3,201 Privacy Engineer jobs in India
Privacy Preference Engineer
Posted today
Job Viewed
Job Description
Job Title: OneTrust Developer – Consent & Preference Management
Location: US Remote
Job Type: Full-time
Introduction:
We are looking for a skilled OneTrust Developer with a strong focus on Consent & Preference Management to join our team. In this role, you will be responsible for the development, customization, and maintenance of OneTrust solutions related to managing user consent and preferences. You will also be in charge of maintaining and optimizing the data connectors between OneTrust and various email service providers (ESPs) to ensure seamless integration and data flow for compliance and communication purposes.
This is a great opportunity to work at the intersection of privacy, data management, and communication technologies, helping our organization maintain robust privacy practices while enhancing user experience.
Key Responsibilities:
Consent & Preference Management:
- Develop, implement, and configure Consent Management and Preference Management solutions within OneTrust to ensure compliance with privacy laws (e.G., GDPR, CCPA).
- Work closely with internal teams to gather business requirements and translate them into customized OneTrust workflows for managing user consents and preferences.
- Ensure that user preferences are accurately captured, stored, and reflected in the system to help the organization comply with regulatory requirements and optimize user experience.
- Design and manage consent banner configurations, including customizable templates, consent gathering, and audit trail management.
- Monitor and enhance the user consent lifecycle , ensuring that all user preferences are correctly updated and aligned with applicable regulations.
Data Connector Management (Email Service Providers):
- Develop and maintain data connectors between OneTrust and email service providers (ESPs) such as Oracle Eloqua, Salesforce Marketing Cloud, Mailchimp, or other ESPs to ensure seamless data synchronization.
- Ensure proper data flow between OneTrust and ESPs, enabling the correct segmentation of users based on consent and preferences for email marketing and communications.
- Troubleshoot and resolve issues related to data syncing, integration, and connectivity between OneTrust and external systems.
- Develop automated processes for updating user preferences, consent statuses, and email subscription data in connected ESPs in real-time.
System Integration & Customization:
- Implement custom integrations and automation within OneTrust to ensure accurate and consistent handling of consent data across various platforms and systems.
- Develop and support APIs and webhooks for integrating OneTrust with internal and third-party systems, especially for data exchange related to consent and preference information.
Privacy & Compliance:
- Collaborate with the privacy and legal teams to ensure that consent management processes meet all regulatory requirements, including GDPR, CCPA, and other global privacy laws.
- Assist in creating audit trails for consent and preferences to demonstrate compliance during internal and external audits.
- Stay up to date with emerging privacy regulations and best practices, ensuring OneTrust configurations are always in line with compliance standards.
Continuous Improvement & Reporting:
- Monitor and optimize the performance and functionality of the Consent & Preference Management solution and data connectors.
- Create dashboards and reporting tools within OneTrust to provide insights into consent status, user preferences, and email campaign effectiveness.
- Proactively identify opportunities to enhance the efficiency of consent management processes and improve data accuracy across systems.
Documentation & Training:
- Create and maintain detailed documentation for system configurations, customizations, data flow, and integration processes.
- Provide training and guidance to internal stakeholders on how to use OneTrust's consent and preference management tools effectively, as well as how to interpret data related to consent and preferences.
Qualifications:
- Proven experience as a OneTrust Developer or technical consultant, specifically with a focus on Consent & Preference Management .
- Strong experience in managing data integrations and data connectors with email service providers (Salesforce Marketing Cloud, Mailchimp, etc.).
- Strong understanding of privacy regulations (e.G., GDPR, CCPA) and how they relate to consent and preference management.
- Experience with APIs , webhooks , and data integration techniques for syncing consent and preference data across platforms.
- Proficiency in programming languages such as JavaScript , SQL , or other relevant languages for OneTrust customizations.
- Hands-on experience working with OneTrust modules , particularly the Consent Management and Preference Management solutions.
- Ability to troubleshoot and resolve technical issues related to consent collection, data syncing, and integrations with ESPs.
- Strong communication skills, with the ability to collaborate effectively with technical and non-technical teams.
- Bachelor's degree in Computer Science , Information Technology , or a related field (or equivalent work experience).
Preferred Skills:
- OneTrust Certifications (e.G., OneTrust Certified Professional ).
- Experience with Salesforce Marketing Cloud , Mailchimp , or other email service providers .
- Familiarity with other privacy frameworks and standards (ISO 27001, NIST).
- Knowledge of cloud platforms (AWS, Azure, etc.) and data security best practices.
Information security
Posted today
Job Viewed
Job Description
Common accountabilities:
- Works autonomously within defined processes and procedures or methodologies, takes standard decisions and may support the development of solutions to complex problems of a recurring nature.
- Receives instruction, guidance and direction from more senior level roles or manager, with regular monitoring on the status of the assignments.
- May have specialized formal education or the equivalent work experience and has the required technical and functional skills and basic knowledge of the business.
Specific accountabilities:
Test strategy
* Attend to specification/architecture reviews (also on customer specification reviews when applicable), and provide feedback along with any potential impact, risk, issue or missed gap based on experience,
* Define test strategy and test plan containing test cases (functional and non-functional), ensure traceability with specifications and customer requirements,
* Ensure compliance of test strategy with CI/CD guidelines, Green IT guidelines and all quality guidelines (SDL, STDL), QA best practices/standards from the industry (ISTQB.),
Test expertise
* Design test cases and write test case scripts
* Prepare test environment, test data, and execute test cases
* Provide sign-off (go/no-go) on tested features based on defined exit criteria
Test automation
* Assess necessity to automate subset of (or all) test scripts
* Use test automation framework and contribute to its improvement
Defect management
* Open defects for software or documentation, assign relevant level of severity based on the importance of the issue, provide relevant investigation and information in order to fix defects
* Check defect fix, and give go/no-go for the load of production defects
Reporting
* Report and communicate on test activities to the line organization, software developers and product definitions analysts
* Provide visibility on testing campaign/milestones to all stakeholders
Quality assurance ambassador
* Show accountability for the project, product or release quality control
Technicity
* Efficiently use QA tooling stack and frameworks
* Be proactive about any issue/change that is likely to affect QA peers daily job
Continuous and sustainable improvement
* Participate to the understanding, measurement and reduction of the environmental impact of the tested applications and associated QA activities
Senior Data Engineer - Privacy
Posted today
Job Viewed
Job Description
Teamwork makes the stream work.
Roku is changing how the world watches TV
Roku is the #1 TV streaming platform in the U.S., Canada, and Mexico, and we've set our sights on powering every television in the world. Roku pioneered streaming to the TV. Our mission is to be the TV streaming platform that connects the entire TV ecosystem. We connect consumers to the content they love, enable content publishers to build and monetize large audiences, and provide advertisers unique capabilities to engage consumers.
From your first day at Roku, you'll make a valuable - and valued - contribution. We're a fast-growing public company where no one is a bystander. We offer you the opportunity to delight millions of TV streamers around the world while gaining meaningful experience across a variety of disciplines.
About the team
The mission of Roku's Data Engineering team is to develop a world-class big data platform so that internal and external customers can leverage data to grow their businesses. Data Engineering works closely with business partners and Engineering teams to collect metrics on existing and new initiatives that are critical to business success. As Senior Data Engineer Privacy, you will contribute to Roku’s Big Data Platform’s architecture design, data modelling and ETL to ensure compliance with privacy requirements. This position is a key role for Roku's business to understand our users while complying with data privacy regulations.
About the role
As a Sr. Data Engineer focused on Data Privacy, your primary responsibility will be to design, implement, and maintain robust data privacy measures within the organization. You will collaborate with cross-functional teams to ensure compliance with privacy regulations, conduct risk assessments, and develop strategies to safeguard sensitive information. Additionally, you will play a key role in enhancing data governance frameworks and educating stakeholders on best practices to uphold the highest standards of data privacy and security.
This role requires hybrid working, you will be based in Bangalore.
What you’ll be doing
We’re excited if you have
Benefits
Roku is committed to offering a diverse range of benefits as part of our compensation package to support our employees and their families. Our comprehensive benefits include global access to mental health and financial wellness support and resources. Local benefits include statutory and voluntary benefits which may include healthcare (medical, dental, and vision), life, accident, disability, commuter, and retirement options (401(k)/pension). Our employees can take time off work for vacation and other personal reasons to balance their evolving work and life needs. It's important to note that not every benefit is available in all locations or for every role. For details specific to your location, please consult with your recruiter.
The Roku Culture
Roku is a great place for people who want to work in a fast-paced environment where everyone is focused on the company's success rather than their own. We try to surround ourselves with people who are great at their jobs, who are easy to work with, and who keep their egos in check. We appreciate a sense of humor. We believe a fewer number of very talented folks can do more for less cost than a larger number of less talented teams. We're independent thinkers with big ideas who act boldly, move fast and accomplish extraordinary things through collaboration and trust. In short, at Roku you'll be part of a company that's changing how the world watches TV.
We have a unique culture that we are proud of. We think of ourselves primarily as problem-solvers, which itself is a two-part idea. We come up with the solution, but the solution isn't real until it is built and delivered to the customer. That penchant for action gives us a pragmatic approach to innovation, one that has served us well since 2002.
Information Security Manager

Posted today
Job Viewed
Job Description
This position is responsible for the leadership of the India Information Security (IS) department as part of the Global Information Security Directorate. Areas of responsibility will include coordination with the other IS Departments to ensure standard enforcement of security polices and controls, interfacing with local India IT teams and business leaders, and mitigating risks to the organization's information assets.
**Responsibilities :**
+ Manage India Information Security team's day to day operations.
+ Support the global Security Operations (SecOps) department to safeguard digital assets by assisting with detecting, investigating, and resolving cybersecurity threats
+ Assist the global Governance, Risk & Compliance (GRC) department with enforcing cybersecurity policies, overseeing cybersecurity risk, facilitating cybersecurity compliance audits, and conducting cybersecurity awareness training.
+ Assist the global Cybersecurity Infrastructure and Design (CID) department with management and maintenance of the cybersecurity systems, platforms, and controls.
+ Implement Secure Software Development Lifecycle (SSDLC) in India office by enforcing the compliance of global policies, processes, procedures and principles.
**Qualifications**
+ Bachelor's degree in Cyber/Information Security or Information Technology, Computer Science, Computer Engineering
+ Professional certifications such as CISSP, CISM, or equivalent multi-domain cybersecurity focused certification.
+ At least 10 years of experience in IT security management, with a proven track record of managing teams in global matrix environment
+ Experience with security technologies: EDR, SIEM, SOAR, CASM, CASB, CSPM, IAM, PAM
+ Excellent communication and interpersonal skills to effectively engage internal stakeholders.
+ Demonstrated ability to analyze complex security issues, devise solutions, and enforce established security controls.
+ Strong leadership skills to drive standardization of processes, procedures, and principles.
This job posting will remain open a minimum of 72 hours and on an ongoing basis until filled.
**Job** Engineering
**Primary Location** India-Maharashtra-Mumbai
**Schedule:** Full-time
**Travel:** No
**Req ID:**
**Job Hire Type** Experienced Not Applicable #BMI N/A
Information Security Consultant
Posted today
Job Viewed
Job Description
Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion - it's a place where you can grow, belong and thrive.
**Your day at NTT DATA**
The Risk Analyst is a seasoned subject matter expert, responsible for assessing and managing risks to ensure the security, integrity, and resilience of the organization's operations and services.
This role involves identifying potential threats, analyzing vulnerabilities, and providing recommendations to mitigate risks.
Through proactive risk assessment and collaboration with cross-functional teams, this role contributes to the organization's efforts to maintain a secure and compliant environment.
**Key responsibilities:**
+ Analyzes risk to business activities and operations.
+ Identifies areas of potential loss or damage for current and proposed business and financial operations, processes, structures and cyber-risk exposure and quantifies impact
+ Implements and evaluates compliance with business and cyber risk-reduction policies, processes and standards.
+ May participate in the development and maintenance of disaster recovery and business continuity plans.
+ Supports organizational processes and programs for mitigation of financial risk, including administration of insurance.
+ May support and administer security and health/safety programs in addition to risk management activities.
+ Performs any other related task as required by management.
**To thrive in this role, you need to have:**
+ Strong understanding of risk assessment methodologies, global regulations, and compliance requirements.
+ Proficiency in data analysis tools and techniques for identifying trends, patterns, and potential risks.
+ Excellent analytical skills and attention to detail.
+ Effective communication skills to convey complex risk concepts to a global audience.
+ Cultural sensitivity and adaptability to work across different regions and time zones
+ Strong problem-solving skills and ability to work collaboratively with cross-functional and global teams.
**Academic qualifications and certifications:**
+ Bachelor's degree or equivalent in Business, Information Security, Risk Management or related field.
+ Relevant certifications such as CISM, CRISC, CISSP, CIPP preferred.
**Required experience:**
+ Seasoned years of experience as a Risk Analyst, preferably in a global organization with diverse operations.
**Workplace type** **:**
Hybrid Working
**About NTT DATA**
NTT DATA is a $30+ billion trusted global innovator of business and technology services. We serve 75% of the Fortune Global 100 and are committed to helping clients innovate, optimize and transform for long-term success. We invest over $3.6 billion each year in R&D to help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have diverse experts in more than 50 countries and a robust partner ecosystem of established and start-up companies. Our services include business and technology consulting, data and artificial intelligence, industry solutions, as well as the development, implementation and management of applications, infrastructure, and connectivity. We are also one of the leading providers of digital and AI infrastructure in the world. NTT DATA is part of NTT Group and headquartered in Tokyo.
**Equal Opportunity Employer**
NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today.
**Third parties fraudulently posing as NTT DATA recruiters**
NTT DATA recruiters will never ask job seekers or candidates for payment or banking information during the recruitment process, for any reason. Please remain vigilant of third parties who may attempt to impersonate NTT DATA recruiters-whether in writing or by phone-in order to deceptively obtain personal data or money from you. All email communications from an NTT DATA recruiter will come from an **@nttdata.com** email address. If you suspect any fraudulent activity, please contact us ( ) .
Information Security Specialist

Posted today
Job Viewed
Job Description
Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion - it's a place where you can grow, belong and thrive.
**Your day at NTT DATA**
The Information Security Analyst is a seasoned subject matter expert, responsible for protecting the organization's computer networks from cyber-attacks, and to help set and maintain security standards.
This role is required to monitor the organization's computer networks for security issues, install security software, and document any security issues or breaches found.
The Information Security Analyst is responsible for assisting in the planning, implementation, and management of information security measures to safeguard the organization's digital assets and systems and contributes to maintaining a secure and compliant environment.
**Key responsibilities:**
+ Monitors security alerts and events from various sources, investigates potential threats, and escalates incidents as necessary.
+ Assists in the implementation and monitoring of security controls, including firewalls, intrusion detection systems, and access controls.
+ Performs regular vulnerability assessments, analyses scan results, and assists in prioritizing and remediating identified vulnerabilities.
+ Supports the incident response team in investigating security incidents, documenting findings, and participating in remediation efforts.
+ Assists in ensuring compliance with industry standards (for example, GDPR, ISO 27001) by conducting assessments and implementing necessary controls.
+ Installs security measures and operates software to protect systems and information infrastructure, including firewalls and data encryption programs.
+ Documents security breaches and assess the damage they cause.
+ Works with the security team to perform tests and uncover network vulnerabilities.
+ Fixes detected vulnerabilities to maintain a high-security standard.
+ Develops organizational best practices for IT security.
+ Performs penetration testing and upgrades systems to unable security software.
+ Installs and upgrades antivirus software and tests and evaluates new technology.
+ Assists with the installation of security software and understands information security management.
+ Researches security enhancements and makes recommendations to management.
+ Stays abreast of information technology trends and security standards.
+ Contributes to security awareness initiatives by creating training materials, conducting workshops, and educating employees about best security practices.
+ Maintains accurate records of security incidents, assessments, and actions taken for reporting and audit purposes.
+ Assists in the management and maintenance of security tools, including antivirus software, encryption tools, and security information and event management (SIEM) systems.
+ Participates in risk assessments to identify potential security threats, vulnerabilities, and associated risks to the organization.
+ Collaborates with cross-functional teams, IT, and other teams to ensure security measures are integrated into the organization's processes and projects.
+ Performs any other related task as required.
**To thrive in this role, you need to have:**
+ Excellent communication skills to effectively convey technical information to non-technical stakeholders.
+ Excellent analytical thinking and problem-solving skills to prevent hacking on a network.
+ Ability to identify and evaluate potential risks and to develop solutions.
+ Ability to identify and mitigate network vulnerabilities and explain how to avoid them.
+ Seasoned proficiency in understanding of firewalls, proxies, SIEM, antivirus, and IDPS concepts.
+ Seasoned proficiency in understanding of patch management with the ability to deploy patches in a timely manner whilst understanding business impact.
+ Seasoned proficiency with MAC and OS.
+ Seasoned familiarity with security frameworks, standards, and regulations (for example, NIST, CIS, GDPR).
+ Seasoned proficiency of understanding in network and system architecture, protocols, and security controls.
+ Strong analytical skills to analyze security incidents and assess potential risks.
+ Ability to work both independently and collaboratively in a fast-paced environment.
**Academic qualifications and certifications:**
+ Bachelor's degree or equivalent in information security, cybersecurity, computer science, or related.
+ Security certifications such as CompTIA Security+, Certified Information Systems Security Professional (CISSP), or Certified Information Security Manager (CISM) are advantageous.
**Required experience:**
+ Seasoned demonstrated experience in information security or cybersecurity, or related roles.
+ Seasoned demonstrated experience working in a global IT organization.
+ Seasoned demonstrated experience with computer network penetration testing and techniques.
+ Seasoned demonstrated experience with security assessment and vulnerability scanning tools.
**Workplace type** **:**
Hybrid Working
**About NTT DATA**
NTT DATA is a $30+ billion trusted global innovator of business and technology services. We serve 75% of the Fortune Global 100 and are committed to helping clients innovate, optimize and transform for long-term success. We invest over $3.6 billion each year in R&D to help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have diverse experts in more than 50 countries and a robust partner ecosystem of established and start-up companies. Our services include business and technology consulting, data and artificial intelligence, industry solutions, as well as the development, implementation and management of applications, infrastructure, and connectivity. We are also one of the leading providers of digital and AI infrastructure in the world. NTT DATA is part of NTT Group and headquartered in Tokyo.
**Equal Opportunity Employer**
NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today.
**Third parties fraudulently posing as NTT DATA recruiters**
NTT DATA recruiters will never ask job seekers or candidates for payment or banking information during the recruitment process, for any reason. Please remain vigilant of third parties who may attempt to impersonate NTT DATA recruiters-whether in writing or by phone-in order to deceptively obtain personal data or money from you. All email communications from an NTT DATA recruiter will come from an **@nttdata.com** email address. If you suspect any fraudulent activity, please contact us ( ) .
Engineer, Information Security

Posted today
Job Viewed
Job Description
Are you ready to accelerate your potential and make a real difference within life sciences, diagnostics and biotechnology?
At Pall Corporation, one of Danaher's ( 15+ operating companies, our work saves lives-and we're all united by a shared commitment to innovate for tangible impact.
You'll thrive in a culture of belonging where you and your unique viewpoint matter. And by harnessing Danaher's system of continuous improvement, you help turn ideas into impact - innovating at the speed of life.
As a global leader in high-tech filtration, separation, and purification, Pall Corporation thrives on helping our customers solve their toughest challenges. Our products serve diverse, global customer needs across a wide range of applications to advance health, safety and environmentally responsible technologies. From airplane engines to hydraulic systems, scotch to smartphones, OLED screens to paper-everyday Pall is there, helping protect critical operating assets, improve product quality, minimize emissions and waste, and safeguard health. For the exponentially curious, Pall is a place where you can thrive and amplify your impact on the world. Find what drives you on a team with a more than 75-year history of discovery, determination, and innovation.
Learn about the Danaher Business System ( which makes everything possible.
The Engineer, Information Security is responsible for designing, implementing an organisation's security systems and protocols to protect against security breaches, cyber-attacks, and other malicious activities.
They must develop and implement security tools, providing guidance and training to analysts on security best practices. They must collaborate with external security vendors and partners on the deployment of such tools and the best practices involved in keeping them operating optimally.
This position reports to the Director, Information Security and is part of the Information Technology Department located in Pune, India and will be an on-site role.
In this role, you will have the opportunity to:
+ Design and implement security controls, including access control, network segmentation, intrusion prevention and other tools, to mitigate risks and protect against security threats.
+ Evaluate emerging security technologies and make recommendations for their integration into the security architecture framework.
+ Conduct security reviews and risk assessments of new and existing IT systems, applications, and networks.
+ Create and maintain comprehensive documentation for security systems, procedures, and security incidents.
+ Participate in incident response planning and execute incident response procedures with security analysts in the event of a security breach.
The essential requirements of the job include:
+ Proven experience as a security engineer in a mid-sized organization, with 2+ years of experience in an engineering role.
+ Experience in building and maintaining security systems.
+ Hands-on experience in security systems, including firewalls, intrusion detection systems, anti-virus software, authentication systems, log management, content filtering, etc.
+ Knowledge of security standards, frameworks and regulations such as ISO 27001, NIST, PCI DSS, and GDPR.
+ Exhibit good analytical skills, as well as the ability to work well in a demanding, dynamic environment.
Travel, Motor Vehicle Record & Physical/Environment Requirements:
+ Ability to travel - international travel up to 10% per year.
It would be a plus if you also possess the following:
+ Bachelor's degree in computer science, Information Technology, or related field.
+ Professional certifications such as CISSP, Security+, CASP+, GIAC.
Pall Corporation, a Danaher operating company, offers a broad array of comprehensive, competitive benefit programs that add value to our lives. Whether it's a health care program or paid time off, our programs contribute to life beyond the job. Check out our benefits at Danaher Benefits Info ( .
At Pall we believe in designing a better, more sustainable workforce. We recognize the benefits of flexible, remote working arrangements for eligible roles and are committed to providing enriching careers, no matter the work arrangement. This position is eligible for a remote work arrangement in which you can work remotely from your home. Additional information about this remote work arrangement will be provided by your interview team. Explore the flexibility and challenge that working for Pall can provide.
Join our winning team today. Together, we'll accelerate the real-life impact of tomorrow's science and technology. We partner with customers across the globe to help them solve their most complex challenges, architecting solutions that bring the power of science to life.
For more information, visit .
Be The First To Know
About the latest Privacy engineer Jobs in India !
Analyst, Information Security

Posted today
Job Viewed
Job Description
Are you ready to accelerate your potential and make a real difference within life sciences, diagnostics and biotechnology?
At Pall Corporation, one of Danaher's ( 15+ operating companies, our work saves lives-and we're all united by a shared commitment to innovate for tangible impact.
You'll thrive in a culture of belonging where you and your unique viewpoint matter. And by harnessing Danaher's system of continuous improvement, you help turn ideas into impact - innovating at the speed of life.
As a global leader in high-tech filtration, separation, and purification, Pall Corporation thrives on helping our customers solve their toughest challenges. Our products serve diverse, global customer needs across a wide range of applications to advance health, safety and environmentally responsible technologies. From airplane engines to hydraulic systems, scotch to smartphones, OLED screens to paper-everyday Pall is there, helping protect critical operating assets, improve product quality, minimize emissions and waste, and safeguard health. For the exponentially curious, Pall is a place where you can thrive and amplify your impact on the world. Find what drives you on a team with a more than 75-year history of discovery, determination, and innovation.
Learn about the Danaher Business System ( which makes everything possible.
The role of Analyst, Information Security is a critical function within our organisation, which primarily involves the protection of digital assets and data from cyber threats, by analysing and improving the security measures in place.
The analyst will be responsible for managing the day-to-day operations of our security infrastructure, including monitoring, responding to security incidents, risk management and policy enforcement. They will need to have a strong understanding of security principles, experience with security tools, and the ability to work in a fast-paced, agile environment.
This position reports to the Director, Information Security and is part of the Information Technology Department located in Pune, India and will be an on-site role.
In this role, you will have the opportunity to:
+ Monitor for security events and alerts to detect and respond to incidents in a timely manner, meeting required metrics.
+ Investigate security incidents to determine root cause and impact.
+ Respond to security incidents by implementing appropriate remediation actions.
+ Support and maintain incident response plans.
+ Investigate and resolve security incidents and breaches highlighted by the Security Operations Centre, providing recommendations to prevent future incidents.
+ Manage security tools and technologies, intrusion detection and prevention systems, antivirus software, content filters IDS/IPS & NGFW.
.
The essential requirements of the job include:
+ 2+ years of experience in a security operations role.
+ Hands-on experience with security tools, such as SIEM, IDS/IPS, and vulnerability scanners.
+ Strong knowledge of security principles and best practices.
+ Good analytical and problem-solving skills.
+ Knowledge of security standards and regulations such as ISO 27001, NIST, PCI DSS, and GDPR.
Travel, Motor Vehicle Record & Physical/Environment Requirements:
+ Ability to travel - international travel up to 10% per year.
It would be a plus if you also possess the following:
+ Bachelor's degree in computer science, Information Technology, or related field.
+ Relevant certifications such as Security+, CASP+, GIAC.
Pall Corporation, a Danaher operating company, offers a broad array of comprehensive, competitive benefit programs that add value to our lives. Whether it's a health care program or paid time off, our programs contribute to life beyond the job. Check out our benefits at Danaher Benefits Info ( .
At Pall we believe in designing a better, more sustainable workforce. We recognize the benefits of flexible, remote working arrangements for eligible roles and are committed to providing enriching careers, no matter the work arrangement. This position is eligible for a remote work arrangement in which you can work remotely from your home. Additional information about this remote work arrangement will be provided by your interview team. Explore the flexibility and challenge that working for Pall can provide.
Join our winning team today. Together, we'll accelerate the real-life impact of tomorrow's science and technology. We partner with customers across the globe to help them solve their most complex challenges, architecting solutions that bring the power of science to life.
For more information, visit .
Information Security Manager
Posted 4 days ago
Job Viewed
Job Description
Job Title: Manager – Information Security
Job Summary
We are seeking an accomplished Information Security professional with extensive experience in cybersecurity best practices, enterprise security architecture, data protection, first-line information security risk management, and conducting security assessments. The Manager – Information Security will be instrumental in developing, evaluating, and ensuring alignment with cybersecurity controls and policies, maintaining compliance with standards, and embedding security into the organization’s products, services, and technology infrastructure. This position demands a subject matter expert capable of bridging the gap between security policy, risk, and technical implementation. A solid understanding of the latest security frameworks and technologies, including Cloud and AI, is essential to effectively inform and support risk-based decision-making.
Key Responsibilities
Cybersecurity Policy & Governance
- Develop, review, and maintain cybersecurity policies, standards, and procedures consistent with NIST, Cloud Security Alliance, CIS, and other global security frameworks.
- Convert identified security risks into policy requirements while ensuring alignment with business objectives.
- Work with security, engineering, architecture, and operational teams to confirm that policies are technically feasible and provide guidance on implementing and enforcing controls.
Risk Management and Assessments
- Function as a security specialist, providing advisory support or directly conducting comprehensive risk assessments and control gap analyses across services, products, infrastructure, and applications.
- Offer recommendations and guidance on effective risk mitigation strategies that align with business objectives and maintain appropriate security standards.
- Track emerging threats, evolving industry standards, best practices, and regulatory changes in order to proactively advise on necessary updates to policies, controls, or other measures required to strengthen and modernize our risk management posture.
Security Architecture
- Provide guidance on secure cloud, network architecture, segmentation, and system hardening.
- Work with engineering teams to monitor and maintain secure configurations and access controls.
- Lead or advise on security reviews of new technologies and system changes.
- Carry out Security Architecture Integration by conducting ongoing or targeted architecture reviews to confirm that security is incorporated, integrated, and verified in designs and implemented services.
- Establish and uphold architectural security principles throughout the technology and services ecosystem.
- Assess and integrate security tools and technologies to support the enterprise security posture.
Security Assurance and Attestations
- Maintain documentation and evidence repositories to facilitate internal and external support.
- Utilize platforms such as SharePoint and Jira to ensure optimal assessment preparedness.
- Collaborate with control owners to monitor, address, and close findings efficiently.
Awareness & Communication
- Develop and implement cybersecurity awareness programs designed for both technical and non-technical teams.
- Prepare concise communications regarding policy changes, risk advisories, and incident notifications.
- Deliver training sessions to stakeholders on security controls and risk management procedures.
Required Qualifications
- Bachelor’s / Master’s degree in Information Security, Computer Science, or related field.
- 12 – 15 years of experience in Information Security with a strong focus on risk management, network security, and security architecture.
- Hands-on experience in system/network administration (Windows/Linux/Cloud).
- Deep understanding of frameworks such as ISO 27001, NIST, PCI DSS, and COBIT.
- Proven experience in drafting and implementing security policies and technical standards.
- Strong knowledge of identity lifecycle management and access governance.
- Experience with audit documentation and evidence management tools (e.g., SharePoint, Jira).
- Excellent communication and stakeholder engagement skills.
Preferred Qualifications
- Certifications: CISSP, CISM, CISA, CRISC, or equivalent.
- Experience with GRC platforms and risk assessment methodologies.
- Familiarity with regulatory standards such as GDPR, CCPA, and other data protection laws.
- Exposure to cloud platforms (Azure, AWS) and security tools (e.g., Defender, CrowdStrike, Tenable).
- Knowledge of enterprise architecture frameworks and secure design principles.
Information Security Consultant
Posted 4 days ago
Job Viewed
Job Description
The Information Security Consultant will be responsible for the implementation, assessment, and management of ISO 27001:2022, ISO 27002, and SOC 2 standards for clients. This role involves working independently or alongside senior consultants to help clients achieve and maintain information security compliance and other best practices. The consultant will focus on assessing and ensuring compliance with key security frameworks and will provide vCISO support to various clients.
Key Responsibilities:
ISO 27001/27002 Compliance:
- Assist clients in achieving ISO 27001 certification by identifying and implementing the appropriate controls within the audit scope.
- Verify compliance with ISO 27001/27002 controls and provide recommendations for improvement.
SOC 2 Compliance:
- Assist clients in achieving SOC 2 compliance by identifying and implementing the appropriate Trust Service Criteria (TSCs).
- Conduct SOC 2 compliance assessments and ensure the proper implementation of required controls.
Risk Assessment and Mitigation:
- Conduct risk assessments of business activities, collaborating with stakeholders to manage risks until closure or acceptance.
- Provide actionable recommendations to mitigate identified risks.
Policy and Procedure Development:
- Define, develop, and review information security policies, procedures, guidelines, forms, and templates in line with best practices.
- Ensure documentation is up-to-date and aligned with industry standards.
Baseline Standards Review:
- Create and review baseline standards for operating systems, databases, web servers, and applications.
- Recommend improvements based on security assessments.
Post-Implementation Audits:
- Support post-implementation audits for ISO 27001:2022 to ensure ongoing compliance.
- Monitor and assess adherence to established information security standards.
Information Security Awareness:
- Create and execute organizational information security awareness programs.
- Conduct training sessions to ensure employees are knowledgeable about security best practices.
Security Standards Compliance:
- Assist clients in ensuring compliance with various security standards (ISO 27001, SOC 2, HIPAA, NIST, CIS, PCI DSS, etc.).
- Recommend strategies to ensure long-term adherence to security best practices.
Incident Response:
- Develop and implement incident response plans to handle security breaches and cyberattacks.
- Ensure that clients have clear, actionable plans to address potential security incidents.
Gap Assessment:
- Conduct gap assessments to identify areas of non-compliance and provide remediation strategies.
vCISO Support:
- Provide virtual Chief Information Security Officer (vCISO) support to clients, advising on information security strategy and governance.
Skills and Qualifications:
Technical Skills:
- Strong background in Information Technology and/or Cybersecurity .
- Proficiency in auditing, policy development, database security, firewall design, risk analysis, identity management, access control, and web security.
- Knowledge of security frameworks including ISO 27001, SOC 2, HIPAA, NIST, CIS, PCI DSS, and other industry best practices.
- Hands-on experience with ISO 27001:2022 and SOC 2 implementations and assessments.
- Strong understanding of risk management and the ability to assess and mitigate security risks.
Presales and Communication Skills:
- Excellent client-facing communication skills.
- Strong problem-solving abilities and the capacity to work effectively in a team environment.
- Ability to communicate complex technical concepts to both technical and non-technical audiences.
- Demonstrated ability to deliver presentations and conduct training sessions.