Position Vacant :
IT Security Auditor
No. of Openings :
1
Company Name :
theindiajobs.com
Job Description :
Duties include but not limited to:
Perform HIPAA, ISMS, SOX-IT and SSAE 16 risk based internal audits and monitor gap remediation efforts.
Audit day-to-day security operations and high-visibility business processes.
Manage the end-user security awareness training program & Compliance Hotline.
Maintain a catalog of all internal security controls across the enterprise to include their mapping to the above security frameworks.
Maintain security documentation and diagrams. Ability to complete tasks and deliver professionally written reports.
Review and coordinate changes to information security policies, procedures, and standards in a continuous improvement model.
Performing Business Impact Analysis, Risk Analysis, Perform targeted fieldwork to test internal controls across the company''s application, infrastructure, and databases, as well as key business processes.
Identify and develop recommendations to provide for productivity savings and/or enhance process efficiencies.
Support, manage and report on IT business risk, including ensuring that committees and governance structures are functioning effectively.
Support the Compliance Head in developing and maintaining an effective Global Compliance Programme that ensures that the groups policies are embedded in the business, that good practice is shared, and that any compliance breaches are investigated and resolved promptly.
Develop and foster strong professional relationships within company.
Build the department''s standing and credibility throughout the organization.
Desired Profile :
Bachelors / Masters Degree in Information Systems or equivalent.
CISA, CISM, ISMS Lead Auditor Certifications would be a strong plus.
Active member of IT Security user groups with security certification (CISA, OSCP, etc.).
CISA qualified with minimum of 3 years post qualification IT Audit experience, in a professional services environment.
KPO/BPO/ITIS experience preferred.
Experience of working in both an assurance and advisory role would be preferred.
Past implementation experience of BCMS, ISMS and/or ITSM.
Key Job outcomes:
Knowledge of Service Management Standards, Security Management Standards, HIPAA, ARRA, HITRUST.
Expert knowledge of Information Security Frameworks and IT Governance frameworks.
Demonstrated ability to apply IT in solving security problems.
Skill & Competence (Desired)
Understanding of the system development lifecycle and the business risks associated with system implementations.
Knowledge of various technologies, applications, operating systems, and databases including Windows, Ubuntu, MS SQL databases, Active Directory, web services, firewalls, etc.
Strong project management, communication, facilitation and presentation skills.
Proven ability to work under stress in emergencies, with the flexibility to handle multiple high-pressure situations simultaneously.
Experience Required :
24 (Months) to 60 (Months)
Job Category :
IT Software/SoftwareServices >>> N/A >>> N/A
Opening Location :
Gujarat-Ahmedabad
Education :
Key Skills :
IT Software - QA & Testing
Salary Offered :
Not Specified
Career Level :
Mid Career
Job Type :
Permanent
Job Status :
Full-Time