Jobs
>
Gurgaon

    Fareportal - Lead - Information Security - GRC - Gurugram, India - Fareportal India Pvt Ltd

    Fareportal India Pvt Ltd
    Fareportal India Pvt Ltd Gurugram, India

    1 month ago

    Default job background
    Description

    Title:
    Lead - Information Security (GRC).


    Location:
    Gurgaon, India.


    Job Description:

    Who We Are:
    Fareportal is a travel technology company powering a next-generation travel concierge service.

    Utilizing its innovative technology and company owned and operated global contact centers, Fareportal has built strong industry partnerships providing customers access to over 600 airlines, a million lodgings, and hundreds of car rental companies around the globe.

    With a portfolio of consumer travel brands including CheapOair and OneTravel, Fareportal enables consumers to book-online, on mobile apps for iOS and Android, by phone, or live chat.

    Fareportal provides its airline partners with access to a broad customer base that books high-yielding international travel and add-on ancillaries.

    Fareportal is one of the leading sellers of airline tickets in the United States.

    We are a progressive company that leverages technology and expertise to deliver optimal solutions for our suppliers, customers, and partners.


    FAREPORTAL HIGHLIGHTS:

    • Fareportal is the number 1 privately held online travel company in flight volume.
    • Fareportal partners with over 600 airlines, 1 million lodgings, and hundreds of car rental companies worldwide.
    2019 annual sales exceeded $5 billion.

    • Fareportal sees over 150 million unique visitors annually to our desktop and mobile sites.
    • Fareportal, with its global workforce of over 2,600 employees, is strategically positioned with 9 offices in 6 countries and headquartered in New York City.

    Job Description and Responsibilities:

    • Implement security controls, risk assessment framework, and program that align to regulatory requirements, ensuring documented and sustainable compliance that aligns and advances business objectives.
    • Evaluate risks and develop/review security standards, procedures, and controls to manage risks.
    • Improves Fareportal's security positioning through process improvement, policy, automation, and the continuous evolution of capabilities.
    • Implement processes, such as GRC (governance, risk and compliance), to automate and continuously monitor information security controls, exceptions, risks, testing.
    • Develop reporting metrics, dashboards, and evidence artifacts.
    • Define and document business process responsibilities and ownership of the controls.
    • Schedule regular assessments and testing of effectiveness and efficiency of controls and create GRC reports.
    • Update security controls and provides support to all stakeholders on security controls covering internal assessments, regulations, protecting Personally Identifying Information (PII) data, Payment Card Industry Data Security Standards (PCI DSS), ISO 27001, etc.
    • Support vendor duediligence process and review thirdparty contracts, SOW, etc.
    • Support internal and external audit process for relevant compliance.
    • Document and report control failures and gaps to stakeholders.
    • Provide remediation guidance and prepare management reports to track remediation activities.
    • Stay up to date and informed on developing regulatory concerns and changing IT and information security trends.

    Required Skills:

    • CISSP, CISA or CISM certification will be an added advantage.
    • Knowledge on applicable information security management, governance, and compliance principles, standards, practices, laws, rules and regulations (ISO 27001, PCI DSS, GDPR, CCPA, IT Act, etc) and cloud security standard frameworks, architecture, design, operations, controls, technology, solutions, and service orchestration systems auditing, monitoring, controlling, and assessment process, assessment and management methodology.
    • Ability to consistently provide highquality products that are concise, thorough and accurate;.
    • Strong attention to detail with an analytical mind and outstanding problemsolving skills.
    • Good communication and persuasive skills.
    • Work independently.

    Qualifications:
    BS/MCA/BE/BTech/M.Tech in technology-related or information security curriculum.

    • Prior experience in cyber security programs, audits, assessments, risk, remediation, or cyber security compliance management.
    • Required 3 years of relevant experience in information security domain.

    Disclaimer:

    This job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee.

    Fareportal reserves the right to change the job duties, responsibilities, expectations or requirements posted here at any time at the Company's sole discretion, with or without notice.

    )

  • Supro info Solution

    SAP Grc Security

    4 weeks ago


    Supro info Solution Delhi, India

    **Job Overview**: · PositionName**:SAP GRC** · Location**: DELHI** · Yearof Experience**:5+ years exp** · Pay roll **:Direct Client Payroll** · Type : Full time **(No Contract, NO Contract to hire Only Full time onclient payroll)** · Design and deploy GRCreporting based on busine ...

  • Supro info Solution

    SAP Grc Security

    3 weeks ago


    Supro info Solution Delhi, India

    **Job Overview**: · Position Name: SAP GRC Security · Year of Experience: 6+ Years · Education: Any Graduation · Location: Delhi · Pay roll : Direct Client Payroll · Type : Full time (No Contract, NO Contract to hire Only Full time on client payroll) · References are most welcome ...

  • Tech Mahindra

    SAP Security and GRC

    3 weeks ago


    Tech Mahindra new delhi, India

    Greetings from Tech Mahindra · We have an opportunity for ____SAP Security and GRC_ _____position and we find your profile suitable for the same. · Total Experience - 5+ Years · Location - New Delhi (Client Loc) · Notice Period - Imm to 30 Days (Serving Notice Period Only) ...

  • Tech Mahindra

    SAP Security and GRC

    4 weeks ago


    Tech Mahindra New Delhi, India

    Greetings from Tech Mahindra · We have an opportunity for __ __SAP Security and GRC_ _____position and we find your profile suitable for the same. · Total Experience - 5+ YearsLocation - New Delhi (Client Loc)Notice Period - Imm to 30 Days (Serving Notice Period Only)Shift Timing ...


  • KPMG India gurugram, India

    About KPMG in India · KPMG entities in India are professional services firm(s). These Indian member firms are affiliated with KPMG International Limited. KPMG was established in India in August 1993. Our professionals leverage the global network of firms, and are conversant with ...


  • EY Noida, India

    At EY, you'll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we're counting on your unique voice and perspective to help EY become even better, too. Join us and build ...


  • Supro info Solution Delhi, India

    **Job Overview**: · **[URGENT SAP SECURITY AND GRC REQUIREMENT IN DELHI]** · **Years**: 5+ · **Location** : Delhi · **Required Skills**: · - Design and deploy GRC reporting based on business requirements · - Responsible for Technical Design, Development, Testing, Implementation a ...

  • Anlage Infotech India Pvt Ltd

    SAP Grc Security

    1 week ago


    Anlage Infotech India Pvt Ltd Delhi, India

    Hi, · Experience 5 years · Location Delhi · Skill SAP GRC Security and IDM · To MNC Client · **Salary**: Up to ₹2,500,000.00 per year · Ability to commute/relocate: · - Delhi, Delhi: Reliably commute or planning to relocate before starting work (required) · **Education**: · - Bac ...


  • Adobe noida, India

    Our Company · Changing the world through digital experiences is what Adobe's all about. We give everyone—from emerging artists to global brands—everything they need to design and deliver exceptional digital experiences We're passionate about empowering people to create beautiful ...


  • Marken Delhi, India

    · Job Title: · Information Security GRC AnalystMain Purpose: · The Information Security (InfoSec) Analyst serves as a trusted advisor when assessing internal systems and controls, and is a key point of contact with external examiners. Identifies and verifies risks to systems and ...


  • EY Noida, India

    At EY, you'll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we're counting on your unique voice and perspective to help EY become even better, too. Join us and build ...


  • Avensys Consulting Delhi, India

    Avensys is a reputed global IT professional services company headquartered in Singapore. Our service spectrum includes enterprise solution consulting, business intelligence, business process automation and managed services. Given our decade of success we have evolved to become on ...


  • Avensys Consulting delhi, India

    Avensys is a reputed global IT professional services company headquartered in Singapore. Our service spectrum includes enterprise solution consulting, business intelligence, business process automation and managed services. Given our decade of success we have evolved to become on ...


  • Marken Delhi, India

    · Job Title:Information Systems AuditorLocation:PuneM · ain Purpose:The Information Systems (IS) Auditor serves as a trusted advisor when assessing internal systems and controls, and is a key point of contact with external examiners. Identifies and verifies risks to systems and ...


  • Tech Mahindra new delhi, India

    6-8 years of experience in SAP Security/GRCShould have experience in security of SAP ECC, S4HANA, HR, GRC, B4HANA )SAP Security support for all SAP environmentsExperience in GRC access control, ARA (Access Risk Analysis) and SOD (segregation of duty), mitigation and remediation.D ...


  • Adobe Noida, India Full time

    JOB LEVEL · P30EMPLOYEE ROLE · Individual Contributor1. Contribute under the supervision and mentorship of the TechGRC Manager and drive technology compliance activities across Adobe products. · 2. Perform Information Security related assessments to cover domains like User Access ...

  • Boston Scientific Corporation

    Data Security

    3 weeks ago


    Boston Scientific Corporation Gurgaon, India

    **Data Security - P2**: · - Remote Eligible: Hybrid- Onsite Location(s): Gurgaon, HR, IN**Additional Locations**: India-New Delhi; India-Haryana, Gurgaon · **Diversity - Innovation - Caring - Global Collaboration - Winning Spirit - High Performance** · At Boston Scientific, we'll ...


  • Ameriprise Financial Gurugram, Haryana, India

    Participation in Ameriprise vendor risk and security audit process for all vendors which are under scope for VRA (Vendor Risk Assessment · **Responsibilities** · Scheduling VRA Calls with the Security Teams (Information Security, Physical Security and Business Continuity), Line o ...


  • Boston Scientific Corporation Gurugram, Haryana, India

    **Work mode**:Hybrid**Onsite Location(s)**:Gurgaon, HR, IN**Additional Locations**: India-Haryana, Gurgaon**Diversity - Innovation - Caring - Global Collaboration - Winning Spirit - High Performance** · - At Boston Scientific, we'll give you the opportunity to harness all that's ...

  • Insight Enterprises, Inc.

    Cybersecurity Auditor

    3 weeks ago


    Insight Enterprises, Inc. Gurgaon, India

    **Requisition Number**:92905** · Cybersecurity Auditor I · The Global GRC (Governance, Risk & Compliance) Group (G-GRC) is responsible for driving continuous improvements Globally aligning all compliance & audit efforts to improve overall compliance at Insight. The G-GRC aims to ...