Manager- Information Security - GRC

Multi Commodity Exchange Clearing Corporation
Posted on

Experience
Up to 8 yrs
Job Location
Mumbai, India
Vacancy
1
Designation
Information Security Manager
Job Type
Not specified

Job Description

  • Track compliance / regulatory requirements and ensure on time reporting.
  • Maintain circulars, advisories, directions, alerts from SEBI, NCIIPC CERT-In, track required remediations and timely submission of compliance status
  • Coordinating with various Technology teams for receipt of timely data/ information to various regulatory authorities.
  • Managing IT/ Technology audits like Cyber Security, System & Network, IT General Controls Audit, and other Technology Compliances etc
  • Facilitate audits, coordinating with various Internal and External Stakeholders for audit related data. Liaising with auditors for any follow-up actions etc.
  • Working closely with IT Security team on key areas like Vulnerability Management, Incident Management, Threat intelligence.
  • Ensuring adherence towards IS Policies/ IT Procedures and identification of gaps if any.
  • Preparation of compliance resolution and committee agendas and track ATR
  • Program management for data privacy, DPDPA, ISO 27701:2019 compliance
  • Conduct gap assessment and implement tools and technologies and processes for compliance to DPDPA requirements
  • Define and develop data protection policies and procedures within the organization.
  • Perform Data Classification and Data Flow Analysis to understand data life cycle
  • Conduct Data Privacy Impact Assessments and support consent management activities Serve as point of contact for internal stakeholders regarding data protection issues.
  • Conduct training and awareness programs for employees on data protection principles and practices. Job Description - For office use only HR Internal MCXCCL
  • Managing ISO 9001, ISO 27001 and ISO 22301 Internal and External audits, along with preparedness and review of the relevant documentation.
  • Managing & tracking risk acceptance for open points based on compensatory controls
  • Knowledge on Cybersecurity tools like SIEM, PAM, DLP, EDR, DAM, Anti-APT, Data encryption technologies etc.
  • Evaluating the best industry practice followed and identify the various process improvements.
Disclaimer: This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.

No Referrers Available

There are currently no referrers available for this job. You can still apply, will let you know once there is any referrer available.