Information Security Consultant

Place of work Work from home
Contract type Full-time
Start date -
Salary -

Job details

Job description, work day and responsibilities

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day. One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world. We’re devoted to being a diverse and inclusive workplace for everyone. We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical, emotional, and financial well-being. Bank of America believes both in the importance of working together and offering flexibility to our employees. We use a multi-faceted approach for flexibility, depending on the various roles in our organization. Working at Bank of America will give you a great career with opportunities to learn, grow and make an impact, along with the power to make a difference. Join us!

Global Business Services

Global Business Services delivers Technology and Operations capabilities to Lines of Business and Staff Support Functions of Bank of America through a centrally managed, globally integrated delivery model and globally resilient operations. Global Business Services is recognized for flawless execution, sound risk management, operational resiliency, operational excellence and innovation. In India, we are present in five locations and operate as BA Continuum India Private Limited (BACI), a non-banking subsidiary of Bank of America Corporation and the operating company for India operations of Global Business Services.

Process Overview*

Global Information Security (GIS) functions by analyzing, researching, improving, defining, implementing, and executing information security processes defined, in large part, by past high profile audit issues. Key responsibilities include Data Quality management of closed manually identified P2 vulnerabilities, developing an understanding of the LOBs that report vulnerabilities via manual flat file to GIS, following standard practices and procedures in analyzing situations or data, and supporting team members in performing specialized GIS functions, primarily Data Quality assurance. Job expectations include partnering with teams inside, and outside, of GIS, inclusive of GIS, CTI, EET, APS&E, GT Risk, and others.

Job Description*

Position will be a member of the Third Party Cyber Security Alternative Assurance Program (TPAAp) organization in Global Information Security (GIS), responsible for conducting information security assessments of third parties by reviewing independent audit reports (e.g., SOC 2 Type 2, ISO 27001, PCI DSS RoC) or Self Attestation / Assessment reports (e.g., SIG, PCI DSS AoC) to document a point of view on the information security posture of the third party. The position will be a key player in driving strategic initiatives focused on the design of Third Party Alternative Assurance (TPAA) program requirements, governance routines, consequence processes, and third party risk metrics and reporting. In addition to supporting strategic initiatives, the position will include analyzing and interpreting diverse information security risk indicators to deliver actionable insights into third party information security risk and enable prioritized cyber security assurance approaches. Position requires interaction with the third party cyber assessment team, technical subject matter experts, GIS Policy, and the internal and external third party management community.

Responsibilities*
β€’ Candidates must have at least 8-10 years of relevant experience. (Previous information technology/security audit/assessment experience is a plus.).
β€’ Previous security audit/assessment or remediation experience.
β€’ Previous experience reviewing independent audit reports / certification (e.g., ISO 27001, SOC 2 Type 2, PCI DSS RoC).
β€’ Previous experience reviewing self attestation / assessment reports (e.g., SIG, PCI DSS AoC).
β€’ Self-starting, organized, and requiring minimal management oversight.
β€’ Ability to operate across organizational boundaries and hierarchies to accomplish tasks.
β€’ Strong analytical skills/problem solving/conceptual thinking/attention to detail.
β€’ Ability to work effectively with peers and various levels of management.
β€’ Well organized and thorough, with the ability to balance and prioritize.
β€’ Excellent verbal and written communication skills across multiple levels of the organization.

Requirements*

Education* : B.E. / B Tech / M.E. / M Tech / MCA / M.Sc.,

Certifications (If Any) :ISO 27001 LA, Ethical Hacking, CISA, CISM

Experience Range* : 8-15 Years

Foundational Skills*
β€’ Experience in Information Security Management
β€’ Experience in Governance, Risk & Compliance
β€’ Experience in internal or external audits
β€’ Experience with ISO 27001 and SOC 2 Type 2 control frameworks.
β€’ Experience in implementing or reviewing ISO 27001, PCI, SOX, etc., controls
β€’ Strong analytical and problem solving skills
β€’ Excellent written/verbal communication skills

Desired Skills*
β€’ Knowledge in Vulnerability Assessments and Application Architecture
β€’ Cloud Security
β€’ Understanding of Networking, Systems Admin, Cryptography, Access Management

Work Timings* : 1:30 PM - 10:30 PM

Job Location* : HYD, MUM, CHN
Company Name: Bank of America
You will be redirected to another website to apply.
Offer ID: #1265693, Published: 1 day ago, Company registered: 1 month ago

Other offers

Home Tutor tuition teacher - Part-time Teaching Jobs Near Me in Dhamdod-Lumbha-surat
2285login
· Surat, IN
Find home tutor jobs, online tutor jobs , online teaching jobs for home tuitions and online tuitions - in hyderabad, bangalore, chennai, pune, mumbai, kolkata, delhi all over india I-X th Class - STATE, CBSE, ICSE, IGCSE...
Senior Engineer- Production
2285login
· Surat, IN
Divine Engineering Services Pvt. Ltd. is a dynamic and growth-driven engineering company based in Surat, Gujarat, specializing in fabrication and industrial engineering solutions. We are committed to quality, innovation,...
Senior SharePoint Developer
2285login
· Surat, IN
About the jobPreferred SkillSharePoint Online (Office 365) Development (Classic and/or SPFx) and AdministrationPractical SharePoint Online product experience - development and deploying solutionsExperience of developing ...
HR software enginer
2285login
· Surat, IN
We are seeking an accomplished and dynamic Tech Lead to join our team. As a Tech Lead you will be responsible for managing and delivering projects guiding the technical architecture mentoring the tea
Information Technology Business Analyst
2285login
· Surat, IN
We are looking for a smart and dynamic Business Analyst with 3 to 5 years of experience. The person should engage clients to gather project requirements/business rules and ensure alignment with development teams.Role Res...
Administrative Support Specialist – Billing & Documentation
2285login
· Surat, IN
At BlackPurple Automation, we combine human innovation and advanced technology to build smarter, more connected, and highly efficient automation solutions. Our mission is to redefine industrial operations and data center...
Senior Engineer- Production
2285login
· Surat, IN
Divine Engineering Services Pvt. Ltd. is a dynamic and growth-driven engineering company based in Surat, Gujarat, specializing in fabrication and industrial engineering solutions. We are committed to quality, innovation,...
Hiring For NBFC
2285login
· Surat, IN
As an Assistant Manager - SME, you will play a key role in driving sales growth, profitability, and employee development across our channel. Your primary responsibilities will include: β€’ Managing and supporting a team of...
Business Development Executive (BDE)
2285login
· Surat, IN
We are looking for dynamic and result-oriented *Business Development Executives* to drive business acquisitions through new *Corporate Accounts* and *High Net-Worth Individuals (HNIs)* for our *Travel & Logistics pro...
Data Scientist
2285login
· Surat, IN
About Company: Casepoint provides full eDiscovery capabilities through a powerful, secure, cloud-based platform. We are repeatedly chosen by leading law firms and multinational corporations for their largest matters. On ...
UIUX Designers
2285login
We are looking for passionate π—¨π—œπ—¨π—« π——π—²π˜€π—Άπ—΄π—»π—²π—Ώπ˜€ to join our dynamic team remotely! If you have a flair for creating intuitive, user-centered designs and are looking for a chance to work on exciting projects from anywhere, t...
Site Reliability Engineer (T1)
2285login
IAMOPS | Growth Fanatics DevOps is a full DevOps Suite company dedicated to supporting the growth of clients from MVP to Production. We are seeking a proactive and reliable Site Reliability Engineer (Tier-1) to join our ...
Sr. Accountant
2285login
Key Responsibilities: β€’ Accounting & Bookkeeping β€’ Maintain day-to-day accounts, ledgers, and financial records. β€’ Ensure accuracy in journal entries, reconciliations, and closing of books. β€’ Prepare monthly, quarter...
Financial Accountant
2285login
· Surat, IN
We are looking for an Financial Accountant to join our team at at Hdj Enterprises. The role involves managing financial transactions of the organization, preparing accurate reports, and ensuring compliance with tax regul...
Expansion Growth Specialist
2285login
Establish strong business relationships with potential clients by initiating meaningful connections and arranging in-person meetings to discuss growth opportunities. We are seeking a proactive professional to spearhead t...