Division: ITIS
Department: ITSEC/ITCS
Job Location: MSIL Gurgaon
Job Title: Business continuity Program Manager
Job Role: Third Party information Security Risk Assessment, Business Continuity and Disaster Recovery Planning
Reporting To: Department Head, ITCS
Level in the Organization: DM-MGR
Educational Qualification
Graduation (With Specialization): B. Tech./ BE
Any Other: MBA Preferred
Work Experience: 4-8 years
Job Responsibilities/Job Description
Third Party Risk Assessment
- Create, communicate and implement a risk-based process for vendor risk management, including the assessment and treatment for risks that may result from partners, consultants and other service providers.
- Coordinate information security and risk management projects with resources from the IT
organization and business unit teams
Business Continuity Planning
- Develop and oversee effective disaster recovery policies and standards to align with enterprise business continuity management program goals. Coordinate the development of implementation plans and procedures to ensure that business-critical services are recovered in the event of a security event. Provide direction, support and in-house consulting in these areas.
Information Security Management
- Relevant experience in Information security audit and compliance, Risk Assessment domain from a professional service firm or industry.
- Develop, implement and monitor a strategic, comprehensive enterprise information security and IT risk management program to ensure that the integrity, confidentiality and availability of information is owned, controlled or processed by the organization.
- Create and manage information security and risk management awareness training programs.
Competencies / Skills Good Aptitude And Assertiveness
Knowledge and experience of running Business Continuity and disaster recovery program.
Good knowledge of Industry standards (ISO 31000, ISO 27001, NIST CSF), certification would be an added advantage.
Relevant experience of managing or being a core member of ISMS program.
Experience in conducting/facing information security audits.
Proficiency in preparing clear, unambiguous, and comprehensive documents.
Knowledge of any GRC tool will be an added advantage.
Soft Skills
Teamwork.
Problem Soving
Good Communication ability
Adaptability
Critical thinking
Time management
Good Interpersonal skills