Manager - Information Security
The opportunity
This opportunity is Worldline’s Merchant Services Business Line which is a major international player in end to-end Commercial Acquiring, Multichannel Payment Acceptance and Payment Terminal solutions. Merchant Services’ unique combination of payment, digital and transactional expertise allows merchants to boost sales and enhance the customer experience. We cover the full retail value chain, online and in-store, through a complete approach, delivering a real digital journey for retailers and their customers and facilitating consumer engagement, via seamless services, on any device – with payment at the heart of the shopping experience. This is Manager Information Security role where candidate needs to impart regulatory audits, risk professional skills to address and manage the organizations compliance and governance requirements of the organization.
Day-to-day responsibilities
- Understand data & information security needs of an organization.
- Responsible to formulate/maintain Information Security policies & guidelines based on industry best practices.
- Administers access and data/information security of critical/production systems
- Responsible to manage all security related equipments & standards
- Responsible for ensuring strong infosec procedures and documentation
- Would be responsible to conduct periodic internal security audits of internal data and network security controls to validate the effectiveness, identifying emerging risks and promote continuous improvement
- Would be responsible to manage all information security audits to be conducted by external customers, card schemes as needed.
- Responsible for devising & conducting periodic security awareness / training programs across the organization
- Monitoring and participate to the further development of the security risk management and internal risk control systems and processes.
Who are we looking for
- Qualification BE/B-Tech/M-Tech
- 4-6 Years of experience into Information Security role, preferrably into Auditing, Second line of defence.
- Should have experience working with technical operations teams on Systems & Networks security needs/solutions from infosec perspective
- Experience of working with the software development team on secure coding & other PCI SSF requirements and solutions
- Experience of carrying out detailed Information Security Audits in line with PCI DSS & PCI SSF, ISO 2K1 in a technology centric organization
- Should have successfully managed/implemented at-least 2 PCI-DSS, PA DSS/PCI SSF, PCI PIN, PCI P2PE & ISO 270001 projects
- Must have in-depth experience in implementation of latest PCI DSS & PA DSS/PCI SSF, PCI PIN, PCI P2PE and ISO 2K1 standards , PCI
- Should have excellent communication, interpersonal & leadership skills along with strong business acumen
- The candidate should posses the ability to perform and deliver under high pressure and strict deadlines
- Strong exposure preferably from banking / financial services - technology segment would be desirable