Principal-sec Risk Mgt

3 weeks ago


Bengaluru, India Verizon Full time

**When you join Verizon**:
Verizon is one of the world’s leading providers of technology and communications services, transforming the way we connect across the globe. We’re a diverse network of people driven by our shared ambition to shape a better future. Here, we have the ability to learn and grow at the speed of technology, and the space to create within every role. Together, we are moving the world forward - and you can too. Dream it. Build it. Do it here.

**Responsibilities**:

- Own the maintenance of security controls for different compliance standards such as SOC 2 and ISO 27001. Periodically review the controls to account for the change in process, technologies used, services/products offered, and the deployment environment. Work with the Program Management, Engineering, Operations, and Security team and the impacted departments to modify existing controls or define new ones and operationalize them.
- Develop a compliance strategy in alignment with business requirements, objectives, and metrics.
- Perform internal audits monthly or quarterly depending on the priority of the control group, assess gaps, and work with external consultants and stakeholders to address them.
- Raise compliance tickets for various departments such as Operations, Support, and IT to generate and review access lists for key systems.
- Ensure that the security controls are operating effectively in the organization always.
- Own the audit calendar, prepare evidence for controls as per periodicity (such as quarterly or annually), and schedule external audits working with auditors and program management.
- Maintain compliance documents such as the controls, evidence collected, and the audit reports in an organized fashion.
- Be the point of contact for the organization to answer questions on compliance as well as to share audit reports with customers and prospects under NDA.
- Perform vendor risk assessment annually for existing vendors, identify gaps if any, and work with the stakeholders and the vendor on next steps. Perform risk assessments for new vendors during evaluation/onboarding.
- Respond to RFPs from Sales and Assessment questionnaires from Support/Customer Success teams.
- Assist with roll-out/tracking of security awareness training within the company.
- Lead privacy initiatives.
- Help build a culture of security within the company.

**You’ll need to have**:

- Bachelor's degree or four or more years of work experience.
- Six or more years of relevant work experience.
- Minimum 4 years of compliance experience with SOC 2 or ISO 27001/27018.
- Good communication skills with the ability to work with a disparate set of stakeholders - HR, Engineering, Operations, Support, etc. inside a company, and auditors, customers, vendors, partners outside the company.
- Prior experience helping an organization achieve and maintain compliance certifications such as SOC 2 or ISO 27001 is a must.

**Even better if you have one or more of the following**:

- Experience with HIPAA, FedRAMP, PCI, or GDPR is a plus.
- 2+ years of experience in a security function at a cloud service or software company Ability to maintain a flexible work schedule to enable interactions across multiple time zones
- The use of tools to help with compliance efforts

**Where you’ll be working**: In this hybrid role, you'll have a defined work location that includes work from home and assigned office days set by your manager.

**Scheduled Weekly Hours**: 40

**Diversity and Inclusion**:
We’re proud to be an equal opportunity employer. At Verizon, we know that diversity makes us stronger. We are committed to a collaborative, inclusive environment that encourages authenticity and fosters a sense of belonging. We strive for everyone to feel valued, connected, and empowered to reach their potential and contribute their best. Check out our diversity and inclusion page to learn more.



  • Bengaluru, India Withum Full time

    Come join our world class service team and leading SPAC team in the country. Withum is seeking a Manager to join our fast growing and well established national firm. This position requires an experienced SEC Assurance professional with strong interpersonal and supervisory skills.Our SEC and Capital Markets Assurance practice team provides tremendous career...


  • Bengaluru, India Withum Full time

    Come join our world class service team and leading SPAC team in the country. Withum is seeking a Manager to join our fast growing and well established national firm. This position requires an experienced SEC Assurance professional with strong interpersonal and supervisory skills. Our SEC and Capital Markets Assurance practice team provides tremendous career...


  • Bengaluru, India Withum Full time

    Come join our world class service team and leading SPAC team in the country. Withum is seeking a Manager to join our fast growing and well established national firm. This position requires an experienced SEC Assurance professional with strong interpersonal and supervisory skills.Our SEC and Capital Markets Assurance practice team provides tremendous career...


  • Bengaluru, India Citi Full time

    The Data/Information Mgt Analyst is a trainee professional role. Requires a good knowledge of the range of processes, procedures and systems to be used in carrying out assigned tasks and a basic understanding of the underlying concepts and principles upon which the job is based. Good understanding of how the team interacts with others in accomplishing the...


  • Bengaluru, India Citi Full time

    The Info Sec Prof Senior Analyst is an intermediate level position responsible for leading efforts to prevent, monitor and respond to information/data breaches and cyber-attacks. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's data security...


  • Bengaluru, India Citi Full time

    The Data/Information Mgt Analyst is a trainee professional role. Requires a good knowledge of the range of processes, procedures and systems to be used in carrying out assigned tasks and a basic understanding of the underlying concepts and principles upon which the job is based. Good understanding of how the team interacts with others in accomplishing the...


  • Bengaluru, India Anicalls (Pty) Ltd Full time

    • Designs, tests, and implements secure operating systems, networks, security monitoring, tuning and management of I.T. security systems and applications, incident response, digital forensics, loss prevention, and eDiscovery actions.• Conducts risk and vulnerability assessment at the network, system, and application level. Conducts threat modeling...


  • Bengaluru, India Citi Full time

    The Info Sec Prof Senior Analyst is an intermediate level position responsible for leading efforts to prevent, monitor and respond to information/data breaches and cyber-attacks. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's data security policy. Responsibilities: ...


  • Bengaluru, India 12542 Citicorp Services India Private Limited Full time

    The Data/Information Mgt Analyst is a trainee professional role. Requires a good knowledge of the range of processes, procedures and systems to be used in carrying out assigned tasks and a basic understanding of the underlying concepts and principles upon which the job is based. Good understanding of how the team interacts with others in accomplishing the...

  • Credit Risk Controller

    2 months ago


    Bengaluru, India JPMorgan Chase & Co. Full time

    Are you looking for an exciting opportunity to join a dynamic and growing team in a fast paced and challenging area? This is a unique opportunity for you to work in our team to partner with the Business to provide a comprehensive view.   As a Credit Risk Controller - Associate in the Risk Management and Compliance team, you will be at the center of...


  • Bengaluru, India Shell Full time

    **The Role**: **Principal Accountabilities**: - Drive and deliver key risk transformation projects - Understand and develop tools or implement technology-based solutions to improve the risk capabilities that would support Risk Reporting. - Working closely with Risk Advisory and Operations Teams to ensure trading risks and returns are fully understood,...


  • Bengaluru, India HSBC Full time

    Some careers have more impact than others. If you’re looking for a career where you can make a real impression, join HSBC and discover how valued you’ll be. HSBC is one of the largest banking and financial services organisations in the world, with operations in 62 countries and territories. We aim to be where the growth is, enabling businesses to...

  • Risk Management

    2 weeks ago


    Bengaluru, India JPMorgan Chase & Co. Full time

    Job Description: As part of Risk Management and Compliance, you are at the center of keeping JPMorgan Chase strong and resilient. You help the firm grow its business in a responsible way by anticipating new and emerging risks, and using your expert judgement to solve real-world challenges that impact our company, customers and communities. Our culture in...


  • Bengaluru, India HSBC Full time

    -Job description **Business**:Risk and Compliance Assurance Services** **Role Title: AVP Controls Assurance, Global Risk and Compliance Assurance Services** **Global Career Band: 5** **Location (Country/city) - Bangalore, Hyderabad and Gurgaon** **The Opportunity**: - The Group requires independent second line assurance of the management of material...


  • Bengaluru, Karnataka, India HSBC Full time

    -Job description **Some careers have more impact than others.** If you’re looking for a career where you can make a real impression, join HSBC and discover how valued you’ll be. HSBC is one of the largest banking and financial services organisations in the world, with operations in 62 countries and territories. We aim to be where the growth is,...


  • Bengaluru, India Archer Integrated Risk Management Full time

    Title: Manager 2 - Software EngineeringLocation: Bangalore, IndiaArcher Technologies helps organizations manage risk in the digital era – unitingstakeholders, integrating technologies and transforming risk into reward. As true pioneers inIntegrated Risk Management (IRM) software, Archer remains solely dedicated to helpingcustomers manage risk and...


  • Bengaluru, Karnataka, India State Street Corporation Full time

    Sec Financing Agency Lending - Collateral & Trade Settlement **Job Description**: **Who we are looking for**: This dynamic role which requires good understanding of equities, fixed income, Securities Lending and borrowing business, collateral management. The business requires constant interaction with multiple stakeholders namely Trading Desk, Borrowers,...


  • Bengaluru, India HSBC Full time

    Some careers have more impact than others.  If you’re looking for a career where you can make a real impression, join HSBC and discover how valued you’ll be.  HSBC is one of the largest banking and financial services organisations in the world, with operations in 62 countries and territories. We aim to be where the growth is, enabling businesses...

  • Principal Auditor

    1 month ago


    Bengaluru, Karnataka, India Swiss Re Full time

    About the Team Group Internal Audit is an international team of Auditors. Our vision is 'Advancing Swiss Re's Resilience'. We seek to be problem solvers who lead from every seat, challenge the status quo, understand risk, and demonstrate that we are responsive to risk. We apply innovative and risk-focused techniques that ensure that our audit effort is...

  • Principal Auditor

    2 months ago


    Bengaluru, Karnataka, India Swiss Re Full time

    About the Team Group Internal Audit is an international team of Auditors. Our vision is 'Advancing Swiss Re's Resilience'. We seek to be problem solvers who lead from every seat, challenge the status quo, understand risk, and demonstrate that we are responsive to risk. We apply innovative and risk-focused techniques that ensure that our audit effort is...