Program Manager – Security Operations, Compliance

Job not on LinkedIn

🔥 4 hours ago

🇮🇳 India – Remote

⏳ Contract/Temporary

🟡 Mid-level

🟠 Senior

🛡️ Security Operations

👻 Ghost score 12%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Anovia

Anovia

2 - 10 employees

🤖 Artificial Intelligence

🏢 Enterprise

☁️ SaaS

Artificial Intelligence • Enterprise • SaaS

Anovia is a company that designs, orchestrates, and deploys autonomous AI agents—both conversational and voice agents—to deliver enterprise automation services. Their platform focuses on orchestration and enterprise integration, connecting agents with CRM, ERP, ECM systems and APIs to automate workflows like scheduling, collections, and knowledge retrieval. Anovia offers pilots and production deployments (promising a working AI voice agent in 30 days) and emphasizes automation solutions that streamline decisions, workflows, and customer interactions for business users.

📋 Description

• Maintain and continue to develop Anovia's ISO/IEC 27001 Information Security Management System, including policies, procedures, controls, risks, objectives, evidence, and ongoing improvement activities • Support ISO 27001, SOC 2, HIPAA, and other security and compliance initiatives • Coordinate internal and external audit activities, including preparing evidence, scheduling and facilitating meetings, maintaining action items, and ensuring findings and resulting actions are addressed • Maintain the information asset inventory and data classification program, including assigning and tracking ownership • Support identity and access management activities, including provisioning and de-provisioning, access reviews, least-privilege requirements, and privileged access controls • Monitor and improve security tooling and processes, including Microsoft 365 security capabilities, Microsoft Defender, Intune, Entra ID, security monitoring, endpoint protection, and vulnerability management • Coordinate vulnerability identification, remediation tracking, and escalation of significant findings • Coordinate third-party and vendor security assessments, including security questionnaires and contract review support • Develop, maintain, and support adoption of information security policies, standards, and operating procedures • Coordinate security awareness training and phishing simulation programs • Support security incident response activities, including detection, containment, investigation, root-cause analysis, and post-incident reporting • Support business continuity and disaster recovery activities, including maintenance of recovery requirements, testing, and related evidence • Lead or coordinate technical and operational initiatives from initial scope through implementation, establishing plans, identifying dependencies and owners, coordinating stakeholders, tracking risks and issues, and driving work to completion • Serve as a primary point of contact for internal and external auditors and coordinate responses with relevant business and technical stakeholders

🎯 Requirements

• 4+ years of progressively responsible experience in information security, IT compliance, GRC, security operations, or a related field • Practical experience working with ISO/IEC 27001, SOC 2, or a comparable security and compliance framework • Meaningful participation in an audit or certification process, including policy development, control implementation, evidence collection, audit preparation, management meetings, action tracking, and remediation • Experience with GRC processes and tools, including risk and control management, evidence collection, compliance tracking, audit preparation, and remediation or corrective-action management • Working experience with the Microsoft 365 security environment, including Microsoft Defender, Intune, Entra ID, and related security and compliance capabilities • Ability to structure ambiguous technical or operational initiatives by defining scope, developing plans, coordinating stakeholders, managing dependencies and issues, and driving completion • Working knowledge of information security principles, risk management, access control, vulnerability management, incident response, and security awareness • Ability to work directly with auditors, technical teams, business stakeholders, vendors, and leadership • Strong organizational and communication skills, with the ability to manage multiple ongoing activities and follow through on commitments • Bachelor's degree in Information Security, Computer Science, IT, or a related field, or equivalent practical experience • Experience with HIPAA Security and Privacy Rule requirements or other healthcare security and privacy requirements • Experience with GRC platforms such as Secureframe, Vanta, Drata, or OneTrust • Experience with SIEM, EDR/endpoint protection, vulnerability scanners, or related security tooling beyond the Microsoft 365 environment • Experience with NIST CSF or other complementary security frameworks • Experience managing contractors or vendors during technical or security initiatives • Experience helping establish or improve security monitoring, NOC, SOC, or similar operational capabilities • Experience with business continuity and disaster recovery planning • Certifications are useful supporting evidence of knowledge, but are not a substitute for practical experience • Relevant certifications are preferred but not required, including ISO/IEC 27001 Lead Implementer or Lead Auditor, CISA, CISSP, and CISM

🏖️ Benefits

• Comprehensive Health Insurance policy • Employee Wellness Program with focus on mental health • Robust reward and recognition programs • Company incentive programs offered • Attractive leave policy: Holiday Leave, Maternity Leave, Paternity Leave, Birthday leave, Bereavement Leave and Paid Leave for personal time off • Ample growth and learning opportunities • Remote work opportunities • Focus on work/life balance • Immigration Program supporting immigration to Canada for eligible employees

Apply Now

Similar Jobs

🕒 August 20

Teamified

201 - 500

💼 Consulting

👥 HR Tech

🎯 Recruiter

Security Operations Engineer completing PCI DSS v4.0.1 compliance for a cloud-hosted payments platform. Implementing AWS controls, Wazuh monitoring, evidence, scanning, and assessment readiness.

🕒 April 22

Tech Minds Agency

1 - 10

💼 Consulting

📣 Marketing

🛍️ eCommerce

SecOps Engineer securing complex applications and infrastructure. Focusing on vulnerability detection, secure code review, and proactive remediation in a dynamic, security-driven environment.