Vulnerability Assessment Consultant

Year    Bangalore, Karnataka, India

Job Description


JLL empowers you to shape a brighter way.Our people at JLL and JLL Technologies are shaping the future of real estate for a better world by combining world class services, advisory and technology for our clients. We are committed to hiring the best, most talented people and empowering them to thrive, grow meaningful careers and to find a place where they belong. Whether youxe2x80x99ve got deep experience in commercial real estate, skilled trades or technology, or youxe2x80x99re looking to apply your relevant experience to a new industry, join our team as we help shape a brighter way forward.Vulnerability Assessment Consultant-2JLL Technologies, BangaloreWhat this job involves:#JLLTechAmbitionsThe Information Security Consultant will support planning, execution, and reporting of operational and system IT internal controls and risk management within the company. This role will act as a point of contact for Cybersecurity Governance, Risk, and Compliance . The role will work closely with the Technology functional teams and internal business lines in the day-to-day operational delivery of the overall Cybersecurity Compliance program.Teaming with the Cybersecurity Compliance Manager, the Information Security Consultant will:

  • Monitor changes in business processes, information systems, management and operations, and accordingly maintain an assessment to risk.
  • Build and maintain productive relationships with process owners.
  • Through effective leadership, ensure audits of control effectiveness and design and other projects are completed in an efficient manner, and within established deadlines.
  • Through the effective review of department work, ensure that the assessments of internal control structure related to processes audited are supported through sufficient and adequately documented evidence.
  • Continually evaluate the efficiency and effectiveness of the internal controls and department functions, and identify areas of improvement.
  • Assist with internal investigations.
  • Promote good practice of Information Security Compliance to staff and associated contractors.
  • Provide direct and specific guidance to the department internal control process ownersxe2x80x99 as appropriate for each process owner of the department and the work being performed.
  • Perform risk assessments related to controls in scope for work being performed.
Responsibilities * Maintain awareness of current compliance, audit professional standards and any associated legislation changes, and apply where appropriate to the internal IT controls and audit function.
  • Maintain awareness of current issues and significant changes within the business environment and business processes.
  • Periodically determine the need for revisions to control processes.
  • Demonstrate effective interaction with all levels of management and business partners.
  • Review specific control risk assessments to ensure efficiency and effectiveness in addressing key risks associated with the respective auditable entity or entities.
  • Review risk questionnaire submissions to identify key risks associated with the respective vendor /service and work with stakeholders to mitigate and advise.
  • Ensure that appropriate communication has been made in advance with compliance and internal process & service owners regarding the timing and logistics of each audit and review.
  • Anticipate problems and obstacles to the timely and efficient completion of audits and compliance reviews. Recommend solutions to anticipated and incurred problems and obstacles impeding the timely completion of such audit and reviews.
  • Through an understanding of internal controls, standards and applicable policies, procedures, and country regulations, review evidence to ensure the assessment of the effectiveness and efficiency of internal controls is adequate and sufficiently supported and documented, and the departmental and professional standards are adequately upheld.
  • Ensure issues and exceptions are fully identified and properly defined, and recommendations are adequately formulated to address the root cause of identified issues in a beneficial manner.
  • Ensure issues and recommendations are adequately and effectively communicated to owners on a proactive basis during the course of each audit or review.
  • Review final process ownersxe2x80x99 responses for adequacy and completeness.
  • Ensure appropriate and timely follow-up audit work is performed to properly update the status of outstanding reported issues, and adequate communication is provided to management on a proactive basis.
  • Use the firmxe2x80x99s various methods of internal communication to direct colleagues and the wider organization to current, new policies and essential compliance information.
  • Sounds like you? To apply you need to be:
Experience & Education
  • Experience in evaluating third parties for the presence of fundamental information security controls.
  • College diploma or university degree in the field of computer science, information systems, or computer engineering
  • Exposure to any GRC technologies to perform risk management.
  • Good understanding of compliance standards/framework like ISO 27001/27002, NIST, SOC1, SSAE16/SOC2, CIS.
  • Knowledge of technical domains such as network security , cloud security , application security and penetration test concepts.
  • Experience in conducting risk assessments and applying concept of inherent and residual risk in order to draw appropriate conclusion and articulate the same to non-technical audiences.
  • Minimum of 4 years IT experience; or equivalent combination of education and experience
  • Minimum of 4 years' experience of contributing to the success of a range of midsize-to-large multi-country initiatives.
  • Experience in designing and managing compliance and risk management controls and processes in day to day IT operations and projects.
  • Experience in undertaking and reporting on internal audits of IT operations, applications and projects.
  • Experience working in the corporate sectors (financial services, telecommunications or utilities)
  • Experience working in real estate services industry
Technical Skills & Competencies * High level of written and oral English communication skills.
  • High level of analytical, conceptual, and problem-solving abilities.
  • Affable, credible and can communicate effectively with clients and colleagues.
  • Good research skills and the ability to manage details
  • Ability to present ideas in user-friendly language.
  • Ability to effectively prioritize and execute tasks in a high-pressure environment.
  • Team player with experience working in a team-oriented, collaborative environment
  • Quality focused and highly flexible
  • Thinks ahead and anticipate problems, issues and solutions
  • Certified Information Systems Auditor (CISA)
  • Information Technology Infrastructure Library (ITIL) Foundation
What we can do for you:At JLL, we make sure that you become the best version of yourself by helping you realise your full potential in a fully entrepreneurial and inclusive work environment. If you harbour passion for learning and adapting new technologies, JLL will continuously provide you with platforms to enrich your technical domains. We will empower your ambitions through our dedicated Total Rewards Program, competitive pay and benefits package. Itxe2x80x99s no surprise that JLL has been recognized by the Ethisphere Institute as one of the 2019 Worldxe2x80x99s Most Ethical Companies for the 12th consecutive year.Apply today!Location:Remote xe2x80x93Bengaluru, KAScheduled Weekly Hours: 40If this job description resonates with you, we encourage you to apply even if you donxe2x80x99t meet all of the requirements. Wexe2x80x99re interested in getting to know you and what you bring to the table!JLL Privacy NoticeJones Lang LaSalle (JLL), together with its subsidiaries and affiliates, is a leading global provider of real estate and investment management services. We take our responsibility to protect the personal information provided to us seriously. Generally the personal information we collect from you are for the purposes of processing in connection with JLLxe2x80x99s recruitment process. We endeavour to keep your personal information secure with appropriate level of security and keep for as long as we need it for legitimate business or legal reasons. We will then delete it safely and securely.For more information about how JLL processes your personal data, please view our .For additional details please see our career site pages for each country.For candidates in the United States, please see a full copy of our Equal Employment Opportunity and Affirmative Action policy .Jones Lang LaSalle (xe2x80x9cJLLxe2x80x9d) is an Equal Opportunity Employer and is committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process xe2x80x93 including the online application and/or overall selection process xe2x80x93 you may contact us at . This email is only to request an accommodation. Please direct any other general recruiting inquiries to our page
I want to work for JLL.

Jones Lang LaSalle

Beware of fraud agents! do not pay money to get a job

MNCJobsIndia.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.


Job Detail

  • Job Id
    JD3649744
  • Industry
    Not mentioned
  • Total Positions
    1
  • Job Type:
    Full Time
  • Salary:
    Not mentioned
  • Employment Status
    Permanent
  • Job Location
    Bangalore, Karnataka, India
  • Education
    Not mentioned
  • Experience
    Year