Cyber Risk Assessment/GRC- Lead Consultant

3 days ago


Pune, India Allstate Benefits Full time
Job Description

We have an opportunity for someone having experience in performing Security Risk Assessments to join the Information Security department as a Cyber Risk Security Assessor in the Allstate Technology & Strategic Ventures (ATSV). The Cyber Risk Assessor will be responsible for supporting the company’s efforts to identify, assess and evaluate security risks through business-as-usual cyclical assessments and ad hoc consultations. This individual will be a key contributor managing operational activities to reduce risks to business goals in close consultation with other Information Security, ATSV and business partners. The analyst needs to understand information security best practices, risk assessment methodologies, and working across multi-functional teams.

Job Responsibilities

Conducts risk assessment at the network, systems, platforms and application level.Involved in addressing and providing guidance on wide range of security issues including architectures, platforms including Public Cloud, electronic data traffic, and network access.Driving the company’s efforts to proactively identify, assess, and communicate the company’s information security risks to leadership and board.Ensure compliance with security policies and standards.Deep understanding of Cyber programs such as Threat Management, Secure SDLC, Security Architecture, Network and Data Protection.Work in close partnership with internal information security and business representatives to scope assessments, gather documentation, interview clients, identify risks, document findings, and ensure transparent management of risks by following a structured risk assessment methodologyWorks independently to lead and complete high quality threat-based risk assessments across a diverse set of technologies, business functions, and platforms.This position will also proactively drive process improvements, overcome barriers to success, build professional relationships across the company, brief senior leaders, and mentor others.​​​

Primary Skills

The successful candidate will be required to collaborate across security/IT teams and business partners to assess and report risk ratings of assets/technologies/platforms/cloud which have impact on enterprise and identify process improvement areas. A broad range of professional skills, along with strong interpersonal skills, will be required for problem-solving and collaboration with virtual cross-functional work groups. This resource is expected to serve as a subject matter expert and trusted advisorthat can clearly articulate Allstate security policies, standards and risks to assets to both technical and business audiences alike.

Experience

Experience with information security risk management framework, assessment, audit and controls based on industry standard frameworks (i.e. NIST CSF; ISO; HiTrust, FAIR)Experience with regulatory requirements (i.e. PCI; GDPR; HIPPA; CCPA; etc.)Experience using/knowhow of various tools and technologies in support of the assessment/audit process (RSA Archer, Qualys, Bitsight, etc.)Experience gathering information from a range of different sources to help identify weaknesses in security controlsExpert with security control design, development, implementation, and monitoringMinimum of 6-8 years of IT experience in either an infrastructure or development background with proficiency in Cyber Risk Assessments.

Shift Timing

1PM - 9:30 PM

  • Pune, Maharashtra, India Allstate Benefits Full time

    Job DescriptionWe have an opportunity for someone having experience in performing Security Risk Assessments to join the Information Security department as a Cyber Risk Security Assessor in the Allstate Technology & Strategic Ventures (ATSV). The Cyber Risk Assessor will be responsible for supporting the company's efforts to identify, assess and evaluate...


  • Pune, Maharashtra, India Allstate Benefits Full time

    Job Description We have an opportunity for someone having experience in performing Security Risk Assessments to join the Information Security department as a Cyber Risk Security Assessor in the Allstate Technology & Strategic Ventures (ATSV). The Cyber Risk Assessor will be responsible for supporting the company's efforts to identify, assess and evaluate...


  • Pune, India Allstate Benefits Full time

    Job DescriptionWe have an opportunity for someone having experience in performing Security Risk Assessments to join the Information Security department as a Cyber Risk Security Assessor in the Allstate Technology & Strategic Ventures (ATSV). The Cyber Risk Assessor will be responsible for supporting the company’s efforts to identify, assess and evaluate...


  • pune, India Allstate Benefits Full time

    Job Description We have an opportunity for someone having experience in performing Security Risk Assessments to join the Information Security department as a Cyber Risk Security Assessor in the Allstate Technology & Strategic Ventures (ATSV). The Cyber Risk Assessor will be responsible for supporting the company’s efforts to identify, assess and...


  • Pune, India Northern Trust Corporation Full time

    Description Northern Trust Technology Risk & Control function is responsible for enabling Global Information Technology to build a strong 1st Line of Defense, foster a control aware culture, deliver compliant and secure technology capabilities, protect customers and meet regulatory requirements. The Principal cybersecurity risk and control officer...


  • pune, India Northern Trust Corporation Full time

    Description Northern Trust Technology Risk & Control function is responsible for enabling Global Information Technology to build a strong 1st Line of Defense, foster a control aware culture, deliver compliant and secure technology capabilities, protect customers and meet regulatory requirements. The Principal cybersecurity risk and control...


  • Pune, Maharashtra, India Northern Trust Corporation Full time

    Description Northern Trust Technology Risk & Control function is responsible for enabling Global Information Technology to build a strong 1st Line of Defense, foster a control aware culture, deliver compliant and secure technology capabilities, protect customers and meet regulatory requirements. The Principal cybersecurity risk and control officer is...


  • pune, India Northern Trust Corporation Full time

    Description Northern Trust Technology Risk & Control function is responsible for enabling Global Information Technology to build a strong 1st Line of Defense, foster a control aware culture, deliver compliant and secure technology capabilities, protect customers and meet regulatory requirements. The Principal cybersecurity risk and control...


  • Pune, India Northern Trust Corporation Full time

    Description Northern Trust Technology Risk & Control function is responsible for enabling Global Information Technology to build a strong 1st Line of Defense, foster a control aware culture, deliver compliant and secure technology capabilities, protect customers and meet regulatory requirements. The Principal cybersecurity risk and control officer...

  • Principal- IT Risk

    2 weeks ago


    Pune, Maharashtra, India Northern Trust Full time

    Northern Trust, a Fortune 500 company, is a globally recognized, award-winning financial institution that has been in continuous operation since 1889. Northern Trust is proud to provide innovative financial services and guidance to the world's most successful individuals, families, and institutions by remaining true to our enduring principles of service,...

  • SAP GRC Consultant

    4 days ago


    Pune, India Neer Info Full time

    Project Role : Application Lead. Project Role Description : Lead the effort to design, build and configure applications, acting as the primary point of contact. Must have skills : SAP Governance Risk and Compliance (SAP GRC). Good to have skills : SAP BASIS Administration, SAP Monitoring & Tools. Minimum 5 year(s) of experience is required. Educational...

  • SAP GRC Consultant

    4 days ago


    pune, India Neer Info Full time

    Project Role : Application Lead. Project Role Description : Lead the effort to design, build and configure applications, acting as the primary point of contact. Must have skills : SAP Governance Risk and Compliance (SAP GRC). Good to have skills : SAP BASIS Administration, SAP Monitoring & Tools. Minimum 5 year(s) of experience is required. Educational...


  • Pune, India Yash Technologies Full time

    Date: Apr 1, 2023- Job Requisition Id: 52321- Job Category: ERP- Location: Pune, INOur SAP Service Line is currently looking for industry-leading seasoned **SAP Security/GRC professionals** with hands-on experience. You are required to have skills in the following areas: - Perform outside research to develop expertise in SAP GRC security functionality and...


  • Pune, Maharashtra, India Northern Trust Corp. Full time

    About Northern Trust: Northern Trust, a Fortune 500 company, is a globally recognized, award-winning financial institution that has been in continuous operation since 1889. Northern Trust is proud to provide innovative financial services and guidance to the world’s most successful individuals, families, and institutions by remaining true to our enduring...


  • Pune, Maharashtra, India Northern Trust Corp. Full time

    About Northern Trust:Northern Trust, a Fortune 500 company, is a globally recognized, award-winning financial institution that has been in continuous operation since 1889.Northern Trust is proud to provide innovative financial services and guidance to the world's most successful individuals, families, and institutions by remaining true to our enduring...

  • Cyber Manager

    1 month ago


    Pune, India Maersk Full time

    Are you passionate about risk management and cyber security? At Maersk risk is at the heart of our approach to cyber security. W​​e are responsible for ensuring that the Cyber Security risk to Maersk is understood and mitigated effectively, enabling Maersk to deliver on its business outcomes safely and securely. Our Cyber Security Risk Managers work in...

  • GRC Fusion

    2 weeks ago


    Pune, Maharashtra, India Stratacent Full time

    As a GRC Fusion Business Analyst, you will be responsible for leading the analysis, design, and implementation of Governance, Risk, and Compliance (GRC) solutions using Oracle GRC Fusion applications. You will collaborate closely with stakeholders across various departments to understand their business needs and translate them into functional requirements...

  • Governance Risk

    6 days ago


    Pune, Maharashtra, India Barclays Full time

    Job Title: Governance Risk & Control Location: Pune About Barclays Barclays is a British universal bank. We are diversified by business, by different types of customers and clients, and by geography. Our businesses include consumer banking and payments operations around the world, as well as a top-tier, full service, global corporate and investment bank,...


  • Pune, India Northern Trust Corporation Full time

    DescriptionNorthern Trust Technology Risk & Control function is responsible for enabling Global Information Technology to build a strong 1st Line of Defense, foster a control aware culture, deliver compliant and secure technology capabilities, protect customers and meet regulatory requirements. The Principal cybersecurity risk and control officer is part...


  • Pune, Maharashtra, India Teqfocus Full time

    Title: SAP GRC Implementation ConsultantExperience: 12+ years Location : Pune/Gurugram/Chennai/Hyderabad/Mumbai/Bangalore (WFO : 3 days/week)Requirements : Responsible for design, Control, and Audit of all the IT Controls.Experience in implementation of GRC Access ControlReview and creation of SOD rule book for connected target applicationsConfiguration of...