Information Security Specialist
Pune, Maharashtra, India
Keywords Studios Plc
Whatever the scale of your project, whatever the timeframe, whatever your location: we deliver the unified solutions you need. Partner with us today.About the Team:
The Infosec team in Helpshift supports the business functions in maintaining the infosec and privacy posture across the product areas. The team is actively responsible in ensuring that the Helpshift product is in compliance with leading industry compliance regulations for security and privacy. Additionally, the team also works with technical teams within Helpshift to ensure that technical security controls are implemented effectively across the product. You’ll be part of a team that reviews and designs controls that helps protect the security and privacy posture of the Helpshift Product as it evolves to meet growing customer requirements.
Job Summary:
The Infosec team is within the global KWS services organization and is in charge of information security. This individual will help to maintain and further build Helpshift’s security compliance capabilities and will be responsible for providing expertise and support for KWS studios around the globe.
Responsibilities
- Protect systems and information infrastructure, including firewalls and data encryption programs by helping define, document & enforce security policies within the organisation.
- Support and Maintain the Security compliance requirements related to GDPR, SOC2, ISO27001, HIPAA, CCPA, Chinese Privacy laws etc.
- Support internal business functions with Customer facing asks such as responding to security questionnaires, information requests, completing periodic customer audits.
- Support Product teams in Security testing end evaluation of new product features
- Provide Information Security consulting to internal business units & service lines.
- Support service lines and business units in compliance to internal policies and client requirements, including planning for and executing on infrastructure and architecture decisions.
- Perform periodic internal penetration testing
- Perform GRC functions across the organisational business units to maintain visibility and achieve compliance where needed.
- Perform daily security tasks such as: internal audit, risk assessments, threat monitoring, vulnerability management, endpoint protection, tracking deliverables for security.
- Manage and deploy security infrastructure, including alerting, response, logging systems.
- Identification of IOCs/TTPs and applicable techniques for mitigation.
- Research, development & implementation of technologies aimed at strengthening the overall security posture of the company globally.
- Help the team with monitoring for, responding to & reporting on security incidents, for critical incidents.
Requirements
- Minimum 5 years of experience in Information Security
- Preferred Qualifications and security certifications like CISA, ISO27001 Lead auditor, CISM, CISSP
- and experience with GRC functions & software, vendor and client management, incident response
- Real world experience with network threats and systems threats in an enterprise environment
- Technical competencies and demonstrated experience identifying IOCs/TTPs and building solutions for the detection of IOCs/TTPs
- Experience in managing and developing new products and services
- Experience with threat monitoring, vulnerability management, endpoint protection, enterprise password management solutions
- Knowledge of applicable business processes and operations of customer organizations
- Professionalism, sensitivity, discretion along with the ability to interact with the senior executive level are essential
- Ability to prioritize and multitask well under pressure
- Excellent written and oral communication skills
- Strong experience managing in a fast-paced environment and leading as an individual contributor as needed
Benefits
- Hybrid setup
- Worker's insurance
- Paid Time Offs
- Other employee benefits to be discussed by our Talent Acquisition team in India.
Closing:
Helpshift embraces diversity. We are proud to be an equal opportunity workplace and do not discriminate on the basis of sex, race, color, age, sexual orientation, gender identity, religion, national origin, citizenship, marital status, veteran status, or disability status.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Audits CCPA CISA CISM CISSP Compliance Encryption Firewalls GDPR HIPAA Incident response ISO 27001 Monitoring Pentesting Privacy Risk assessment SOC 2 TTPs Vulnerability management
Perks/benefits: Insurance
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Information Security Officer jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Information Security Specialist jobs
- Open Ethical hacker / Pentester H/F jobs
- Open Senior Cyber Security Engineer jobs
- Open Cyber Security Architect jobs
- Open Product Security Engineer jobs
- Open Cyber Security Specialist jobs
- Open Cybersecurity Analyst jobs
- Open Chief Information Security Officer jobs
- Open Manager Pentest H/F jobs
- Open Staff Security Engineer jobs
- Open Security Specialist jobs
- Open Senior Information Security Analyst jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Cybersecurity Consultant jobs
- Open IT Security Analyst jobs
- Open Consultant SOC / CERT H/F jobs
- Open Senior Information Security Engineer jobs
- Open Senior Penetration Tester jobs
- Open Security Operations Analyst jobs
- Open IT Security Engineer jobs
- Open Sr. Security Engineer jobs
- Open Cybersecurity Specialist jobs
- Open Security Researcher jobs
- Open CISM-related jobs
- Open Windows-related jobs
- Open Network security-related jobs
- Open Pentesting-related jobs
- Open Agile-related jobs
- Open Application security-related jobs
- Open ISO 27001-related jobs
- Open GCP-related jobs
- Open Vulnerability management-related jobs
- Open Threat intelligence-related jobs
- Open CISA-related jobs
- Open Analytics-related jobs
- Open IAM-related jobs
- Open Security assessment-related jobs
- Open Malware-related jobs
- Open SaaS-related jobs
- Open APIs-related jobs
- Open Security Clearance-related jobs
- Open Java-related jobs
- Open Forensics-related jobs
- Open IDS-related jobs
- Open CEH-related jobs
- Open DevOps-related jobs
- Open EDR-related jobs
- Open DoD-related jobs