Info Security Consultant II A

Posted Yesterday
Be an Early Applicant
2 Locations
In-Office
Senior level
Healthtech • HR Tech • Professional Services
The Role
Oversee remediation of information security findings from third-party assessments. Review evidence, validate security controls, evaluate risks, identify program gaps, coordinate with vendors and stakeholders, report progress, manage escalations, and drive findings to closure. Lead remediation assessors and resources while supporting risk management, compliance, audit, process improvement, and global security initiatives.
Summary Generated by Built In

Job Description:

About Us

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work and providing a culture of caring is core to how we drive Responsible Growth. We are intentional about fostering an inclusive workplace where every teammate has the opportunity to succeed, build a career and contribute to our shared success. This includes attracting and developing exceptional talent, recognizing and rewarding performance, and supporting our teammates’ physical, emotional, and financial wellness through affordable, competitive and flexible benefits.
We value the unique perspectives individuals bring from all backgrounds and career paths - whether shaped by military service, community college education, or a wide range of work and life experiences. These journeys foster resilience, leadership and innovation, strengthening our workforce and positively impact the communities we serve.
Bank of America is committed to an in-office culture that supports collaboration, engagement, and career development. Our approach includes clear in-office expectations, while providing an appropriate level of flexibility based on role-specific responsibilities and business needs.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!

Global Business Services

Global Business Services delivers Technology and Operations capabilities to Lines of Business and Staff Support Functions of Bank of America through a centrally managed, globally integrated delivery model and globally resilient operations.

Global Business Services is recognized for flawless execution, sound risk management, operational resiliency, operational excellence and innovation.

In India, we are present in five locations and operate as BA Continuum India Private Limited (BACI), a non-banking subsidiary of Bank of America Corporation and the operating company for India operations of Global Business Services.

Process Overview

The Global Information Security (GIS) is responsible for protecting Bank information systems, confidential and proprietary data, and customer information. The team develops the Bank’s Information Security strategy and policy, manages the Information Security program, identifies, and addresses vulnerabilities, Develops, deploys and manages a risk-based controls, portfolio, Manages and operates global security operations center that monitor, detect and respond to cybersecurity incidents.

Job Description

This role is responsible for overseeing the remediation of information security findings identified during third party assessments. The individual leads and provides guidance to the remediation assessors, ensuring consistent execution and timely resolution of identified risks throughout the remediation lifecycle.

Key responsibilities include supporting the remediation activities through reviewing evidence, validating the effectiveness of security controls, determining whether identified risks have been appropriately addressed, and driving findings to closure. The role also serves as a central point of coordination among third parties, business stakeholders, and internal partners, providing transparent reporting on remediation progress, managing escalations, and ensuring leadership is informed of significant risks, issues, and remediation outcomes.

Responsibilities

  • Manage relationships with third parties, vendor managers, and internal stakeholders
  • Plan, execute, and document remediation activities in accordance with established processes and procedures
  • Partner with third parties to address questions and support successful remediation of information security findings
  • Evaluate third-party information security risk through remediation reviews and activities
  • Identify and communicate gaps in third-party information security programs
  • Escalate remediation risks, issues, and security concerns to leadership
  • Support resource workload and planning to ensure effective execution of remediation activities
  • Work independently with minimal oversight and a strong willingness to learn
  • Demonstrate strong analytical, problem-solving, and critical-thinking skills
  • Collaborate effectively with global and virtual teams
  • Lead teams toward defined objectives and hold resources accountable for results

Requirements

Education: B.E. / B Tech / M.E. / M Tech / MCA / M.Sc.,

Certifications If Any: ISO 27001 LA, CISA, CISM, CISSP

Experience Range: 8 to 10 years             

Foundational Skills

  • Experience in Information Security Management
  • Experience in Governance, Risk & Compliance
  • Experience in internal or external audits
  • Experience in implementing or reviewing ISO 27001, PCI, SOX, etc., controls
  • Strong analytical and problem-solving skills
  • Excellent written/verbal communication skills
  • Risk Assessment & Remediation
  • Process Improvement & Execution
  • Global Collaboration
  • Independent Leadership
  • Leadership & Stakeholder Management

Desired Skills

  • Knowledge in Vulnerability Assessments and Application Architecture
  • Cloud Security
  • Knowledge of business continuity
  • Experience supporting regulatory & compliance
  • Understanding of Networking, Systems Admin, Cryptography, Access Management
  • Familiarity with threat-informed security assessments

Work Timings: 13:30 – 22:30 Hours

Job Location: Chennai, Mumbai

Skills Required

  • B.E., B.Tech, M.E., M.Tech, MCA, or M.Sc. degree
  • 8 to 10 years of experience in information security
  • Experience in information security management
  • Experience in governance, risk, and compliance
  • Experience with internal or external audits
  • Experience implementing or reviewing ISO 27001, PCI, or SOX controls
  • Strong analytical and problem-solving skills
  • Excellent written and verbal communication skills
  • Experience with risk assessment and remediation
  • Process improvement and execution experience
  • Global collaboration experience
  • Independent leadership and stakeholder management skills
  • ISO 27001 Lead Auditor, CISA, CISM, or CISSP certification
  • Knowledge of vulnerability assessments and application architecture
  • Cloud security knowledge
  • Knowledge of business continuity
  • Experience supporting regulatory and compliance activities
  • Understanding of networking, systems administration, cryptography, and access management
  • Familiarity with threat-informed security assessments
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Blue Bell, PA
1,496 Employees
Year Founded: 1993

What We Do

GHR Healthcare is a comprehensive healthcare staffing platform that connects healthcare professionals with facilities, providing nursing, allied, and healthcare IT staffing solutions.

Similar Jobs

GHR Healthcare Logo GHR Healthcare

Consultant

Healthtech • HR Tech • Professional Services
In-Office
2 Locations
1496 Employees
Remote or Hybrid
3 Locations
1100 Employees

CrowdStrike Logo CrowdStrike

Full-stack Engineer

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
India
11000 Employees

WHOOP Logo WHOOP

Marketplaces Lead, India

Fitness • Hardware • Healthtech • Sports • Wearables
Hybrid
Mumbai, Maharashtra, IND
500 Employees
100K-150K Annually

Similar Companies Hiring

Sailor Health Thumbnail
Healthtech • Social Impact • Telehealth
New York City, NY
20 Employees
Granted Thumbnail
Artificial Intelligence • Healthtech • Insurance • Mobile • Financial Services
New York, New York
23 Employees
OneImaging Thumbnail
Healthtech
Miami, FL
62 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account