Looking For Compliance Manager - 3+ yrs (Work from Office )
1. We are looking for an experienced Compliance Manager to ensure that we meet the agreed compliance SLA in every month. The person will be responsible for providing recommendations to stakeholders in all aspects and levels of business as well as provide guidance on compliance matters.
2. Revise SOPs, SMTDs, reports and other documents periodically to identify hidden risks or non-conformity issues.
3. Assess the business's future ventures to identify possible compliance risks.
4. Review the work of colleagues when necessary to identify compliance issues and provide advice or training.
5. Prepare reports for senior management and external regulatory bodies as appropriate and ensure timely deliverables.
6. Work with the customer stakeholders to build on an existing information security program and ongoing security projects that address information security risks and compliance requirements.
7. Manage the process of gathering, analysing and assessing the current and future threat landscape, as well as providing the customer cyber security team with a realistic overview of risks and threats in the enterprise environment.
8. Evaluate and update to new and existing AV policies and procedures to ensure operating efficiency and regulatory compliance.
9. Solid understanding of information security risk management including risk analysis, mitigation, resolution and acceptance.
10. Understanding of defense in depth principles. Support effective governance managing security monitoring.
11. Drive consensus on measurable gains in IT compliance and information security practice maturity and measure progress towards them.
12. Maintain the deficiency dashboard and monitor remediation status. Advise leadership on how to remediate deficiencies and repeated incidents. Document and report status of agreed upon remediation plans, owners and commitment dates.
13. Review and help refinement of controls and compliance and identify opportunities to ensure proactive management and mitigation of Risks.
1. Interface closely with cross-functional teams including IT Operations, Asset Management, AD, SCCM, and Networking team.
2. Support and manage the security team to ensure incidents are handled, risks are appropriately identified by analysing the logs, regular stand up meetings are scheduled, and recommendations are planned to mitigate the identified risks.
3. Assist Governance, Risk and Compliance team in documenting and reporting control deficiencies upon discussion with business owners, internal auditors and collaborate with business owners regarding recommendations to address the root cause of issues and report support implementation of management remedial actions.
4. Able to troubleshoot and manage escalated incidents related to TrendMicro Deep Security, McAfee ePO, and SCEP. Able to lead the team during any high priority incidents and track the ticket until resolution. Problem ticket to be created to record the root cause and present the recommendations to senior management.
5. Thinking of and implementing new ways to automate and improve security across the business
Experience and Skills:
1. 8 to 10 years of relevant experience - Proven experience as a compliance manager.
2. Experience in leading a team of L1 to L3.
3. Technical knowledge and experience required in - SCCM, TrendMicro Deep Security, TrendMicro Office Scan, McAfee ePO, MOVE, and McAfee Endpoint Encryption.
4. Knowledge in SCEP (System Centre Endpoint Protection).
5. Extensive knowledge in ITIL processes.
6. Additional knowledge in 'Microsoft Project' tool.
7. Vulnerabilities and Patch management.
8. Script knowledge - PowerShell, Python etc.
9. Methodical and diligent with outstanding planning abilities.
10. Good communicator and able to articulate requirements and expectations.
11. An analytical mind able to "see" the complexities of procedures and regulations.
12. Excellent knowledge of reporting procedures and record keeping.
Didn’t find the job appropriate? Report this Job