Equity, Inclusion & Belonging
At Innodata, we believe the best teams are built from a wide range of backgrounds, perspectives, and lived experiences — and that diverse teams build better data, better products, and a better workplace. We are committed to fostering an environment where everyone feels welcomed, respected, valued, and empowered to do their best work.
We are an equal opportunity employer. We make all employment decisions on the basis of merit, qualifications, and business need, and we do not discriminate on the basis of race, ethnicity, color, religion, sex, gender identity or expression, sexual orientation, age, disability, marital or family status, national origin, or any other characteristic protected by applicable law.
We are committed to building an inclusive and accessible hiring process.
If you require any accommodation to participate fully in our recruitment process, please let us know; we're glad to support you.