Job description Security Risk and Compliance Expert will be instrumental in shaping the global Information Security Management System (ISMS) within our Group Security team. This role involves engaging with various Business Groups and Corporate Functions to identify and manage information security risks, ensuring compliance and enhancing our security posture. Facilitate risk assessments, develop training, and contribute to the continuous improvement of security policies and tools. Enhance the overall security and compliance of services provided to our customers. You have: Master's or bachelor's degree in computer science, security engineering, or equivalent 5+ years of experience in information security in a multinational organization. Solid understanding of information security processes and technologies Practical knowledge of ISO/IEC 27001:2022 standard implementation Excellent documentation and communication skills It would be nice if you also had: Knowledge of security standards like CSA CCM, NIST CSF, NIS2, and SOC2 Experience delivering information security training Familiarity with RSA Archer and Microsoft Power BI or other GRC tools Certifications in information security (e.g., CRISC, CISSP and ISO 27001 LI/LA) Implement and operate the global Information Security Management System (ISMS) to enhance overall security and compliance Conduct risk assessments with global stakeholders to evaluate and report information security risks Develop and maintain the information security risk register, tracking mitigation progress and presenting reports to stakeholders Provide recommendations for security risk mitigation strategies tailored to different business groups Create, update, and maintain ISMS documentation and a repository of reports and audit records Facilitate training sessions to educate employees on ISMS practices and promote a strong security culture Collaborate with cross-functional teams to identify evolving security trends and compliance requirements Contribute to the continuous improvement of Nokia ISMS and related tools, utilizing KPIs to measure effectiveness Role: Cyber Security / IT Risk Industry Type: Software Product Department: Risk Management & Compliance Employment Type: Full Time, Permanent Role Category: Security / Fraud Education UG: Any Graduate PG: Any Postgraduate Key Skills Skills highlighted with ‘‘ are preferred keyskills microsoft power bisocdocumentationinformation securitycsa it risk managementsecurity compliancerisk managementrsa archerccmnist csfinternal auditcisspgdprnistit auditsecurity engineeringitgcgrccisapci dssit risksox
Job Summary
Company
Nokia
Location
Bengaluru
Salary Range
Not disclosed
Experience
5-8 Yrs
Verification
Government Verified Recruiter
TrueCV Commitment Pledge
Zero Ghosting Guarantee
Every recruiter on TrueCV commits to review applications, respect interview time, and authenticate joining via our Day 1 Handshake.