Information Security Officer - (GRC)

2 Hours ago • All levels

Job Summary

Job Description

The Information Security Officer role focuses on governance, risk, and compliance within Jumio's security function. Responsibilities include developing and maintaining frameworks, conducting risk assessments, managing security policies, and preparing compliance reports. The role also involves leading internal and external audits, collaborating with various teams, and providing training. The officer will be responsible for customer security audits and responding to questionnaires. The role requires strong information security knowledge, experience with SOC 2, ISO 27001, and PCI DSS. The individual will be expected to communicate effectively and provide updates to different levels of audiences. The role demands contemporary information security concepts, best practices, and strategies. Experience with risk management and compliance is essential to ensure operational efficiency and meet regulatory requirements. This position requires skills in collaboration and stakeholder engagement. The candidate will be responsible for providing regular compliance and risk reports for senior leadership, highlighting key risk areas, trends, and performance against key compliance metrics.
Must have:
  • Demonstrate contemporary information security concepts and best practices.
  • Expert level managing SOC 2 and ISO 27001
  • Excellent communication skills in English (written and verbal).
Good to have:
  • CISSP, CISM, or CRISC certification
  • Consulting experience

Job Details

Role Purpose :  

The  Information Security Officer operates within the governance, risk & compliance service provided by Jumio’s security function through the GRC team. 

The role acts as the security interface between the Information security  strategic and process-based activities and other critical teams, like Engineering, Machine Learning, Product , Sales,HR and Legal. 

Role Value : 

The role holder reports into the GRC Lead and they need to positively influence other members of the security team as well as other departments across Jumio. 

Example Responsibilities :

Governance & Risk Management:

  • Develop, implement, and maintain governance, risk management, and compliance frameworks as per organization needs and policies aligned with industry best practices.
  • Conduct regular risk assessments to identify, evaluate, and prioritize risks across the organization, ensuring timely mitigation actions are implemented.
  • Lead risk reviews with business stakeholders and senior management to ensure risks are effectively managed and mitigated.
  • Shape the strategy and direction of our security operating model, helping focus on utilising the right skill sets on the most appropriate subjects. 

Compliance & Regulatory Requirements:

  • Support the ISMS operation and associated independent security certification activities for SOC2, ISO 27001 and PCI DSS. 
  • Management of security policies and processes, to ensure operational efficiency, meeting regulatory compliance, and support for regional demands. 
  • Create and manage a business continuity program for Jumio product offerings.

Control Assessment & Reporting:

  • Prepare regular compliance and risk reports for senior leadership, highlighting key risk areas, trends, and performance against key compliance metrics.
  • Ensure documentation is maintained for all key GRC activities, including risk registers, audit logs, and quarterly compliance status reports.

Internal & External Audits:

  • Planning and execution of external and internal audit activities as required. 
  • Assisting fellow Jumio’s in understanding and pragmatically responding to security audit findings.

Collaboration & Stakeholder Engagement:

  • Work closely with business teams (e.g.,Legal, HR, Product, Engineering, IT , ML) to ensure alignment on risk management and compliance initiatives.
  • Delivery high-frequency communications regarding progress on security programs.  

Training 

  • Annual information security training course design and implementation.
  • New ideas for ongoing security culture improvements

Continuous Improvement:

  • Support the implementation of a GRC platform or enhance existing systems to streamline risk and compliance management.
  • Continuously evaluate and improve the organization's GRC processes and tools, leveraging industry best practices, automation, and innovative solutions.

Customer Assurance 

  • Assist and lead multiple customer security audits.
  • Respond to customers' security questionnaires.

Experience and Qualifications :

  • A strong passion for information security and a proactive approach to improving the organisation's security posture.
  • Ability to demonstrate contemporary information security concepts, best practices and strategies.
  • Expert level of managing SOC 2, and ISO 27001, this is essential; knowledge of PCI DSS would also be beneficial.  
  • In-depth understanding and hands-on experience of how information security can impact an organisation; you can give examples and explain both positive and negative impacts. 
  • Comfortable providing high quality updates to various levels and global audiences, including video. 
  • A bachelor's degree in information systems or equivalent work experience; an M.B.A. or M.S. in information security is preferred.
  • Excellent communication skills in English both written and verbal.

Great to have Experience and Qualifications :

  • CISSP, CISM, or CRISC certification
  • (Internal) Consulting experience 

Key Characteristics and Attitudes :

In a recent global survey these attributes were valued by Jumios in all locations and functions - we firmly believe in hiring for attitude as well as skill. 

  • Friendly and supportive
  • Adaptable and flexible
  • Articulate and persuasive
  • High IQ and EQ
  • Curious and coachable
  • Commercially Aware
  • Resilient and tenacious
  • Big picture and the detail

Jumio Values:

IDEAL: Integrity, Diversity, Empowerment, Accountability, Leading Innovation

Equal Opportunities:

Jumio is a collaboration of people with different ideas, strengths, interests and cultures. We welcome applications and colleagues from all backgrounds and of all statuses.

About Jumio:

Jumio is a B2B technology company dedicated to eradicating online identity fraud, money laundering and other financial crimes to help make the internet safer. We leverage AI, biometrics, machine learning, liveness detection and automation to create solutions that are trusted by leading brands worldwide and respected by industry thought leaders. 

Jumio is the leading provider of online identity verification, eKYC and AML solutions. With a global footprint, we’re expanding the team to meet strong client demand across a range of industries including Financial Services, Travel, Sharing Economy, Fintech, Gaming, and others.

Applicant Data Privacy

We will only use your personal information in connection with Jumio’s application, recruitment, and hiring processes, as described in Jumio’s Applicant Privacy Notice. If you have any questions or comments, please send an email to privacy@jumio.com.

Similar Jobs

PENN Interactive - Executive Host

PENN Interactive

(Remote)
2 Days ago
InMobiInMobi - Lead Product Analyst

InMobiInMobi

Bengaluru, Karnataka, India (On-Site)
1 Month ago
Epic Games - Creator Success Manager

Epic Games

Montreal, Quebec, Canada (On-Site)
3 Months ago
Vimeo - Senior Customer Success Manager

Vimeo

Tokyo, Japan (On-Site)
2 Weeks ago
Big Ant Studios - Senior Programmer

Big Ant Studios

Melbourne, Victoria, Australia (On-Site)
6 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Philips - Product Industrialization Engineer – Printed Circuit Boards (PCB)

Philips

Böblingen, Baden-Württemberg, Germany (On-Site)
1 Week ago
Evolution - Payroll Specialist

Evolution

Buenos Aires, Buenos Aires, Argentina (On-Site)
9 Months ago
Virtuos - Lead Technical Artist

Virtuos

China (On-Site)
1 Month ago
Techstars - Investment Manager

Techstars

Washington, District Of Columbia, United States (On-Site)
2 Weeks ago
Intelerad - Technical Implementation Specialist - Medical Imaging

Intelerad

Melbourne, Victoria, Australia (On-Site)
1 Week ago
Lionsgate Games - Manager, Social Media Theatrical Marketing

Lionsgate Games

Santa Monica, California, United States (On-Site)
2 Months ago
Ubisoft - Technical Architect

Ubisoft

Pune, Maharashtra, India (On-Site)
3 Months ago
Sourcegraph - Implementation Engineer

Sourcegraph

(Remote)
2 Weeks ago
Axon - Technical Program Manager, Software Deployments

Axon

Atlanta, Georgia, United States (On-Site)
2 Weeks ago
PwC - Mergers and Acquisitions, Manager (Bilingual FR/EN)

PwC

Montreal, Quebec, Canada (On-Site)
7 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Bengaluru, Karnataka, India

Qualcomm - Design Verification - Sr Engineer

Qualcomm

Bengaluru, Karnataka, India (On-Site)
1 Week ago
Level AI - Senior Backend Engineer

Level AI

Noida, Uttar Pradesh, India (Hybrid)
6 Months ago
Synechron - Full Stack Developer

Synechron

Pune, Maharashtra, India (On-Site)
1 Week ago
PwC - Senior Associate_SAP BASIS Enterprise APP SAP _ Mumbai

PwC

Mumbai, Maharashtra, India (On-Site)
7 Months ago
Assystems - Deputy Team Leader

Assystems

Bagalkote, Karnataka, India (On-Site)
6 Months ago
Keywords Studios - Project Planner

Keywords Studios

Gurugram, Haryana, India (On-Site)
2 Days ago
Adobe - Big Data Engineer

Adobe

Bengaluru, Karnataka, India (On-Site)
3 Days ago
Enphase Energy - IT PMO

Enphase Energy

Bengaluru, Karnataka, India (On-Site)
1 Month ago
Capgemini - INS L&H

Capgemini

Bengaluru, Karnataka, India (On-Site)
1 Week ago
Playdawn Consulting - Digital Marketing Executive

Playdawn Consulting

Bengaluru, Karnataka, India (On-Site)
2 Weeks ago

Get notifed when new similar jobs are uploaded

Similar Category Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

About The Company

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

View All Jobs

Get notified when new jobs are added by Jumio

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug