IT and Security Leader/Manager

1 Month ago • 8-12 Years • Cyber Security

Job Summary

Job Description

This IT and Security Leader/Manager position requires 8-12 years of experience in leading IT systems and security departments. Responsibilities include ensuring IT systems align with business objectives and adhere to regulatory and compliance standards (ISO, SOC2, GDPR, HIPAA, PCI-DSS). The role involves conducting audits, risk assessments, managing security policies, data backup, disaster recovery, business continuity planning, security awareness training, incident response, and vendor risk management. Collaboration with various departments (IT, HR, Legal) is crucial. The ideal candidate will possess expert knowledge of Office 365, Intune, IT networking, cloud administration (Azure, AWS), and hands-on experience with security compliance tools. Compliance with security standards and frameworks is paramount.
Must have:
  • 8-12 years IT & Security experience
  • Expert in Office365, Intune
  • Cloud admin (Azure, AWS)
  • Security compliance knowledge
  • Risk management expertise
  • Compliance with ISO, SOC2, GDPR, HIPAA, PCI-DSS
Good to have:
  • GRC tools experience
  • CISSP, CISA, CISM, CRISC certifications

Job Details

This position is for 8-12 years' experience IT and Security leader ensures that the organization’s IT systems are configured as per business objective and processes adhere to regulatory, security, and compliance standards. This role involves conducting audits, risk assessment, managing security policies, ensuring adherence to industry regulations (e.g., ISO (at least 3 Information Security related), SOC2, GDPR, HIPAA, PCI-DSS), and working with various departments to maintain a secure and compliant IT environment.


Technical Skills: 

Must have skills to lead systems and security department and oversee the effective operation and evolution of our IT systems. 

Expert knowledge in Office365, Intune and Other office Apps. 

Excellent knowledge in IT networking, cloud administration (Azure, AWS). 

Must be very clear in IT regular operations and information security posture in place and effective. 

Hands-on tools experience for security compliance, risk management, and vulnerability assessment. 

Manage data backup, disaster recovery, and business continuity plans. 


Compliance Management: 


Ensure compliance with applicable security standards, frameworks, and regulations (e.g., ISO 27001, NIST, SOC2, GDPR, HIPAA, PCI-DSS). 

Conduct regular internal audits of IT systems, applications, and processes to identify potential compliance issues. 

Develop and maintain IT security policies and procedures aligned with industry best practices. 

Assist in the preparation and submission of compliance reports to regulatory bodies as required. 


Risk Management: 


Identify, assess, and mitigate IT security risks. 

Work with IT teams to implement risk mitigation strategies. 

Monitor emerging security risks and implement appropriate controls. 

Familiarity in third-party risk and compliance assessments. 


Security Awareness and Training: 


Develop and deliver security awareness training for employees to ensure a strong security culture. 

Ensure that security policies and procedures are communicated and enforced across the organization. 

Incident Response and Investigation: 

Support incident response activities by helping investigate security incidents and breaches. 

Conduct forensic investigations and recommend actions to prevent future incidents. 

Vendor and Third-Party Risk Management: 

Evaluate third-party vendors and contractors to ensure their compliance with organizational security and privacy standards. 

Manage security agreements and ensure ongoing monitoring of third-party security practices. 


Collaboration: 


Collaborate with IT, Human Resource, legal, and other relevant departments to ensure compliance with contractual obligations related to IT and data security. 

Act as a liaison between IT teams and external auditors or regulatory bodies during audits and assessments. 


Continuous Improvement: 


Stay updated with the latest compliance regulations, security trends, and technologies. 

Propose improvements to the organization’s security and compliance posture. 


Requirements

Qualifications: 


Education: 

Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or a related field. 

Having any two certifications is preferred (e.g., Office365, Azure, Windows server, CISSP, CISA, CISM, CRISC). 


Experience: 

Minimum of 3-5 years full-time experience in IT administration. 

Minimum of 3-4 years of experience in IT security & compliance. 

Working knowledge of GRC tools and compliance automation tools like Drata, Sprinto, Vanta is added advantage. 

Strong knowledge of compliance frameworks (e.g., SOC2, GDPR, HIPAA, ISO 27001, PCI-DSS). 


Soft Skills: 

Strong analytical and problem-solving skills. 

Excellent communication and interpersonal skills. 

Ability to work independently and collaboratively in a team environment. 

Strong attention to detail and ability to handle sensitive information with discretion. 


Similar Jobs

Rackspace Technology - Lead Customer Success Engineer

Rackspace Technology

India (Remote)
3 Weeks ago
IGT - Temporary Systems Administrator I

IGT

Providence, Rhode Island, United States (On-Site)
2 Months ago
Illumina - Staff IT Engineer

Illumina

Bengaluru, Karnataka, India (On-Site)
3 Months ago
Next Level Business Services - Systems Engineer

Next Level Business Services

Redmond, Washington, United States (On-Site)
3 Months ago
Xplor Technologies - IT OPS - Infrastructure Engineer

Xplor Technologies

Pune, Maharashtra, India (On-Site)
4 Months ago
Trend Micro - Automotive Research Engineer - Threat Intelligence & Content Creation (VicOne)

Trend Micro

Taipei City, Taiwan (On-Site)
4 Months ago
CloudLinux - Middle/Senior Python Developer with Security Expertise (worldwide remote)

CloudLinux

Warsaw, Masovian Voivodeship, Poland (Remote)
3 Months ago
PwC - IN-Senior Associate – D365 POS Functional-Ms Dynamics– Advisory  - Bangalore

PwC

Bengaluru, Karnataka, India (On-Site)
3 Months ago
Appirits - Security Engineer

Appirits

Tokyo, Japan (Hybrid)
2 Days ago
Varonis  - Product Security GRC

Varonis

Morrisville, North Carolina, United States (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Consilio LLC - EUC Engineer

Consilio LLC

Bengaluru, Karnataka, India (On-Site)
2 Months ago
IGT - Cloud Operations Engineer II

IGT

Las Vegas, Nevada, United States (On-Site)
2 Months ago
ION - Senior Linux Systems Administrator - Somerset, NJ

ION

Clifton, New Jersey, United States (Hybrid)
4 Months ago
Lionsgate Games - Senior Systems Administrator - Remote Access

Lionsgate Games

Toronto, Ontario, Canada (Remote)
2 Days ago
Ness Digital - Senior NOC Engineer

Ness Digital

Timișoara, Timiș, Romania (Hybrid)
1 Month ago
QUANTIC DREAM - Technicien Support Informatique

QUANTIC DREAM

Paris, Île-de-France, France (On-Site)
1 Month ago
Paytm - SAP BASIS ( SAP Support)  - Manager

Paytm

Noida, Uttar Pradesh, India (On-Site)
3 Months ago
ARHS - Application Engineer/Administrator

ARHS

The Hague, South Holland, Netherlands (On-Site)
3 Months ago
Scientific Games  - Tableau Architect

Scientific Games

Alpharetta, Georgia, United States (On-Site)
4 Months ago
Sinch - System Administrator

Sinch

Noida, Uttar Pradesh, India (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Hyderabad, Telangana, India

Barracuda Networks  Inc  - Software Engineer QA

Barracuda Networks Inc

Bengaluru, Karnataka, India (Hybrid)
2 Months ago
Nagarro - Associate Staff Engineer, NodeJS

Nagarro

India (Remote)
3 Months ago
Cleantech Industry Resources - Content Creator - Senior Officer

Cleantech Industry Resources

Ahmedabad, Gujarat, India (On-Site)
5 Months ago
PwC - SAP-BODS-Senior Associate-Hyderabad

PwC

Hyderabad, Telangana, India (On-Site)
1 Month ago
bosh group india - IN_RBAI_Asst Manager / Deputy Manager_Product Controller_IN

bosh group india

Bengaluru, Karnataka, India (On-Site)
2 Months ago
PwC - IN-Associate_IA_RC Central_Advisory_Pune

PwC

Pune, Maharashtra, India (On-Site)
3 Months ago
Tech Data APAC - Marketing Manager

Tech Data APAC

Maharashtra, India (Hybrid)
4 Months ago
Fanatics - Application Security Engineer III

Fanatics

Hyderabad, Telangana, India (Hybrid)
3 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Granicus - Senior Security Analyst

Granicus

Bengaluru, Karnataka, India (Hybrid)
4 Months ago
PwC - Risk & Controls (Non US) - Business Process Audit - Senior Associate

PwC

Kolkata, West Bengal, India (On-Site)
4 Months ago
ByteDance - Data Security Manager -Security Governance and Compliance- San Jose

ByteDance

San Jose, California, United States (On-Site)
3 Months ago
ION - Network Security Engineer

ION

Italy (Hybrid)
4 Months ago
ION - Markets Governance, Risk and Controls Manager

ION

India (On-Site)
4 Months ago
Google - Security Sales Specialist, Google Public Sector

Google

Reston, Virginia, United States (On-Site)
1 Month ago
PwC - Senior Associate - Risk Assurance - IT Cybersecurity

PwC

Jakarta, Jakarta, Indonesia (On-Site)
4 Months ago
Discord - Senior Security Engineer, Enterprise Security

Discord

San Francisco, California, United States (Remote)
1 Month ago
Google - Senior Cyber Security Consultant, Google Public Sector

Google

Reston, Virginia, United States (On-Site)
1 Month ago
Duolingo - Senior Security Engineer

Duolingo

New York, New York, United States (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded