IT Risk Assessment
10 hours ago
Detailed Job Description
Overall Responsibilities
Effectively manage technology risk for Business & Digital Technology Solutions Group (BDTS). Coordinate with internal team on mitigation of IT related business risk including implementation of strong controls. The individual is expected to be able to communicate effectively with senior management, audit and risk managers both verbally and written in a variety of situations including one to one, committee meetings, and formal presentations.
· Supporting the development of the Technology Risk (Information System Risk, Operational Errors due to Technology, Root Cause Analysis, IT Security Risk, Third Party Information System Risk, Technology Vendor Risk, Impact Analysis for Risks at granular level for Technology Incidents and Problems, etc) framework, applications, databases, products and services, effectiveness of processes, procedures and frameworks;
· Taking ownership of delivery of key reports;
· Enhancing specific aspects of the IT risk framework as required; and
· Providing advice and guidance to the Technology stakeholders on risk and control matters
Key Areas of responsibilities
· Technology Risk Management –
Liaising with Operational Risk team on Risk and Control Self-Assessment (RCSA), Key Risk Indicators (KRI), Key Performance Indicators (KPI), operational errors/incidents, risk acceptances and operational risk events on behalf of the BDTS for tracking, appropriate action and closureCoordinate with various functions within BDTS and other department to collate and check all RBI data required as part of Risk based supervisionLiaising with Technology teams for Information System Risk, Operational Errors due to Technology, Root Cause Analysis, IT Security Risk, Impact Analysis for Risks at granular level for Technology Incidents and Problems, etcLiaising with Technology Vendors for Third Party Information System Risk, Technology Vendor RiskReview and draft all technology related policies, coordinate with various functions within BDTS and assist them in drafting various processes.Working with Technology stakeholders (including Production Support and Development teams) to identify the top technology IT risks impacting the Bank and formulating appropriate remediation strategies based on full understanding of business exposure and compensating controls. Executing IT risk assessment reviews, identifying controls gaps and working in collaboration with subject matter experts to devise appropriate mitigation plans. Identifying key risk trends, issues and other insights requiring further investigation and following up with Technology as appropriate.Providing support and challenge on aspects such as the Risk and Control Self-Assessment (RCSA) and formulation of controls; Providing independent expert advice to the IT areas on operational risk issuesEngaging with risk and control groups, including internal audit and control teamsInitiate processes for automation of Risk Reporting and Risk CapturingMaintain and Update Technology Risk database with appropriate statusReview of gains, losses, near misses and opportunity costs where IT is root cause. Ensuring information documented is of sufficient standard and includes relevant action plans before submission and approval in group operational risk system.Essential Skills/Experience/Qualification
· A bachelor's degree with minimum 4-5 years' experience in technology/information risk management and governance or associated control function (e.g. Op Risk/Audit/SOX/Technology Risk Management) preferably in financial services institutions.
· Subject matter expert on Technology and Information Risk management. Strong understanding of the industry wide best practices, policies & procedures, techniques in the area of risk management
· Solid understanding of internal risk and control concept (e.g. Risk and Control Self-Assessment and Key Risk Indicators) and analytical skills to identify weakness and root causes and provide effective and efficient recommendations to address issues
· Understanding and/or qualification in IT Risk and Governance frameworks and standards (e.g. COBIT, ITIL, ISO etc.).
· Sound presentation skills including the ability to communicate risk posture, audit finding clearly and concisely. Ability to draft high quality written products that are comprehensive, accurate, and tailored to the audience.
· Proficiency in MS Office and related applications (Word, Excel, PowerPoint, Visio and SharePoint).
· Self-starter with ability to manage workload and tasks independently.
· Strong written and oral communication skills and the ability to interact with senior management.
· Project management skills to monitor and track projects effectively
· Ability to work effectively under pressure, tight schedules and flexible hours
· Excellent judgment and proven decision making skills
· Ability to be both an effective listener and influencer is a plus
· Good understanding of IT and its operational setup in banking is a plus
· Preferred background are Risk Management Assessment / Audit/Control Self-Assessment/Information Security experience
Qualifications:
· Desired to have one of the professional qualification such as CRISC/CISM/CISA/CISSP certification
· Knowledge of regulatory compliance e.g. SOX, BASEL3
· Knowledge of Process & Quality management
-
Risk Assessment Manager
2 weeks ago
Bengaluru, India Virtusa Full timeJob Description Location: Hybrid (Pan-India as per operating locations) Department: Strategy Reports to: Chief Risk Officer (CRO) Job Summary We are seeking an experienced and highly motivated Global Risk Assessment Manager to lead and support our global risk assessment program. As part of the Enterprise Risk Management function, this role will be...
-
Tech Risk Assessment
15 hours ago
Mumbai, Maharashtra, India BSR & Co Full time ₹ 12,00,000 - ₹ 36,00,000 per yearDescriptionAbout KPMG in IndiaKPMG entities in India are professional services firm(s). These Indian member firms are affiliated with KPMG International Limited. KPMG was established in India in August 1993. Our professionals leverage the global network of firms, and are conversant with local laws, regulations, markets and competition. KPMG has offices...
-
Vendor Risk Assessment
1 week ago
Mumbai, Maharashtra, India CyberNxt Solutions LLP Full timeSeeking a Vendor Risk Assessment Analyst with 2-3 years of experience, specializing in cybersecurity. This role is crucial in ensuring that our vendor relationships not only meet our security and compliance requirements but also align with our cybersecurity objectives. Requires strong analytical skills, knowledge of risk management principles, and...
-
Thematic risk assessment-mumbai
2 weeks ago
Mumbai, Maharashtra, India Acura Solution Full time ₹ 5,00,000 - ₹ 15,00,000 per yearJob Description:● Independently run the Key Risk Indicator program for IT & Cyber Security● Review the bank's Risk Assessment & Risk Treatment plan/register and update same withrelevant risks● Periodically test the design strength of the controls and track changing risk patterns acrossmultiple IT & Cyber areas of the bank● Conduct thematic cyber...
-
Dir Risk Assess&monitoring
2 weeks ago
Chennai, Tamil Nadu, India Standard Chartered Full time**Job Summary** - This role reflects our commitment to more than just profitability—it's about living our values and upholding our brand promise, _Here for Good_. The Managed Services team, established to support Group Risk and CFCC, centralizes the production and non-judgmental activities in a service hub. This allows onshore teams to make risk-reward...
-
Ad Risk Assess&monitoring
2 weeks ago
Chennai, Tamil Nadu, India Standard Chartered Full time**Job Summary** - This role reflects our commitment to more than just profitability—it's about living our values and upholding our brand promise, _Here for Good_. The Managed Services team, established to support Group Risk and CFCC, centralizes the production and non-judgmental activities in a service hub. This allows onshore teams to make risk-reward...
-
Coupa Risk Assess
2 weeks ago
Bengaluru, Chennai, Pune, India Bct Consulting Full time ₹ 15,00,000 - ₹ 25,00,000 per yearRole & responsibilitiesRequired Technical and Professional Experience• 4+ years of experience in Coupa Procurement applications as a techno-functional consultant.• Coupa CRA experience• Strong hands-on experience with Coupa API integrations, middleware tools (Mulesoft, Boomi, SnapLogic, etc.), and ERP connectivity.• Expertise in Coupa Advanced...
-
FIC Risk and Control Assessment
1 week ago
mumbai, India Deutsche Bank Full timeJob Description:Job Title: FIC Risk and Control Assessment (RCA)Location: Mumbai, IndiaCorporate Title: AVPRole DescriptionThe Business Control Unit (BCU) is a 1st Line of Defence (1st LoD) function within the front office created during the implementation of the Three Line of Defence (3LoD) programme. Its primary objective is to support the front office in...
-
SG Business Risk Assessment
2 weeks ago
Bengaluru, Chennai, India Genpact Full time ₹ 6,00,000 - ₹ 18,00,000 per yearIn this role, you will play a key part in supporting Business and In-country Compliance teams by ensuring adherence to regulatory requirements and internal compliance standards across multiple jurisdictions. You will manage compliance-related activities by following established processes, collaborating with Compliance Officers and business stakeholders, and...
-
Director Business Risk Assessment Monitoring
2 days ago
Chennai, Tamil Nadu, India Standard Chartered Bank Full time US$ 1,50,000 - US$ 2,50,000 per yearRequisition Number: 28773Job Location: Chennai, INDWork Type: Office WorkingEmployment Type: PermanentPosting Start Date: 27/11/2025Posting End Date: 28/11/2025:Job SummaryTo us, good performance is about much more than turning a profit. It's about showing how you embody our valued behaviours as well as our brand promise, Here for good.We're committed to...