Principal - Cyber Risk and Assurance

1 week ago


Bengaluru Karnataka, India GSK Full time

**Site Name**: Bengaluru Luxor North Tower

**Posted Date**: Feb 27 2024

Our Cyber Security organisation enables GSK to take on some of the biggest healthcare challenges in the world by protecting our business, customers, and patients from cyber risks. We are investing in growing our Cyber Security teams because they play a pivotal role as the nature and types of threats get more sophisticated.

In this ever-evolving digital and technology landscape, it is critical to stay on top of issues that could cause us harm. This requires a deep understanding of cybersecurity concepts, techniques, and trends along with critical thinking. Our Cyber Security teams are continuously learning and developing their skills to protect against bad actors, allowing GSK to stay focused on what matters most - getting ahead of disease together.

**Job Purpose: -**

The primary purpose of this position is to partner with the business and global support functions to embed the concept of “secure by design” by influencing projects and operations to implement proportionate cyber security coverage throughout the development Lifecyle.

This is achieved by acting as a cyber security focal point for the business, acting as a conduit to other security teams (such as Cyber Security Operations, Governance Risk and Compliance and Architecture and Engineering) as required to meet business needs.

**Key Responsibilities**:
- To identify, document and report business cyber risks to senior stakeholders and positively influence the cyber security posture
- Formally assess and evaluate cyber security risks related to business projects, determine the potential impact of those risks, and conduct follow-up on any necessary remediation efforts. Ensure that IT solutions and business processes comply with GSK’s policies, controls and applicable legal and regulatory requirements whilst also ensuring that business objectives are met
- Collaborate with internal third-party relationship owners and third-party representatives to recommend necessary security and privacy controls to effectively mitigate risks to GSK
- Evangelize third-party risk management processes across business lines to help influence a strong culture of proactive awareness for third-party security risks
- To guide business owners and relevant stakeholders throughout the entire delivery lifecycle ensuring that information security is considered in a proportionate and tailored way
- To carry out expert security assessments in supporting the business and global support functions utilising a thorough understanding of pharma and effectively create/monitor delivery of the remediation plans on identified risks and support on all levels within the business.
- To partner effectively with the business, GRC and the wider Tech Security/Risk teams to eliminate overlaps and provide a holistic and consistent cyber security position including key initiatives such as cyber incidents and resilience.
- To ensure consistent and continual alignment to the business and TSR strategy through oversight of the Cyber Risk Management framework, activities and processes including all aspects of the metrics/reporting.
- To contribute to the development of global cyber security baselines, guidelines, standards, policies and procedures
- Maintain current knowledge of cyber risk management requirements and accreditation standards and monitor changes in technology impacting security & risk posture.
- To serve as a coach and mentor to peers and engage in upskilling activities for the overall team
- Identifying and implementing automation initiatives like control testing to enhance the delivery time and improve efficiency
- Identify and implement areas of duplication and propose ways of eliminating duplication to bring cost effectiveness and efficiency
- Partner with outsourced third-party provider in effectively providing a cyber risk service reducing response times and improving on integration and automation

**Job-Related Experience sections above that are required for the job: -**
- Experience and knowledge across different frameworks and standards such as ISO 27001, NIST, CIS etc.
- CISSP, CISM
- Demonstrated experience and understanding of cyber security principles, IT security controls, and related technologies and products
- Experience in working with outsourced providers and bringing positive changes to the organisation by working in partnership
- Prior experience in conducting cyber Security risk assessments and 3rd party security and data privacy assessments
- Stakeholder/ internal business management experience
- Strong verbal/written communication in English, with the ability to effectively interact with professionals at all levels of responsibility and authority
- Ability to prioritize, delegate, and foster the development of high-performance teams to lead/support an environment driven by customer service and teamwork
- Work with virtual teams located in different countries around the world, aligning and



  • Bengaluru, Karnataka, India GSK Full time

    Site Name: Bengaluru Luxor North TowerPosted Date: Feb Our Cyber Security organisation enables GSK to take on some of the biggest healthcare challenges in the world by protecting our business, customers, and patients from cyber risks. We are investing in growing our Cyber Security teams because they play a pivotal role as the nature and types of threats get...


  • Bengaluru, Karnataka, India GSK Full time

    **Site Name**: Bengaluru Luxor North Tower **Posted Date**: May 2 2024 Our Cyber Security organisation enables GSK to take on some of the biggest healthcare challenges in the world by protecting our business, customers, and patients from cyber risks. We are investing in growing our Cyber Security teams because they play a pivotal role as the nature and...


  • Bengaluru, Karnataka, India GSK Full time

    **Site Name**: Bengaluru Luxor North Tower **Posted Date**: May 2 2024 Our Cyber Security organisation enables GSK to take on some of the biggest healthcare challenges in the world by protecting our business, customers, and patients from cyber risks. We are investing in growing our Cyber Security teams because they play a pivotal role as the nature and...


  • Bengaluru, India HSBC Full time

    -Job description The Group’s Risk Management Framework (RMF) requires independent Second Line Assurance of the management of material risks and controls across HSBC’s non-financial and financial risk taxonomies. The RCAS function provides a significant proportion of this assurance. Via its industry-leading centres of excellence, RCAS delivers...


  • Bengaluru, Karnataka, India Fidelity Investments Full time

    **Job Title : Principal - Cyber Security - Network Security** **The Purpose and Value you Deliver to this Role** **Principal Perimeter Security Engineer **(Principal, Edge Security Ops) **How your Work Impacts the Organization** **The Team** The Principal Cybersecurity Analyst will be working on external defense team to ensure indications of compromise...


  • Bengaluru, Karnataka, India Safe Securities Full time

    Our vision is to be the **Champions of a Safer Digital Future** and the **Champions of Change**. We believe in empowering individuals and teams with freedom and responsibility to align their goals such that we all row in the same direction. We are uncomfortably transparent, autonomous & accountable; we have zero tolerance for brilliant jerks; we have an...


  • Bengaluru, Karnataka, India GSK Full time

    **Site Name**: Bengaluru Luxor North Tower **Posted Date**: Mar 14 2024 Our Cyber Security organisation enables GSK to take on some of the biggest healthcare challenges in the world by protecting our business, customers, and patients from cyber risks. We are investing in growing our Cyber Security teams because they play a pivotal role as the nature and...


  • Bengaluru, Karnataka, India GSK Full time

    Site Name: Bengaluru Luxor North TowerPosted Date: May 2 2024Our Cyber Security organisation enables GSK to take on some of the biggest healthcare challenges in the world by protecting our business, customers, and patients from cyber risks. We are investing in growing our Cyber Security teams because they play a pivotal role as the nature and types of...

  • Analyst - Cyber Risk

    18 hours ago


    Bengaluru, India Amagi Full time

    Analyst - Cyber Risk We are a next-generation media technology company that provides cloud broadcast and targeted advertising solutions to broadcast TV and streaming TV platforms. Amagi enables content owners to launch, distribute, and monetize live linear channels on Free Ad-supported Streaming TV and video services platforms. Amagi also offers 24x7...


  • Bengaluru, Karnataka, India 14260 GSK India Global Services Private Limited Full time

    Our Cyber Security organisation enables GSK to take on some of the biggest healthcare challenges in the world by protecting our business, customers, and patients from cyber risks. We are investing in growing our Cyber Security teams because they play a pivotal role as the nature and types of threats get more sophisticated. In this ever-evolving digital...


  • Bengaluru, India 14260 GSK India Global Services Private Limited Full time

    Our Cyber Security organisation enables GSK to take on some of the biggest healthcare challenges in the world by protecting our business, customers, and patients from cyber risks. We are investing in growing our Cyber Security teams because they play a pivotal role as the nature and types of threats get more sophisticated. In this ever-evolving digital and...

  • Cyber Manager

    3 weeks ago


    Bengaluru, India Maersk Full time

    Cyber Manager – Third Party Risk Company Name: A.P. Moller – Maersk Location: Bangalore, India We offer Joining Maersk T&L will embark you on a great journey with career development in a global organisation. As a Cyber Security Manager, you will gain broad business knowledge of the company’s activities globally, as well as understand how the...

  • Cyber Manager

    3 weeks ago


    Bengaluru, India Maersk Full time

    Cyber Manager – Third Party Risk Company Name: A.P. Moller – Maersk Location: Bangalore, India We offer Joining Maersk T&L will embark you on a great journey with career development in a global organisation. As a Cyber Security Manager, you will gain broad business knowledge of the company’s activities globally, as well as understand how the...


  • Bengaluru, Karnataka, India ABB Full time

    **Cyber Security Officer**: **At ABB, we are dedicated to addressing global challenges. Our core values: care, courage, curiosity, and collaboration - combined with a focus on diversity, inclusion, and equal opportunities - are key drivers in our aim to empower everyone to create sustainable solutions. Write the next chapter of your ABB story.**: **This...


  • Bengaluru, India HSBC Full time

    -Job description **Business**:Risk and Compliance Assurance Services **Open positions**:1 **Role Title**:AVP Controls Assurance, Global Risk and Compliance Assurance Services, GSC’s **Global Career Band**:5 **Location**:Bangalore **Recruiter Name**:Geetika Gupta **Why join us?** - The Group requires independent second line assurance of the...


  • Bengaluru, India HSBC Full time

    -Job description **Business**:Risk and Compliance Assurance Services **Open positions**:1 **Role Title**:AVP Controls Assurance, Global Risk and Compliance Assurance Services, GSC’s **Global Career Band**:5 **Location**:Bangalore/Pune **Recruiter Name**:Geetika Gupta **Why join us?** - The Group requires independent second line assurance of the...


  • Bengaluru, India HSBC Full time

    -Job description **Business**:Risk and Compliance Assurance Services** **Role Title: AVP Controls Assurance, Global Risk and Compliance Assurance Services** **Global Career Band: 5** **Location (Country/city) - Bangalore, Hyderabad and Gurgaon** **The Opportunity**: - The Group requires independent second line assurance of the management of material...


  • Bengaluru, Karnataka, India HSBC Full time

    -Job description **Some careers have more impact than others.** If you’re looking for a career where you can make a real impression, join HSBC and discover how valued you’ll be. HSBC is one of the largest banking and financial services organizations in the world, with operations in 64 countries and territories. We aim to be where the growth is,...

  • Risk & Compliance

    2 weeks ago


    Bengaluru, India Tesco Technology Full time

    Company Description Tesco Bengaluru: We are a multi-disciplinary team creating a sustainable competitive advantage for Tesco by standardising processes, delivering cost savings, enabling agility, providing cutting-edge technological solutions and empowering our colleagues to do ever more for our customers. With cross-functional expertise in Global Business...


  • Bengaluru, India ABB Full time

    **Cyber Security Officer**: **Take your next career step at ABB with a global team that is energizing the transformation of society and industry to achieve a more productive, sustainable future. At ABB, we have the clear goal of driving diversity and inclusion across all dimensions: gender, LGBTQ+, abilities, ethnicity and generations. Together, we are...