Information Security Governance

linear gradient

Gurgaon

Posted, 30September 2024

Top MNC

The Company

The company offers a wide range of insurance products and services, including life insurance, disability income insurance, annuities, investments, and dental and vision insurance coverage.

The Role

• This position is responsible for implementation of the security function within the Information Security Governance, and IT Risk and Controls Department
• Perform formal risk analysis and security design review ensuring appropriate policies and standards are applied to projects consistent with Guardian’s risk appetite and regulatory/legal requirements for various Business and Information Technology systems and processes.
• The primary focus is Guardian’s new data governance program. This is going to include continual follow-up and engagement for new vendors in this space, expansion of services with vendors already engaged as well as assessments reviewing controls for access, DLP, architecture, logging, and monitoring, etc., as Guardian matures its data governance program. This is adding additional work effort and detailed follow-up for Data Lake technologies, i.e., Collibra, Databricks, Twilio (Segment) and next Amperity (contract in final steps).
• As Guardian is ready to take the next step to advance the company’s adoption of generative AI, this position will cover the information security consultative and assessment to ensure we have the right security control capabilities and roles integrated to achieve the company’s AI objectives.  
• Using technical skills, industry, and security knowledge, identify risks, mitigations, and (working with Head Information Security Governance prepare relevant information to present residual risks to Security Council and IT Risk committee.
• Plan, coordinate and execute IT Security / special projects.
• Create process flows and apply aspects of Six Sigma to better define, measure, improve, analyze, and control security and privacy processes.
• Prepare, maintain, and update security processes, procedures, and standards including IT Security Governance engagement model and design templates, company notifications and alerts in support of the IT Security, Risk and Compliance department.
• Review Vendor software/hardware and Third-Party information security controls/risks and document gaps and issues for action.


3+Years
Information Security Governance SDLC assessment, TPRM questionnaire assessment Cyber Security Cloud Security, Network Security
Any Degree

Related Jobs

Did not find a suitable job. Leave your resume behind and we shall find one.

HR Bytes (Resources)

Unpolished Diamonds- untapped talent in Rural India

Talent crunch faced by fintech start