Infosys

Senior Information Security Engineer

Job Description

Responsibilities: 11.1 Conduct risk assessments for various business processes to identify and mitigate cyber security risks. 11.2 Assess the effectiveness of risk mitigation measures and identify the residual risk levels, additional control requirements if any. 11.3 Work with different functions within ISG to understand and take up risk specific inputs if any. Ex: Incident trend analysis, analysis of threat feeds, security architecture assessments, vulnerabilities identified by validation group if any. 11.4 Work with policy and compliance team to understand the control failure patterns reported in internal, external audits, compliance assessments and identify the risks. 11.5 Conduct risk assessments for new development centers, overseas locations 11.6 Perform scope validation for Supplier risk assurance program to identify new vendors to be added in scope. 11.7 Conduct supplier due-diligence to identify the cyber security risks before on-boarding the supplier. 11.8 Ensure that the supplier specific risks are tracked for mitigation. 11.9 Categorize and prioritize the suppliers’ basis the service/exposure to Infosys/client information. 11.10 Work with different stakeholders to classify and prioritize the information assets as per the classification schema. 11.11 Identify use cases to enforce the classification schema across different units and assist in criticality based control selection. 11.12 Ensure integrity of the data in IT GRC Modules related to supplier, site specific risk assessments and organization level risk register. 11.13 Monitor the risk dashboard for aging RTP analysis, reassess the accepted risks at least on an annual basis. Educational Requirements Bachelor of Engineering Additional Responsibities: Candidate should also know: Information Security Management System (ISMS) – ISO 27001, 27002 Knowledge of Information security baselines like SOGP, NIST cyber security framework etc. Cyber security risk management standards (Desired): o ISO 27005 Information Security Risk Management Standard o ISO 31000 Risk Management Standard o NIST and ISF Risk Management best practices IRAM (Information Risk Assessment Methodology) from ISF Knowledge of risk scenario development tools, techniques Quantitative and Qualitative risk assessment methodologies (FAIR, IRAM, ISO 31000 etc.) Technical and Professional Requirements: Information security concepts and principles, including confidentiality, integrity and availability of information. Knowledge of Enterprise security architecture (Security technologies, Operating systems, databases, network, applications) Threats and vulnerabilities related to: business processes, emerging technologies, data management, IT operations, third party relations, Critical assets, infrastructure, applications etc.


Jobs at Bangalore

Infosys

Project Manager

8 - 16 Years Exp.

Bangalore, Karnataka

View Details

Last Date: June 30, 2024

Infosys

Java Microservice Developer

3 - 5 Years Exp.

Bangalore, Karnataka

View Details

Last Date: Sept. 28, 2024

Infosys

Business Analyst-RPA

7 - 14 Years Exp.

Bangalore, Karnataka

View Details

Last Date: June 30, 2024

Amazon

BIE Manager, BI & Analytics Team

Freshers/Experienced

Bangalore, Karnataka

View Details

Last Date: July 9, 2024

Virtusa

Abinitio Developer

Full Time

Bangalore, Karnataka

View Details

Last Date: Dec. 31, 2024

Infosys

SAP CPI CONSULTANT

2 - 3 Years Exp.

Bangalore, Karnataka

View Details

Last Date: June 30, 2024

Paypal

Quantitative Analyst

Freshers/Experienced

Bangalore, Karnataka

View Details

Last Date: June 30, 2024

TCS

Verification & Validation - HSIT

2 - 6 Years

Bangalore, Karnataka

View Details

Last Date: July 31, 2024

Capgemini

AEM Developer | 6 to 9 years | Beng…

Experienced

Bangalore, Karnataka

View Details

Last Date: July 3, 2024

KPMG

Technology Consulting-TE SAP-SF-EC …

KI Professional

Bangalore, Karnataka

View Details

Last Date: July 3, 2024

Virtusa

.Net core+ Angular

Full Time

Bangalore, Karnataka

View Details

Last Date: Dec. 31, 2024

Amazon

Hardware Power Engineer, Connectivi…

Freshers/Experienced

Bangalore, Karnataka

View Details

Last Date: July 9, 2024




More Jobs at Infosys

Infosys

DX_Java/Springboot/Microservices_Q1…

3 - 5 Years Exp.

Hyderabad, Telangana

View Details

Last Date: June 30, 2024

Infosys

HR Systems Principal

8 - 15 Years Exp.

Bangalore, Karnataka

View Details

Last Date: June 30, 2024

Infosys

HADOOP ADMIN

5 - 7 Years Exp.

Bangalore, Karnataka

View Details

Last Date: June 30, 2024

Infosys

Finacle Technology - Consultant

5 - 7 Years Exp.

Bangalore, Karnataka

View Details

Last Date: June 30, 2024

Infosys

Consultant - Outsystems Development

5 - 9 Years Exp.

Bangalore, Karnataka

View Details

Last Date: June 30, 2024

Infosys

Technology Analyst - ServiceNow (3-…

3 - 5 Years Exp.

Bangalore, Karnataka

View Details

Last Date: June 30, 2024

Infosys

Business Analyst

5 - 8 Years Exp.

Bangalore, Karnataka

View Details

Last Date: June 30, 2024

Infosys

Senior Consultant - Business Consul…

0 - 15 Years Exp.

Bangalore, Karnataka

View Details

Last Date: July 10, 2024

Infosys

Semarchy/ Reltio/ STIBO Developer.

5 - 7 Years Exp.

Bangalore, Karnataka

View Details

Last Date: June 30, 2024

Infosys

Lead Manager - Information Security

8 - 15 Years Exp.

Bangalore, Karnataka

View Details

Last Date: June 30, 2024

Infosys

SAP EWM Consultant

9 - 11 Years Exp.

Pune, Maharashtra

View Details

Last Date: June 30, 2024

Infosys

PROJECT MANAGEMENT

8 - 16 Years Exp.

Bangalore, Karnataka

View Details

Last Date: June 30, 2024