Principal - Cyber Risk and Assurance

5 days ago


Bengaluru Karnataka, India GSK Full time

**Site Name**: Bengaluru Luxor North Tower
**Posted Date**: Jul 15 2025

**Job Title**: Principal - Cyber Risk and Assurance

**Position Summary**:
**Responsibilities**:
1. Identify, document, and report business cyber risks to senior stakeholders, positively influencing the cyber security posture.
3. Conduct formal cyber security risk assessments for business projects, ensuring compliance with GSK policies, controls, and regulatory requirements while meeting business objectives.
4. Collaborate with internal and external stakeholders to recommend security and privacy controls that mitigate risks effectively.
5. Guide business owners and stakeholders throughout the delivery lifecycle, ensuring tailored and proportionate information security measures.
6. Partner with global teams to align cyber risk management frameworks, metrics, and reporting with GSK’s strategy and initiatives.

**Qualifications/Skills**:
**Basic Qualifications**:
10+ years of cyber security risk assessments experience.
1. Bachelor’s degree in Cyber Security, Information Technology, Computer Science, or a related field.
2. Demonstrated experience in cyber security principles, IT security controls, and related technologies.
3. Experience conducting cyber security risk assessments and third-party security and data privacy evaluations.
4. Strong verbal and written communication skills in English, with the ability to interact effectively with professionals at all levels.
5. Knowledge of frameworks and standards such as ISO 27001, NIST, and CIS.
6. Ability to work with virtual teams across different countries, adapting to diverse work cultures and communication styles.

**Preferred Qualifications**:
1. Professional certifications such as CISSP, CISM, or equivalent.
2. Experience with Governance, Risk, and Compliance (GRC) technologies for cyber risk management.
3. Proven ability to prioritize, delegate, and foster high-performance teams in a customer-focused environment.
4. Experience working with outsourced providers to drive positive organizational changes.
5. Familiarity with automation initiatives to enhance efficiency in cyber risk management processes.

**Work Arrangement**:
This role is based in India and follows a hybrid work model, combining on-site and remote work flexibility.*This Position Description is to provide a framework for job understanding between employee and manager. It may not cover or contain the full listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice and at the discretion of the management of the Company. The position description is not used in the assignment or assessment of any GSK level or grade used in the Job Evaluation Process.*

**Skills**

Application Security, Cloud Security, Data Security, Identity Access Management (IAM), Infrastructure Security, Operating Systems Security, Security Engineering, Security System Integration, Security Testing, Vulnerability Management

**Why GSK?**

**Uniting science, technology and talent to get ahead of disease together.**

GSK is a global biopharma company with a special purpose - to unite science, technology and talent to get ahead of disease together - so we can positively impact the health of billions of people and deliver stronger, more sustainable shareholder returns - as an organisation where people can thrive. We prevent and treat disease with vaccines, specialty and general medicines. We focus on the science of the immune system and the use of new platform and data technologies, investing in four core therapeutic areas (infectious diseases, HIV, respiratory/ immunology and oncology).

Our success absolutely depends on our people. While getting ahead of disease together is about our ambition for patients and shareholders, it’s also about making GSK a place where people can thrive. We want GSK to be a place where people feel inspired, encouraged and challenged to be the best they can be. A place where they can be themselves - feeling welcome, valued, and included. Where they can keep growing and look after their wellbeing. So, if you share our ambition, join us at this exciting moment in our journey to get Ahead Together.

**Important notice to Employment businesses/ Agencies**

**GlaxoSmithKline does not charge any fee whatsoever for recruitment process. Please do not make payments to any individuals / entities in connection with recruitment with any GlaxoSmithKline (or GSK) group company at any worldwide location. Even if they claim that the money is refundable.



  • Bengaluru, Karnataka, India GSK Full time

    **Site Name**: Bengaluru Luxor North Tower **Posted Date**: Sep 3 2025 **Job Title**: Principal - Cyber Risk and Assurance **Team Introduction**: *(Placeholder section)* **Position Summary**: **Responsibilities**: 1. Identify, document, and report business cyber risks to senior stakeholders, positively influencing the cyber security posture. 3. Conduct...


  • Bengaluru, Karnataka, India GSK Full time

    **Site Name**: Bengaluru Luxor North Tower **Posted Date**: Sep 13 2024 Our Cyber Security organisation enables GSK to take on some of the biggest healthcare challenges in the world by protecting our business, customers, and patients from cyber risks. We are investing in growing our Cyber Security teams because they play a pivotal role as the nature and...

  • Supplier Cyber Risk

    4 days ago


    Bangalore, Karnataka, India GlaxoSmithKline Full time

    Support the Supplier Cyber Risk and Assurance processes for all business units and support functions across GSK to ensure cyber security risks that may be introduced by third-parties are understood managed or mitigated Key Responsibilities Conduct comprehensive supplier cybersecurity assessments and generate detailed reports ensuring alignment with...


  • Bengaluru, Karnataka, India DeepHealth Full time

    **Job purpose** The Quality Assurance Principal is responsible for supporting DeepHealth products and product development, along with the Quality Management System throughout the organization. The Quality Assurance Principal will be responsible for collaborating cross-functionally to support and guide product development. The Quality Assurance Principal...


  • Bengaluru, Karnataka, India, Karnataka Capital One Full time

    At Capital One, we’re building a leading information-based technology company. Still founder-led by Chairman and Chief Executive Officer Richard Fairbank, Capital One is on a mission to help our customers succeed by bringing ingenuity, simplicity, and humanity to banking.At Capital One India, we are at the cutting edge of solving fundamental business...

  • Risk Assessment

    1 week ago


    Bengaluru, Karnataka, India KPMG Assurance and Consulting Services LLP Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    ROLE & RESPONSIBILTY:Conduct thorough and detailed cyber risk assessments for our clients, analyzing their digital infrastructure, systems, and security controls.Collaborate with cross-functional teams to gather essential information and data required for comprehensive risk assessments.Evaluate and interpret assessment results to identify potential...


  • Bengaluru, India Capital One Full time

    Voyager (94001), India, Bangalore, Karnataka Principal Associate, Risk At Capital One, we're building a leading information-based technology company. Still founder-led by Chairman and Chief Executive Officer Richard Fairbank, Capital One is on a mission to help our customers succeed by bringing ingenuity, simplicity, and humanity to banking. At Capital One...


  • Bengaluru, India Capital One Full time

    Voyager (94001), India, Bangalore, Karnataka Principal Associate, Risk At Capital One, we're building a leading information-based technology company. Still founder-led by Chairman and Chief Executive Officer Richard Fairbank, Capital One is on a mission to help our customers succeed by bringing ingenuity, simplicity, and humanity to banking. At Capital One...

  • Cyber Security Intern

    2 weeks ago


    Bengaluru, Karnataka, India Cyber MSI Full time

    CyberMSI is a US-based company providing Managed Extended Detection and Response (XDR) cybersecurity services to help organizations avoid business disruptions caused by cyberattacks. As a Microsoft full-stack cybersecurity partner, we specialize in Microsoft’s cloud security, data protection, identity threat detection & response, security exposure...


  • Bengaluru, India Capital One Full time

    At Capital One, we’re building a leading information-based technology company. Still founder-led by Chairman and Chief Executive Officer Richard Fairbank, Capital One is on a mission to help our customers succeed by bringing ingenuity, simplicity, and humanity to banking.At Capital One India, we are at the cutting edge of solving fundamental business...