Legal - Data breach IR investigation
Mumbai, Maharashtra, India
WTW
WTW tarjoaa tietoon perustuvia, näkemyslähtöisiä ratkaisuja ihmisten, riskien ja pääoman alalla.- a. Works as part of the Privacy/Legal Team, providing support on data disclosure and other security incidents, ensuring that requisite teams are engaged on an incident and following up where necessary to ensure that all appropriate steps are followed. Role includes intake and triage, written analysis, and end-to-end coordination and management of reported security incidents throughout the life cycle of an incident investigation.
- Provide support for the incident process, including written analysis and escalation of incidents where a response is required within a specified timeframe;
- Communicate in writing complex ideas in a way that is easy to understand.
- Produce periodic and ad-hoc reports for the use of the team.
- Research and apply privacy laws and regulations to investigation outcomes and make recommendations; and track and identify privacy/legal impact to WTW.
Responsibility:
- Receive and provide triage reports for security incidents from across the business including:
- Making a record of the incident and undertake triage
- Review and confirm facts of an incident to isolate what may be missing or misstated
- Isolate key clauses in contracts to identify legal obligations
- Coordinate with the Legal lead of the incident, as well as engagement of any other known stakeholders
- Provide timely escalation of severe incidents or non-compliance to agreed service level agreement (SLA) for incident progression
- Identify underlying trends through the production of reports, and potential control gaps
- Ensure all incident handling and response best practices, guidelines and standards are followed
- Ensure accurate and clear communication with stakeholders, including through direct and clear written communication
- Ensure the timely production of reports for the team
- Demonstrable track record of:
- Working with other teams and disciplines towards a common goal
- A developing knowledge and enthusiasm for Legal and Privacy subject matters
- Problem solving and maintaining SLAs
- Working to deadlines and maintaining a high degree of organization to your work
- Highly computer literate
- Communicating clearly
- Experience with business and legal writing.
- Beneficial qualifications include:
- Law degree, or BSc with law component, or equivalent qualification
- Beneficial but not essential:
- An understanding of cyber security
- An understanding of privacy regulations (e.g., GDPR, HIPAA and other U.S. and global privacy laws) Privacy certification(s)
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
0
0
0
Tags: Compliance GDPR HIPAA Privacy SLAs
Region:
Asia/Pacific
Country:
India
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Product Security Engineer jobsInformation System Security Officer jobsSenior Security Analyst jobsSenior Cloud Security Engineer jobsSenior Cybersecurity Engineer jobsSystems Administrator jobsSystems Engineer jobsSenior Information Security Analyst jobsInformation Security Manager jobsSenior Network Security Engineer jobsIT Security Engineer jobsCyber Security Specialist jobsIT Security Analyst jobsChief Information Security Officer jobsSecurity Consultant jobsSecurity Specialist jobsInformation System Security Officer (ISSO) jobsInformation Systems Security Engineer jobsSenior Product Security Engineer jobsSenior Cyber Security Engineer jobsCyber Threat Intelligence Analyst jobsSenior Information Security Engineer jobsThreat Intelligence Analyst jobsCyber Security Architect jobsSecurity Operations Analyst jobs
SaaS jobsTS/SCI jobsBash jobsEDR jobsEncryption jobsIDS jobsThreat detection jobsIPS jobsSplunk jobsMalware jobsSDLC jobsTerraform jobsTop Secret jobsFinance jobsSQL jobsForensics jobsDocker jobsRMF jobsIntrusion detection jobsCompTIA jobsSOC 2 jobsITIL jobsOWASP jobsGIAC jobsActive Directory jobs
DoDD 8570 jobsAnsible jobsHIPAA jobsVPN jobsTCP/IP jobsOSCP jobsData Analytics jobsSOAR jobsIT infrastructure jobsUNIX jobsSANS jobsMITRE ATT&CK jobsClearance Required jobsCCSP jobsSAP jobsCRISC jobsJira jobsBanking jobsSOX jobsJavaScript jobsPolygraph jobsNIST 800-53 jobsSecurity strategy jobsMachine Learning jobsIndustrial jobs