Sr Consultant - Information Security at Emeritus

Remote - India

Apply Now

Applications are now closed

Get more jobs like this straight to your inbox

Emeritus is committed to teaching the skills of the future by making high-quality education accessible and affordable to individuals, companies, and governments around the world. It does this by collaborating with more than 50 top-tier universities across the United States, Europe, Latin America, Southeast Asia, India and China. Emeritus’ short courses, degree programs, professional certificates, and senior executive programs help individuals learn new skills and transform their lives, companies and organizations. Its unique model of state-of-the-art technology, curriculum innovation, and hands-on instruction from senior faculty, mentors and coaches has educated more than 250,000 individuals across 80+ countries. Founded in 2015, Emeritus, part of Eruditus Group, has more than 2,000 employees globally and offices in Mumbai, New Delhi, Shanghai, Singapore, Palo Alto, Mexico City, New York, Boston, London, and Dubai. Following its $650 million Series E funding round in August 2021, the Company is valued at $3.2 billion, and is backed by Accel, SoftBank Vision Fund 2, the Chan Zuckerberg Initiative, Leeds Illuminate, Prosus Ventures, Sequoia Capital India, and Bertelsmann.

Role & Responsibilities:

    • Build, deploy, maintain, and enforce information security risk management standards, policies, and procedures to maintain and enhance the compliance posture within RapidAPI
    • Work along with the Sr. Associate Director & Infosec Head for the customer, partner, and vendor InfoSec audits and risk assessments, communicate results to information security stakeholders or business partners, and ensure remediation of outstanding issues
    • Perform internal risk assessments and analysis to identify opportunities to improve risk posture, and develop solutions for remediating or mitigating risks and assessing residual risk
    • Anticipate new security threats and stay up to date with the evolving industry, regulatory, and legal requirements relevant to security, compliance, and privacy
    • Monitor security vulnerabilities, threats, and events in network and host systems
    • Develop strategies to handle security incidents and coordinate investigative activities to promote a culture of information security throughout the organization, providing subject matter expertise, guidance, and training
    • Prepare financial forecasts for security operations and proper maintenance cover for security assets
    • Prioritize security projects based on costs, benefits, resources, and alignment with business goals
    • Execute regular Information Security Audits to ensure compliance with existing Information Security policies and identify areas for improvement
    • Responsible for conducting regular VAPT tests over the on-premise as well as the cloud infra
    • Responsible for maintaining and creating information security processes and procedures

Key skills & qualifications:

    • 8-12years of experience with Information Security or related field
    • Strong knowledge of security risk management frameworks including related regulatory compliance requirements (e.g. NIST CSF & 800-53, ISO27001, SOC, HITRUST, HIPAA, FedRamp, PCI, GDPR)
    • Has led and built audit and InfoSec compliance frameworks
    • Demonstrated understanding of qualitative vs. quantitative risk management to determine, evaluate, and report on technology risk levels at the project and enterprise level
    • Strong oral and written communication skills with the ability to communicate complex concepts in simple terms for key stakeholders
    • Ability to manage security on cloud platforms like AWS, GCP & Azure
    • 5-7 years of experience in working with any leading SIEM tools like Splunk, Sumologic, Cloudflare Qradar, LogRhythm, ArcSight, etc.
    • Experience in other security applications in the areas of EDR, Proxy, DLP, IDS, IPS & endpoint security
    • Industry certification in IT Security preferred (e.g. CISSP, CISM, CISA, SANS)
    • Demonstrated experience working in a cloud IT environment and cloud product offerings with experience in driving SOC2 and NIST certifications for customer-facing environments
Emeritus provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.

Apply Now

Applications are now closed