01Responsibilities
Lead / Manage Compliance Program Implementation in conjunction with Operations and other
Functional Leads
Developing and monitoring key compliance risk indicatorsSupervising Information System policy compliance, SOC, vulnerability assessment, vendor management and regulatory complianceManaging operations compliance team, controls definition, implementation and periodic evaluation of design and operating effectivenessSteering roll-out of audit frameworks (ops. compliance, delivery excellence) for internal and customer engagements.Driving business process improvement projects; developing audit budget and undertaking resource planning.Ensuring adequate Data Security controls within process, prevention of data leakage with increasing digitizationDirecting monthly, quarterly & annual audits; guiding assigned auditors for ensuring adherence to established system controlsPartnering with external audit firms for control requirement and audit plan finalizationDelivering successful audits and re-certification resultsIdentifying the information security needs and risk assessment before projects go-liveAdministering overall security deliverables, ensuring SLA compliances are met by vendors and providing good levels of services for all clients.Liaising with service delivery and external auditors for observations/non-conformity closure within agreed timeline.Managing client directed and statutory compliance guidelines as may be specified from time to time.Advising the teams to identify root causes and implementing solutions to close the gapsManaging awareness amongst employee base relating to compliance requirements and policies as applicable.
Training Operations
Team as per requirements.
Should be responsible for the front-end discussions relating to compliance and regulatory issues
RequirementsSkills and
02Requirements
Bachelors, Masters or Diploma in Computer Science, Information Systems Management,
Mathematics, Accounting/Auditing, Cybersecurity or other related fields
In-depth and hands-on experience of the following compliance requirements: PCI QMS, SOC,
HIPAA, Audits, ISMS and ISO
6+ years of experience in IT/IS Security Compliances/Consulting2+ years working in highly regulated industries (e.g. financial services, healthcare, and energy,
telecommunications), including direct work experience with global audit and compliance frameworks
Must have good presentation skills with the ability to prepare reports and presentationsAttention to detail and hands on with executionSound technical writing, documentation, and communication skills are requiredFunctional awareness of both information system platforms with a strong IT technical understanding and aptitude for analytical problem-solving.Agile mind, able to see the complexities of procedures and regulationsExcellent interpersonal skills and professional demeanorCertified compliance professionals is a plus
Industry Preference BPO/ITES, preferably exposed to a healthcare process .