Third Party Governance

6 days ago


Chennai Tamil Nadu, India GSN Solutions LLC Full time

We have urgent opening for Third Party Governance Role.

**Roles & Responsibility -**
- **Vendor Risk Identification and Analysis**:

- Revise the Vendor Risk Assessment Playbook, Process, and Procedures to ensure they're up-to-date with industry practices.
- Construct a risk assessment plan using a standardized approach to minimize the bank's exposure to third-party vendor risks.

b. **Third Party Cyber Risk Assessments**:

- Analyze third-party cyber risk assessment documents and procedures to ensure comprehensive risk management.
- Continually monitor and adapt to new risks, ensuring that assessment strategies are proactive.

c. **Tools, Measurement, and Analysis**:

- Scrutinize and validate cyber tools and create test cases to assess the effectiveness of third-party cyber risk tools.
- Optimize the use of JIRA for improved tracking and management of cyber assessments.

d. **Program Governance - Cyber PMO**:

- Establish a Cyber Program Management Office to oversee and align cyber risk projects with organizational goals.
- Provide ongoing support for cyber risk initiatives and ensure effective communication among all stakeholders.

**Vendor Risk Assessment and Mitigation**

2. **Assessment Scope and Connectivity**: Defining the scope of the assessment and identifying how vendor services connect with the organization’s existing architecture.

3. **Questionnaire Distribution and Assistance**: Tailoring assessment questionnaires based on vendor service applicability and facilitating stakeholders in completing them.

4. **Evidence Review and Follow-ups**: Reviewing the evidence provided by stakeholders and conducting follow-up meetings for clarification and understanding of responses.

5. **Gap Analysis and Validation**: Analyzing the questionnaires to identify gaps and conducting validation sessions with stakeholders on the findings.

6. **Risk Assessment Reporting**: Compiling the findings into a Risk Assessment Report that details the risks and their ratings.

The deliverables from this stage include a controls checklist for vendors and a comprehensive Risk Assessment report.

**For Risk Mitigation**:

- Propose recommendations and create an action plan for risk treatment.
- Review and evaluate proposed actions against the organization's risk acceptance criteria.

For the **Cyber TPG Vendor Assessment**:

- Study and evaluate advanced assessment methodologies for vendors, including their effectiveness and applicability.
- Compare assessment methodologies like vBSIMM, SAMM against current vendor risk profiles.
- Evaluate vendors' implementation and maintenance of Cloud SIEM solutions.

For **Inherent Risk Profiling of the vendors**:

- Review the inherent cyber risk profiles (IRPs) for vendors within scope.
- Present a categorization of the vendors based on risk and determine the necessity of onsite assessments.
- Outline the scope of the assessment domains for the vendors.
- Analyze the alignment of vendor risk profiles with the organization's cybersecurity framework.
- Assess the necessity for an onsite assessment based on the vendor's risk tier and engagement level.
- Develop a comprehensive risk assessment timeline that accounts for the complexity and scope of vendor services.

The deliverables for these stages include detailed Inherent Risk Profiling which encompasses risk categorization, engagement level risk tiering, scheduling for assessments, and the approach and scope for each vendor.
- 1. Current CTC
2. Expected CTC
3. Notice Period
4. Total Experience
5. Relevant Experience
6. Current Location
7. Availability for interview(Please specify time slot)
8. Are you ready to relocate to Pune or Chennai(Pls specify Yes/No. If yes mention city )

Regards
Preeti Sawant
Pyx Tech Pvt Ltd

**Salary**: ₹1,000,000.00 - ₹2,500,000.00 per year

**Experience**:

- total work: 5 years (preferred)
- Vendor Risk assessment: 5 years (preferred)
- cyber risk assessment: 5 years (preferred)
- cyber pmo: 5 years (preferred)
- program governance: 5 years (preferred)
- Vendor mitigation: 5 years (preferred)

Ability to Relocate:

- Chennai, Tamil Nadu: Relocate before starting work (preferred)

Work Location: In person



  • Chennai, Tamil Nadu, India Perfect engineers & resources private limited Full time

    Job Description: We require two third-party inspectors for structural bolt inspection and torque checking for our ongoing Iron Ore Pellet Plant project. Steel plant experience is must Scope of Vendor: 1. Engineers must be available to work in both day and night shifts. 2. Minimum working hours should be 10 hours per day, including 1-hour lunch...


  • Chennai, India TransUnion Full time

    TransUnion's Job Applicant Privacy Notice **What We'll Bring**: About TransUnion: TransUnion is a global information and insights company which provides solutions that help create economic opportunity, great experiences and personal empowerment for hundreds of millions of people in more than 30 countries. We call this Information for Good®. TransUnion is...


  • Bengaluru, Chennai, Hyderabad, India Tata Consultancy Services Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Exp : 5 to 12 yrsJob descriptionRole & responsibilitiesShould be able to develop and manage a comprehensive third party risk management framework / program.Should be able to drive regulatory compliance / remediation programs such as Digital Operational Resilience Act (DORA).Should be independently able to manage third party due diligence including initial...


  • Chennai, Tamil Nadu, India AstraZeneca Full time

    **Job Title**: Third party Supply Demand Planner **Career Level** - D3 **Introduction to role** Global Supply Chain & Strategy (GSC&S) leads the design, planning, and development of AstraZeneca’s end-to-end supply chains, delivering clear strategic focus and optimizing performance. The technology, data, and information that underpin the Global Supply...


  • Chennai, Tamil Nadu, India ADANI GROUP Full time

    Responsibilities Primary Responsibilities Tracking all the policy process documents are up to date as per standard requirement e g Annual review of ISMS ITSM SOPs Amend the policy process documents along with necessary version updates whenever required Interview and monitor the process effectiveness with internal team members periodically and ensure...


  • Chennai, Tamil Nadu, India Strongbox It Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Role Overview:We are looking for a SOC Governance & Process Engineer to design and enforce security governance frameworks, develop SOC playbooks, and oversee tool implementations managed by third parties or internal teams (FortiSIEM, Microsoft Defender, Intune, Purview, Freshservice). This is the anchor role ensuring governance, compliance, and operational...


  • Chennai, Tamil Nadu, India AstraZeneca Full time

    **Job Title - Associate - Data governance Policy** **Career Level - C2** AstraZeneca is a global, science-led, patient-focused biopharmaceutical company that focuses on the discovery, development, and commercialization of prescription medicines for some of the world’s most serious disease. But we’re more than one of the world’s leading pharmaceutical...


  • Chennai, Tamil Nadu, India Standard Chartered Bank Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Job ID: 35882Location: Chennai, INArea of interest: Procurement & Supply ChainJob type: Regular EmployeeWork style: Office WorkingOpening date: 30 Jul 2025Job SummaryStrategyEstablish and implement TPRM governance and oversight processes.Support & embed local TPRM regulatory requirements in Country.BusinessCoordinate and supervise the control assessment...

  • Data Governance

    4 days ago


    Chennai, Tamil Nadu, India AstraZeneca Full time

    **Job Title - Data Governance & Policy Principal** **Career Level - E** **About Astrazeneca**: AstraZeneca is a global, science-led, patient-focused biopharmaceutical company that focuses on the discovery, development, and commercialization of prescription medicines for some of the world’s most serious disease. But we’re more than one of the world’s...


  • Chennai, Tamil Nadu, India Standard Chartered Full time

    Job Summary This role could be based in India or Malaysia When you start the application process you will be presented with a drop down menu showing all countries please ensure that you only select a country where the role is based As part of the global UK Audit and Corporate Governance UK ACG programme the purpose of the role is to support the Global IT...