Technology Risk Analyst

3 weeks ago


Pune, India Qualys Full time

The Technology Risk Analyst plays a crucial role in identifying, assessing, and mitigating technical risks within an organization. Has an understanding of Enterprise Risk Management practices in a technical environment. This professional is responsible for developing and implementing risk management strategies to safeguard technology assets, systems, and operations. Technology risk analyst provides guidance on information security processes, controls, and compliance, and information security risk management to key stakeholders. The role requires a combination of technical expertise, risk analysis skills, and the ability to collaborate with cross-functional teams to ensure the effective management of technical risks.

Key Responsibilities:

Risk Identification:


  • Conduct comprehensive assessments of potential technical risks associated with the organization's systems, infrastructure, and technology projects.
  • Stay abreast of industry trends, emerging technologies, and potential vulnerabilities that may impact the organization's technical landscape.

Risk Assessment:


  • Evaluate the potential impact and likelihood of identified risks, considering both internal and external factors.
  • Work closely with technical teams to assess the security posture of systems and applications through vulnerability assessments and penetration testing.
  • The ability to articulate the business risks associated with technical vulnerabilities and risks.

Risk Mitigation Planning:


  • Develop and implement risk mitigation strategies and action plans to address identified technical risks.
  • Collaborate with IT teams to prioritize and implement security measures, controls, and safeguards to mitigate potential threats.

Incident Response and Management:


  • Establish and maintain an incident response plan to address technical incidents promptly and effectively.
  • Coordinate with relevant stakeholders to investigate and resolve technical security incidents, ensuring lessons learned are incorporated into future risk management strategies.

Compliance and Standards:


  • Ensure that the organization complies with relevant regulatory requirements and industry standards related to technical risk management.
  • Stay informed about changes in regulations and standards, adjusting risk management processes accordingly.
  • Facilitate deployment and maintenance of Technology risk and controls model with assigned Technology teams using globally known and industry standard models (e.g., COBIT5, OCTAVE, FAIR, NIST, ISO) as references.
  • Manage and provide leadership on all key information security processes and procedures.

Communication and Reporting:


  • Communicate technical risk information to both technical and non-technical stakeholders, including executives and board members.
  • Provide regular reports on the status of technical risks, mitigation efforts, and key performance indicators to demonstrate the effectiveness of risk management strategies.
  • Direct the activities of project managers and project teams to ensure quality and timeliness of project completion.
  • Development of project business cases, charters, plans and execution approach.
  • Proven strong stakeholder engagement and management capabilities.

Training and Awareness:


  • Develop and deliver training programs to enhance the awareness and understanding of technical risks among employees.
  • Foster a culture of security awareness and responsibility throughout the organization.

Vendor Risk Management:


  • Evaluate and manage risks associated with third-party vendors and partners, ensuring they meet the organization's security standards.

Act as the change agent in the identification and execution of initiatives:


  • Develop and implement strategies to protect the company’s cyber security. Including firewalls, security software, data encryption tools, safety protocols, etc.

Qualifications:


  • Total work experience of 6+ years with a minimum of 3 years in relevant field of work.
  • Bachelor's or Master's degree in Computer Science, Information Security, Risk Management, System Resiliency & Availability & Software development practices and frameworks, Products and operations, Access and identity management, application security, assurance programs, or a related field.
  • Proven experience in technical risk management, information security, or a related role.
  • Industry Relevant Certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Auditor (CISA), Certified Information Security Manager (CISM), Certificate of Cloud Security Knowledge (CCSK), CPA, CIA, AWS, CIPP, CBCP, CRM or equivalent are highly desirable.
  • Strong understanding of technology, information security principles, and risk management frameworks.
  • Excellent analytical, communication, and interpersonal skills.
  • Ability to work collaboratively with cross-functional teams and stakeholders.
  • Knowledge of widely known Enterprise Architecture frameworks like TOGAF, SABSA, etc..
  • Project Management Certification (PRINCE II, PMP, Agile or otherwise) and be an outcome focussed self-starter.
  • Current knowledge of best practice IT controls, risk management techniques, ISO27001, SOC1/2/3 SSAE18, CSA Star (CCM), PCI DSS and familiarity with GRC tools.
  • Hands-on product experience on Qualys Enterprise Tru-Risk Platform and similar leading security automation products with broad market presence shall be added advantage.



  • pune, India Qualys Full time

    Come work at a place where innovation and teamwork come together to support the most exciting missions in the world! Job Summary: The Technology Risk Analyst plays a crucial role in identifying, assessing, and mitigating technical risks within an organization. Has an understanding of Enterprise Risk Management practices in a technical environment. This...


  • Pune, India Qualys Full time

    Come work at a place where innovation and teamwork come together to support the most exciting missions in the world! Job Summary: The Technology Risk Analyst plays a crucial role in identifying, assessing, and mitigating technical risks within an organization. Has an understanding of Enterprise Risk Management practices in a technical environment. This...


  • Pune, India Qualys Full time

    The Technology Risk Analyst plays a crucial role in identifying, assessing, and mitigating technical risks within an organization. Has an understanding of Enterprise Risk Management practices in a technical environment. This professional is responsible for developing and implementing risk management strategies to safeguard technology assets, systems, and...


  • Pune, India Qualys Full time

    The Technology Risk Analyst plays a crucial role in identifying, assessing, and mitigating technical risks within an organization. Has an understanding of Enterprise Risk Management practices in a technical environment. This professional is responsible for developing and implementing risk management strategies to safeguard technology assets, systems, and...


  • Pune, India Qualys Full time

    The Technology Risk Analyst plays a crucial role in identifying, assessing, and mitigating technical risks within an organization. Has an understanding of Enterprise Risk Management practices in a technical environment. This professional is responsible for developing and implementing risk management strategies to safeguard technology assets, systems, and...

  • IT Risk Analyst

    3 weeks ago


    pune, India Community Brands Full time

    Overview We are seeking a IT Risk Analyst to join our growing team! About Us Community Brands provides a connected network of solutions that enable mission-driven organizations to thrive. Our software powers non-profits, associations, and K-12 schools to engage the people they serve through programs and events, raise funds to enable their...

  • IT Risk Analyst

    4 weeks ago


    Pune, India Community Brands Full time

    Overview We are seeking a IT Risk Analyst to join our growing team! About Us Community Brands provides a connected network of solutions that enable mission-driven organizations to thrive. Our software powers non-profits, associations, and K-12 schools to engage the people they serve through programs and events, raise funds to enable their mission,...

  • Risk Assessment

    4 weeks ago


    pune, India bluCognition Full time

    Analyst / Sr. Analyst – Risk AssessmentbluCognition is an AI/ML based start-up specializing in developing data products leveraging alternative data sources and providing servicing support to our clients in the financial & telecom sector. Founded in 2017, by some very named senior professionals from the financial services industry, the company is...


  • Pune, India bluCognition Full time

    Analyst- Credit Risk UnderwriterAbout bluCognition:bluCognition is an AI/ML based start-up specializing in risk analytics, data conversion and data enrichment capabilities. Founded in 2017, by some very named senior professionals from the financial services industry, the company is headquartered in the US, with the delivery centre based in Pune.We build all...

  • Senior Analyst

    6 days ago


    Pune, India dentsu Full time

    The purpose of this role is to work as part of a global team to deliver and maintain a security governance and risk programme supporting certification initiatives, policy development, risk management and exception processes.Job Title:Senior Analyst - Security Governance & Risk Analyst - FuntionsJob Description:Job SpecificationJob Title: Security Governance...


  • pune, India CACI Ltd Full time

    About CACIHeadquartered in London, CACI Ltd is a wholly owned subsidiary of CACI International Inc., a publicly listed company on the NYSE with annual revenue in excess of US $6.2bn and employing approx. 22,000 people worldwide.CACI Ltd is an international data and technology consultancy with £154m turnover and 1100 employees. We are passionate, progressive...

  • Senior Analyst

    6 days ago


    pune, India dentsu Full time

    The purpose of this role is to work as part of a global team to deliver and maintain a security governance and risk programme supporting certification initiatives, policy development, risk management and exception processes. Job Title: Senior Analyst - Security Governance & Risk Analyst - Funtions Job Description: Job Specification Job Title ...

  • Senior Analyst

    7 days ago


    Pune, India dentsu Full time

    The purpose of this role is to work as part of a global team to deliver and maintain a security governance and risk programme supporting certification initiatives, policy development, risk management and exception processes. Job Title: Senior Analyst - Security Governance & Risk Analyst - Funtions Job Description: Job Specification Job Title :...


  • pune, India Deutsche Bank Full time

    Job Title : Quantitative Risk Analyst – Model ValidationLocation : Mumbai/Pune/BengaluruLevel: Associate/AVP/VPRole DescriptionDWS Group (DWS) is one of the world's leading asset managers with EUR 841bn of assets under management (as of 31 March 2023). Building on more than 60 years of experience, it has a reputation for excellence in Germany, Europe, the...

  • Risk Assessment

    4 weeks ago


    Pune, India bluCognition Full time

    Analyst / Sr. Analyst – Risk Assessment bluCognition is an AI/ML based start-up specializing in developing data products leveraging alternative data sources and providing servicing support to our clients in the financial & telecom sector. Founded in 2017, by some very named senior professionals from the financial services industry, the company is...


  • Pune, India CACI Ltd Full time

    About CACI Headquartered in London, CACI Ltd is a wholly owned subsidiary of CACI International Inc., a publicly listed company on the NYSE with annual revenue in excess of US $6.2bn and employing approx. 22,000 people worldwide. CACI Ltd is an international data and technology consultancy with £154m turnover and 1100 employees. We are passionate,...


  • Pune, India CACI Ltd Full time

    About CACI Headquartered in London, CACI Ltd is a wholly owned subsidiary of CACI International Inc., a publicly listed company on the NYSE with annual revenue in excess of US $6.2bn and employing approx. 22,000 people worldwide. CACI Ltd is an international data and technology consultancy with £154m turnover and 1100 employees. We are passionate,...


  • Pune, India F337 Deutsche India Private Limited, Pune Branch Full time

    DescriptionThe Technical Analyst for Client Journey Tribe will be responsible for all client facing digital channel applications. They will responsible for communicating technical specifications to business management while communicating with technical teams a business’s project needs. A Technical Analyst will be an important bridge between those whose...


  • Pune, India Deutsche Bank Full time

    Job Title : Quantitative Risk Analyst – Model Validation Location : Mumbai/Pune/Bengaluru Level: Associate/AVP/VP Role Description DWS Group (DWS) is one of the world's leading asset managers with EUR 841bn of assets under management (as of 31 March 2023). Building on more than 60 years of experience, it has a reputation for excellence in Germany,...


  • Pune, India bluCognition Full time

    Analyst- Credit Risk Underwriter About bluCognition: bluCognition is an AI/ML based start-up specializing in risk analytics, data conversion and data enrichment capabilities. Founded in 2017, by some very named senior professionals from the financial services industry, the company is headquartered in the US, with the delivery centre based in Pune.We build...