1,521 Security Compliance jobs in India

Security & Compliance Engineer

Bangalore, Karnataka IBM

Posted 1 day ago

Job Viewed

Tap Again To Close

Job Description

**Introduction**
A career in IBM Software means you'll be part of a team that transforms our customers challenges into solutions.
Seeking new possibilities and always staying curious, we are a team dedicated to creating the world's leading AI-powered, cloud-native software solutions for our customers. Our renowned legacy creates endless global opportunities for our IBMers, so the door is always open for those who want to grow their career.
IBM's product and technology landscape includes Research, Software, and Infrastructure. Entering this domain positions you at the heart of IBM, where growth and innovation thrive.
**Your role and responsibilities**
Job Summary:
We are seeking a passionate and experienced Security & Compliance Engineer to join our team. This role is pivotal in ensuring our cloud services meet the highest standards of security and compliance. You will work cross-functionally with engineering teams, project managers, and compliance stakeholders to identify, implement, and monitor security controls and processes. Your work will directly contribute to the protection of our infrastructure, data, and services. The service you will be joining is Key Protect, IBM's key management system Responsibilities:
* Support security and compliance initiatives across Key Protect & Security Services.
* Collaborate with development and operations teams to mitigate security risks.
* Implement, and monitor security controls and compliance processes.
* Contribute to risk assessments, gap analyses, and remediation planning.
* Support internal and external audits by providing evidence and documentation.
* Support adherence to regulatory standards such as FedRAMP, HIPAA, GDPR, SOC 2, PCI, ISO27K, NIST, ISMAP, ENS, HITRUST, etc.
* Drive improvements in patch management, vulnerability management, and access control.
* Maintain accurate asset inventories and ensure configuration management best practices.
* Monitor logs and systems for anomalies and respond to incidents.
* Participate in penetration testing and threat modeling exercises.
* Communicate security requirements and findings to technical and non-technical stakeholders.
Ideal Candidate Traits:
* Growth mindset and eagerness to learn.
* Strong problem-solving and critical thinking abilities.
* Self-starter, ability to work independently.
* Ability to translate complex security concepts into actionable guidance.
**Required technical and professional expertise**
Required Experience:
* 4+ years in security engineering, compliance, DevOps or related roles.
* Experience with cloud technologies and infrastructure.
* Hands-on experience with compliance frameworks (e.g., FedRAMP, HIPAA, GDPR, SOC 2, PCI, ISO, NIST).
* Knowledge of end-to-end Security and Compliance activities such as Threat Models, Security Privacy by Design.
* Knowledge of Security scanning tools such as Nessus scanner, SonarQube, NMap.
* Knowledge of Security concepts (includes understanding of identity mgmt./authentication, authorization, firewall, auditing, secure communication, managing certificates, password management)
* Understanding of cryptographic key management and its lifecycle.
* Strong understanding of access management, data protection, and secure system configuration.
* Experience on Kubernetes/ OpenShift deployments, Container Tools such as Docker, Podman, Rancher
* Excellent communication and documentation skills.
* Ability to work independently and collaboratively across teams.
**Preferred technical and professional experience**
* Experience with tools such as GitHub and ServiceNow.
* Experience with microservice architectures and Restful API development
* Familiarity using Container Security tools such as Prisma Cloud & AquaSec
* Experience in DevSecOps pipelines - Jenkins, Tekton Toolchains
* Scripting and automation skills (Python, Bash, Terraform, etc.)
IBM is committed to creating a diverse environment and is proud to be an equal-opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, caste, genetics, pregnancy, disability, neurodivergence, age, veteran status, or other characteristics. IBM is also committed to compliance with all fair employment practices regarding citizenship and immigration status.
This advertiser has chosen not to accept applicants from your region.

Security Compliance Specialist

Bengaluru, Karnataka Cashfree Payments

Posted 8 days ago

Job Viewed

Tap Again To Close

Job Description

We are looking for a motivated and detail-oriented Security Compliance Specialist to join our dynamic Governance, Risk, and Compliance (GRC) team. In this role, you will play a pivotal part in ensuring Cashfree’s adherence to critical industry standards and regulatory frameworks including PCI DSS , and other applicable cybersecurity and compliance directives. You will work closely with cross-functional teams, driving a strong compliance culture and supporting risk mitigation across our fintech operations.

This position offers an exciting opportunity to lead compliance initiatives in a fast-paced, innovative fintech environment, ensuring that internal controls, audits, and external certifications are handled with precision and strategic insight.

Who You Are

You are ideally suited for this role if you have a strong background in IT and Cloud security compliance, enjoy collaborating with both technical and business teams, and excel at translating complex regulatory requirements into actionable internal processes. You thrive in a high-growth environment and are passionate about strengthening the compliance posture of a cutting-edge fintech company.

Key Responsibilities

  • Lead and manage compliance efforts with relevant cybersecurity and data protection standards such as PCI DSS, NBFC RBI Regulations, GDPR , industry regulations, and other global or national compliance frameworks.
  • Develop, implement, and manage internal audit strategies, ensuring effective risk management and strong internal controls.
  • Serve as a key advisor to senior leadership on compliance and governance issues, supporting the design of risk mitigation strategies.
  • Collaborate with Engineering, Product, Operations, and other teams to ensure controls are effectively integrated and monitored across systems and processes.
  • Conduct internal audits, support external audits and certifications, and ensure timely closure of findings with validated remedial actions.
  • Identify and assess compliance risks, escalate issues appropriately, and track risk mitigation efforts.
  • Deliver compliance training programs and promote awareness throughout the organization, embedding compliance into daily operations.
  • Coordinate with external auditors, certifying bodies, and regulators for periodic audits and ensure timely reporting and certification renewals.
  • Continuously improve compliance processes and methodologies, incorporating best practices and adapting to evolving regulatory landscapes.

Qualifications and Skills:

  • 3 to 8 years of experience in IT Security Compliance, preferably within the fintech, payments, or financial services sectors.
  • Solid understanding of PCI DSS , information security standards, and broader IT compliance frameworks (e.g., ISO 27001, SOC 2, GDPR,RBI & Cert-In etc.).
  • Proven track record of managing audits and compliance programs, including interaction with external auditors and certifying bodies.
  • Strong knowledge of security controls, risk assessments, and compliance monitoring in technology-driven environments.
  • Excellent communication and interpersonal skills, with experience in influencing cross-functional teams and senior stakeholders.
  • Detail-oriented with strong analytical and documentation skills.
  • Familiarity with agile methodologies and applying compliance in agile and DevOps environments.

Certifications Required:

  • One or more of the following certifications:
  • CISA (Certified Information Systems Auditor)
  • CISSP (Certified Information Systems Security Professional)
  • CRISC (Certified in Risk and Information Systems Control)
  • PCI DSS Implementation Certification or equivalent.

Educational Background:

  • Bachelor’s degree in Computer Science, Information Security, Engineering, or a related field.
  • A Master’s degree in a relevant discipline is preferred.
This advertiser has chosen not to accept applicants from your region.

Security Compliance Specialist

Bengaluru, Karnataka Cashfree Payments

Posted 6 days ago

Job Viewed

Tap Again To Close

Job Description

We are looking for a motivated and detail-oriented Security Compliance Specialist to join our dynamic Governance, Risk, and Compliance (GRC) team. In this role, you will play a pivotal part in ensuring Cashfree’s adherence to critical industry standards and regulatory frameworks including PCI DSS , and other applicable cybersecurity and compliance directives. You will work closely with cross-functional teams, driving a strong compliance culture and supporting risk mitigation across our fintech operations.
This position offers an exciting opportunity to lead compliance initiatives in a fast-paced, innovative fintech environment, ensuring that internal controls, audits, and external certifications are handled with precision and strategic insight.
Who You Are
You are ideally suited for this role if you have a strong background in IT and Cloud security compliance, enjoy collaborating with both technical and business teams, and excel at translating complex regulatory requirements into actionable internal processes. You thrive in a high-growth environment and are passionate about strengthening the compliance posture of a cutting-edge fintech company.
Key Responsibilities
Lead and manage compliance efforts with relevant cybersecurity and data protection standards such as PCI DSS, NBFC RBI Regulations, GDPR , industry regulations, and other global or national compliance frameworks.
Develop, implement, and manage internal audit strategies, ensuring effective risk management and strong internal controls.
Serve as a key advisor to senior leadership on compliance and governance issues, supporting the design of risk mitigation strategies.
Collaborate with Engineering, Product, Operations, and other teams to ensure controls are effectively integrated and monitored across systems and processes.
Conduct internal audits, support external audits and certifications, and ensure timely closure of findings with validated remedial actions.
Identify and assess compliance risks, escalate issues appropriately, and track risk mitigation efforts.
Deliver compliance training programs and promote awareness throughout the organization, embedding compliance into daily operations.
Coordinate with external auditors, certifying bodies, and regulators for periodic audits and ensure timely reporting and certification renewals.
Continuously improve compliance processes and methodologies, incorporating best practices and adapting to evolving regulatory landscapes.
Qualifications and Skills:
3 to 8 years of experience in IT Security Compliance, preferably within the fintech, payments, or financial services sectors.
Solid understanding of PCI DSS , information security standards, and broader IT compliance frameworks (e.g., ISO 27001, SOC 2, GDPR,RBI & Cert-In etc.).
Proven track record of managing audits and compliance programs, including interaction with external auditors and certifying bodies.
Strong knowledge of security controls, risk assessments, and compliance monitoring in technology-driven environments.
Excellent communication and interpersonal skills, with experience in influencing cross-functional teams and senior stakeholders.
Detail-oriented with strong analytical and documentation skills.
Familiarity with agile methodologies and applying compliance in agile and DevOps environments.
Certifications Required:
One or more of the following certifications:
CISA (Certified Information Systems Auditor)
CISSP (Certified Information Systems Security Professional)
CRISC (Certified in Risk and Information Systems Control)
PCI DSS Implementation Certification or equivalent.
Educational Background:
Bachelor’s degree in Computer Science, Information Security, Engineering, or a related field.
A Master’s degree in a relevant discipline is preferred.
This advertiser has chosen not to accept applicants from your region.

Security Compliance Analyst

Gurugram, Uttar Pradesh TaskUs

Posted today

Job Viewed

Tap Again To Close

Job Description

About TaskUs: TaskUs is a provider of outsourced digital services and next-generation customer experience to fast-growing technology companies, helping its clients represent, protect and grow their brands. Leveraging a cloud-based infrastructure, TaskUs serves clients in the fastest-growing sectors, including social media, e-commerce, gaming, streaming media, food delivery, ride-sharing, HiTech, FinTech, and HealthTech. 

The People First culture at TaskUs has enabled the company to expand its workforce to approximately 45,000 employees globally.Presently, we have a presence in twenty-three locations across twelve countries, which include the Philippines, India, and the United States.

It started with one ridiculously good idea to create a different breed of Business Processing Outsourcing (BPO)! We at TaskUs understand that achieving growth for our partners requires a culture of constant motion, exploring new technologies, being ready to handle any challenge at a moment’s notice, and mastering consistency in an ever-changing world.

What We Offer: At TaskUs, we prioritize our employees' well-being by offering competitive industry salaries and comprehensive benefits packages. Our commitment to a People First culture is reflected in the various departments we have established, including Total Rewards, Wellness, HR, and Diversity. We take pride in our inclusive environment and positive impact on the community. Moreover, we actively encourage internal mobility and professional growth at all stages of an employee's career within TaskUs. Join our team today and experience firsthand our dedication to supporting People First.

Security Compliance Analyst

Security Compliance Analyst do? Think of yourself as someone who provides a pivotal role in the oversight and implementation of system-wide information security strategies and solutions. You will have a significant role in performing audits, tracking vulnerability assessments, testing security, and working with operations teams on remediation and mitigation of audit findings.

Imagine yourself going to work with one thing on your mind:to manage and improve overall IT/Security Monitoring and Incident Response programs using processes, procedures, and automation.

As a Security Compliance Analyst , you will:

  • Evaluate and design security solutions

  • Work with technicians throughout the company in implementing, maintaining and constantly improving information security practices, while managing and maintaining efforts in the areas of Information Security, Governance, Risk and Compliance.

  • Manage and improve overall IT/Security Monitoring and Incident Response programs using processes, procedures, and automation.

  • Support the Security Compliance Manager in handling the assessment and integration of security controls of the entire corporate environment in line with applicable requirements from PCI DSS, SOC 2, HIPAA/HITRUST and ISO 27001.

  • Responsible for policy assessment of endpoint and network security appliances, hardware and software, enforcing the TaskUs security policies and complying with requirements of internal and external security audits and recommendations. 

  • Serve as audit liaison, compiling all evidence/documentation requests and reporting on the progress of audits to InfoSec and IT leadership. 

  • Key administrator for Cloud Access Security Broker policy management; support in the development and implementation of a corporate security & compliance awareness program

  • Develop training and awareness efforts for employees, contractors and visitors - to establish a “culture of security” to prevent or mitigate security incidents.

  • Conduct research on emerging practices, services, protocols, and standards - in support of system security and compliance enhancement and development efforts. 

  • Ensure security compliance with applicable regulations and other state and federal laws, keeping current on US, Philippines and international laws of operating countries, and industry regulations regarding data privacy and security. 

  • Assist in the development and maintenance of security operations procedures and processes and work with the business units outside of InfoSec to formally document policies and procedures

  • recommend and support the deployment of additional security products and tools, or enhancements to existing tools, to mitigate security risk and detect/remediate compromises. 

  • Will work with security engineers for the optimal configuration of the network and host-based security platforms - aligned with compliance requirements

  • Provide Incident Response support, as needed, for information security related events

  • Participate in the analysis, troubleshooting, and investigation of security-related, information systems anomalies, based on security platform reporting, network traffic, log files, host-based and automated security alerts. 

  • Evaluate systems using vulnerability scanners and manual techniques to verify system security settings and configurations. This may include participation in DRP exercises and continuous improvement processes; assisting in the design and implementation of disaster recovery and business continuity plans, procedures, audits, and enhancements. 

  • Do you have what it takes to become a Security Compliance Analyst ?

    Requirements:

  • Bachelor’s degree in MIS/Computer Science or Business and/or combination of education and relevant experience

  • Must have an industry recognized information security certification, such as CISA, CISM, CISSP, SSCP ,CCIE or CEH.

  • At least 5 years of experience, two of which are focused on IT security and/or IT audit

  • In-depth and hands-on experience with at least 2 of the following compliance requirements: PCI DSS, SOC 2, HIPAA/HITRUST and ISO 27001

  • Must possess a strong understanding of enterprise, network, system and application level security issues; functional awareness of both Linux-based and MS Windows-based system platforms

  • Has a strong IT technical understanding and aptitude for analytical problem-solving; understand enterprise computing environments, distributed applications, and understanding of TCP/IP networks

  • Previous background working on system hardening processes, tools, guidelines and benchmarks

  • Experience in DLP policy and vulnerability management scanning platforms

  • Experience in Cloud Access Security Broker solutions is a distinct advantage

  • Has knowledge of Business Continuity Management (BCM) and Business Impact Analysis (BIA) 

  • Has good Project Management skills with the ability to self-start projects

  • Can handle sensitive and/or confidential material and information with suitable discretion

  • About TaskUs

    TaskUs is a leading provider of outsourced digital services and next-generation customer experience to the world’s most innovative companies, helping its clients represent, protect and grow their brands. Leveraging a cloud-based infrastructure, TaskUs serves clients in the fastest-growing sectors, including social media, e-commerce, gaming, streaming media, food delivery and ride-sharing, Technology, FinTech and HealthTech. As of March 31, 2023, TaskUs had a worldwide headcount of approximately 47,700 people across 27 locations in 13 countries, including the United States, the Philippines and India.

    In TaskUs we believe that innovation and higher performance are brought by people from all walks of life. We welcome applicants of different backgrounds, demographics and circumstances. Inclusive and equitable practices is our responsibility as a business.

    TaskUs is committed to providing equal access to opportunities. If you need reasonable accommodation in any part of the hiring process, please let us know.

    “Please take note that TaskUs will neither solicit money from you during your application process nor require any form of payment in order to proceed with your application. Kindly ensure that you are always in communication with only authorized recruiters of TaskUs.”

    How We Partner To Protect You: TaskUs will neither solicit money from you during your application process nor require any form of payment in order to proceed with your application. Kindly ensure that you are always in communication with only authorized recruiters of TaskUs.


    DEI: In TaskUs we believe that innovation and higher performance are brought by people from all walks of life. We welcome applicants of different backgrounds, demographics, and circumstances. Inclusive and equitable practices are our responsibility as a business. TaskUs is committed to providing equal access to opportunities. If you need reasonable accommodations in any part of the hiring process, please let us know.

    We invite you to explore all TaskUs career opportunities and apply through the provided URL.

    This advertiser has chosen not to accept applicants from your region.

    Network Security & Compliance

    Chennai, Tamil Nadu Larsen & Toubro

    Posted today

    Job Viewed

    Tap Again To Close

    Job Description

  • Configure, deploy, and maintain FortiGate firewalls across site-level networks.
  • Monitor and manage network setting, firewall policies, NAT rules, and VPN tunnels (IPSec).
  • Perform regular updates, firmware upgrades, and system health checks on Fortinet devices.
  • Investigate and respond to security incidents and network anomalies in coordination with the SOC team.
  • Analyse traffic logs and event data to detect and mitigate potential threats.
  • Collaborate with Site IT to ensure secure and optimized routing and switching configurations.
  • Maintain Forti Manager for centralized management and reporting.
  • Prepare documentation, network diagrams.
  • Provide technical support and training to site ISD or IT staff as needed.
  • Provide support for other firewalls like Palo Alto and Cisco Meraki.
  • Hands-on experience with Fortinet products (FortiGate, FortiManager).
  • Strong understanding of networking, firewall rules, VPNs and NAT.
  • Familiarity with network protocols (TCP/IP, DNS, DHCP, etc.).
  • Knowledge of routing and switching concepts (preferably Cisco or equivalent).
  • Basic knowledge of SIEM tools and threat intelligence platforms is a plus.
  • Experience in incident handling and troubleshooting.
  • This advertiser has chosen not to accept applicants from your region.

    Security Compliance Specialist

    Bengaluru, Karnataka Cashfree Payments

    Posted today

    Job Viewed

    Tap Again To Close

    Job Description

    We are looking for a motivated and detail-oriented Security Compliance Specialist to join our dynamic Governance, Risk, and Compliance (GRC) team. In this role, you will play a pivotal part in ensuring Cashfree’s adherence to critical industry standards and regulatory frameworks including PCI DSS , and other applicable cybersecurity and compliance directives. You will work closely with cross-functional teams, driving a strong compliance culture and supporting risk mitigation across our fintech operations.

    This position offers an exciting opportunity to lead compliance initiatives in a fast-paced, innovative fintech environment, ensuring that internal controls, audits, and external certifications are handled with precision and strategic insight.

    Who You Are

    You are ideally suited for this role if you have a strong background in IT and Cloud security compliance, enjoy collaborating with both technical and business teams, and excel at translating complex regulatory requirements into actionable internal processes. You thrive in a high-growth environment and are passionate about strengthening the compliance posture of a cutting-edge fintech company.

    Key Responsibilities

    • Lead and manage compliance efforts with relevant cybersecurity and data protection standards such as PCI DSS, NBFC RBI Regulations, GDPR , industry regulations, and other global or national compliance frameworks.
    • Develop, implement, and manage internal audit strategies, ensuring effective risk management and strong internal controls.
    • Serve as a key advisor to senior leadership on compliance and governance issues, supporting the design of risk mitigation strategies.
    • Collaborate with Engineering, Product, Operations, and other teams to ensure controls are effectively integrated and monitored across systems and processes.
    • Conduct internal audits, support external audits and certifications, and ensure timely closure of findings with validated remedial actions.
    • Identify and assess compliance risks, escalate issues appropriately, and track risk mitigation efforts.
    • Deliver compliance training programs and promote awareness throughout the organization, embedding compliance into daily operations.
    • Coordinate with external auditors, certifying bodies, and regulators for periodic audits and ensure timely reporting and certification renewals.
    • Continuously improve compliance processes and methodologies, incorporating best practices and adapting to evolving regulatory landscapes.

    Qualifications and Skills:

    • 3 to 8 years of experience in IT Security Compliance, preferably within the fintech, payments, or financial services sectors.
    • Solid understanding of PCI DSS , information security standards, and broader IT compliance frameworks (e.g., ISO 27001, SOC 2, GDPR,RBI & Cert-In etc.).
    • Proven track record of managing audits and compliance programs, including interaction with external auditors and certifying bodies.
    • Strong knowledge of security controls, risk assessments, and compliance monitoring in technology-driven environments.
    • Excellent communication and interpersonal skills, with experience in influencing cross-functional teams and senior stakeholders.
    • Detail-oriented with strong analytical and documentation skills.
    • Familiarity with agile methodologies and applying compliance in agile and DevOps environments.

    Certifications Required:

    • One or more of the following certifications:
    • CISA (Certified Information Systems Auditor)
    • CISSP (Certified Information Systems Security Professional)
    • CRISC (Certified in Risk and Information Systems Control)
    • PCI DSS Implementation Certification or equivalent.

    Educational Background:

    • Bachelor’s degree in Computer Science, Information Security, Engineering, or a related field.
    • A Master’s degree in a relevant discipline is preferred.
    This advertiser has chosen not to accept applicants from your region.

    Security Compliance Officer

    Mumbai, Maharashtra Anzen Technologies Pvt Ltd

    Posted today

    Job Viewed

    Tap Again To Close

    Job Description

    Opening for Compliance Officer:

    - Being into IT Services and solutions, we have requirement for the below profiles. Concern person should have minimum years of experience in the same field.

    **Roles and Responsibilities**

    **Job Summary**:
    Under general direction, an employee in this role will have the following responsibilities:

    - Shall drive Compliance activities across the enterprise to meet regulatory requirements and to achieve/maintain various Industry standards such as ISO27001, ISO9001

    **Duties and Responsibilities**
    - Hold primary responsibility for implementing and maintaining an effective compliance plan, complying with all state regulations.
    - Participate and lead Compliance annual audit programs both internal and external.
    - Create and maintain documentation including Policies and Procedures, systems and processes as needed to track, trend, and manage compliance notifications, issues, corrective action plans, audit results, etc.
    - Ensure corrective actions are adequate and have been implemented for all identified compliance deficiencies.
    - Should be able to highlight any risks in Contractual obligations and their compliance accordingly alert suitably the operational teams and management.
    - Promote awareness related to information privacy and security and enforce compliance across the enterprise.
    - Should be able to review IT Policies and Procedures and IT Operations in line with various standard requirements and collect evidence as applicable.
    - Shall be able to perform configuration reviews of various IT Tools and solutions and highlight issues/risks.
    - Conduct role-based Information Security and Compliance training to various critical roles in the organization.
    - Shall monitor the IT activities from the perceptive of event Logging, threat landscape, and Security operations and suggest suitable remediations and track progress till closure.
    - As necessary perform Control effectiveness tests and suggest configurational changes in Operating system, Databases and Network & Security devices, Solutions etc.
    - **Mandatory**
    - Knowledge of latest ISO 9001 and ISO 27001 standards
    - Internal and External Audit experience of ISO (ISO 9k and 27k)
    - Good written and verbal communication skills
    - Certified Lead Auditor for ISMS and QMS
    - Knowledge of Risk Assessment and Treatment methods

    Job Location: Mumbai

    Immediate Joiners are also welcome.

    Good Knowledge and Experience person are required.

    Can contact :

    Schedule:

    - Monday to Friday

    **Speak with the employer**
    +91
    This advertiser has chosen not to accept applicants from your region.
    Be The First To Know

    About the latest Security compliance Jobs in India !

    TISO - Information Security compliance, VP

    Pune, Maharashtra Deutsche Bank

    Posted today

    Job Viewed

    Tap Again To Close

    Job Description

    Description

    TISO is responsible to enforce Information Security compliance within their area of responsibility in line with the CISO mandate and strategy as well as the bank’s risk appetite. Furthermore, TISOs are the experts and points of escalation for all IT security related aspects of the IT assets in their area of responsibility. They provide guidance on how to implement technical control aspects and achieve compliance to the related Information Security controls and ensure appropriate handling of any relevant exceptions. In close cooperation with the respective Chief BISOs they support the business divisions as well as the COO IT counterparts to comply with Security Controls.

    Deutsche Bank’s Corporate Bank division is a leading provider of cash management, trade finance and securities finance. We complete green-field projects that deliver the best Corporate Bank - Securities Services products in the world. Our team is diverse, international, and driven by shared focus on clean code and valued delivery. At every level, agile minds are rewarded with competitive pay, support, and opportunities to excel. 
     
    You will work as part of a cross-functional agile delivery team. You will bring an innovative approach to software development, focusing on using the latest technologies and practices, as part of a relentless focus on business value. You will be someone who sees engineering as team activity, with a predisposition to open code, open discussion and creating a supportive, collaborative environment. You will be ready to contribute to all stages of software delivery, from initial analysis right through to production support.

    What we’ll offer you

    As part of our flexible scheme, here are just some of the benefits that you’ll enjoy

  • Best in class leave policy
  • Gender neutral parental leaves
  • 100% reimbursement under childcare assistance benefit (gender neutral)
  • Sponsorship for Industry relevant certifications and education
  • Employee Assistance Program for you and your family members
  • Comprehensive Hospitalization Insurance for you and your dependents
  • Accident and Term life Insurance
  • Complementary Health screening for 35 yrs. and above
  • Your key responsibilities

  • Align standards, frameworks and security with overall business and technology strategy
  • Identify and communicate current and emerging security threats
  • Create solutions that balance business requirements with information and cyber security requirements
  • Train users in implementation or conversion of systems
  • Derive the IT Security strategy from the overall Chief Information Security Office (CISO) strategy and requirements and translates this into an operational plan for delivery for their area of responsibility
  • In relation to the IT Assets, processes within their scope of responsibility they:Drive integration of Chief Information Security Office Initiatives, programs and central solutions and ensure alignment with the divisional portfolios.Ensure effective and efficient communication, coordination and implementation of CISO IT Security requirements and decisionsAre responsible for the adoption of centrally mandated Security Solutions and the maintenance of technical security documentation and compliance to security controls.Are the recognized expert in DB Information Security Policies and procedures and their implementation in relation to technologies.Proactively manages IT audits and plan (in co-operation with COO IT management) preparation and remediation.Ensure appropriate senior management awareness/oversight of follow-up on action items to resolve identified issues, e.g. information security reviews of vendors, audit issue resolution.Spearhead independent reviews of IT Security Controls, prioritise identified issues and assesses remediation actions for quality, considering the optimal cost-risk ratio as well the strategically optimal resolution (e.g. Information Security control evaluation and respective follow up activities).Verify remediation concepts for critical and systemic issues and monitors their execution according to plan and with quality.
  • Partner with key stakeholders (Chief BISOs and IT management etc.) to act as mediator and subject matter expert for them on Information Technology Security topics. Ensure a common understanding of Information Technology Security risks and their implications for the Group and for their scope of responsibility.
  • Your skills and experience

    Experience of 8-12 years in:

  • Security considerations of cloud computing: They include data breaches, broken authentication, hacking, account hijacking, malicious insiders, third parties, APTs, data loss and DoS attacks.
  • Identity and access management (IAM) – the framework of security policies and technologies that limit and track the access of those in an organization to sensitive technology resources.
  • Experience with and knowledge of:
  • VB.NET, Java/J2EE, ColdFusion, API/web services, scripting languages and a relational database management system (RDBMS) such as MS SQL Server or Oracle. These are some of the technical elements needed to build security into an organization.
  • ISO27001 – specifications for a framework of policies and procedures that include all legal, physical and technical controls involved in an organization’s risk management
  • Control Objectives for Information and Related Technologies (COBIT)
  • Windows and UNIX environment.
  • General Skills:

  • Exceptional communication skills with diverse audiences - Strong critical thinking and analytical skills
  • Demonstrated ability to identify risks associated with business processes, operations, information security programs and technology projects
  • The ability to be the enterprise security subject matter expert who can explain technical topics to those without a technical background
  • Ability to present and discuss information security related topics to senior committees, fora and groups, and drive decision making
  • Ability to distinguish between noise and real issues, in particular when it comes to the impact of information security risk to the franchise
  • Good understanding of (DB) Findings Management, Control Inventory and how we apply information technology solutions in this space; robust understanding of Anti-Financial Crime Functions in Corporate Banking.
  • Ability to lead, mentor and influence without formal authority, in a complex multi-matrix organization
  • Working with Global teams across multiple time zones
  • Education/Certification

  • Degree in Information Security or a comparable education
  • How we’ll support you

  • Training and development to help you excel in your career
  • Coaching and support from experts in your team
  • A culture of continuous learning to aid progression
  • A range of flexible benefits that you can tailor to suit your needs
  • This advertiser has chosen not to accept applicants from your region.

    Security Compliance Specialist II

    Akamai Technologies, Inc.

    Posted 1 day ago

    Job Viewed

    Tap Again To Close

    Job Description

    **Do you relish the prospect of working with cutting-edge web security platforms?**
    **Would you enjoy translating security compliance into business and product requirements?**
    **Join our global InfoSec Security Compliance Team!**
    The InfoSec Team safeguards Akamai's infrastructure and fosters internal security practices. Security Compliance collaborates with product and platform teams to ensure systems meet safety and compliance standards.
    **Partner with the best**
    Compliance Advisors contribute to Akamai's security audits. This role involves assessing vendor risks and explaining compliance measures.
    As a Security Compliance Specialist II, you will be responsible for:
    + Conducting risk assessments and due diligence for third-party vendors to ensure regulatory and internal compliance.
    + Developing, implement, and enhance third-party risk management frameworks, policies, and procedures.
    + Monitoring and report on third-party risk exposure, ensuring timely mitigation of compliance gaps or control weaknesses.
    + Coordinating with procurement, legal, IT security, and business units to evaluate and manage vendor risks.
    + Supporting audits and regulatory exams related to vendor risk and compliance management activities.
    + Maintaining accurate documentation of vendor risk profiles, assessments, and remediation plans in management systems.
    **Do what you love**
    To be successful in this role you will:
    + 3-5+ years of experience in third-party risk management, compliance, vendor oversight, or a related risk function.
    + Exhibit expertise in regulatory frameworks and industry standards regarding vendor risk, including SOC reports, ISO 27001.
    + Demonstrate analytical, communication, and stakeholder management skills across technical and non-technical teams.
    + Demonstrate exceptional organisational skills and effectively manage multiple vendors and deadlines simultaneously.
    + Demonstrate capability to work independently and collaboratively in a dynamic, regulated environment. Relevant certifications advantageous.
    **Work in a way that works for you**
    FlexBase, Akamai's Global Flexible Working Program, is based on the principles that are helping us create the best workplace in the world. When our colleagues said that flexible working was important to them, we listened. We also know flexible working is important to many of the incredible people considering joining Akamai. FlexBase, gives 95% of employees the choice to work from their home, their office, or both (in the country advertised). This permanent workplace flexibility program is consistent and fair globally, to help us find incredible talent, virtually anywhere. We are happy to discuss working options for this role and encourage you to speak with your recruiter in more detail when you apply.
    Learn ( what makes Akamai a great place to work
    Connect with us on social and see what life at Akamai is like!
    **We power and protect life online, by solving the toughest challenges, together.**
    At Akamai, we're curious, innovative, collaborative and tenacious. We celebrate diversity of thought and we hold an unwavering belief that we can make a meaningful difference. Our teams use their global perspectives to put customers at the forefront of everything they do, so if you are people-centric, you'll thrive here.
    **Working for you**
    At Akamai, we will provide you with opportunities to grow, flourish, and achieve great things. Our benefit options are designed to meet your individual needs for today and in the future. We provide benefits surrounding all aspects of your life:
    + Your health
    + Your finances
    + Your family
    + Your time at work
    + Your time pursuing other endeavors
    Our benefit plan options are designed to meet your individual needs and budget, both today and in the future.
    **About us**
    Akamai powers and protects life online. Leading companies worldwide choose Akamai to build, deliver, and secure their digital experiences helping billions of people live, work, and play every day. With the world's most distributed compute platform from cloud to edge we make it easy for customers to develop and run applications, while we keep experiences closer to users and threats farther away.
    **Join us**
    Are you seeking an opportunity to make a real difference in a company with a global reach and exciting services and clients? Come join us and grow with a team of people who will energize and inspire you!
    This advertiser has chosen not to accept applicants from your region.

    Lead IT Security & Compliance

    Hyderabad, Andhra Pradesh Anicalls (Pty) Ltd

    Posted today

    Job Viewed

    Tap Again To Close

    Job Description

    • Expertise in building a comprehensive enterprise security assessment framework and
    • working across the organization to make a sensible improvement plan;
    • Exudes a calm, professional demeanor while acting decisively and with urgency;
    • Ability to manage a crisis & declare incidents while calmly implementing contingency plans;
    • Developing and executing on incident response protocols;
    • Industry certification in at least one of the following areas is preferred: Certified Information
    • Proven track record of security and compliance analysis and execution;
    • A proven manager able to develop and mentor high functioning teams;
    • Experience Full Time/Permanenting and managing key vendors, outsourcers, and Full Time/Permanent personnel;
    • Ten years of information security experience and three years in a security management/leadership
    • Experience with building security programs for modern Cloud-based, SAAS and G-suite
    • based technology environment;
    • role;
    • Systems Security Professional (CISSP), Certified Information Security Manager (CISM), ITIL,
    • Information Systems Security Management Professional;
    This advertiser has chosen not to accept applicants from your region.
     

    Nearby Locations

    Other Jobs Near Me

    Industry

    1. request_quote Accounting
    2. work Administrative
    3. eco Agriculture Forestry
    4. smart_toy AI & Emerging Technologies
    5. school Apprenticeships & Trainee
    6. apartment Architecture
    7. palette Arts & Entertainment
    8. directions_car Automotive
    9. flight_takeoff Aviation
    10. account_balance Banking & Finance
    11. local_florist Beauty & Wellness
    12. restaurant Catering
    13. volunteer_activism Charity & Voluntary
    14. science Chemical Engineering
    15. child_friendly Childcare
    16. foundation Civil Engineering
    17. clean_hands Cleaning & Sanitation
    18. diversity_3 Community & Social Care
    19. construction Construction
    20. brush Creative & Digital
    21. currency_bitcoin Crypto & Blockchain
    22. support_agent Customer Service & Helpdesk
    23. medical_services Dental
    24. medical_services Driving & Transport
    25. medical_services E Commerce & Social Media
    26. school Education & Teaching
    27. electrical_services Electrical Engineering
    28. bolt Energy
    29. local_mall Fmcg
    30. gavel Government & Non Profit
    31. emoji_events Graduate
    32. health_and_safety Healthcare
    33. beach_access Hospitality & Tourism
    34. groups Human Resources
    35. precision_manufacturing Industrial Engineering
    36. security Information Security
    37. handyman Installation & Maintenance
    38. policy Insurance
    39. code IT & Software
    40. gavel Legal
    41. sports_soccer Leisure & Sports
    42. inventory_2 Logistics & Warehousing
    43. supervisor_account Management
    44. supervisor_account Management Consultancy
    45. supervisor_account Manufacturing & Production
    46. campaign Marketing
    47. build Mechanical Engineering
    48. perm_media Media & PR
    49. local_hospital Medical
    50. local_hospital Military & Public Safety
    51. local_hospital Mining
    52. medical_services Nursing
    53. local_gas_station Oil & Gas
    54. biotech Pharmaceutical
    55. checklist_rtl Project Management
    56. shopping_bag Purchasing
    57. home_work Real Estate
    58. person_search Recruitment Consultancy
    59. store Retail
    60. point_of_sale Sales
    61. science Scientific Research & Development
    62. wifi Telecoms
    63. psychology Therapy
    64. pets Veterinary
    View All Security Compliance Jobs