Risk Governance Program Manager – IT/Information Security Controls, VP
3 days ago
About The Role :
Job Title
Risk Governance Program Manager – Information Technology/Information Security Controls, VP
LocationBangalore, India
Role Description
- Corporate Banking is a technology centric business, with an increasing move to real-time processing, an increasing appetite from customers for integrated systems and access to supporting data. This means that technology is more important than ever for the business.
- Deutsche Bank is one of the few banks with the scale and network to compete aggressively in this space, and the breadth of investment in this area is unmatched by our peers. Joining the team is a unique opportunity to help rebuild the core of some of our most mission critical processing systems from the ground-up.
- Our Corporate Bank Technology team is a global team of 3000 Engineers (and growing) across 30 countries. The primary businesses that we support within Corporate Bank are Cash Management, Securities Services, Trade Finance and Trust & Agency Services. CB Technology support these businesses through CIO aligned teams and also by 'horizontals' such as Client Connectivity, Surveillance and Regulatory, Infrastructure, Architecture, Production and Risk & Control.
- In addition to providing cash management services like Payments to our customers, Corporate Bank is the payment service provider for the entire Deutsche Bank organization. As such, we have been tasked with ensuring technology and security risk for payments is within risk tolerance bank wide.
- The Risk and Control Team ensures the Bank's information control priorities are effectively implemented across Corporate Bank Technology (CB Tech). The team offers dedicated support for each Chief Information Officer (CIO) business line, advisory services for control responses, and program management services for broad control uplifts.
- The team's mission is to reduce the organization's technology risk exposure by implementing key bank controls, ensuring appropriate and timely resolution of audit issues, and participating in the Bank's design of control implementations. Therefore, your role would be integral in supporting the front-line management in identifying, assessing/measuring risks, identifying remediation actions, and monitoring risks.
- We are looking for a specialist to join the newly formed Central Risk Governance function within CB Tech Risk and Control to support governance and oversight of IT and IS Risk and Control risk remediation Book of Work.
- This involves in summary, facilitating clear scope definition of control programs, facilitating training of the control landscape where required, ensuring commitment for proactive remediation of IT/IS risk across CIO aligned delivery teams, monitoring and reporting progress, escalating risks/issues/blockers for resolution.
- Hands-on technical data analysis and recommending control process improvements where required to help ensure overall ensuring technology and security controls are implemented effectively and sustainably.
What we'll offer you
As part of our flexible scheme, here are just some of the benefits that you'll enjoy
- Best in class leave policy
- Gender neutral parental leaves
- 100% reimbursement under childcare assistance benefit (gender neutral)
- Sponsorship for Industry relevant certifications and education
- Employee Assistance Program for you and your family members
- Comprehensive Hospitalization Insurance for you and your dependents
- Accident and Term life Insurance
- Complementary Health screening for 35 yrs. and above
Your key responsibilities
As Central Risk Governance Program Manager for Information Technology/Information Security Controls, you will partner with CIO aligned Agile delivery teams, Control Uplift SMEs and CRG Program Leadership to ensure overall risk priorities are delivered per defined targets.
- Ensuring clear scope definition of Information Technology/Information Security Controls control programs, facilitating additional training of the control landscape where required
- Ensuring the timely capture, transparency and accountability of commitment dates from CIO aligned teams, monitoring and reporting progress.
- Providing regular status reporting and escalating risks/issues/blockers for resolution
- Conducting hands-on technical data analysis and recommending control process improvements, where required, to help ensure overall ensuring technology and security controls are implemented effectively and sustainably.
- Ensuring appropriate tagging of risk and control prioritization and clear tracking of inter-linkages with audit findings or self-identified issues
- Ensuring overall data quality of Information Technology/Information Security Control remediation related JIRAs feeding into senior management dashboards
- Overall ensuring Information Technology and Information Security risk remediation programs are initiated and executed in line with Deutsche Bank Risk and Program standards. Also will work with policy owners and control owners to improve processes and tooling.
- Overall Working with the control teams to identify and resolve potential issues in Information Technology and Security control design. Identify and resolve implementation issues. Suggest effectiveness metrics, ensure control design includes proper evidence, and provide input to the design and effectiveness of centrally provided tooling.
Your skills and experience
Delivery Management /Program Management:
- Must have 10+ years overall IT project management /program management or PMO experience, preferably in banking/financial services or a similarly regulated environment
- Demonstrable experience in managing large stakeholder groups across time zones.
- Must have experience managing multiple projects simultaneously; experience maintaining comprehensive project documentation and proactive risk/issue management.
- Must have advanced verbal and written communication skills to present ideas and concepts effectively.
- Control program management /control implementation project experience preferred.
- Industry standard Project management certification or Agile certification preferred.
- Experience working in an Agile delivery environment practicing Scrum or Kanban (Lean Agile Practitioner) and using JIRA preferred.
Risk and Control
- Must have financial services preferably Banking Project/Program management experience
- Must have good knowledge on AI fundamentals and technical familiarity
- Must be willing to work during UK business hours
- Demonstrable familiarity with concepts of Technology Roadmap Compliance, Patching lifecycle knowledge especially Java, Oracle, Disaster Recovery, Secondary Storage, Back Up planning and testing
- Demonstrable familiarity with general Patching concepts and challenges in critical technologies (Java, Oracle, UNIX, etc.), PVG process and CVE advisory process for vulnerabilities
- Demonstrable familiarity on Identity and Access Management, Vulnerability management/Cyber Hygiene best practices, penetration testing
- Experience working in Risk and Control, audit or 2nd Line domain preferred.
- Experience in designing or generating regular IT / IS compliance reports and presentations for senior management preferred.
- Data analysis and reporting skills using industry standard tools including but not limited to excel, tableau or similar preferred.
-
Information Security Governance Risk
2 weeks ago
Bengaluru, Karnataka, India Morae Global Corporation Full time ₹ 12,00,000 - ₹ 36,00,000 per yearInformation Security Governance Risk and Compliance – Associate ManagerJob Type: Full TimeReports to: Director of Information Security & IT GovernancePOSITION OVERVIEWThis Information Security GRC Expert – Associate Manager contributes to Morae success byimplementing, and maintaining people, process and technology-oriented policies, procedures,...
-
Security governance
2 weeks ago
Bengaluru, Karnataka, India Ananta Services Full time ₹ 18,00,000 - ₹ 22,00,000 per yearWhat You Will Do· Establish and manage the information security governance framework aligned with organizational goals.· Develop, review, and maintain security policies, procedures, and standards.· Conduct risk assessments, gap analysis, and compliance audits (ISO 27001, NIST, SOC 2, GDPR, etc.).· Define and monitor key risk indicators (KRIs) and key...
-
Bengaluru, Karnataka, India Saks Global Full time ₹ 8,00,000 - ₹ 12,00,000 per yearJob DescriptionWHO WE ARE:Saks Global is the largest multi-brand luxury retailer in the world, comprising Saks Fifth Avenue, Neiman Marcus, Bergdorf Goodman, Saks OFF 5TH, Last Call and Horchow. Its retail portfolio includes 70 full-line luxury locations, additional off-price locations and five distinct e-commerce experiences. With talented colleagues...
-
AVP Governance Risk
1 week ago
Bengaluru, Karnataka, India Mashreq Careers Full timeTo develop, manage, and execute Information Security Governance, Risk and Compliance across Mashreq to – Contribute strategically to the bank's success and enable the business and technology strategy of the bank to expand with secure and reliable service offering. Navigate compliance complexities and support compliance with information security...
-
Information Security Programs Administrator
1 week ago
Bengaluru, Karnataka, India Talent Worx Full time ₹ 1,20,000 - ₹ 1,50,000 per yearJob Title: Information Security Programs AdministratorCorp Level : Associate ILocation: COEKey responsibilities:Track the performance of security measures to protect information and network infrastructure and computer systemsResponsible for the operations of the Third-Party Cyber Risk Management program.Conduct thorough risk assessments of third-party...
-
Governance, Risk
2 weeks ago
Bengaluru, Karnataka, India DIGILE TECHNOLOGIES PRIVATE LIMITED Full time ₹ 12,00,000 - ₹ 36,00,000 per yearAbout the Role : We are seeking a highly experienced Governance, Risk, and Compliance (GRC) Manager to lead our enterprise risk management and compliance initiatives across regulated industries. The ideal candidate will have deep expertise in HITRUST CSF, ISO 27001 : 2022, SOC 2 Type II, NIST 800-53, and other high-trust frameworks relevant to...
-
Information Risk Lead
2 days ago
Bengaluru, Karnataka, India Cyble Full time ₹ 12,00,000 - ₹ 36,00,000 per yearAbout Cyble:Cyble is revolutionizing the landscape of cybersecurity intelligence. Founded in 2019, Cyble began as a visionary college project and has quickly transformed into a leading force in proactive cyber threat detection and mitigation, that is now globally significant, with people in 20 countries - Headquartered in Alpharetta, Georgia, and with...
-
Technical Security Governance Manager
2 days ago
Bengaluru, Karnataka, India DocuSign Full time ₹ 20,00,000 - ₹ 25,00,000 per yearCompany OverviewDocusign brings agreements to life. Over 1.5 million customers and more than a billion people in over 180 countries use Docusign solutions to accelerate the process of doing business and simplify people's lives. With intelligent agreement management, Docusign unleashes business-critical data that is trapped inside of documents. Until now,...
-
Technical Security Governance Manager
2 days ago
Bengaluru, Karnataka, India Docusign Full time ₹ 20,00,000 - ₹ 25,00,000 per yearCompany OverviewDocusign brings agreements to life. Over 1.5 million customers and more than a billion people in over 180 countries use Docusign solutions to accelerate the process of doing business and simplify people's lives. With intelligent agreement management, Docusign unleashes business-critical data that is trapped inside of documents. Until now,...
-
Security Risk Manager
1 day ago
Bengaluru, Karnataka, India Docusign Full time ₹ 1,20,000 - ₹ 1,50,000 per yearCompany OverviewDocusign brings agreements to life. Over 1.5 million customers and more than a billion people in over 180 countries use Docusign solutions to accelerate the process of doing business and simplify people's lives. With intelligent agreement management, Docusign unleashes business-critical data that is trapped inside of documents. Until now,...