Location: Coimbatore (Work From Office)
Experience: 3–5 Years
Job Type: Full-Time
The Information Security Officer (ISO) will be responsible for developing, implementing, and maintaining the organization's information security framework. The role focuses on cybersecurity, risk management, ISO 27001 compliance, GDPR, security audits, incident response, and ensuring secure business operations across systems and applications.
Develop, implement, and maintain information security policies, standards, and procedures.
Conduct security risk assessments, vulnerability assessments, and compliance reviews.
Monitor, investigate, and respond to cybersecurity incidents and security breaches.
Ensure compliance with ISO/IEC 27001:2022, GDPR, and applicable data privacy regulations.
Coordinate internal and external security audits and ensure timely closure of audit findings.
Review ERP applications, workflows, and integrations to ensure security and privacy compliance.
Collaborate with IT and business teams to implement appropriate security controls.
Maintain security documentation, risk registers, incident reports, and compliance records.
Develop and deliver information security awareness and training programs.
Support disaster recovery and business continuity planning and testing.
Monitor emerging cybersecurity threats and recommend security improvements.
Strong knowledge of cybersecurity principles and information security best practices.
Experience with network security, endpoint security, cloud security, and Identity & Access Management (IAM).
Hands-on experience with ISO 27001, risk assessments, compliance management, and internal audits.
Strong understanding of GDPR, data protection principles, DPIAs, and privacy regulations.
Experience in incident response, vulnerability management, and security monitoring.
Good understanding of regulatory compliance and audit processes.
Strong analytical, communication, leadership, and problem-solving skills.
Ability to manage multiple security initiatives and collaborate across teams.
Technical understanding of cloud environments (AWS, Azure, GCP) and security tools.
Experience reviewing ERP systems and integrations for security and data protection compliance.
Familiarity with Norwegian privacy regulations is an added advantage.
Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
3–5 years of experience in Information Security, Cybersecurity, or IT Risk Management.
CISSP (Certified Information Systems Security Professional)
CISM (Certified Information Security Manager)
Interested candidates share your resume to [email protected]
Copyright © 2026 Grabjobs Pte.Ltd. All Rights Reserved.