Legal - Data breach IR investigation
Mumbai, Maharashtra, India
WTW
WTW tarjoaa tietoon perustuvia, näkemyslähtöisiä ratkaisuja ihmisten, riskien ja pääoman alalla.- a. Works as part of the Privacy/Legal Team, providing support on data disclosure and other security incidents, ensuring that requisite teams are engaged on an incident and following up where necessary to ensure that all appropriate steps are followed. Role includes intake and triage, written analysis, and end-to-end coordination and management of reported security incidents throughout the life cycle of an incident investigation.
- Provide support for the incident process, including written analysis and escalation of incidents where a response is required within a specified timeframe;
- Communicate in writing complex ideas in a way that is easy to understand.
- Produce periodic and ad-hoc reports for the use of the team.
- Research and apply privacy laws and regulations to investigation outcomes and make recommendations; and track and identify privacy/legal impact to WTW.
Responsibility:
- Receive and provide triage reports for security incidents from across the business including:
- Making a record of the incident and undertake triage
- Review and confirm facts of an incident to isolate what may be missing or misstated
- Isolate key clauses in contracts to identify legal obligations
- Coordinate with the Legal lead of the incident, as well as engagement of any other known stakeholders
- Provide timely escalation of severe incidents or non-compliance to agreed service level agreement (SLA) for incident progression
- Identify underlying trends through the production of reports, and potential control gaps
- Ensure all incident handling and response best practices, guidelines and standards are followed
- Ensure accurate and clear communication with stakeholders, including through direct and clear written communication
- Ensure the timely production of reports for the team
- Demonstrable track record of:
- Working with other teams and disciplines towards a common goal
- A developing knowledge and enthusiasm for Legal and Privacy subject matters
- Problem solving and maintaining SLAs
- Working to deadlines and maintaining a high degree of organization to your work
- Highly computer literate
- Communicating clearly
- Experience with business and legal writing.
- Beneficial qualifications include:
- Law degree, or BSc with law component, or equivalent qualification
- Beneficial but not essential:
- An understanding of cyber security
- An understanding of privacy regulations (e.g., GDPR, HIPAA and other U.S. and global privacy laws) Privacy certification(s)
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
0
0
0
Tags: Compliance GDPR HIPAA Privacy SLAs
Region:
Asia/Pacific
Country:
India
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Product Security Engineer jobsInformation Security Specialist jobsSenior Security Analyst jobsSenior Cloud Security Engineer jobsSystems Engineer jobsSenior Cybersecurity Engineer jobsSystems Administrator jobsSenior Information Security Analyst jobsInformation Security Manager jobsCyber Security Specialist jobsSenior Network Security Engineer jobsIT Security Analyst jobsChief Information Security Officer jobsIT Security Engineer jobsSecurity Consultant jobsInformation System Security Officer (ISSO) jobsSecurity Specialist jobsInformation Systems Security Engineer jobsSenior Cyber Security Engineer jobsSenior Information Security Engineer jobsSenior Product Security Engineer jobsCyber Threat Intelligence Analyst jobsCyber Security Architect jobsSecurity Operations Analyst jobsCybersecurity Specialist jobs
SaaS jobsEncryption jobsEDR jobsJava jobsBash jobsThreat detection jobsTop Secret jobsSplunk jobsRMF jobsTerraform jobsIDS jobsSDLC jobsIPS jobsMalware jobsSOC 2 jobsSQL jobsFinance jobsForensics jobsDocker jobsCompTIA jobsActive Directory jobsGIAC jobsIntrusion detection jobsDoDD 8570 jobsITIL jobs
VPN jobsOWASP jobsIT infrastructure jobsCRISC jobsTCP/IP jobsHIPAA jobsAnsible jobsOSCP jobsBanking jobsClearance Required jobsData Analytics jobsMITRE ATT&CK jobsCCSP jobsNIST 800-53 jobsZero Trust jobsIndustrial jobsDNS jobsUNIX jobsEndpoint security jobsSAP jobsCISO jobsPolygraph jobsSOAR jobsJira jobsSOX jobs