Job Seekers, Please send resumes to resumes@hireitpeople.com
Detailed Job Description:
- 10+ years' experience in the IT Vendor Risk assessment/or IT risk management related activities.
- CISA/CISSP/CRISC accreditation preferred.
- Understanding of the VRM practices, including different lifecycle phases of risk identification, treatment, mitigation, acceptance, remediation as well as inherent and residual risks.
- 6+ years experience conducting IT compliance assessments (Sarbanes-Oxley, PCI, etc.)
- Prior experience performing security reviews and Vendor Risk Assessments/Risk Assessments, and interaction with client and business owners.
- Good oral and written skills on a business level in English.
- Good managerial skills relating to employees, planning and policy formulation. Substantive and diverse knowledge of security-related regulatory compliance.
- Knack of conducting research to provide documentation and evidence with internal and external inquiries.
- Experience in Food Industry is an added advantage
Job Responsibilities:
- Gathers and reviews documentation; Conducts the risk assessments for assigned vendor with respect to the Methodology/policy/processes.
- Creating Security Risk Assessment Questionnaires with expected evidences
- Creating IT Security Risk Model
- Better understanding of the organization line of business and associated risks
- Reviewing Assessment Responses and identifying Risks and managing findings and tracking for logical closure
- Provide recommendations as appropriate based on the identified risks
- Monitors, Reports and Tracks the status of findings and communicates with the relevant stakeholders to obtain missing items within the prescribed timelines. Completes review in a timely and accurate manner.
- Collaborate with vendors to address queries and concerns on VRM questionnaires and guide them on remediations
- Report findings/gaps and monitor the remediate of issues.
- Monitors trends in the industry, competitive insights, and ensure compliance with regulatory/compliance expectations and requirements.
- Support in coming-up with a set of actionable reporting viz., KRIs and KPIs.
Minimum years of experience*: 10
Does this position require Visa independent candidates only? No