Fis Management Services LLC
Analyst II, Information Security
IND BNGL FL2-3 TWR 3, IN · Mid
Sponsorship not specifiedDetected 25 days ago
CybersecurityComplianceAuditingInternal Audit
About the role
- Assist in defining, maintaining, and reviewing ISMS documentation, policies, procedures, risk registers, Statements of Applicability, audit reports, and corrective action plans.
- Prepare audit summaries, status updates, remediation trackers, and management reports.
Responsibilities
- Identify and assess risks to digital information by leading risk assessment activities and collaborating with stakeholders to implement appropriate risk mitigation measures.
- ISO/IEC 27001:2022 Lead Auditor or Lead Implementer certification is mandatory, with additional information security certifications such as CISA, CISM, CISSP, CRISC, Security+, or equivalent considered an added advantage.
- Support external certification, surveillance, and client audits by coordinating evidence requests, stakeholder discussions, audit walkthroughs, and management responses.
- Identify opportunities to enhance security processes and procedures and support continuous improvement across the information security program.
Requirements
- 3-4 years of hands-on experience in implementing and auditing Information Security Management Systems aligned with ISO/IEC 27001 standards.
- Working knowledge of information security domains, including access control, asset management, data protection, incident management, supplier security, business continuity, and vulnerability management.
- Familiarity with security governance tools, risk assessment platforms, audit tracking tools, or GRC solutions.
- A multifaceted job with a high degree of responsibility and a broad spectrum of opportunities
- Practical understanding of ISO/IEC 27001 requirements, the ISMS lifecycle, Annex A controls, risk assessment, internal audit, corrective actions, and continual improvement.
- Experience in preparing, reviewing, and maintaining ISMS documentation and audit evidence, along with the ability to perform control reviews, identify gaps, document observations, and support remediation tracking
- Exposure to SOC 1/SOC 2, PCI DSS, IT General Controls, privacy, cloud security, third-party risk management, or regulatory compliance assessments would be added advantage.
- What we offer you:
- An exciting opportunity be a part of World's Leading FinTech Product MNC
- To be a part of vibrant team and to build up a career on core banking/payments domain
- A broad range of professional education and personal development possibilities - FIS is your final career step!
- Privacy Statement
- Sourcing Model
Company info
- Part of the Assurance and Testing function, the team supports a global project portfolio spanning ISO 27001 certification, TISAX, and Cyber Essentials across 30+ locations.
- It maintains a robust presence in key hubs such as Gurgaon, Mumbai, Chennai, Pune, Bangalore, and the Philippines.
- What you will be doing:
- Execute Information Security Management System implementation and audit projects in alignment with ISO/IEC 27001:2022 and TISAX requirements.
- What you bring:
Apply directly at Fis Management Services LLC →Create a free account for alerts like thisView Fis Management Services LLC immigration profile
This listing is sourced directly from Fis Management Services LLC's careers page and normalized into a canonical job model.