Job Title: T&T-Cyber Strategy & Transformation-ISMS-Mumbai
· Strong knowledge of cyber / information security concepts, risk and controls concepts.
· Strong understanding of security-related operational processes in IT environments.
· Strong knowledge of both IT Systems (windows, unix, oracle, sql, etc.) and Application to a good extend.
· Knowledge of cloud security assessments, frameworks and infrastructure (SAAS/PAAS/IAAS) and cloud service providers (AWS, Azure, GCP).
· Strong knowledge of IT infrastructure and Networking, including Firewalls, IDS/IPS and security solution such as DLP, Proxy, SIEM, VPN, EDR, etc.
· Knowledge and experience in carrying out audit based on regulatory guidelines and master direction from regulatory such as RBI, NPCI, SEBI and IRDAI.
· Knowledge of cyber threats and vulnerabilities related with IT infrastructure (OS, Network, OT-specific equipment is a definite plus).
· Strong understanding of IT general controls (ITGC) and cybersecurity controls.
· Security Assessments: Proven experience conduction Information Security assessments.
· 4+ years of experience in the Cyber Security or IT Audit Domain
Certifications – CISSP, CISA, CCSP, GICSP or equivalent (technology-based certification)