Cloud Risk

2 days ago


Mumbai, Maharashtra, India BNP Paribas Full time ₹ 8,00,000 - ₹ 24,00,000 per year

Position Purpose

  • As a Cloud risk officer for BNP Paribas Group Operational Risk Management function, support Cloud operational and technology risk management throughout the lifecycle of private, hybrid and multi cloud platforms

Key Responsibilities

RISK Operational Risk Officer (ORO) Cloud Risk

  • Ensure that the governance, risk control and assurance frameworks for operational and technology risk management are robustly implemented to mitigate operational, cybersecurity and technology risks across multi cloud platforms at BNP Paribas that comprises of IBM Cloud dMZR (dedicated multi zone region), public cloud, private cloud and hybrid cloud throughout its lifecycle
  • Review and update minimum baseline Cloud security controls in collaboration with IT Group Production security teams, Cloud security experts, Operational risk officers, ICT risk officers, etcCollaborate closely with cross-functional teams, Cloud subject matter experts, cyber security teams and operational risk officers to identify, assess, and remediate risks
  • Periodic and adhoc reports and dashboards on the Cloud technology and operational risk indicators, trends, issues, incidents and remediation plans to senior managementRaise awareness of the Operational Risk Officers on multi cloud platforms at BNP Paribas, various cloud topics and cloud initiatives across the Group through the Cloud Risk Community.
  • Stay updated on the regulatory changes and requirements from regulators globally on Cloud topics identifying the gaps in existing baselines and the controls to be implemented to mitigate the gaps. Spread awareness of the regulatory changes across the Operational Risk Officers.
  • Adapt to the evolving landscape of digital transformation, ensuring that risk management approaches are agile and forward-thinking.
  • Support the ICT risk missions across multi cloud platforms identifying the control gaps in the existing security baseline, residual risks, and provide recommendations to mitigate the risks
  • Contributing ResponsibilitiesSupport in check and challenge of the controls, providing risk opinion, conducting risk assessments and audits of the key cloud projects and initiatives across the hybrid cloud, dMZR, private cloud and IBM cloud platforms
  • Support in high quality report writing, documentation and presentation for Cloud security topics of operational risk frameworks
  • Support to develop and maintain the Cloud technology and operational risk management framework, policies, standards, procedures and controls for the Cloud services in alignment with BNP Paribas 1LoD and 2LoD risk management policies
  • Support in development, identification and updating of risk reporting methods using automated solutions. This could include leveraging existing or new solutions of Governance, Risk and Compliance (GRC) tools for Cloud services asset register, risk register, remediation tracking, etc.
  • Support in development of Cloud Security Posture Management solutions, operational risk management solutions, IT service management solutions, reporting & dashboard solutions, etc
  • Identify the risks and vulnerabilities of APIs used at Group, define the baseline controls and ensure APIs comply with industry standards.
  • Technical & Behavioral CompetenciesProfessional qualifications relevant to Cloud and Cyber Security (such as CCSP, CISA, or CRISC).
  • Strong risk mindset with understanding of applicable regulatory requirements in financial services sector around Cloud Security Risks
  • Good knowledge of ICT risks, IT Control, Information Security, Business Continuity, IT operations and IT Audit and assessment methodologies and concepts
  • Functional knowledge in the following areas:
    • Cloud security
  • Container security

  • Cloud provider and platform reviews

  • Infrastructure security

  • Security risk architecture

  • Digital transformation

Frameworks & Technologies

  • Terraform, Kubernetes

  • Docker, containers

  • CSP IaaS, PaaS and SaaS, Infrastructure as Code

  • Microservices, API

  • Cloud Security Posture Management

  • Cloud platforms like Microsoft Azure, Amazon Web Services

  • IBM Cloud, dedicated multi zone region

  • Public cloud, hybrid cloud, multi cloud environments

Competencies (Technical / Behavioural)

The successful candidate will have a proven track record in managing risk and technology in large/global organizations with robust knowledge of technology, risks and controls, IT and cloud risk and cyber security, operational resilience, and third-party technology risk management. Prior ICT risk experience and exposure to the Financial Services industry is a requirement. Experience with risk management tools and information systems is beneficial.

Skills Referential

Behavioral Skills:

Decision Making

Client focused

Ability to collaborate / Teamwork

Attention to detail / rigor

Analytical skills

Transversal Skills

  • Ability to articulate risk management concepts in business language
  • Excellent written and verbal communication (English)
  • Proficient with Microsoft Office Suite
  • Experience within a regulated environment such as financial services industry
  • Proven ability to manage issues through resolution
  • Ability to successfully multitask and complete difficult assignments within deadlines which may have short lead times
  • Works iteratively, delivering quickly and frequently to produce high quality documents and outputs which require little to no rework

Conduct

  • Demonstrate proactivity, transparency and accountability for identifying and managing conduct risks
  • Consider the implications of actions on colleagues, partners and clients before making decisions and escalate issues to manager when unsure

Specific Qualifications Required

  • Graduate or post-graduate qualification in ICT domains, risk management or control function
  • 8 to 10 years or more experience or practical understanding in Risk, Security and other ICT domains required.
  • 6 to 7 years or more experience or practical understanding in Cloud platforms and Cloud Security.


  • Mumbai, Maharashtra, India Cloud Counselage Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    TO GET TIMELY UPDATES ON JOB OPENINGS, FEEL FREE TO JOIN OUR COMMUNITY @ (4L+ MEMBERS FROM 35+ COUNTRIES)Job Overview:As a Senior Cloud Computing Engineer, you will lead the design, implementation, and management of complex cloud-based infrastructure and services. Leveraging your deep expertise in cloud computing technologies and architectures, you will...

  • AI Risk

    4 days ago


    Mumbai, Maharashtra, India BNP Paribas Full time ₹ 8,00,000 - ₹ 24,00,000 per year

    Position Purpose Group RISK Operational Risk Management (RISK ORM) belongs to the second line of defense of BNP Paribas. This role will be within the Group AI Operational Risk Management capability of the Group placed under the responsibility of the Head of RISK ORM CTR, reporting to the Group Chief Operational Risk Officer.Group AI Operational Risk...


  • Mumbai, Maharashtra, India Acura Solution Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    Job Description: Discuss with Business & IT on new process / system / activity before Onboarding/ Go-Live Conduct risk assessments to identify information security risks Propose controls to business / IT and / or work with business to plan riskmitigation Prepare Risk Assessment & Recommended Control Report Follow-ups for mitigation of...

  • Project Manager

    5 hours ago


    Mumbai, Maharashtra, India Applied Cloud Computing Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    Company DescriptionApplied Cloud Computing (ACC) is an AWS Advance Partner with AWS Mobility Competency. Recognized as the Best BFSI Industry Consulting Partner in 2019, ACC has completed numerous successful cloud migration and application development projects. Our services include Digitalisation, Cloud Services, Product Engineering, Big Data & Analytics,...

  • IT Risk, Security

    1 week ago


    Mumbai, Maharashtra, India Enablistar Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Job Title: IT Risk, Security & Audit LeadYears of Experience: 8-13 YearsLocation: India, Mumbai, Andheri, Saki NakaJob Summary:We are seeking an experienced and detail-oriented IT Risk, Security & Audit Lead to oversee product development and deployment, ensuring compliance with security governance, risk management, audits, and certifications within our...

  • Credit Risk Modelling

    2 weeks ago


    Mumbai, Maharashtra, India JPMorganChase Full time ₹ 15,00,000 - ₹ 30,00,000 per year

    DescriptionJOB DESCRIPTIONAre you passionate about building innovative products that transform risk management in banking? Join our Credit Risk Innovation team where you'll combine quantitative modelling, product development, agile delivery, and techno-functional expertise to create next-generation solutions for credit risk analytics and portfolio...


  • Mumbai, Maharashtra, India LexisNexis Risk Solutions Full time ₹ 6,00,000 - ₹ 18,00,000 per year

    Job DescriptionWould you like to be part of a team that delivers high-quality software to our customers?Are you a visible champion with a 'can do' attitude and enthusiasm that inspires others?About the BusinessLexisNexis Risk Solutions is the essential partner in the assessment of risk. Within our Business Services vertical, we offer a multitude of solutions...


  • Mumbai, Maharashtra, India JPMorganChase Full time US$ 60,000 - US$ 1,20,000 per year

    DescriptionAre you passionate about building innovative products that transform risk management in banking? Join our Credit Risk Innovation team where you'll combine product development, agile delivery, and techno-functional expertise to create next-generation solutions for credit risk analytics and portfolio management.As an Associate in the Credit Risk,...


  • Mumbai, Maharashtra, India Nomura Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Nomura Overview:Nomura is a global financial services group with an integrated network spanning approximately 30 countries and regions. By connecting markets East & West, Nomura services the needs of individuals, institutions, corporates and governments through its three business divisions: Wealth Management, Investment Management, and Wholesale (Global...

  • Technology Risk

    2 weeks ago


    Mumbai, Maharashtra, India Early Career Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Whether you're at the start of your career or looking to discover your next adventure, your story begins here. At Citi, you'll have the opportunity to expand your skills and make a difference at one of the world's most global banks. We're fully committed to supporting your growth and development from the start with extensive on-the-job training and exposure...