Lead- Risk IT

2 days ago


Bengaluru, India Société Générale Assurances Full time

Lead- Risk IT & Infosec Risks Permanent contract Bangalore, India Hybrid Reference 25000KDA Start date 2025/11/17 Publication date 2025/10/13 Responsibilities  For each assigned review you will report to Head of Technology Risk – RISQ CTL. You will be expected to: Assist/ Lead/manage the risk assessment, scoping and planning of a review. Assist/Lead/manage in presenting the scope, progress, and results of the review to internal stakeholders. Assist/ Lead/manage in executing the review. Specifically focusing on the following: Analyze the design of controls around the underlying system architecture in the context of information technology/information security controls and its impact on the business. Analyze the business and technology processes to evaluate the design and effectiveness of the relevant technology controls by designing and executing tests to validate identified system control features, which may require data analysis, code inspection and re-performance of system processes. Document the results of the test steps executed project repository as per the departmental guidelines and best practices. Assist/Lead/manage in vetting review observations/findings. Assist/Lead/manage in the report preparation Assist/Lead/manage in tracking, monitoring, and recording remediation of risks identified in reviews. Assist/manage the Continuous Monitoring of technology business units to pro-actively identify changes to the risk profile of the business units/service units. Profile required 3 to 6 years of relevant experience in technology audit, information/cyber security, technology consulting or other relevant industry experience.  Hands on experience in audit planning, execution, reporting, issue follow-up, risk assessment and annual planning exercise Well versed with auditing of typical technology controls, aware of generally used technology tools, and techniques across software development lifecycle, application security, cloud security, network security, data loss prevention techniques, security of cloud, IT asset management, identity and access management, BCP and DR. Experience of using, auditing, or understanding a combination of the following technologies is preferred: Cloud Computing, Cloud Security, CI/CD, Containerization. Security Operation Centre, SIEM Programming languages like C, C++, C#, Java, Perl etc Databases (Sybase, Oracle etc) System Architecture (Distributed/Messaging/Mainframe) Operating Systems (Linux etc) Infrastructure Controls (Networks, Voice, Backups, Storage, data centres etc) Experience in data analysis using Advanced Excel, Power BI, Alteryx or similar tools. At least one of the relevant certifications (CISA) or industry accreditations (CISSP, AWS, Azure, Google Cloud, CEH, CCNA). BE/B Tech/MCA/MBA/MS in Information Technology or Cyber Security or equivalent University degrees in technology Experience in managing audit engagements or information/cyber security or technology projects Strong interpersonal, written, and verbal communication skills as the job requires frequent interaction with technology and business management COMPETENCIES Functional Expertise - Keeps up to date with emerging technology, business, and market trends Technical Skills - Demonstrates strong technical skills required for the role, pays attention to detail, takes initiative to broaden his/her knowledge and demonstrates appropriate financial/analytical skills Audit Skills - knowledge of preparing, meeting minutes, walkthrough and overview documents, test sheets, risk control matrix, risk assessment, stakeholder management and preparing review reports. Drive and Motivation - Successfully handles multiple tasks, takes initiative to improve his/her own performance, works intensely towards extremely challenging goals and persists in the face of obstacles or setbacks Client and Business Focus - Effectively handles difficult requests, builds trusting, long-term relationships with clients, helps the client to identify/define needs and manages client/business expectations Teamwork – Gives evidence of being a strong team player, collaborates with others within and across teams, encourages other team members to participate and contribute and acknowledges others' contributions Communication Skills - Communicates what is relevant and important in a clear and concise manner and shares information/new ideas with others Judgement and Problem solving - Thinks ahead, anticipates questions, plans for contingencies, finds alternative solutions, and identifies clear objectives. Sees the big picture and effectively analyses complex issues Creativity/Innovation - Looks for new ways to improve current processes and develop creative solutions that are grounded and have practical value Influencing Outcomes - Presents sound, persuasive rationale for ideas or opinions. Takes a position on issues and influences others' opinions and presents persuasive recommendations Why join us “We are committed to creating a diverse environment and are proud to be an equal opportunity employer. All qualified applicants receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status”.



  • Bengaluru, India SMARTWORK IT SERVICES Full time

    Position : Cyber Security Lead Analyst Risk & ComplianceExperience : 9+ YearsLocation : BangaloreOpen Positions : 2Job Summary : We are seeking a highly experienced Cyber Security Lead Analyst with 9+ years of hands-on experience in risk management and compliance. The ideal candidate will be responsible for leading cybersecurity risk assessments within our...

  • Lead Risk Analyst

    2 weeks ago


    Bengaluru, Karnataka, India Chevron Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Lead a team of Risk Analysts and direct appropriate communications, measures, and actions to remediate cybersecurity risks as applicable to Business Units or Digital Platforms. Builds relationships with Risk Management Operations (RMO) and utilizes these relationships to ensure critical cyber security information reaches Business Units. Identifies and...


  • Bengaluru, India Techstar IT Services Full time

    From 4 to 9 year(s) of experience - Bangalore/Bengaluru**Roles and Responsibilities** **Greetings from TechStar!!** This is with regards to an excellent opportunity with us and if you have that unique and unlimited passion for building world-class enterprise software products that turn into actionable intelligence, then we have the right opportunity for...


  • Bengaluru, India MGC Global Risk Advisory Services LLP Full time

    CA qualified with 8 years of post-qualification experience in Risk Advisory - Develops a portfolio of business by focusing on high impact opportunities.- Builds valued relationships with clients & internal peers.- Responsible for executing client related engagements in the areas of governance, risk & compliance (GRC), internal audits, process reviews,...

  • Lead Risk Analyst

    2 weeks ago


    Bengaluru, Karnataka, India Chevron Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Total Number of Openings3About the position:Develop and maintain the cybersecurity strategy, policies, and risk management processes to ensure that the organization effectively secures Chevron's operations.Key responsibilities:Lead a team of Risk Analysts and direct appropriate communications, measures, and actions to remediate cybersecurity risks as...

  • Lead Risk Analyst

    2 weeks ago


    Bengaluru, Karnataka, India Chevron Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    Total Number of Openings1About the position:Develop and maintain the OT cybersecurity strategy, policies, and risk management processes to ensure that the organization effectively secures Chevron's operations.Key responsibilities:Lead a team of Risk Analysts and direct appropriate communications, measures, and actions to remediate OT cybersecurity risks as...


  • Bengaluru, India The Nielsen Company Full time

    The Cybersecurity Lead Risk Analyst will be a member of the Global Cybersecurity department reporting to the Security Performance Management team and is primarily responsible for assisting with the execution of internal and third party risk analysis and assessments related to our business units. This may include mergers and acquisitions, joint ventures and...


  • Bengaluru, India Grant Thornton INDUS Full time

    Summary:The Controls Advisory delivers all project and engagement management phases for multiple clients in various industries. Responsibilities include executing business processes, IT control reviews, and activities related to Sarbanes-Oxley 404 and internal audit control projects.Responsibilities:Manage a portfolio of engagements, by leading a team of...

  • Lead Risk Analyst

    2 weeks ago


    Bengaluru, India Chevron Full time

    About the position:Develop and maintain the OT cybersecurity strategy, policies, and risk management processes to ensure that the organization effectively secures Chevron's operations.Key responsibilities:Lead a team of Risk Analysts and direct appropriate communications, measures, and actions to remediate OT cybersecurity risks as applicable to Business...


  • Bengaluru, India Astellas Pharma Inc. Full time

    Responsibilities and Accountabilities: Complete Objectives and Key Results (OKR) as established by value teams, ensuring alignment with overall business goals. Ensure risk assessment methodology, policies, standards and methods are in place to effectively manage regulatory, operational, and third-party risks across global business units. Establish third...