IT Risk and Compliance Officer

1 month ago


Pune, India Envalior Full time

Established in 2023, but with a combined heritage of over 100 years, Envalior is entering the market as a leading global engineering materials powerhouse offering novel and innovative solutions to today’s world. Envalior brings together two highly complementary established players in DSM Engineering Materials and LANXESS High Performance Materials.

Do you want to be part of this exciting journey ahead? Do you love working in an international, highly energized, and collaborative team? Maybe it’s you we are looking for in our global IT team, as our new **IT Risk and Compliance Officer**.

**Your Role**:
As an IT Risk and Compliance Officer you are responsible for the development of and maintenance of an IT risk framework based on ISO31000 which ensures that the company has a structured approach to identifying, accessing, and managing risks that reduces the vulnerabilities. You will also ensure the compliance with various audits and regulatory frameworks like IATF, NIS2, ISO27001 and TISAX.

**Key Responsibilities**

IT Risk:

- Develop and maintain the IT Risk framework and process (based on ISO31000) in line with Envalior’s corporate risk management framework, and integrated in the existing business & IT processes.
- & cybersecurity assessments (business impact assessments) and related outcomes (compliance).
- Introduce train-the-trainer principles to execute BIA’s.
- Maintain the IT Risk register.
- You will follow up on the implementation status of agreed controls.
- Writing up findings, both at high-level (executive summary) and technical level (architects/engineers/developers), including providing mitigation scenarios.
- Develop IT Risk management dashboard and regular reporting to CISO.
- Liaise with the Cybersecurity Architect and Information Security Officer to suggest (architectural / process / policy) optimizations.
- Establishing close cooperation with the Corporate Risk function to exchange IT risk, audit findings and compliance breaches.

IT Compliance:

- Develop an IT compliance framework and process, in line with legal requirements, corporate internal audit or strategic IT objectives.
- Assure compliance towards audits (IATF, customers), regulatory (NIS2) and industry frameworks (ISO27001, TISAX).
- Develop and maintain 3rd party cybersecurity / IT supply chain assessments.
- Develop IT compliance dashboard.
- Administratively following up on open (internal/external) IT audit recommendations.
- Setting up monthly reporting on findings and compliance status to senior management.
- Assess the actual maturity level of Envalior on cyber
- & information security using existing frameworks or industry best practices.

**Requirements**:

- A bachelor’s degree in IT related field or equivalent experience.
- Minimum 5 to 10 years of work experience in IT Risk and Compliance field, preferably in a manufacturing set up.
- An intelligent, communicative, and analytical person who has an eye for detail.
- Someone who can persevere to get statuses from various stakeholders at regular intervals.
- High level of listening, persuasion and initiative taking competencies
- Proven experience in problem analysis and conflict management
- Extensive practical experience in setting up a compliance framework and executing IT risk assessments.
- Knowledge of security architectures and controls.
- Certifications such as CISSP, CISM or CISA are a plus.
- Proven knowledge of ISO2700x, ISO31000, COBIT5, ITIL are a plus.
- Strong communication skills in English both in speaking and writing.

**Benefits**

**Compensation**: We offer competitive compensation packages, inclusive of a global bonus program and an individual performance bonus program.

**Comprehensive Benefits**: We provide a variety of benefits to support your financial security, health and wellbeing including retirement plans, health programs, life insurance and medical care.

**Work-Life & Flexibility**: We support you in maintaining a balance between working hours and personal life. With our global “Xwork” program, we offer flexible working arrangements in all countries in which we operate.

**Training & Development**:We are committed to your professional and personal development and encourage you in the ongoing pursuit of education, training and knowledge through both formal and informal learning.

**Diversity**: For us, talent matters, we welcome everyone who commits to our values. We strongly believe that including diverse perspectives makes us more innovative and enhances our competitiveness. Therefore, we embrace the uniqueness of every single individual and are truly committed to supporting our people in developing their individual potential.

Envalior is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, statu



  • pune, India T D Newton & Associates Full time

    This role is with an investment bank in Pune. Ideally we are looking for someone with any of the following: Risk and control experience i.e. compliance, law, risk and controls etc. Project / change management experience Any experience in policy, standard or procedure development / writing Strong excel / MI reporting skills. 4+ years of experience


  • pune, India CACI Ltd Full time

    Risk and Compliance Analyst Pune, Maharashtra, India Req #730 24 May 2024 CACI International Inc is an American multinational professional services and information technology company headquartered in Northern Virginia. CACI provides expertise and technology to enterprise and mission customers in support of national security missions and...


  • Pune, India CACI Ltd Full time

    Risk and Compliance Analyst Pune, Maharashtra, India Req #730 24 May 2024 CACI International Inc is an American multinational professional services and information technology company headquartered in Northern Virginia. CACI provides expertise and technology to enterprise and mission customers in support of national security missions and government...


  • Pune, India TransUnion LLC Full time

    What We'll Bring: A key responsibility of the TransUnion UK Risk & Compliance function is to ensure that TransUnion’s India Global Capability Centres (GCCs) which provide resource support and services to TransUnion UK are operated in line with expected UK service requirements, and risk management requirements are adhered to as an integral part of...


  • pune, India TransUnion LLC Full time

    What We'll Bring: A key responsibility of the TransUnion UK Risk & Compliance function is to ensure that TransUnion’s India Global Capability Centres (GCCs) which provide resource support and services to TransUnion UK are operated in line with expected UK service requirements, and risk management requirements are adhered to as an integral part of...

  • Compliance Officer

    1 month ago


    Pune, India Apex Group Full time

    Compliance Officer Location: Pune, India Date Posted: Jun 14, 2023 **Description** **Compliance** Officer** Role Location: India- Department: Compliance- Employment Type: PermanentThe Role & Key Responsibilities: **Job **Responsibilities**: - The role will be based in India with primary support to Singapore and wider Asia Pacific countries including...


  • Pune, Maharashtra, India Abacus Consultants Full time

    **10 - 12 years**: **Bachelor of Computer Applications - Computers**: **Risk - Compliance - Cyber Security**: **29 ~ 30 LPA**: **POSITION DETAILS** **Position Title/Functional Designation** **General Manager _ Governance & Risk Compliance (Information Security)** **Company** **Poonawalla Fincorp Limited** **Division / Department** **Risk - Information...


  • Pune, India 8226 SMRT Sales Unit India Full time

    Sandvik Mining and Rock Solutions is a business area within the Sandvik Group and a leading global supplier of equipment, tools, services, and technical solutions for the mining industry. The product offering covers rock drilling, rock cutting, rock crushing, loading and hauling and materials handling, battery-operated vehicles and Sandvik’s...


  • pune, India 8226 SMRT Sales Unit India Full time

    Sandvik Mining and Rock Solutions is a business area within the Sandvik Group and a leading global supplier of equipment, tools, services, and technical solutions for the mining industry. The product offering covers rock drilling, rock cutting, rock crushing, loading and hauling and materials handling, battery-operated vehicles and Sandvik’s...

  • Network Risk

    2 weeks ago


    Pune, India CACI Ltd Full time

    Network Risk and Compliance AVPDesignation: Assistant Vice President (AVP)Network Risk and Compliance Analyst:This role is positioned as a Network Risk and Compliance AVP within the Production Assurance-Risk and Compliance Team. The Risk and Compliance team is responsible for proactively identifying and managing risks and to ensure oversight and accuracy of...


  • pune, India CACI Ltd Full time

    About CACIHeadquartered in London, CACI Ltd is a wholly owned subsidiary of CACI International Inc., a publicly listed company on the NYSE with annual revenue in excess of US $6.2bn and employing approx. 22,000 people worldwide.CACI Ltd is an international data and technology consultancy with £154m turnover and 1100 employees. We are passionate, progressive...


  • Pune, India Infopie Business Solutions Pvt ltd Full time

    **Job Title**:FS - Risk & Compliance **Required skills** - Business continuity management and disaster recovery. - Comprehensive assessment of risks and controls. - Key risk indicators. - Managing operational losses data. - Support the operational risk system. - Support e-learning content with operational and fraud risks. - Review supply risk policies and...

  • Network Risk

    2 weeks ago


    pune, India CACI Ltd Full time

    Network Risk and Compliance AVP Designation: Assistant Vice President (AVP) Network Risk and Compliance Analyst: This role is positioned as a Network Risk and Compliance AVP within the Production Assurance-Risk and Compliance Team. The Risk and Compliance team is responsible for proactively identifying and managing risks and to ensure oversight and...

  • Network Risk

    2 weeks ago


    Pune, India CACI Ltd Full time

    Network Risk and Compliance AVPDesignation: Assistant Vice President (AVP) Network Risk and Compliance Analyst:This role is positioned as a Network Risk and Compliance AVP within the Production Assurance-Risk and Compliance Team. The Risk and Compliance team is responsible for proactively identifying and managing risks and to ensure oversight and accuracy of...

  • Network Risk

    2 weeks ago


    Pune, India CACI Ltd Full time

    Network Risk and Compliance AVPDesignation: Assistant Vice President (AVP) Network Risk and Compliance Analyst:This role is positioned as a Network Risk and Compliance AVP within the Production Assurance-Risk and Compliance Team. The Risk and Compliance team is responsible for proactively identifying and managing risks and to ensure oversight and accuracy of...


  • Pune, India CACI Ltd Full time

    About CACI Headquartered in London, CACI Ltd is a wholly owned subsidiary of CACI International Inc., a publicly listed company on the NYSE with annual revenue in excess of US $6.2bn and employing approx. 22,000 people worldwide. CACI Ltd is an international data and technology consultancy with £154m turnover and 1100 employees. We are passionate,...


  • Pune, India CACI Ltd Full time

    About CACI Headquartered in London, CACI Ltd is a wholly owned subsidiary of CACI International Inc., a publicly listed company on the NYSE with annual revenue in excess of US $6.2bn and employing approx. 22,000 people worldwide. CACI Ltd is an international data and technology consultancy with £154m turnover and 1100 employees. We are passionate,...


  • Pune, India CACI Ltd Full time

    About CACI Headquartered in London, CACI Ltd is a wholly owned subsidiary of CACI International Inc., a publicly listed company on the NYSE with annual revenue in excess of US $6.2bn and employing approx. 22,000 people worldwide. CACI Ltd is an international data and technology consultancy with £154m turnover and 1100 employees. We are passionate,...


  • Pune, India Quess IT Staffing Full time

    Position: IT Security and Compliance AnalystLocation: PuneDuration: Contract to HireJob Description:Primary skills –• ISO 27001 (Lead implementer/ Lead Auditor) certified or experience of implementing ISO 27001 framework• Working experience of Cyber Security Compliance (Hardening, Anti-virus, Patching, Vulnerability Management etc..) preferable• IT...


  • Pune, India Quess IT Staffing Full time

    Position: IT Security and Compliance Analyst Location: Pune Duration: Contract to Hire Job Description: Primary skills – • ISO 27001 (Lead implementer/ Lead Auditor) certified or experience of implementing ISO 27001 framework • Working experience of Cyber Security Compliance (Hardening, Anti-virus, Patching, Vulnerability Management etc..)...