Overview
Job Description:
Consultant will be responsible for performing & supporting remote desktop assessments. You will be involved in supporting Tier 1&2 vendor risk assessments, on-boarding and due-diligence assessments. Identify and document observations and findings.
Educational Qualifications: Minimum of bachelor’s degree from reputable university with 3-6 year of experience
Job Requirements:
· Information Security Governance, Privacy and Compliance and Security Assessment experience with a focus on IT and IS Risk Assessments and program reviews / establishment.
· Understanding on ISO 27001/ NIST 800-53/ PCI-DSS
· Interacting with onshore engagements and clients directly performing Vendor or Third-party security assessments
· Business Continuity planning and Disaster Recovery implementation and review experience.
· Perform remote and gap assessments against regulatory requirements and providing recommendations to remediate the gaps.
· Independently write reports of the assessments based on the discussions during remote reviews.
· Perform second level quality review of the reports written by peers/junior resources
Qualification
· 4+ years of experience in Information Security Governance, Privacy and Compliance and Security Assessment, experience, with a focus on IT and IS Risk Assessments and program reviews/establishment.
· Familiarity with and demonstrated experience assessing against the BS ISO/IEC/SIG
· ·27002:2005 BS 7799 standard domains, BS 25999 including Risk Assessment; Security policy; Organization of Information Security; Asset Management; HR Security; Physical and Environmental Security; Communications and Operations Management; Access Control; IS Acquisition, Development and Maintenance; IS Incident Management; Business Continuity Management; and Compliance.
· Broad understanding of Information Security trends, services and disciplines and experience applying them in dynamic environments.
Additional Qualification:
· CISA/CSIM/ CISSP/ CRISC/ CIPP/ ISO 27001 is preferable