Lead-Governance Risk and Compliance

2 weeks ago


Mumbai, India NAYARA Energy Full time
  • DUTIES & RESPONSIBILITIES

AREAS

ACTIVITIES

1

2

3

4

5

6

7

LEADERSHIP

GOVERNANCE

RISK ASSESSMENT

SUPPLY CHAIN RISK MANAGEMENT

AWARENESS & TRAINING

POLICY COMPLIANCE

MISCELLANEOUS

  • Perform other duties as assigned to ensure the smooth functioning of the department.
  • Recommend programmatic and technical inputs and operate with a high degree of independence in matters relating to the investigation, impact, and analysis of security incidents, decisions regarding risk, and measures for computer and network security.
  • Operate with a high degree of independence with regard to project management activities, including development of project plans and resource estimates.
    Understand, assist and co-ordinate for legal and regulatory requirements regarding cybersecurity, including privacy and civil liberties obligations

  • Develop and share Weekly, Monthly and Yearly reports with Head – Information Security, showcasing status and posture of Information Security Program at Nayara Energy

  • Develop and maintain Information Security Online Dashboard for Information Security
  • Develop & implement Information Security Metrics Program for continuous monitoring and assessing the effectiveness of Information Security controls
  • Co-ordinate with relevant functions to collect required data for the Information Security Metrics Program
  • Assist Head Information Security to design, implement, and maintain Nayara's cybersecurity plan and Information Security Program.
    Assist Head Information Security for other governance activities.

  • Identify and document asset vulnerabilities and threats (internal and external).

  • Receive cyber threat intelligence from information sharing forums and sources.
  • Identify potential business impacts and likelihoods.
  • Use threats, vulnerabilities, likelihoods, and impacts to determine risk.
  • Identify and prioritize risk responses.
  • Suggest risk mitigations & IT controls and ensuring information security best practices are designed, implemented and monitored.
  • Co-ordinate for Risk Assessment of Business Function's IT systems
    Benchmark and compare security practices with the industry. Demonstrate knowledge, Implementation, operations and maintenance of information security standards and frameworks like NIST Cyber Security Framework, ISO/IEC 27001, COBIT, ITIL, etc. as applicable.

  • Develop & Implement Information/Cyber Security Supply Chain Risk Management framework

  • Assist Head Information Security to ensure organizational stakeholders identify, establish, assess, manage, & agree to cyber supply chain risk management processes.
  • Use contracts with suppliers and third-party partners to implement appropriate measures designed to meet the objectives of an organization's cybersecurity program and Information / Cyber Security Supply Chain Risk Management Framework.
  • Routinely assess suppliers and third-party partners using audits, test results, or other forms of evaluations to confirm they are meeting their contractual obligations.
    Conduct response, recovery planning and testing with suppliers and third-party providers.

  • Develop content for Information Security refresher awareness training and New Joiner induction program

  • Assist Head Information Security to ensure all users are informed and trained.
    Assist Head Information Security to ensure privileged users, senior executives, third-party stakeholders, physical and cybersecurity personnel understand their roles and responsibilities.

  • Lead the system-wide information security compliance program, ensuring IT activities, processes, and procedures meet defined requirements, policies and regulations.

  • Develop and implement effective and reasonable policies and practices to secure protected and sensitive data and ensure information security and compliance with relevant legislation and legal interpretation.
    Execute strategy for dealing with increasing number of audits, compliance checks and external assessment processes for internal/external auditors based on NIST Cyber Security Framework

  • Assist with forensics, analysis and fact gathering.

  • Record and track Information security incidents, including but not limited to copyright violations, compromised accounts, e-mail threats, and abuse reports from various sources.


  • Mumbai, India Risk Inn Full time

    Apply Now:Join a top-tier firm and contribute to high-impact projects in a rapidly evolving risk and analytics landscape. Please Read the Job Description and apply if you fulfil the criteria. Click this link to submit your application after reviewing the details below: We are currently supporting our client in India, a leadingRisk Analytics and Consulting...


  • Mumbai, Maharashtra, India Risk Inn Full time ₹ 6,00,000 - ₹ 18,00,000 per year

    Apply Now:Join a top-tier firm and contribute to high-impact projects in a rapidly evolving risk and analytics landscape. Please Read the Job Description and apply if you fulfil the criteria. Click this link to submit your application after reviewing the details below: We are currently supporting our client in India, a leadingRisk Analytics and Consulting...


  • Mumbai, India Acme Services Full time

    **Roles and Responsibilities** - Are you an experienced lead information security auditor? Have you authored policies? Have you worked as a - consultant before? - We are looking for the right person with lead auditing experience to join our team as a GRC (Governance, Risk - Management and Compliance) Consultant to work in a collaborative fashion with our...


  • Mumbai, India Nayara Energy Full time

    Job Description DUTIES & RESPONSIBILITIES AREASACTIVITIES1234567LEADERSHIPGOVERNANCERISK ASSESSMENTSUPPLY CHAIN RISK MANAGEMENTAWARENESS & TRAININGPOLICY COMPLIANCEMISCELLANEOUS Perform other duties as assigned to ensure the smooth functioning of the department. Recommend programmatic and technical inputs and operate with a high degree of independence in...


  • Mumbai, Maharashtra, India Indusind Bank Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Role & responsibilitiesCompliance Oversight: Ensure that all IT operations, systems, and processes adhere to relevant regulatory requirements, including RBI/SEBI guidelines, and cybersecurity standards.Regulatory Reporting: Strong knowledge in KRI, Public Facing App & DB, Tranche reporting.End to end management of Regulatory submissions: Assign, co-ordinate...


  • Mumbai, Maharashtra, India Avenue Supermarts Ltd - DMart Full time

    EDUCATIONAL QUALIFICATION:- Bachelors Degree or equivalent in IT or security related field from an accredited university.- Holding at least one security certification is preferableKEY SKILLS AND EXPERIENCE:- Experience in related industry with insight and understanding of IT policies, standards and procedures- Thorough Knowledge and understanding of IT Risk,...


  • Chennai, Mumbai, Pune, India Hexaware Technologies Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    Key Responsibilities:Plan and conduct regular Fraud Risk Assessment and assess risks to determine the Fraud Risk ProfileIdentify the potential Fraud risks and suggest appropriate controls for the sameEvaluate outcomes using risk based approach and adapt activities to improve FRMFollow the Fraud reporting process and coordinated approach to investigation and...


  • Navi Mumbai, India Mizuho Full time

    Mizuho Global Services Pvt Ltd (MGS) is a subsidiary company of Mizuho Bank, Ltd, which is one of the largest banks or so called ‘Mega Banks’ of Japan. MGS was established in the year 2020 as part of Mizuho’s long-term strategy of creating a captive global processing center for remotely handling banking and IT related operations of Mizuho Bank’s...


  • Navi Mumbai, Maharashtra, India Hexaware Technologies Full time ₹ 1,20,000 - ₹ 3,00,000 per year

    Key Responsibilities:Plan and conduct regular Fraud Risk Assessment and assess risks to determine the Fraud Risk ProfileIdentify the potential Fraud risks and suggest appropriate controls for the sameEvaluate outcomes using risk based approach and adapt activities to improve FRMFollow the Fraud reporting process and coordinated approach to investigation and...


  • Mumbai, India AQM Technologies Full time

    We are hiring at AQM Technologies Pvt. Ltd! We are seeking a skilled Tester s with Risk and Compliances with 2-7 years of experience The ideal candidate will be based at Chennai location – Work from office mode. Job Description: Job Title: Engineers / Senior Test Engineers - Risk and Compliances Location: Mumbai ( Work From Office) Experience: 4+...