08/08 Sangeeta
HR at Reliance Industries Limited

Views:218 Applications:2 Rec. Actions:Recruiter Actions:0

RIL - IT Security Professional - ISO/PCI-DSS (7-10 yrs) Premium

Mumbai Job Code: 478260

- A clear understanding of international standards like ISO 27001 and PCI DSS and have handled atleast 4 end to end implementation projects

- Should have the clear understanding on the management concepts of ISMS and PCI and come up with ideas not only for measure the adoption effectiveness but also to boost the principal adoption

- Should have a clear understanding of Indian and international privacy regulations like :

a. IT Act 2008

b. IT (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules 2011

c. IT Act 2000 (Section 43(A))


- Should be able to act as a compliance SPOC for above mentioned

- Should be proactive in tracking the changes, amendments of the Indian and international standards and regulations and work

- Should have knowledge in creating Common Control Frameworks (CCF) to align multiple standards in order to bring down the execution and management time

- Should have a thorough understanding on the documentary requirements pertaining to various standards and should proactively bring it across the team and management

- Should have handled multiple cross - functional stakeholders and work according to the business priorities.

- Should have experience in performing internal compliance audits and should be confident in interfacing with the auditors

- Should have experience in conducting Risk Assessment and internal compliance audits

Must Have - Technical Skills:

- Should be able to derive at an appropriate technology to address and mitigate business risk and guide the teams in the same

- Should have worked in opensource customization (especially in PHP)

- Should be proficient in performing the following assessments:

1. Configuration Audits

2. VAPT (Manual)

3. Application security (Manual)

4. Mobile Application PT (Manual)

5. Secure Code Reviews

- Should be able to code attack scripts for various tool POCs

Personal Traits:

- Should be polite, interactive when communicating with peers and stakeholders

- Should have the flare to learn and share the learning with other team members

- Should be able to handle multiple projects along with target and committed closures in deadlines

Add a note
Something suspicious? Report this job posting.