Your browser does not support javascript! Please enable it, otherwise web will not work for you.

Sr. Associate Audit and Compliance @ Zeta

Home > Risk Management & Compliance - Other

 Sr. Associate Audit and Compliance

Job Description

The Role: This role is part of the Information Security Process and Compliance Team of Zeta. The Sr. Associate of InfoSec Audit and compliance is responsible for preparing and supporting PCIDSS, ISO 27001 and SOC external Audits. Actively participate, strengthen and improve Internal Audit process and provide assurance on internal technology and process compliance. Collaborate with the Cloud and Product security team to drive Risk and compliance goals.

What would you do here
    • Work with internal and external stakeholders to assess the IT architecture or proposed IT architecture solutions to identify the risk areas with regards to PCI controls.
    • Assess the network architecture and or reviews the Firewall rulesets, Network devices/appliances to see if they are aligned with the PCI control requirements and recommends compensatory controls where necessary.
    • Execute operational activities to support audit and compliance activities including technical validation processes.
    • Conduct PCI DSS scoping engagements, gap analysis and assessments related to securing the Cardholder Data Environment.
    • Effectively multi-tasks on multiple assignments and deliverables.
    • Actively accepts individual and team responsibilities to meet commitments. Takes responsibility for own performance and actions and demonstrates responsibility and teamwork towards overall team/department goals.
    • Discuss the SOP document with all relevant stakeholders - right from process owner to the BU functional heads Detailed understanding of SOC reports (SOC2, Type 1, 2), ISMS reports and ability to relate the IT General Controls, IT Application Controls, Cyber Controls to the SOC framework.
    • Develop and Maintain Vendor Risk Management /Third Party Risk Management Program including Vendor Onboarding Audit, Periodic Vendor Assessment, Maintain TPRM Database.
    • Review and implement controls and policies as per RBI and other regulatory requirements. Maintain ISMS framework, evaluate effectiveness of implemented controls and provides recommendations for improvement.
    • Facilitate Client Due - Diligence in collaboration with Business.
    • Develop and Maintain Enterprise Risk Assessment framework.
    • Perform Internal Assessment against various Standards to ensure the established policies are being followed and prepare internal reports.
    • Contract review and providing responses to client Request for Proposal (RFP)
What are we looking for
    • 4 - 7 years of experience in Information Security and Compliance in medium tolarge-sized companies.
    • Bachelor of Technology (BE/ B.Tech ), M.Tech or ME in Computer Science, MCA or equivalent.
    • Good Understanding of Technology Risk Assessment Frameworks and Application risk Assessment.
    • Good Understanding and hands on experience on PCI DSS Standard and various PCI compliance is must.
    • Experience of working in the Banking or Payment sector is preferred.
    • Hands-on experience with various Audits and Standards Such as ISMS, SSAE 18, ISO 27001,ISO 31000, ISO 22301, CSA Star, NIST Risk framework, PCI DSS, PCI 3DS, PCI PA-DSS/SSF, PCI S3 etc.
    • Good to have Information Security Certifications like CISA, CISM, CISSP etc.
    • Experience of Vendor Risk Assessment and responding to client Request for Proposal(RFP).Excellent written and oral communication and penchant for technical documentation
 

Job Classification

Industry: IT Services & Consulting
Functional Area / Department: Risk Management & Compliance
Role Category: Risk Management & Compliance - Other
Role: Risk Management & Compliance - Other
Employement Type: Full time

Contact Details:

Company: Zeta Inc.
Location(s): Bengaluru

+ View Contactajax loader


Keyskills:   Cisa Information security SOC ISO 27001 Risk management RFP Firewall Auditing Technical documentation

 Job seems aged, it may have been expired!
 Fraud Alert to job seekers!

₹ Not Disclosed

Similar positions

Lead / Sr. Lead Specialist - ERM - Pune - 7+ Years

  • Crescendo Global
  • 7 - 12 years
  • Pune
  • 1 month ago
₹ Not Disclosed

Internal Audit , Risk & Controls . F&a , Sox, Isae , Ssae ,manager

  • Infosys
  • 4 - 9 years
  • Pune
  • 2 mths ago
₹ 14-24 Lacs P.A.

Manager - Compliance

  • Axis Max Life
  • 6 - 10 years
  • Noida, Gurugram
  • 2 mths ago
₹ Not Disclosed

Associate Manager-Risk & Governance

  • 3i Infotech
  • 3 - 8 years
  • Mumbai
  • 3 mths ago
₹ Not Disclosed

Zeta

Zetais in the business of providing a full-stack, cloud-native, API-first neo-banking platform including a digital core and a payment engine for issuance of credit, debit, and prepaid products that enable legacy banks and new-age fintech institutions to launch modern retail and corporate fintech pro...