Key Skills: Compliance Strategy, Data privacy, CRISC, CISA, CISM.
Roles and Responsibilities:
- Develop, implement, and maintain cybersecurity policies and procedures in accordance with legal, regulatory, and industry standards such as GDPR, DPDPA, Cert-In, ISO 27001, and NIST.
- Conduct regular compliance audits and assessments, identifying risks or areas of non-compliance and recommending corrective actions.
- Provide guidance and training to employees on IT compliance, regulatory mandates, and ethical conduct.
- Collaborate with IT and cybersecurity teams to establish technical controls to mitigate cyber risks and data breaches.
- Monitor, investigate, and respond to cybersecurity incidents and breaches, coordinating appropriate remediation efforts.
- Prepare, submit, and maintain compliance reports for regulatory bodies and internal stakeholders, ensuring accuracy and timeliness.
- Maintain comprehensive documentation related to audits, risk assessments, compliance activities, and incident response.
Experience Requirements:
- 11 to 17 years of hands-on experience in cybersecurity and IT compliance roles.
- In-depth understanding of laws, regulatory frameworks, and industry standards governing cybersecurity and data privacy.
- Strong technical expertise in network security, encryption, access controls, incident response, and cybersecurity best practices.
- Proven ability to assess compliance risks and implement effective mitigation strategies.
- Strong collaboration and communication skills with experience working across all levels of an organization.
- High attention to detail, well-organized, and capable of managing multiple priorities in a fast-paced environment.
- Strong integrity, ethics, and dedication to upholding compliance standards.
Education: B.tech, M.tech, B.com, M.com, MBA, any PG