Guide project teams for preparing project documentation. Conducting process audits Project performance monitoring Project level compliance and governance report preparation. Coordinating and participating in project review meetings Imparting process trainings Participating in process / project improvement initiatives
Access Control and Data Security:
Assists in drafting security policies, defining access privileges, control structures, and resources.
Along with the ISMS head, manages information security risk assessments and controls selection activities
Recognizes problems by identifying abnormalities; reporting violations.
Assists in determining security violations and inefficiencies by conducting periodic audits
ISO / Certifications:
Operation and maintenance of the Information Security Management System (ISMS) based on the ISO27001 standard
Perform monitoring and validation of completeness, accuracy and continuous improvement of the ISMS program (including ISMS documentation) with instructions from the ISMS Head.
Ensure applicability and implementation of ISO controls and related narratives through periodic review
Support awareness and communication activities related to ISO27001 certification
Supports the application of various certifications related to security in the organization / department
Audits (Internal & External):
Support the company's incident management framework, including monitoring, review, tracking and updation of security incidents
Support the execution of internal and external audits
Assist the development and track the progress of remediation and corrective action plans in response to internal and external audits, risk assessments, and internal continuous improvement initiatives
Supports regular reporting on the performance of the ISMS to ISMS Head / Management
Organize the half yearly / yearly ISMS steering committee meeting
Liaise and work with different affiliates, customers and inter-divisions/departments on audit responses and follow-up to close any information security audit finding.
Support and participate in security inspections and reviews. Supports in conducting assessment basis the mandates and requirements for certifications (like vulnerability assessment, asset risk assessment, disaster management & business resumption etc.)
Trainings:
Manage and upkeep the ISMS security training materials to ensure relevance to latest security policies and best practices Conduct ISMS security awareness training across the organization. Maintains technical knowledge by attending educational workshops; reviewing publications.
Keyskills: Internal Audit Corporate Audit Internal Control corporate assurance Process Audit
Datamatics Software Services Ltd. Datamatics is a trusted partner to several Fortune 500 Companies globally for managing their End-to-end Application Life Cycle & Business Critical Processes. Datamatics is a global IT and business process outsourcing organization focused on delivering smart,...