Senior InfoSec Consultant
We are seeking a skilled and experienced Information Security Consultant to join our team. The ideal candidate will be responsible for implementing and managing Information Security Management Systems (ISMS), ensuring compliance with PCI DSS, developing and maintaining Business Continuity Management Systems (BCMS), and overseeing IT Service Management (ITSM) processes. This role requires a thorough understanding of security standards and a proactive approach to managing security risks.
Roles and Responsibilities:
ISMS Implementation:
- Develop, implement, and maintain the Information Security Management System in accordance with ISO 27001.
- Conduct risk assessments, identify vulnerabilities, and implement appropriate controls.
- Ensure continuous improvement of the ISMS through regular reviews and audits.
PCI DSS Compliance
- Lead the efforts to achieve and maintain PCI DSS compliance.
- Conduct regular assessments and gap analyses to ensure compliance with PCI DSS standards.
- Develop and implement policies and procedures to manage and protect cardholder data.
BCMS Development:
- Develop and maintain the Business Continuity Management System in line with ISO 22301.
- Conduct business impact analyses and risk assessments to identify critical functions and processes.
- Develop, implement, and test business continuity and disaster recovery plans.
ITSM Oversight
- Implement and manage IT Service Management processes in accordance with ITIL best practices.
- Ensure the alignment of ITSM processes with business objectives and security requirements.
- Monitor and improve IT service delivery and performance.
Skills and Qualifications:
- Bachelors degree in Information Security, Computer Science, or a related field.
- Relevant certifications such as CISSP, CISM, ISO 27001 Lead Implementer, PCI QSA, or ITIL.
- Proven experience in implementing and managing ISMS, PCI DSS compliance, BCMS, and ITSM processes.
- Strong knowledge of security standards and best practices.
- Excellent analytical, problem-solving, and communication skills.
- Ability to work independently and collaboratively in a team environment.
- Minimum of 5 years of experience in information security, with a focus on ISMS, PCI DSS, BCMS, and ITSM.