Hiring for Looking for Information Security Associate to be Based in Noida in Delhi/NCR, for Exp. 1 - 3 yrs at DATAFLOW SERVICES (INDIA) PRIVATE LIMITED.

  • Esteemed client of Orion TrueTech Services India
  • Delhi, New Delhi, India
  • Feb 07, 2018
Full time BPO, ITES & Customer Service Jobs

Job Description

Job Description:Job Role The scale and scope of activities carried out by the DataFlow Group Information Security team has increased considerably in the last one year in line with the Groups ambition to remain as the leading provider of Primary Source Verification services around the globe. The primary purpose of this role is to carry out day to day tasks as part of Information Security department which are currently being carried out by Head of Information Security. The new hire will help the team to focus on the big picture which includes tighter monitoring, consistent and effective implementation of ISMS, compliance with a growing number of laws and standards, supervising internal Information Security audits, ensuring effective deployment of employee monitoring software, monitoring vulnerabilities across Dataflow portals and help maintain/ achieve SOC 2/ ISO 27001 certification. Duties and responsibilities Establishing, documenting and managing processes and supporting tools used to accomplish Information Security compliance Conducting audits as per the defined audit plan and ensuring: Controls are executed by relevant SPoCs as per defined frequency Issues are highlighted to business and IT owners and action plan to remediate or mitigate risk is clearly documented Monitoring status of open issues Managing employee monitoring software and ensuring: All workstations/ servers (as applicable) are being monitored on 24x7 basis Investigating employee violations Contributing in creating new rules and improving existing ones Sharing relevant reports from the employee monitoring software as requested by DataFlow Group Management/ Head of Information Security Coordinating with relevant stakeholders for effective implementation of ISMS Conducting risk assessment on DataFlow Information assets Performing/ scheduling VAPT scans using automated web application scanning tool Coordinating with IT Dev/ QA team to resolve day to day queries regarding automated web application scanning tool and following up on open vulnerabilities Delivering Information Security trainings to all employees, contractors and third party personnel and role based training where applicable Updating Information Security/ IT policies as per instructions of Head of Information Security Liaising with external auditors for audits such as SOC 2, ISO 27001, etc., when required and assisting in providing evidences to auditors Ensuring all employees adhere to DataFlow Group Information Security Policies and assisting in initiating action on the instructions of Head of Information Security Promoting a culture of Information Security within the organisation through awareness campaigns such as posters, emails, Information Security Week, quizzes, etc. Mandatory qualifications Bachelor' s degree in computer science, cyber security or related field 2 years of experience in a similar Information Security role covering standards such as ISO 27001, NIST 800-53, web application security, data leakage prevention or a relevant domain within Information Security A personal interest in industry developments,particularly in newer technologies such as cloud computing and blockchain Best-in-class communication skills - candid, clear and concise in communication to connect with a global audience Demonstrable passion for action and sense of urgency, being able to refer to situations whereby the applicant has demonstrated these skills An ability to win over adversity where it exists by remaining calm, referring to facts and being able to reach a mutually agreeable outcome Multitasking - Strong ability to multitask and prioritize projects Examples of opportunistic and innovative thinking, being able to refer to situations where these skills have made a difference Microsoft Office or Google gSuite experience and an ability to easily manipulate spreadsheets and present information in presentation material