⚡ New

Information Security Analyst

ACL Digital

ChennaiFull-timeMid LevelOn-site

Job Description

Information Security & QMS Analyst

Experience: 2–5 Years | Locations: Chennai (1) | Bengaluru (1)

Role Overview

Support Information Security, Data privacy, QMS activities, including audits, contract reviews, project security assessments, in alignment with ISO 9001 and ISO 27001. This is a work-from-office role.

Core Responsibilities:

  • Audits & Assessments – Coordinate & support, external audit certification, customer audits, conduct internal audit, handle Information Security questionnaires and third-party vendor risk assessments.
  • Contracts & Privacy – Review contracts, MSAs and Information Security clauses; support implementation of PII/privacy controls in line with GDPR and India’s DPDP Act.
  • Project Security – Conduct & support project security audits covering SDLC, Secure SDLC, and secure coding practices with Project& program Delivery teams.
  • QMS/ISMS – Maintain policies, procedures, standards, and records; track risks, non-conformities, corrective actions, and compliance gaps to closure.
  • Stakeholder Collaboration – Work with IT, HR, Legal, Delivery, and other stakeholders to implement, audit and maintain ISMS, QMS & privacy controls.
  • Awareness & Reporting – Conduct Information Security awareness sessions and prepare compliance dashboards, trackers, reports, and management review inputs.

Required Skills:

  • 2–5 years of experience in QMS, Information Security, GRC and Data Privacy.
  • Working knowledge of ISO 9001, ISO 27001:2022, and its 93 Annex A controls.
  • Implementation knowledge of ITGC/IT controls and Information security controls.
  • Experience/exposure to internal, external, and customer audits, risk assessments, third-party reviews and contract/security clause reviews.
  • Working knowledge of Secure SDLC, secure coding, GDPR & India’s DPDP Act.
  • Strong communication, stakeholder coordination, analytical & documentation skills.

Preferred:

  • ISO 27001 / ISO 9001 Internal or Lead Auditor certification.
  • Experience working in Software programming and Information Technology related organizations.
  • Exposure to GRC, privacy, or Information Security governance.


Posted Today

Related Jobs

Related Searches

Apply Now