Saturday, January 18, 2020

Manager – Information Security Management : ISMS; ISO 27001:2013


Job Ref No.: MISMS-MDU-18120

About Our Client

Our client is an IT solutions company that is part of a large Chennai based group of companies. They are a leading end to end Corporate Solutions Company with a focus on Compliance Audit, Establishment Compliance Management, Factory Compliance Management, Contract Labour Regulation, Flexi Staffing, Payroll Services, Payroll Compliance Services & Recruitment Services to Client Organizations. They have a national presence covering 30 states and distinguished list of clients, predominantly MNC’s, across all segments.

Job Location - Madurai

Job Description

The person in this position will be responsible for the Information Security Management System (ISMS) of the company. As such you will ensure the three key aspects of Confidentiality , Integrity and Availability of information ,thus securing the companies data in all forms and ensuring the system confirms to ISO 27001:2013 standards.

Qualification

·         Bachelor's / Master's Degree in Information Technology related. (BE/B.Sc Computer Science/B.Sc. Information Technology / MCA)
·         Successfully completed ISO 27001: 2013 Lead Auditor / Lead Implementer certification.
·         CISA/CISM Certification - would be an added advantage
·         Good understanding of standards, processes, best practices and IT frameworks viz COBIT / ITIL, conceptual understanding of IT and security controls, networking and information security technologies.
·         Knowledge of SOC1 type audit.


Experience

10 - 15 Years Work Experience of which 5+ years experience in handling certification, compliance and internal/external Information security / Cyber security audits.

Job Location - Madurai

Desired Skills

Candidates should have relevant skills to handle the following
·         Lead the Information Security Management Systems Certification processes ISO/IEC 27001
·         Pre-audit
·         Develop ISMS documentation to integrate the ISO 27001:2013 requirements with business and management.
·         Certification audit, and Post-audit.
·         Handle subsequent surveillance, re-certification audits and maintain the certification.
·         Develop and maintain the ISMS artifacts.
·         Manage all ISMS recurring activities like periodical review of ISMS Controls, policies and procedures, maintenance of supporting documents, and vendor/supplier relationships.
·         Planning and execution of internal audit prior to surveillance audit from ISO certification organisation.
·         Handle Information Technology Audit / Cyber Security Audit (internal / external / statutory) as organised by clients.
·         Handle change management resulting from new technology/regulations, emerging threats or business opportunities.
·         Coordinate in Employee awareness and training on ISMS / Information Security.
·         Keep abreast with latest standards, rules and regulations of ISO 27001:2013.
·         Good understanding of the escalation matrix and act on escalations to the next level whenever incidents happen which are not in compliance with organizational ,  QMS , ISMS policies and procedures.
·         Strong knowledge of IT general controls.
·         Develop effective working relationships with internal and external stakeholders, auditors, process and controls owners and functional staff.
·         Professional written and verbal communication skills.



Contact: Vaidyanathan – 9600008133 : Aishwarya - 9840678507

No comments:

HR Executive – Generalist: Recruitment; Payroll Process; Adv Excel ; Compliance

  Job Ref:HRGEN-MAA-24822 About Our Client Our  Client is a renowned  Education institute who is posed to grow as a leading Business sch...