Risk and Control Advisor
4 days ago
**The Role**:
The RMF advisory team is part of IRM Advisory services, which covers advisory and assurance for operational services and capabilities, in an ever-changing environment with technical as well as regulatory requirements, in a fast-changing business dynamic.
The overall team’s aim is to balance risk vs costs, and provide expert advice supporting secure, reliable and compliant services.
The Role requires a clear understanding of Shell’s strategic intent for Market Standard and develop new capabilities within the team and also be able to provide needed advisory to LOD1 (IT Engineering, ITSO, ITM and other stakeholders).
The purpose of this position is to:
- Be a “trusted advisor” providing risk advisory on IT risks, Findings, associated with high priority topics as defined and agreed by CIOs in RMF scope.
- Define security policies, processes, guidelines related to new technologies, solutions, standards and regulations and advise on implementation requirements.
- Review and provide assurance on risk identification and mitigations.
- Contribute to risk and control requirements and associated policies and guidance.
- Provide guidance and training in risk management processes to various stakeholders (Business, operations/LoD1, PM’s etc.
Accountabilities of the role includes the below:
- Accountable to provide assurance and advise pertaining to risk assessment and remediations performed by LOD1; ITSO, BAO, IT Engineering, etc.
- Accountable to provide assurance that recorded Findings/Exceptions are addressing all recorded underlying risks.
- Ensure all the risks are properly documented, classified and addressed with appropriate action as per the IRM standards.
- Active participation in driving awareness of Information security related issues and risks to Business/Business IT Teams.
- Understands IRM and IT Services/Platforms to advise in the execution of Risk Assessments.
The dimension of the role includes:
- Maintain primary interface between IRM and ITSO as well as IT Engineering (S&C).
- Interface with CyberDefence for vulnerability reviews.
- Interface with ITSO SOM for operational assessments.
- Support in risk assurance and audits as risk SME.
Mandatory Skills
- Over all 5 - 8 years of experience in IT
- Any Graduate
- At minimum 5+ years in IRM function, preferably aligned with control framework best practices and risk management.
- A qualification in CISSP, CISA, CRISC or CISM.
- Good understanding of, and experience with Information Risk Management, IT Security and Compliance and Security Controls and Audit.
- Good understanding of internal and external IT security standards, SOX, PCI, SOC2/1, ISO27001 standards and relevant legal compliance aspects.
- Good understanding of cloud security requirements and third-party control assurance.
- Ability to interface with different groups (Third parties, Business and IT) internal and external to IT (security) and to network globally across Group businesses, as well as with external groups.
- Technical knowledge & relevant experience in security domains /technologies.
- Knowledge of Data Security Standards, Privacy Principles.
- Ability to foresee and identify mitigation strategies for Risks.
Key Soft Skills Required:
- Display excellent communicating and influencing skills.
- Display analytical and problem-solving skills.
- Be pro-active and self-motivated.
- Display Ability and eagerness to quickly learn new technologies.
**Disclaimer
-
Risk and Control Advisor
1 week ago
Bengaluru, India Shell Full time**The Role**: The Risk & Controls Advisor (Controls Specialist) position is a highly visible and pivotal role to enable the Chemicals, Products & Site Operations portfolio to meet all Information Risk Management, Controls and Compliance challenges now and in the future. The incumbent needs to drive delivery through the Chemicals, Products & Site Operations...
-
Risk and Control Advisor
1 week ago
Bengaluru, India Shell Full time**The Role**: Please note that this role will be on SBO Terms and Conditions. Risk & Control Advisor Solution Centre The IRM Solution Centre is principally a new team and its objective is to enhance the overall IRM user-experience, presenting IRM as a business enabler by providing relevant advisory and directions related to managing Information Risk. The IRM...
-
Controls and Risk Advisor
2 weeks ago
Bengaluru, India ExxonMobil Full time**About us** At ExxonMobil, our vision is to lead in energy innovations that advance modern living and a net-zero future. As one of the world’s largest publicly traded energy and chemical companies, we are powered by a unique and diverse workforce fueled by the pride in what we do and what we stand for. The success of our Upstream, Product Solutions and...
-
Risk and Control Advisor
2 weeks ago
Bengaluru, India Shell Full time**The Role**: The Security & Compliance (S&C) Competency Centre (CC) team is responsible for the following: **Project Review and Technical Advice** - Review all new projects; new technical designs; for Information risks and advise on suitable controls and mitigations at early stages of the program. - Lead for specific technology and advice on the Information...
-
Risk & Control Advisor-global Functions
2 weeks ago
Bengaluru, India Shell Full time**The Role**: **Where you fit in** The IRM Solution Centre is principally a new team and its objective is to enhance the overall IRM user-experience, presenting IRM as a business enabler by providing relevant advisory and directions related to managing Information Risk. The IRM Solution Centre is an evolution from the current IRM Front Office, bringing...
-
Risk and Control Advisor
2 weeks ago
Bengaluru, India Shell Full time**The Role**: **Where you fit in** **What’s your role** - Understands and drives end-to-end security deliverables in T&S projects, strategic transformation programs and initiatives - Act as a security focal within programs, liaise with program and security natural teams for governance, risk, and compliance - Leads discussions and drives risk-aware culture...
-
Risk and Compliance Advisor
4 days ago
Bengaluru, India Shell Full time**The Role**: If you are up for the challenge of working in an area with a high number of stakeholders or working on multiple competing priorities at the same time, and wish to work at different levels from fine technical detail to broad senior management reporting, then this role within Shell's IRM space will definitely shape you as you progress your...
-
Irm Risk Advisor-upstream
1 week ago
Bengaluru, India Shell Full time**The Role**: Ensures risks to information assets are identified and understood, that appropriate controls to mitigate risks are identified and that these controls are implemented to sustain compliance of the organisation or business unit and its associated customers, users, suppliers or partners with the controls framework and related policies, standards...
-
Risk & Control Advisor-global Functions
1 week ago
Bengaluru, India Shell Full time**The Role**: Typically: - Carries out assignments and projects alone or as part of a team. - Role does not include responsibilities to manage staff and/or direct budget. - Uses discretion in identifying and resolving complex problems and assignments. Applies a methodical approach to problem definition. - Interaction limited mostly to within own team....
-
Risk and Control Analyst
1 week ago
Bengaluru, Karnataka, India HSBC Full time ₹ 12,00,000 - ₹ 24,00,000 per yearSome careers have more impact than others.If you're looking for a career where you can make a real impression, join HSBC and discover how valued you'll be.HSBC is one of the largest banking and financial services organisations in the world, with operations in 62 countries and territories. We aim to be where the growth is, enabling businesses to thrive and...