Audit Manager, Information Security

17 hours ago


Bengaluru, Karnataka, India Grant Thornton Full time ₹ 12,00,000 - ₹ 36,00,000 per year

The Senior Manager, Information Security Third-party Risk Management position will be an integral member of the Information Security and Risk Management team. This role will be responsible for design, development, implementation and monitoring of risk management program. Work in Chief Information Security Officer (CISO) office under Associate Director, Information Security Governance, Risk and Compliance, this role serves as an information security technology professional for Grant Thornton to support the design, implementation, and maintenance of a cohesive information security governance, risk and compliance program. The successful candidate will have a good mix of deep technical knowledge, understanding of industry best practice, frameworks and regulations, and a demonstrated background in information security risk management program.

An experienced and motivated risk and compliance individual contributor is needed to work across a matrixed team in place today and growing in the future. The successful candidate has a track record of developing strong relationships, collaborating across teams, coordinating multiple timelines, and managing complex, cross discipline projects

Skills

The ideal candidate:

is a self-starter, with the ability to drive tasks to completion independently and learn new skills on the job as program requirements evolve.

possesses strong business judgment, deep analytical thinking, is comfortable managing multiple responsibilities within a fast-paced environment, and has worked collaboratively with others to develop, implement, and communicate business improvement and innovative strategies.

possesses strong verbal and written communication skills, a solution-oriented approach, and relationship-building skills are important attributes to succeed in this role.

global view of their business and think in terms of immediate problem solving but also automating, expanding, and scaling solutions broadly.

thinks strategically at a global level and effectively develop key processes, procedures and communications that facilitate cross-functional implementation of risk management processes and risk reporting.

Responsibilities:

  • Advance the information security third-party risk management framework and develop risk appetite
  • Develop effective strategies for addressing high-risk suppliers.
  • Oversee and perform security risk assessments, business impact analyses, and security control evaluations across third-party vendors in OneTrust.

Prepare risk register in OneTrust to monitor and track risks.

  • Provide supply chain security assessment remediation oversight and facilitate development of CUECs to document shared responsibility model.
  • Perform client MSA security terms and conditions review and provide feedback to legal team.
  • Ensure compliance with relevant firm security policies.
  • Support iterative review of assessment results, working with appropriate stakeholders across the lines of defense
  • Establish risk reporting and escalation processes
  • Remain up to date with emerging threats, best practices and relevant legislation
  • Work and communicate hand-in-hand with both external and internal stakeholders on critical issues that are directly impacting the business.
  • Contribute to the development of scalable models and tools that speed up both decision making and accuracy for the organization.
  • Meet with stakeholders to gather and integrate feedback and evangelize the program
  • Perform and facilitate the collection, review, and assimilation of risk assessment data and reporting into concise and meaningful reports/dashboards for leadership. Take leading role in drafting and presenting deep-dive documents, including responses to senior executives.


  • Bengaluru, Karnataka, India AviinTech Business Solutions Full time

    Key Responsibilities : Audit Management & Execution : - Lead and support information security audit activities, demonstrating proven experience with audits such as ISO 27001, SOC 2, RBI, and PCI DSS.- Drive audit readiness activities, meticulously mapping evidence to control requirements.- Develop and implement remediation plans for identified audit...


  • Bengaluru, Karnataka, India Grant Thornton Full time

    xc2xb7 The Senior Manager Information Security Third-party Risk Management position will be an integral member of the Information Security and Risk Management team This role will be responsible for design development implementation and monitoring of risk management program Work in Chief Information Security Officer CISO office under Associate Director...


  • Bengaluru, Karnataka, India beBeeGovernance Full time ₹ 15,00,000 - ₹ 25,00,000

    Job DescriptionAs a key member of our organization, you will play a vital role in supporting and advising on Information Security Management System (ISMS) and associated controls.Provide guidance on the management of risk and offer a transparent view of risk posture to stakeholders.Support compliance with relevant control standards, regulation, and audit...


  • Bengaluru, Karnataka, India Grant Thornton Full time

    Role Description xc2xb7 The Awareness Training Manager Information Security position will be an integral member of the Information Security and Risk Management team This role will be responsible for organizing and managing internal and external audits Work in Chief Information Security Officer CISO office under Director Information Security...


  • Bengaluru, Karnataka, India Ujjivan Small Finance Bank Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Job descriptionExecution of IT audits assigned in line with Internal Audit Annual Plan.Conduct regulatory audits for various banking applications including critical applications such as Core Banking System, Internet Banking etc.Examine internal IT controls, evaluate the design and operational effectiveness.Test and identify network and system...


  • Bengaluru, Karnataka, India Techrevive Full time ₹ 12,00,000 - ₹ 20,00,000 per year

    We are seeking a skilled Information Security Consultant to help organizations strengthen their cybersecurity posture, manage risks, and ensure compliance with industry standards. The ideal candidate will have hands-on experience in IT audits, security assessments, and risk management, coupled with strong advisory skills.Key Responsibilities:Conduct IT...


  • Bengaluru, Karnataka, India iRage Full time

    We are looking for a highly skilled Security Engineer with strong expertise in audits, compliance, and penetration testing to strengthen the security posture of our high-frequency trading (HFT) infrastructure. The ideal candidate will have a blend of technical proficiency and regulatory understanding, with hands-on experience in security assessments,...


  • Bengaluru, Karnataka, India beBeeCybersecurity Full time ₹ 1,00,00,000 - ₹ 1,50,00,000

    Senior Security Consultant Job DescriptionAs a seasoned cybersecurity professional, you will be responsible for leading and executing comprehensive security initiatives that ensure the highest level of information protection. Your expertise will guide organizations in implementing robust security frameworks, conducting thorough risk assessments, and...


  • Bengaluru, Karnataka, India beBeeCybersecurity Full time ₹ 80,00,000 - ₹ 1,20,00,000

    Job Opportunity: Cybersecurity ExpertWe are seeking a seasoned cybersecurity professional to perform IT and security audits, assess risks, evaluate controls, and ensure compliance with regulatory standards.Key Responsibilities:Conduct comprehensive IT and cybersecurity audits covering infrastructure, applications, networks, and security controls.Assess IT...


  • Bengaluru, Karnataka, India Scrut Automation Full time

    Job Description: Information Security ManagerRole DetailsPosition: Information Security ManagerLocation: BangaloreAbout SCRUT AutomatScrut Automation is a one-stop shop for infosec compliance. It supports IT/ITES/SaaS companies in automating their information security compliance tasks and reduces manual work in maintaining compliance by ~70%. Founded by...