Current jobs related to Head of Information security 3rd party risk management and assessments - Mumbai, Maharashtra - myGwork


  • Mumbai, Maharashtra, India WILLIS TOWERS WATSON Full time

    Role Leading and coordinating the completion of Third-party assessment requests against WTW best practice and global standards and controls Scheduling periodical re-assessment in line with standards and controls Agree scheduled checkpoints with the Third Party and WTW Service Owner on evidencing remediations and maintaining central repository these...


  • Mumbai, Maharashtra, India Uniqus Consultech Inc. Full time

    We are seeking a seasoned IT GRC professional to join our team at Uniqus Consultech Inc. as an Information Security Risk Manager.About UsUniqus Consultech Inc. is a global tech-enabled consulting company that specializes in Accounting & Reporting, ESG, and Technology Consulting.Our TeamWe have a global team of over 400 professionals led by 50+ Partners &...


  • Mumbai, Maharashtra, India ShieldByte Infosec Pvt. Ltd. Full time

    Role Summary:We are seeking a highly skilled Information Security Specialist to join our team at ShieldByte Infosec Pvt. Ltd. The ideal candidate will have hands-on experience with ISO 27001, SOC 2, NIST, and other regulatory frameworks.Responsibilities:Risk assessment and management: Conduct regular risk assessments, identify vulnerabilities, and provide...


  • Navi Mumbai, Maharashtra, India Contactx Resource Management Pvt Ltd Full time

    strategies for the longer term.Role detail :- 4 to 8 years of experience in assurance, information security, vendor/ supplier/ third party risk assessment- Expertise in IT internal audit, Information Security/cybersecurity, IT SOX, Third Part- Risk Assessment Reporting e.g., SOC1, SOC 2.- Relevant expertise on CSA STAR requirements, ISO control, NIST...


  • Mumbai, Maharashtra, India Aptia Group Full time

    Job Summary:We are seeking a highly skilled and experienced Third-Party Risk Deputy-Manager to manage processes across the UK and US businesses.The successful candidate will be responsible for managing the risks associated with engaging clients, third-party vendors, suppliers, contractors, and service providers. They will play a key role in ensuring the...


  • Mumbai, Maharashtra, India Aptia Group Full time

    Job Summary:We are seeking a highly skilled and experienced Third-Party Risk Deputy-Manager to manage processes across the UK and US businesses. The successful candidate will be responsible for managing the risks associated with engaging clients, third-party vendors, suppliers, contractors, and service providers. They will play a key role in ensuring the...


  • Mumbai, Maharashtra, India Sapphire Management Consultancy Full time

    Role SummaryWe are seeking a highly skilled Senior Information Security Resource to join our team at Sapphire Management Consultancy. This individual will be responsible for reviewing and enhancing existing security controls, conducting risk assessments, and developing security performance indicators.Key AccountabilitiesReview and enhance the effectiveness...

  • Manager - IT Risk

    2 days ago


    Mumbai, Maharashtra, India Sapphire Management Consultancy Full time

    Job Description : Requirement : Currently, the team is experiencing increased workload due to the expanding threat landscape and the emergence of new compliance requirements driven by the evolving sophistication of cybercriminal activities. As a result, the team is unable to effectively focus on the following key areas : Review of Security Solutions : -...


  • Mumbai, Maharashtra, India Aptia Group Full time

    Job SummaryWe are seeking a highly skilled and experienced Third-Party Risk Deputy Manager to manage processes across the UK and US businesses.The successful candidate will be responsible for managing the risks associated with engaging clients, third-party vendors, suppliers, contractors, and service providers. They will play a key role in ensuring the...

  • Manager - IT Risk

    3 weeks ago


    Mumbai, Maharashtra, India Sapphire Management Consultancy Full time

    Job Description :Requirement :Currently, the team is experiencing increased workload due to the expanding threat landscape and the emergence of new compliance requirements driven by the evolving sophistication of cybercriminal activities. As a result, the team is unable to effectively focus on the following key areas :Review of Security Solutions : -...


  • Navi Mumbai, Maharashtra, India Contactx Resource Management Pvt Ltd Full time

    Job Description:We are seeking a highly skilled Risk Management Expert to join our team at Contactx Resource Management Pvt Ltd. As a Risk Management Expert, you will play a crucial role in ensuring the security and integrity of our third-party vendors. Your expertise will help us identify and mitigate potential risks associated with these vendors.About the...


  • Mumbai, Maharashtra, India ShieldByte Infosec Pvt. Ltd. Full time

    About the Role:As a Governance and Compliance Officer at ShieldByte Infosec Pvt. Ltd., you will play a critical role in ensuring the organization's security posture is strengthened through effective risk assessment, regulatory compliance, and security audits.Responsibilities:Risk assessment and management: Conduct regular risk assessments, identify...


  • Mumbai, Maharashtra, India YES BANK Full time

    Job Description for AVP - IS Governance Oversee ISO 27001 maintenance activities ISMS, policies, Procedures and hardening documents. Risk assessment for in scope processes of the Bank Manage Information Security awareness program Perform internal audit for ISO 27001 and information security policy compliance. Manage Bank wide risk assessments for information...


  • Mumbai, Maharashtra, India Sapphire Management Consultancy Full time

    Job DescriptionSapphire Management Consultancy is seeking a skilled Senior Information Security Resource to join its team. The successful candidate will be responsible for reviewing and enhancing existing security controls, conducting risk assessments, and developing security performance indicators.Key ResponsibilitiesReview and enhance the effectiveness of...


  • Mumbai, Maharashtra, India TalentBasket Full time

    About the RoleWe are looking for an experienced Information Security Risk Management Leader to join our team at TalentBasket. The successful candidate will have a strong background in information security and IT security, with expertise in risk assessments, threat intelligence, and vulnerability management.The ideal candidate will be responsible for...


  • Mumbai, Maharashtra, India YES BANK Full time

    Job Description for AVP - IS GovernanceOversee ISO 27001 maintenance activitiesISMS, policies, Procedures and hardening documents.Risk assessment for in scope processes of the BankManage Information Security awareness programPerform internal audit for ISO 27001 and information security policy compliance.Manage Bank wide risk assessments for information...


  • Mumbai, Maharashtra, India Security Lit Full time

    Key ResponsibilitiesConduct thorough security assessments of web applications and APIs using a black-box approach.Utilize manual and automated tools to mimic real-world attack scenarios and identify system weaknesses.Collaborate with development teams to gain insights into application architectures for better risk identification.Create comprehensive reports...

  • Risk Manager

    3 weeks ago


    Mumbai, Maharashtra, India Recro Full time

    Job Description: Third-Party Risk Management (TPRM) SpecialistLocation: Mumbai (Goregaon)Experience: 4 to 8 yearsEmployment Type: Full-TimeAbout the RoleWe are seeking a highly skilled and experienced Third-Party Risk Management (TPRM) Specialist to join our team. The ideal candidate will have a strong background in assurance, information security, and...

  • Risk Manager

    3 weeks ago


    Mumbai, Maharashtra, India Recro Full time

    Job Description: Third-Party Risk Management (TPRM) SpecialistLocation:Mumbai (Goregaon)Experience:4 to 8 yearsEmployment Type:Full-TimeAbout the RoleWe are seeking a highly skilled and experiencedThird-Party Risk Management (TPRM) Specialistto join our team. The ideal candidate will have a strong background in assurance, information security, and...


  • Mumbai, Maharashtra, India YES BANK Full time

    Job Description for AVP - IS Governance Oversee maintenance of the Bank's Information Security Management System (ISMS) in accordance with ISO 27001 standards. Maintain and review policies, procedures, and hardening documents to ensure compliance. Conduct risk assessments for in-scope processes within the Bank. Develop and implement an Information Security...

Head of Information security 3rd party risk management and assessments

4 weeks ago


Mumbai, Maharashtra, India myGwork Full time
This job is with WTW, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly.
Description

Responsibilities & Duties



Leading the function in support of 3rd party information security risk management and assessments



Managing the full lifecycle of third-party assessments and meeting mandatory requirements across standards



Leading the implementation of capability to enable understanding of external information security posture for key suppliers in correlation of services we consume



Leading information security 3rd party risk management processes in alignment to established practices



Maintain overall assessment process and improvements



Manage team of 3rd party information security assessors; run regular sessions with your team to quality review third parties security risk and ensure appropriate processes followed to gain remediation plans



Ensure full review of security gaps, risk and potential exposures are identified



Manage escalations of third parties risk for acceptance and/ or decisions



Create consistent and accurate data reporting to identify trends and emerging risks across third parties and business segments



Develop strong relationships with key influencers across business, technology and third parties



Drive recommendation for updates to the third party standard and controls



Support development of change activities and programs to be planned to close security gaps



Manage any regulatory, audit and other mandatory requirements pertaining to supplier information security

Education Qualification

Degree in a relevant Business or Information Technology area
Experience Band

10-15 yrs.

Technical Skills:
Need to have

Skill

Proficiency
Third Party information security risk management

Advance
ITGC Controls

Advance
Contract reviews

Intermediate
Supplier information security assessment

Advance
IS Governance and Compliance

Advance

Technical Skills:
Nice to have

Information Security specific qualification (such as CISM, CISSP)

Advance
Security and Privacy regulations

Advance
Security Operations – Technical

Intermediate
SOC2 reports and other security assessment report reviews

Intermediate

Qualifications

NA