Associate Lead - Information Security
Trivandrum, Kerala, India
⚠️ We'll shut down after Aug 1st - try foo🦍 for all jobs in tech ⚠️
Envestnet
Explore our connected ecosystem of solutions, intelligence, and technologies that connect people’s daily lives with their long-term goals. See how we’re equipping advisors with the tools and resources needed to deliver the most impactful...
Job Title: Information Security Lead / Lead – Identity Governance and ComplianceDepartment: Information Security – Governance, Risk & Compliance (GRC)Experience: Level: 5 – 7 yearsEmployment Type: Full-time Key Responsibilities:
• Lead and manage the Identity Governance and compliance activities, including periodic User Access Reviews (UAR) and RBAC activities.
• Ensure IAM practices comply with internal policies and external regulatory requirements.
• Maintain and enhance identity governance policies, standards, and procedures.
• Provide subject matter expertise on Active Directory (AD), including group policies and access provisioning/deprovisioning.
• Align identity governance practices with frameworks such as PCI DSS, ISO 27001, NIST CSF, and COBIT.
• Engage with IT, HR, and business units to enforce least privilege principles and maintain accurate access records.
• Conduct regular training sessions for the SM team on security controls and client requirements.
• Coordinate SME involvement in quarterly meetings and training initiatives.
• Maintain and organize SharePoint and Jira spaces for audit readiness and evidence management.
• Participate in incident management, change control meetings, and cloud migration initiatives.
• Engage in SOC operations and threat tracking.
• Drive continuous improvement initiatives in identity governance and GRC processes.
• Lead the annual review of security information presentations in collaboration with Compliance.
Required Qualifications:
• Bachelor’s degree in Information Security, Computer Science, or a related field.
• 5 – 7 years of experience in Information Security, with a focus on Identity Governance and Compliance.
• Strong understanding of User Access Review (UAR) processes and tools.
• Experience with Active Directory (AD) and identity lifecycle management.
• Familiarity with regulatory and compliance frameworks: PCI DSS, ISO 27001, NIST, COBIT.
• Excellent analytical, documentation, and communication skills.
• Ability to work independently and collaboratively in a fast-paced environment.
Preferred Qualifications:
• Relevant certifications such as CISSP, CISA, CISM, CRISC, or GIAC.
• Experience with IAM tools (e.g., SailPoint, Saviynt, Okta, Azure AD).
• Prior experience supporting internal or external audits.
• Knowledge of GRC tools and platforms.
• Understanding of legal and regulatory standards such as FERPA, CIS, and data protection laws.
• Knowledge of Cloud Identity (AWS or Azure Identity).
• Lead and manage the Identity Governance and compliance activities, including periodic User Access Reviews (UAR) and RBAC activities.
• Ensure IAM practices comply with internal policies and external regulatory requirements.
• Maintain and enhance identity governance policies, standards, and procedures.
• Provide subject matter expertise on Active Directory (AD), including group policies and access provisioning/deprovisioning.
• Align identity governance practices with frameworks such as PCI DSS, ISO 27001, NIST CSF, and COBIT.
• Engage with IT, HR, and business units to enforce least privilege principles and maintain accurate access records.
• Conduct regular training sessions for the SM team on security controls and client requirements.
• Coordinate SME involvement in quarterly meetings and training initiatives.
• Maintain and organize SharePoint and Jira spaces for audit readiness and evidence management.
• Participate in incident management, change control meetings, and cloud migration initiatives.
• Engage in SOC operations and threat tracking.
• Drive continuous improvement initiatives in identity governance and GRC processes.
• Lead the annual review of security information presentations in collaboration with Compliance.
Required Qualifications:
• Bachelor’s degree in Information Security, Computer Science, or a related field.
• 5 – 7 years of experience in Information Security, with a focus on Identity Governance and Compliance.
• Strong understanding of User Access Review (UAR) processes and tools.
• Experience with Active Directory (AD) and identity lifecycle management.
• Familiarity with regulatory and compliance frameworks: PCI DSS, ISO 27001, NIST, COBIT.
• Excellent analytical, documentation, and communication skills.
• Ability to work independently and collaboratively in a fast-paced environment.
Preferred Qualifications:
• Relevant certifications such as CISSP, CISA, CISM, CRISC, or GIAC.
• Experience with IAM tools (e.g., SailPoint, Saviynt, Okta, Azure AD).
• Prior experience supporting internal or external audits.
• Knowledge of GRC tools and platforms.
• Understanding of legal and regulatory standards such as FERPA, CIS, and data protection laws.
• Knowledge of Cloud Identity (AWS or Azure Identity).
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
0
0
0
Category:
Leadership Jobs
Tags: Active Directory Audits AWS Azure CISA CISM CISSP Cloud COBIT Compliance Computer Science CRISC GIAC Governance IAM ISO 27001 Jira NIST Okta PCI DSS SailPoint SharePoint SOC
Region:
Asia/Pacific
Country:
India
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Senior Cybersecurity Engineer jobsIT Security Analyst jobsSystems Administrator jobsSenior Information Security Analyst jobsSenior Security Analyst jobsInformation System Security Officer jobsSecurity Operations Engineer jobsCyber Security Specialist jobsSenior Product Security Engineer jobsInformation Security Manager jobsInformation System Security Officer (ISSO) jobsSenior Network Security Engineer jobsSecurity Specialist jobsSenior Information Security Engineer jobsSecurity Consultant jobsSenior Cyber Security Engineer jobsChief Information Security Officer jobsInformation Systems Security Engineer jobsSenior Software Engineer jobsIT Security Engineer jobsNetwork Engineer jobsCyber Threat Intelligence Analyst jobsCybersecurity Specialist jobsSecurity Operations Analyst jobsSenior IT Auditor jobs
Java jobsBash jobsEDR jobsEncryption jobsTS/SCI jobsSDLC jobsRMF jobsITIL jobsThreat detection jobsTerraform jobsSplunk jobsSQL jobsIDS jobsCompTIA jobsMalware jobsDocker jobsIPS jobsForensics jobsTop Secret jobsOWASP jobsActive Directory jobsSOC 2 jobsFinance jobsGIAC jobsClearance Required jobs
OSCP jobsMITRE ATT&CK jobsDoDD 8570 jobsTCP/IP jobsCRISC jobsHIPAA jobsIntrusion detection jobsVPN jobsCCSP jobsDNS jobsSOAR jobsZero Trust jobsJavaScript jobsIT infrastructure jobsNIST 800-53 jobsAnsible jobsKPIs jobsUNIX jobsIndustrial jobsMachine Learning jobsBanking jobsJira jobsData Analytics jobsGCIH jobsSANS jobs