Control Resilience Assessor

1 day ago


Mumbai, India Willis Towers Watson Full time

**Position**:
**Control Resiliency Assessor**:
**Business Unit**:
Technology

**Job Family**:
Business Support

**Location**:
Mumbai

**Reporting to**:
Manager - Control Resiliency Team

**Job Level**:
**Job Summary**:
Willis Towers Watson has building their Information & Cyber Security (ICS) capabilities to cater to growing Information Security, Risk and Assurance needs of their business, clients and regulatory requirements. These capabilities cater to different verticals such as Strategy Governance, Risk & Compliance, Cyber Defence and Operations, ICS Architecture, Security Assurance. Mumbai is being developed as Security - Center of Excellence and is responsible as well accountable for the delivery of the services provided by the ICS function globally.

Control Resilience team is a part of Global Strategy Governance, Risk & Compliance vertical. Current role will support the delivery of projects related control testing in the areas of Information & Cyber Security, Technology, Infrastructure etc. Conducting design adequacy and operating effectiveness testing of on-prem and cloud controls associated with different audit regimes such as SOx 404, SOC2, SSAE18, ISO 27001, CCPA, NYDFS etc. with proven extensive knowledge in IT Auditing & Audit analytics. Providing appropriate recommendations on improvement of IT controls and processes.

You will work closely with Business, IT and Internal stakeholders to support the delivery of Control Resiliency assignments. Most importantly, you must be an effective communicator (both verbally and in writing) and a supportive team player, taking a consultative rather than confrontational approach whilst maintaining the integrity and independence and ensuring effective management of security risk.

**Principal Accountabilities**:
Manager or manager of people (to include number of reports) or individual contributor:

- Individual contributor

Geographic scope of role:

- Global

Budgetary and risk management responsibilities:

- N/A

Revenue responsibilities:

- N/A

Others:

- N/A

**Principal Duties/Responsibilities**:
Business As Usual
- Perform controls (On-prem & Cloud) including assessment of,
- Control design Adequacy
- Control Operating effectiveness
- Appropriate Recommendations to Control Owners
- Demonstrable knowledge on different audit regimes such as SOx 404, SOC2, SSAE18, ISO 27001 etc
- Establishing and operating processes and procedures for control testing
- Reporting and tracking on prem and cloud control gaps as well as ineffective or inadequate controls
- Coordination and tracking remediation activities being performed by control owners
- Taking initiatives and contributing to improvement of the Global Control & Compliance team activities
- Identify opportunities and recommendation to improve the design and implementation of controls
- Support control owners in the design and maintenance of controls and documentation
- Undertaking such other tasks and responsibilities as assigned by Manager
- Keep yourself up-to date with latest IS related regulation and standards

**Communications and Relationships**:
Internal:

- Other members of GRC & ICS teams
- IT Control Owners and teams
- Service Owners and Service Managers
- Other IT teams
- Project managers and teams

External:
n/a

**Competencies**:

- Global Business Knowledge
- Cross-Cultural Resourcefulness
- Cross-Cultural Agility
- Assignment Hardiness
- Cross-Cultural Sensitivity
- Humility
- Conflict Management
- Organizational Agility
- Customer Focus
- Integrity and Trust
- Personal Learning
- Self-Starter
- Problem Solving

**Required Qualifications, Skills, Knowledge, Experience**:
Qualifications:

- Information security qualifications (e.g. CISA, CISM, CISSP) are preferable.
- Interested in developing skills and knowledge of IT Risk Management, and willing to work towards appropriate professional qualifications, such as CISA
- Formal training in security, risk management or compliance is beneficial.
- Whilst this is not a hands-on technical role, the role holder will be expected to demonstrate a strong awareness of technology and how IT is used to enable business processes.

**Skills**:

- Proven Auditing competency
- Strong IT and analytical skills
- Proactive rather than reactive
- Team player with good interpersonal skills
- Ability to work under pressure to tight timelines
- Organised and methodical
- Willing to challenge and desire to learn
- Good communication skills, both orally and in writing

Knowledge/Experience:
Essential
- Knowledge and understanding of IT Auditing and IT Risk concepts
- Knowledge and understanding of ERPs, Active Directory, SIEM, Identity Access Management, Privileged Access Management tools
- Experience of working in an analytical role, with an ability to interpret data, prepare reports and undertake business support activities.
- Experience working as part of a business support function such as Risk, Compliance or Information security in a large enterprise.

Beneficial
-


  • BCP Resilience

    2 weeks ago


    Gurugram, Mumbai, India WOW Softech Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Position: BCP Resilience ManagerLocation: KPMG India- Mumbai/GurgaonDepartment: Technology Consulting Overview:KPMG India is seeking an experienced BCP Resilience Manager to lead a team of consultants in developing and implementing business continuity and disaster recovery solutions across various industries. The successful candidate will play a critical...


  • Gurugram, Mumbai, India KPMG Assurance and Consulting Services LLP Full time ₹ 10,000 - ₹ 25,000 per year

    Key Responsibilities:Team Leadership: Lead a team of consultants and senior consultants on engaging client projects, providing guidance, mentorship, and support to foster team development.Client Advisory: Serve as a trusted advisor to clients, assisting in the transformation of their business continuity and disaster recovery frameworks to align with current...

  • Corporate bank

    2 weeks ago


    Mumbai, India Deutsche Bank Full time

    Job Title: Corporate bank - Operations Resiliency, AVP Location: Mumbai, India Role Description The role is an extension of the onshore Business Management & Control team - CB DIPL Utility. It involves liaising with COOs and Business Managers across the CB products and Infrastructure partners. The role requires a hands-on individual, who will be involved in...

  • Corporate bank

    2 weeks ago


    Mumbai, India Deutsche Bank Full time

    Job Title: Corporate bank - Operations Resiliency, AVP Location: Mumbai, India Role Description The role is an extension of the onshore Business Management & Control team - CB DIPL Utility. It involves liaising with COOs and Business Managers across the CB products and Infrastructure partners. The role requires a hands-on individual, who will be involved in...


  • Mumbai, Maharashtra, India Deutsche Bank Full time ₹ 12,00,000 - ₹ 24,00,000 per year

    Corporate bank – Operations Resiliency, AVPJob ID: R0406443Full/Part-Time: Full-timeRegular/Temporary: RegularListed: Location: MumbaiPosition OverviewJob Title: Corporate bank – Operations Resiliency, AVPLocation: Mumbai, IndiaRole DescriptionThe role is an extension of the onshore Business Management & Control team – CB DIPL Utility. It involves...


  • Mumbai Nirlon Know. Pk B-B, India Deutsche Bank Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Corporate bank – Operations Resiliency, AVP Job Description: Job Title: Corporate bank – Operations Resiliency, AVP Location: Mumbai, India Role Description The role is an extension of the onshore Business Management & Control team – CB DIPL Utility. It involves liaising with COOs and Business Managers across the CB products and...


  • Mumbai, India VOIS Full time

    Who we are VOIS (Vodafone Intelligent Solutions) is a strategic arm of Vodafone Group Plc, creating value for customers by delivering intelligent solutions through Talent, Technology & Transformation. As the largest shared services organisation in the global telco industry with 30,000 FTE, our portfolio of next-generation solutions and services are designed...

  • Risk Specialist

    2 weeks ago


    Mumbai, India Deutsche Bank Full time

    In Scope of Position based Promotions (INTERNAL only) Job Title: Risk Specialist - Global Operational Resilience, BCM and Crisis Management Corporate Title: AVP Location: Mumbai, India Role Description The Global Operational Resilience, Business Continuity Management (BCM) and Crisis Management (CM) Risk Specialist is an important role within the ORM...

  • Risk Specialist

    2 weeks ago


    Mumbai, India Deutsche Bank Full time

    In Scope of Position based Promotions (INTERNAL only) Job Title: Risk Specialist - Global Operational Resilience, BCM and Crisis Management Corporate Title: AVP Location: Mumbai, India Role Description The Global Operational Resilience, Business Continuity Management (BCM) and Crisis Management (CM) Risk Specialist is an important role within the ORM...


  • Mumbai, Maharashtra, India Deutsche Bank Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Risk Specialist – Global Operational Resilience, BCM and Crisis ManagementJob ID: R0407346Full/Part-Time: Full-timeRegular/Temporary: RegularListed: Location: MumbaiPosition OverviewIn Scope of Position based Promotions (INTERNAL only)Job Title: Risk Specialist – Global Operational Resilience, BCM and Crisis ManagementCorporate Title: AVPLocation:...