Current jobs related to Principal - Cyber Risk and Assurance - Bengaluru, Karnataka - GSK

  • Risk Assessment

    2 weeks ago


    Bengaluru, Karnataka, India KPMG Assurance and Consulting Services LLP Full time ₹ 15,00,000 - ₹ 20,00,000 per year

    ROLE & RESPONSIBILTY:Conduct thorough and detailed cyber risk assessments for our clients, analyzing their digital infrastructure, systems, and security controls.Collaborate with cross-functional teams to gather essential information and data required for comprehensive risk assessments.Evaluate and interpret assessment results to identify potential...


  • Bengaluru, Karnataka, India Primus Full time

    Job Title : Cyber Assurance Analyst (Consultant)Experience : 4+ yearsLocation : MumbaiDepartment : Cyber Team Cyber AssuranceBudget : Maximum 22 LPA(Depends on performance)Job Summary : We are seeking a highly motivated Cyber Assurance Analyst to join our growing team. The ideal candidate will play a crucial role in enhancing our platform management...

  • Supplier Cyber Risk

    3 weeks ago


    Bengaluru, Karnataka, India GlaxoSmithKline Full time

    Support the Supplier Cyber Risk and Assurance processes for all business units and support functions across GSK to ensure cyber security risks that may be introduced by third-parties are understood managed or mitigated Key Responsibilities Conduct comprehensive supplier cybersecurity assessments and generate detailed reports ensuring alignment with...


  • Bengaluru, Karnataka, India Tesco Technology Full time ₹ 4,00,000 - ₹ 8,00,000 per year

    About the roleFollowing our Business Code of Conduct and always acting with integrity and due diligence and have these specific risk responsibilities:Perform control testing in line with regulatory standards, recognised security frameworks and/or organisational policies to determine effectiveness of the control and provide recommendations.Review adequacy of...


  • Bengaluru, Karnataka, India Mitigata - Smart Cyber Insurance Full time

    About Us(Mitigata) is a leading provider of Cyber Security, Compliance, and Risk Management solutions helping businesses safeguard digital assets, ensure regulatory compliance, and minimize exposure to cyber threats. With a strong portfolio of solutions and services, we empower enterprises to build a resilient cyber defense posture.Role OverviewWe are...


  • Bengaluru, Karnataka, India MitigataTM - Smart cyber insurance Full time

    About Us (Mitigata) is a leading provider of Cyber Security, Compliance, and Risk Management solutions helping businesses safeguard digital assets, ensure regulatory compliance, and minimize exposure to cyber threats. With a strong portfolio of solutions and services, we empower enterprises to build a resilient cyber defense posture. Role Overview We are...


  • Bengaluru, Karnataka, India Mitigata - Smart cyber insurance Full time

    About Us[Mitigata] is a leading provider of Cyber Security, Compliance, and Risk Management solutions helping businesses safeguard digital assets, ensure regulatory compliance, and minimize exposure to cyber threats. With a strong portfolio of solutions and services, we empower enterprises to build a resilient cyber defense posture.Role OverviewWe are...


  • Bengaluru, Karnataka, India Mitigata - Smart cyber insurance Full time

    About Us (Mitigata) is a leading provider of Cyber Security, Compliance, and Risk Management solutions helping businesses safeguard digital assets, ensure regulatory compliance, and minimize exposure to cyber threats. With a strong portfolio of solutions and services, we empower enterprises to build a resilient cyber defense posture. Role Overview We are...


  • Bengaluru, Karnataka, India Sophos Full time ₹ 6,00,000 - ₹ 18,00,000 per year

    About UsSophos is a global leader and innovator of advanced security solutions for defeating cyberattacks. The company acquired Secureworks in February 2025, bringing together two pioneers that have redefined the cybersecurity industry with their innovative, native AI-optimized services, technologies and products. Sophos is now the largest pure-play Managed...


  • Bengaluru, Karnataka, India Mitigata™ - Smart cyber insurance Full time

    About Us(Your Company Name) is a leading provider of Cyber Security, Compliance, and Risk Management solutions helping businesses safeguard digital assets, ensure regulatory compliance, and minimize exposure to cyber threats. With a strong portfolio of solutions and services, we empower enterprises to build a resilient cyber defense posture.Role OverviewWe...

Principal - Cyber Risk and Assurance

2 weeks ago


Bengaluru, Karnataka, India GSK Full time US$ 90,000 - US$ 1,20,000 per year

Site Name:
Bengaluru Luxor North Tower

Posted Date:
Sep 3 2025

  • Job Title:** Principal - Cyber Risk and Assurance

**Team Introduction:**

*(Placeholder section)*

**Position Summary:**

The Principal - Cyber Risk and Assurance role at GSK is an exciting opportunity to lead efforts in protecting our business, customers, and patients from cyber risks. This position involves collaborating with global teams to embed "secure by design" principles across projects and operations, ensuring robust cyber security coverage throughout the development lifecycle. The role requires working closely with cross-functional teams, including Cyber Security Operations, Governance Risk and Compliance, and Architecture and Engineering, to address business needs effectively. We value candidates who are proactive, analytical, and possess strong communication skills to influence and drive a culture of cyber resilience.

**Responsibilities:**

  • Identify, document, and report business cyber risks to senior stakeholders, positively influencing the cyber security posture.
  • Provide subject matter expertise in managing risks across key areas such as data, applications, cloud, and identity access management (IAM).
  • Conduct formal cyber security risk assessments for business projects, ensuring compliance with GSK policies, controls, and regulatory requirements while meeting business objectives.
  • Collaborate with internal and external stakeholders to recommend security and privacy controls that mitigate risks effectively.
  • Guide business owners and stakeholders throughout the delivery lifecycle, ensuring tailored and proportionate information security measures.
  • Partner with global teams to align cyber risk management frameworks, metrics, and reporting with GSK's strategy and initiatives.

**Qualifications/Skills:**

**Basic Qualifications:**

10+ years of cyber security risk assessments experience.

  • Bachelor's degree in Cyber Security, Information Technology, Computer Science, or a related field.
  • Demonstrated experience in cyber security principles, IT security controls, and related technologies.
  • Experience conducting cyber security risk assessments and third-party security and data privacy evaluations.
  • Strong verbal and written communication skills in English, with the ability to interact effectively with professionals at all levels.
  • Knowledge of frameworks and standards such as ISO 27001, NIST, and CIS.
  • Ability to work with virtual teams across different countries, adapting to diverse work cultures and communication styles.

**Preferred Qualifications:**

  • Professional certifications such as CISSP, CISM, or equivalent.
  • Experience with Governance, Risk, and Compliance (GRC) technologies for cyber risk management.
  • Proven ability to prioritize, delegate, and foster high-performance teams in a customer-focused environment.
  • Experience working with outsourced providers to drive positive organizational changes.
  • Familiarity with automation initiatives to enhance efficiency in cyber risk management processes.

**Work Arrangement:**

This role is based in India and follows a hybrid work model, combining on-site and remote work flexibility.

*This Position Description is to provide a framework for job understanding between employee and manager. It may not cover or contain the full listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice and at the discretion of the management of the Company. The position description is not used in the assignment or assessment of any GSK level or grade used in the Job Evaluation Process.*

**Why GSK?

Uniting science, technology and talent to get ahead of disease together.**
GSK is a global biopharma company with a purpose to unite science, technology and talent to get ahead of disease together. We aim to positively impact the health of 2.5 billion people by the end of the decade, as a successful, growing company where people can thrive. We get ahead of disease by preventing and treating it with innovation in specialty medicines and vaccines. We focus on four therapeutic areas: respiratory, immunology and inflammation; oncology; HIV; and infectious diseases – to impact health at scale.

People and patients around the world count on the medicines and vaccines we make, so we're committed to creating an environment where our people can thrive and focus on what matters most. Our culture of being ambitious for patients, accountable for impact and doing the right thing is the foundation for how, together, we deliver for patients, shareholders and our people.

Important notice to Employment businesses/ Agencies
GSK does not accept referrals from employment businesses and/or employment agencies in respect of the vacancies posted on this site. All employment businesses/agencies are required to contact GSK's commercial and general procurement/human resources department to obtain prior written authorization before referring any candidates to GSK. The obtaining of prior written authorization is a condition precedent to any agreement (verbal or written) between the employment business/ agency and GSK. In the absence of such written authorization being obtained any actions undertaken by the employment business/agency shall be deemed to have been performed without the consent or contractual agreement of GSK. GSK shall therefore not be liable for any fees arising from such actions or any fees arising from any referrals by employment businesses/agencies in respect of the vacancies posted on this site.

It has come to our attention that the names of GlaxoSmithKline or GSK or our group companies are being used in connection with bogus job advertisements or through unsolicited emails asking candidates to make some payments for recruitment opportunities and interview. Please be advised that such advertisements and emails are not connected with the GlaxoSmithKline group in any way.

GlaxoSmithKline does not charge any fee whatsoever for recruitment process. Please do not make payments to any individuals / entities in connection with recruitment with any GlaxoSmithKline (or GSK) group company at any worldwide location. Even if they claim that the money is refundable.
If you come across unsolicited email from email addresses not ending in or job advertisements which state that you should contact an email address that does not end in "", you should disregard the same and inform us by emailing , so that we can confirm to you if the job is genuine.