01Responsibilities
-
Maintenance:
Assist in Review of policies and procedures on a periodic basis or whenever there is change and place it for Management approvals to board.
Assist in Preparation of required architectural diagrams and technical documentations for audit and regulatory purposes along with stakeholders and consultants.
Ensure the Business Impact Assessment of new businesses, applications etc.
Assist in risk assessments for all IT assets and processes periodically and ensure RA/ RT is in place.
Assist project management for implementation of various security controls by liaising with different teams.
Assist in renewal of certifications on time (ISO and PCI DSS)
Monitoring and Guidance:
Exception management, review (periodic) controls, analyse and make appropriate recommendation
Provide guidance to stakeholders on Periodic updates to BCP strategy, liaising with teams to perform drills etc.
Interpret IT control requirements from regulatory guidelines and circulars and prepare a detailed framework for implementation and Advisory on implementation of information security controls.
Ensure that IT regulatory requirements are tracked and continuously monitored.
Assist in internal and external IT audits.
Liaise with auditors to explain infosec posture, org structure, provide technical architecture overview, process understanding on IT controls etc.
Support management to provide audit finding responses, implementation of controls as per audit recommendations.
Role
02Requirements
-
At least 6 years of audit, compliance testing or monitoring, or relevant Compliance experience, BE / Btech /MTech/ MCA/ BCA
CISA / ISO 27001 LA preferred.
Understanding of Infosec Technology risk Controls
Has high ethical standards and an analytical mind.
Demonstrate the ability to plan and execute projects with minimal management support.
Good eye for detailing with respect to each product regulations and controls
Worked in Compliance/ Assurance (preferably also from a financial service e.g., banks, NBFC, Insurance firms, Stock Broking firms, Fintech etc) or is a former financial services industry employee that has led audits/ examinations/ compliance reviews /quality assessments /quality tests where the focus was Controls Testing (which very importantly includes (i) assessing the design of controls, and (ii) whether the controls are operating effectively) would be a good candidate. This would be the key & critical foundation.
Passion for technical compliance and be interested in conducting wide-scale investigative reviews.
Have a good appreciation of the regulations applicable in India and APAC.
Highly detail-oriented, motivated, curious individual with good time-management skills, analytical and communication skills
Quick and sharp individual who relishes the challenges of understanding and interpreting regulations and processes across different businesses and jurisdictions.
Strong communication, interpersonal and influencing skills. The candidate should have the ability to establish credibility and strong partnerships with senior business leaders, control functions and corporate partners globally.
Fluency in written and spoken English is a must have. 10. Excellent written skills, and ability to prepare clear, concise reports with minimal supervision.
Proficiency in Excel is a .