Information Security Risk Officer, Coo

3 days ago


Chennai Tamil Nadu, India Standard Chartered Full time

**Job Summary**
- The Group Operational, Technology and Cybersecurity Risk (OTCR) organisation is instrumental in protecting and ensuring the resilience of Standard Chartered Bank’s data and IT systems by managing technological, information and cyber security (ICS) risks across the enterprise.- As a critical function reporting into the Group Chief Risk Officer (CRO), Group OTCR serves as the second line of defence for assuring Operational, Technology and ICS controls are implemented effectively and in accordance with the Operational Risk Type Framework (ORTF) and the ICS Risk Type Framework and for instilling a positive culture of Operational, Technology and Cybersecurity risk management within the Bank.- As part of the function, the team of OTCR, CISO & COO performs a pivotal role as an extension of the OTCR in supporting the Tech and ICS risk management strategy, governance, advisory and assurance roles that face off to the Client Businesses, Regions, and Functions.- Strong technical knowledge in ICS controls domains - Network Security Management, End-point Security, Security Incident Management and Cyber Forensic, Cyber Intelligence, Cloud Computing, Identity Access Management (IAM), AI/ML, DevSecOps

**Key Responsibilities**

**Strategy**

**Business**
- The role delivers services that continually monitor the Tech and ICS threat landscape, undertake constructive and robust oversight of the effectiveness of Tech and ICS controls and risk remediation strategies, and ensure accurate, insightful, and transparent Tech and ICS risk reporting is provided to senior management to provide them appropriate assurance and confidence on the TTO CISO & COO risk profile.
- We are seeking an information and cyber security risk specialist to deliver a range of activities associated with the discharging of OTCR second line responsibilities. This role will have considerable engagement with all business units, risk committees, and other stakeholders across the bank, but especially those in TTO covering Cloud, DevSecOps and AI/ML domains.

**Processes**
- The major functional activities that the OTCR, CISO & COO will lead and manage are:
- Overseeing and challenging 1st line Tech and ICS risk proposals and risk-taking activities for Cloud, DevSecOps, AI/ML, Network Security, and other key ICS domains.
- Intervening in 1st line activities if they are not in line with existing or adjusted Risk Appetite.
- Monitoring of Tech and ICS risks and associated remediation plans across business lines using the CISRO Governance Risk Type Framework.
- Assuring the 1st line implements controls to comply with applicable laws and regulations as defined by the ICS Policy, Standards, LRM team and escalate significant regulatory non-compliance matters and developments to the Global Head, OTCR, TTO.
- Overseeing implementation of the controls to mitigate risks related to Cloud Computing, DevSecOps, and ML Ops lifecycle and data handling.
- Promoting a healthy Tech and ICS risk culture and good conduct within Transformation, Technology & Operations of key ICS domains.

**People & Talent**
- Lead through example and build the appropriate culture and values.
- Employ, engage, and retain high quality people, with succession planning for critical roles.
- Uphold and reinforce the independence of the second line OTCR function.
- Provide guidance and training for businesses and functions on managing risks associated with Cloud, AI/ML, and other key ICS domains.

**Risk Management**
- Support the assessment of Tech and ICS risk and reporting by TTO 1st line teams.
- Support the OTCR TTO team in the use of the Tech and ICS risk frameworks and other techniques from a 2nd line perspective.
- Raise visibility of Tech and ICS weaknesses to drive improvements and upliftment.
- Highlight gaps or control weaknesses against security standards and regulations in the key ICS domains.
- Oversee the validation and monitoring of AI/ML models used in business processes.
- Oversight on cloud infrastructure and DevSecOps to ensure compliance to Tech and ICS standards.
- Create risk mitigation plans calling out where these are ineffective or insufficiently followed.
- Perform thematic reviews as required by the OTCR TTO team.

**Governance**
- Work with teams within TTO and participate in work groups and other meetings to understand, advise, and challenge on Tech and ICS matters, specifically for Cloud, DevSecOps and AI/ML risk management.
- Report any Tech and ICS risks/issues during TTO NFRC which require attention and support.
- Ensure consistency of reporting and production of high-quality documentation and materials.
- Provide recommendations and feedback to OTCR teams based on experience with TTO.

**Regulatory & Business Conduct**
- Display exemplary conduct and live by the Group’s Values and Code of Conduct.
- Take personal responsibility for embedding the highest standards of ethics, including regulatory and business conduct, across Standard Chartered Bank.



  • Chennai G.P.O, Chennai, Tamil Nadu, India Worknigeria.com Full time

    **Job Title**: Chief Information Security Officer (CISO) **Location**: Lagos Nigeria **Benefits**: Offshore salary + Local allowance + Health Insurance + All other expatriate benefits **Job Summary**: The Chief Information Security Officer (CISO) is responsible for leading the organization’s information security strategy, ensuring the confidentiality,...

  • Risk Assessments

    8 hours ago


    Coimbatore, Tamil Nadu, India Rezilyens, LLC Full time

    **Risk Assessments - Information Security III** Location: Bangalore - As a part of the Operational Risk Governance Group (ORGG) Process Risk Self-Assessment (PRSA) Program within Global Risk & Compliance, you will contribute to developing and maintaining a global internal control framework and governing standards, capabilities, and risk assessment...


  • Nungambakkam, Chennai, Tamil Nadu, India GuiRes Solutions Pvt Ltd Full time

    **Job description**: **Job Position** : Personal Assistant COO **Job Position Code** : JD-GUI-S&P-08-0801 **Industry Type** Advanced Contract Research, Development and Pilot Manufacturing Organization (CDMO). **Department / Branch** Operation **Position** Full Time, Permanent **Reports to**: COO **About Company** Guires Group is a renowned global...


  • Chennai, India Financial Software & Systems (FSS) Full time

    Looking for payments professionals across a range of roles for our Payments Platform Business as we plan our expansion into Middle East, Africa & ASEAN markets. Locations in India, UAE & ASEAN. **Job brief**: As a Chief Information Security Officer (CISO), this role will take the complete accountability running the information security including risk,...


  • Chennai, Tamil Nadu, India HR Minds Full time

    **Job Summary**: The Chief Security Officer (CSO) is responsible for developing, implementing, and managing the organization's security vision, strategy, and programs to protect personnel, physical assets, and information. The CSO oversees both physical and cybersecurity functions and ensures regulatory compliance, risk mitigation, and business...


  • Besant Nagar, Chennai, Tamil Nadu, India Back to roots Full time

    **Company**: Essential Traditions by Kayal **Industry**:Traditional Cookware & Lifestyle Retail **Location**: Chennai (with travel to Hyderabad & Bangalore) **About the Brand**: Essential Traditions by Kayal is a leading traditional cookware and lifestyle product retail brand with a strong commitment to sustainability, craftsmanship, and preserving...

  • Information Security

    3 weeks ago


    Chennai, Tamil Nadu, India Celestica Electronics S Pte Ltd Full time

    Job DescriptionThe Manager, Information Security applies the understanding of a broad range of technologies and solutions to support strategic business needs and engages with customers at all levels of the organization to successfully realize the vision. They will provide strategic leadership for implementing the enterprise strategy and provide tactical...


  • Chennai, Tamil Nadu, India Elements HRS Full time

    Key Responsibilities :Security Partnership & Alignment :- Act as the trusted advisor and security leader for designated business units or functions.- Align security strategy with business goals, ensuring risk is proactively identified and mitigated.- Partner with business executives, product leaders, and engineering teams to embed security into the...

  • Information Security

    3 weeks ago


    Chennai, Tamil Nadu, India Cubical Operations LLP Full time

    Job Title: Information Security DM / M / SMLocation: ChennaiExperience: 4+ YearsEmployment Type: Full-TimeJob Summary:We are seeking an experienced and proactive Third Party Risk Management (TPRM) Manager to join our growing risk and compliance team. The ideal candidate will be responsible for managing the end-to-end third-party risk lifecycle, driving...


  • Chennai, Tamil Nadu, India Cubical Operations LLP Full time

    Job Title: Information Security DM / M / SM Location: Chennai Experience: 4+ Years Employment Type: Full-Time Job Summary: We are seeking an experienced and proactive Third Party Risk Management (TPRM) Manager to join our growing risk and compliance team. The ideal candidate will be responsible for managing the end-to-end third-party risk lifecycle,...