IT and Security Leader/Manager

2 Weeks ago • 8-12 Years • Cyber Security • Undisclosed

About the job

Job Description

This IT and Security Leader/Manager position requires 8-12 years of experience in leading IT systems and security departments. Responsibilities include ensuring IT systems align with business objectives and adhere to regulatory and compliance standards (ISO, SOC2, GDPR, HIPAA, PCI-DSS). The role involves conducting audits, risk assessments, managing security policies, data backup, disaster recovery, business continuity planning, security awareness training, incident response, and vendor risk management. Collaboration with various departments (IT, HR, Legal) is crucial. The ideal candidate will possess expert knowledge of Office 365, Intune, IT networking, cloud administration (Azure, AWS), and hands-on experience with security compliance tools. Compliance with security standards and frameworks is paramount.
Must have:
  • 8-12 years IT & Security experience
  • Expert in Office365, Intune
  • Cloud admin (Azure, AWS)
  • Security compliance knowledge
  • Risk management expertise
  • Compliance with ISO, SOC2, GDPR, HIPAA, PCI-DSS
Good to have:
  • GRC tools experience
  • CISSP, CISA, CISM, CRISC certifications
This position is for 8-12 years' experience IT and Security leader ensures that the organization’s IT systems are configured as per business objective and processes adhere to regulatory, security, and compliance standards. This role involves conducting audits, risk assessment, managing security policies, ensuring adherence to industry regulations (e.g., ISO (at least 3 Information Security related), SOC2, GDPR, HIPAA, PCI-DSS), and working with various departments to maintain a secure and compliant IT environment.


Technical Skills: 

Must have skills to lead systems and security department and oversee the effective operation and evolution of our IT systems. 

Expert knowledge in Office365, Intune and Other office Apps. 

Excellent knowledge in IT networking, cloud administration (Azure, AWS). 

Must be very clear in IT regular operations and information security posture in place and effective. 

Hands-on tools experience for security compliance, risk management, and vulnerability assessment. 

Manage data backup, disaster recovery, and business continuity plans. 


Compliance Management: 


Ensure compliance with applicable security standards, frameworks, and regulations (e.g., ISO 27001, NIST, SOC2, GDPR, HIPAA, PCI-DSS). 

Conduct regular internal audits of IT systems, applications, and processes to identify potential compliance issues. 

Develop and maintain IT security policies and procedures aligned with industry best practices. 

Assist in the preparation and submission of compliance reports to regulatory bodies as required. 


Risk Management: 


Identify, assess, and mitigate IT security risks. 

Work with IT teams to implement risk mitigation strategies. 

Monitor emerging security risks and implement appropriate controls. 

Familiarity in third-party risk and compliance assessments. 


Security Awareness and Training: 


Develop and deliver security awareness training for employees to ensure a strong security culture. 

Ensure that security policies and procedures are communicated and enforced across the organization. 

Incident Response and Investigation: 

Support incident response activities by helping investigate security incidents and breaches. 

Conduct forensic investigations and recommend actions to prevent future incidents. 

Vendor and Third-Party Risk Management: 

Evaluate third-party vendors and contractors to ensure their compliance with organizational security and privacy standards. 

Manage security agreements and ensure ongoing monitoring of third-party security practices. 


Collaboration: 


Collaborate with IT, Human Resource, legal, and other relevant departments to ensure compliance with contractual obligations related to IT and data security. 

Act as a liaison between IT teams and external auditors or regulatory bodies during audits and assessments. 


Continuous Improvement: 


Stay updated with the latest compliance regulations, security trends, and technologies. 

Propose improvements to the organization’s security and compliance posture. 


Requirements

Qualifications: 


Education: 

Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or a related field. 

Having any two certifications is preferred (e.g., Office365, Azure, Windows server, CISSP, CISA, CISM, CRISC). 


Experience: 

Minimum of 3-5 years full-time experience in IT administration. 

Minimum of 3-4 years of experience in IT security & compliance. 

Working knowledge of GRC tools and compliance automation tools like Drata, Sprinto, Vanta is added advantage. 

Strong knowledge of compliance frameworks (e.g., SOC2, GDPR, HIPAA, ISO 27001, PCI-DSS). 


Soft Skills: 

Strong analytical and problem-solving skills. 

Excellent communication and interpersonal skills. 

Ability to work independently and collaboratively in a team environment. 

Strong attention to detail and ability to handle sensitive information with discretion. 


View Full Job Description

Add your resume

80%

Upload your resume, increase your shortlisting chances by 80%

Similar Jobs

Microsoft - Site Reliability Engineer

Microsoft, India (On-Site)

Logifuture - Senior DevOps Engineer

Logifuture, Serbia (Remote)

Anavation - Systems Integration Engineer

Anavation, United States (On-Site)

Rackspace Technology - Windows Systems Engineer II -IN

Rackspace Technology, India (Hybrid)

Dun & Bradstreet - Data Engineer I (R-16802)

Dun & Bradstreet, India (Hybrid)

Saviynt - Account Executive

Saviynt, United States (Remote)

ION - Intermediate IT Auditor, Italy

ION, Italy (On-Site)

Logitech - Product Security Architect

Logitech, India (On-Site)

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

The Walt Disney Company - Sr. Systems Reliability Engineer

The Walt Disney Company, United States (On-Site)

Applied Systems - Senior Systems Engineer

Applied Systems, India (On-Site)

Next Level Business Services - Systems Engineer

Next Level Business Services, United States (On-Site)

Assystems - Ingénieur Systèmes de Sûreté H/F

Assystems, France (On-Site)

Consilio LLC - EUC Engineer

Consilio LLC, India (On-Site)

ARHS - Application Engineer/Administrator

ARHS, Netherlands (On-Site)

Intel Corporation - Sr. Infrastructure Engineer - Windows OS

Intel Corporation, United States (On-Site)

IGT - Temporary Systems Administrator I

IGT, United States (On-Site)

IGT - Temporary Systems Administrator

IGT, United States (On-Site)

Sinch - System Administrator

Sinch, India (On-Site)

Get notifed when new similar jobs are uploaded

Jobs in Hyderabad, Telangana, India

Schbang - Motion Graphics Designer

Schbang, India (Hybrid)

PhonePe - Manager- IT Audit & Compliance

PhonePe, India (On-Site)

Meltwater - Search Backend Software Engineer Lead

Meltwater, India (Hybrid)

PINKERTON | Comprehensive Risk Management - Regional Security Lead

PINKERTON | Comprehensive Risk Management, India (On-Site)

Maersk Careers - Process Expert-7

Maersk Careers, India (On-Site)

Worley - Data Scientist II

Worley, India (Hybrid)

Scientific Games  - CW Consultant

Scientific Games , India (On-Site)

JPMorganChase - Functional Test Associate

JPMorganChase, India (On-Site)

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Reversing Labs - Application Security Architect

Reversing Labs, Croatia (Hybrid)

Microsoft - Principal Security Program Manager

Microsoft, United States (On-Site)

Hitachi Digital Services - Container Security - Expert

Hitachi Digital Services, India (Hybrid)

PwC - Project Manager Security Testing

PwC, Netherlands (On-Site)

Get notifed when new similar jobs are uploaded