Detailed JD:Seeking a highly motivated and detail-oriented IT Risk & Cybersecurity Specialist to join our team. The ideal candidate will be responsible for designing IT controls, conducting control testing and validation, assessing risks, managing issues, validating cybersecurity policies and standards, draft cybersecurity policies, procedures and standards.
IT Control Design:Develop IT controls inventory aligned with industry standards, regulatory requirements and clients security standards.Control Testing & Validation:Perform control testing and validation of IT and cybersecurity controls to ensure effectiveness and compliance.Risk Management, Risk Assessment & Issue Management:Develop strategies, frameworks for risk and issue management. Conduct risk assessments, identify control gaps, and manage remediation efforts.Cybersecurity standards validation:Review and validate cybersecurity policies, procedures, and standards against applications to ensure compliance.Stakeholder Engagement:Collaborate independently with client stakeholders to drive the initiatives.Audits and Assessments: Conduct audits against clients security standards and report the findings to the management
Experience:
8 to 10 years min experience in Governance, Risk and Compliance.
Skills:
1.Knowledge of relevant regulations (SOX, GDPR, DORA, PCI) and industry standards.
2.Ability to work independently and as part of a team.
3.Knowledge of risk management frameworks and methodologies (e.g.,, ISO 31000).
5.Knowledge of NIST-CSF, NIST 800-53
6.Strong analytical and problem-solving skills.
7.Excellent communication, interpersonal skills and presentation skills
8.Proficiency in Microsoft Office Suite (Excel, Word, PowerPoint).
Experience:8-10 Years.
Keyskills: risk compliance microsoft office suite grc sox presentation skills iptables information technology cpanel redhat linux apache pci linux mysql plesk risk management vmware information security nist gdpr web hosting csf pci dss aws whm centos