Information Security Risk Assessor
4 days ago
**Responsibilities**:
**What will you contribute?**
**ESSENTIAL DUTIES AND RESPONSIBILITIES**
As an Information Security Risk Assessor, your deliverables will include, but are not limited to, the following:
- Assist with development and implementation of the information security risk assessment strategy, methodology, and process
- Assist with planning and execution of the annual security control risk assessment schedule
- Identify, evaluate and assist with security control recommendations to mitigate information security risks
- Evaluate and advise on implementation and effectiveness of security controls for compliance with applicable information security laws, regulations, and policies
- Ensure that risk treatment plans are in place and tracked for findings identified during risk assessments, audits, and regulatory examinations.
- Document information security risk and compliance findings, recommendations and risk treatment plans in written reports for senior level management
- Independently facilitate meetings and discussions with senior level management and staff to understand and document processes and systems
- Provide guidance to business partners to ensure compliance with information security regulatory requirements and internal policy
- Support the third-party security vendor risk management program and lifecycle
**QUALIFICATIONS REQUIRED**
**Knowledge / Skills**
- Be a self-starter and an output-driven team player with experience in fast-paced environments.
- Track and manage numerous parallel activities.
- Work efficiently and independently with mínimal supervision (i.e., self-motivated and willing to stretch to meet important deadlines).
- Thrive in a fast-paced and dynamic environment.
- Build and maintain constructive working relationships across the enterprise at all levels.
- Effectively communicate in both written and verbal manner to influence both technical and non-technical audiences.
- Earn the trust and respect of colleagues both in and outside of the Information Security team.
- Working knowledge of the financial industry a plus.
- Strong analytical skills.
- Strong project management skills.
- Excellent written and oral communication skills; ability to express thoughts clearly, know how to listen and contribute in a team environment.
- Exceptional Microsoft Office ability - especially Excel and PowerPoint with Power BI a Plus.
**Experience**
- Minimum of 5+ years of information security experience in any combination of risk management, information security or information technology
- Experience across various security, compliance, regulatory and common control frameworks (NIST CSF/SPs, ISO, FFIEC, SWIFT, PCI, GDPR, SOX, etc.) and risk frameworks/methodologies (NIST RMF, FFIEC CAT, OCTAVE, FAIR, COSO, etc.) as they relate to the banking, technology, and software industry
- Experience with tools and technologies used to manage information security program governance, such as eGRC tooling/software
- Experience with specific security tool/processes including security monitoring, vulnerability assessment, Intrusion detection/prevention, proxy servers, data loss prevention, anti-malware/virus, etc. is strongly preferred
- Proficiency in information security domains, including risk and control assessments, policies and standards, secure systems development lifecycle, regulatory compliance, access controls, technology resiliency, governance and metrics, incident management, vulnerability management, and data protection
**Education / Certifications**
- Bachelor's degree from an accredited college or university, or equivalent experience. A degree in Computer Science, Information Systems, or a related field or discipline is preferred but not required.
- Industry certifications in the areas of Information Security a plus.
-
Junior Third-Party Risk Assessor
2 days ago
Bengaluru, India NETSACH GLOBAL Full timeGreetings from Netsach - A Cybersecurity Company. Job Summary: Our client, a leading bank based in Dubai, is looking for a Junior Third-Party Risk Assessor to join their growing Risk Management function. This entry-level role will support the assessment, monitoring, and governance of third-party service providers, ensuring compliance with internal policies...
-
Junior Third-Party Risk Assessor
1 week ago
Bengaluru, Karnataka, India Netsach Global Full time ₹ 40,00,000 - ₹ 1,20,00,000 per yearGreetings from Netsach - A Cybersecurity Company.Job Summary:Our client, a leading bank based in Dubai, is looking for a Junior Third-Party Risk Assessor to join their growing Risk Management function. This entry-level role will support the assessment, monitoring, and governance of third-party service providers, ensuring compliance with internal policies and...
-
Junior Third-Party Risk Assessor
3 days ago
Bengaluru, Karnataka, India NETSACH GLOBAL Full time ₹ 6,00,000 - ₹ 12,00,000 per yearGreetings from Netsach - A Cybersecurity Company.Job Summary:Our client, a leading bank based in Dubai, is looking for a Junior Third-Party Risk Assessor to join their growing Risk Management function. This entry-level role will support the assessment, monitoring, and governance of third-party service providers, ensuring compliance with internal policies and...
-
Cybersecurity Governance Assessor
6 days ago
Bengaluru, Karnataka, India Hewlett Packard Full time**Job Title: Senior Cybersecurity Risk Assessor** As the world around us becomes more connected and digital, cybersecurity attacks increase opportunities for fraud and disruption. In this constantly changing landscape, the need for companies, products, and services to be secure is more important than ever. Are you passionate about keeping good people safe...
-
Bengaluru, India Mashreq Global Services Private Limited Full timeKey Responsibilities:1. Information Security Governance- Develop, implement, and maintain the Information Security Governance Framework in alignment with business strategy and regulatory requirements.- Define, review, and update security policies, standards, and guidelines to ensure relevance and effectiveness.- Establish and monitor key performance...
-
Information Security Assessor
2 weeks ago
Bengaluru, India JPMorgan Chase & Co Full time**JOB DESCRIPTION** You’re ready to gain the skills and experience needed to grow within your role and advance your career **Job Summary**: The scope of work includes control assessments for the various programs covering Financial (SOX, CCAP etc.), Payment Card (PCI), Cyber, Privacy (GLBA, GDPR etc.), Application (ARA) and Infrastructure (ICA) across both...
-
Information Security Risk Analyst
2 weeks ago
Bengaluru, Karnataka, India Equiniti Full time ₹ 8,00,000 - ₹ 24,00,000 per yearManagement LevelGCore Duties/ResponsibilitiesRisk Identification, Assessment and AnalysisAssist and conduct comprehensive risk assessments to identify potential cybersecurity threats and vulnerabilities across EQ's infrastructure, data, applications, mobile and networks.Assist in conducting comprehensive security risk assessments for internal systems,...
-
Information Security Governance, Risk
1 week ago
Bengaluru, Karnataka, India Can Fin Homes Limited Full time ₹ 15,00,000 - ₹ 25,00,000 per yearResponsible for Information Security (IS) Governance, risk management and compliance in the organization. 2. Develop and maintain documentation related to Information Security governance, risks, and audits in alignment with regulatory and compliance requirements. 3. Create, review, and update policies and standards to adapt to evolving organizational needs....
-
Information Security Governance Risk
7 days ago
Bengaluru, Karnataka, India Morae Global Corporation Full time ₹ 12,00,000 - ₹ 36,00,000 per yearInformation Security Governance Risk and Compliance – Associate ManagerJob Type: Full TimeReports to: Director of Information Security & IT GovernancePOSITION OVERVIEWThis Information Security GRC Expert – Associate Manager contributes to Morae success byimplementing, and maintaining people, process and technology-oriented policies, procedures,...
-
Security Questionnaire Coordinator
2 days ago
Bengaluru, India HR Path Full timeHR PATH GROUP The HR Path Group, a global player in HR consulting, assists its customers in their HR transformation projects, both on the human and tools aspects (HRIS). We intervene in Europe, America and Asia-Pacific, for our large accounts and SME customers, in order to offer them a global support in the development of their HR strategy. Advise to Run !...