Project Manager-Info Sec
Acuity AnalyticsMatch Score
Against your primary resumeLogin to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Protocol Intelligence
Data-driven signals on your job's competitivenessSpecialized InfoSec/GRC skills and seniority limit applicants despite metro location and common Project Manager title.
Requires specialized InfoSec, cloud security and GRC experience, limiting cross-industry transferability.
Explicit 8-10 years, required InfoSec/GRC certifications and cloud security expertise create strict shortlisting filters.
Job Description
Structured overview of role & requirementsAbout This Role
Lead and execute practical security risk assessments and compliance activities across cloud platforms (Azure, AWS), Microsoft 365, SaaS applications, and AI governance, focusing on AI risk, cloud security, and third-party risk management.
Manage and improve ISO 27001, SOC 2, and privacy governance frameworks including audit coordination (internal, client, ISO, SOC 2) and automation of compliance controls using GRC tools and AI-enabled workflows.
Oversee risk management processes including audit findings remediation, risk exceptions, and third-party risk assessments aligned with regulatory and client security requirements.
Minimum Requirements
8-10 years of relevant experience in information security, cloud security, cybersecurity governance, or similar domains.
Bachelor’s degree in Engineering, Computer Science, Information Security, IT or equivalent practical experience.
Mandatory skills: Hands-on experience with Azure, AWS, Microsoft 365 security controls, ISO 27001, SOC 2 frameworks, audit management and third-party risk assessment.
Location: Gurgaon (Udyog Vihar Phase II, Haryana, India).
Ideal Candidate Profile
Experienced in operationalizing and automating security and compliance controls, with strong hands-on cloud and AI governance capabilities.
Demonstrated ability to lead audits and compliance initiatives involving cross-functional and client stakeholder engagement within financial services or professional services environments.
Capable of translating complex regulatory, technical and client security requirements into practical, sustainable, and auditable business processes.
