Skills:
- Be able to Review all ISMS policies, procedures and other core ISMS framework documents
- Contribute in Drafting and Updating Infosec policies and process documents
- Contributing in internal and external audit activities & remediate findings and ensure their mitigation on an agreed schedule
- Analyse Web, mobile and API application security assessments
- Good knowledge of security technologies for secure software development such as cryptography, authentication techniques, and protocols
- Good knowledge in TCP/IP protocols and deeper knowledge of application layer protocols like HTTP, FTP, DNS.
- Cloud security concepts and virtualization basics would be an addition
- Experience in handling audits and compliances (ISO 27001, 22301, 27017, 27018, SOC2)
- Coordinate with external vendors for a variety of tasks.
- Strong communication and presentation skills
- Solid understanding of the following required:
- OWASP Top 10 Web
- OWASP Top 10 Mobile
- OWASP Top 10 API
- Linux/Unix Operating Systems
- SDLC Processes
- Networking
- Mandatory certifications (at least 1)
- CEH
- ISO 27001 LI/LA Certification/CISA
- Relevant certifications directly from AWS, GCP or Azure
- Good to have CCSE, CCSP, cloud security certification
Didn’t find the job appropriate? Report this Job