Security Risk Management

4 weeks ago


Bengaluru, India Rubrik Full time

Job Summary

Information Security - Who We Are

The Information Security (InfoSec) organization advances the overall state of security at Rubrik through critical initiatives and coordination of large security projects. Information Security builds technologies, tools, and processes to better enable teams at Rubrik to develop secure software and protect data and systems with appropriate security controls. Information Security also develops systems to monitor and respond to attacks against our systems, provides awareness education to teams on security best practices for data protection, and ensures data sharing relationships with third parties in order to securely protect Rubrik information. 

What You’ll Do

We are looking for a senior information security risk and compliance analyst to be a part of our security risk management team, which focuses on building and supporting a security risk oversight function. Help us elevate and accelerate the maturity of our risk management and compliance capabilities by leading prioritized activities related to our security risk management strategy. The successful candidate will need to build and maintain strong cross-functional relationships across the company. To achieve this you must have excellent leadership, communication, and decision making skills.

Responsibilities:

Lead the collection and in-depth analysis of security risk data, employing advanced quantitative and qualitative techniques. Strategize and implement comprehensive risk analysis frameworks using real-world security data, advanced analytics, and systems automation. Regularly document and present sophisticated security risk analyses, fostering collaboration across all organizational levels, including executive leadership. Drive the enhancement of the security program, identifying and integrating cutting-edge opportunities to apply advanced security principles and technologies. Oversee and evaluate the security configurations of new or existing applications, software, or utilities, providing high-level risk management recommendations. Spearhead strategic and technical initiatives, conduct comprehensive Operational Risk Assessments, oversee Risk Acceptance processes, and develop strategic risk posture and remediation plans. Monitor, assess, and enhance security measures to protect against advanced threats or hazards to information privacy, security, or integrity. Lead the risk and compliance team, building robust cross-functional relationships across the company to achieve consensus, set expectations, and promote continuous process improvement. Direct the production and refinement of security governance, risk, and compliance analysis and reporting, ensuring superior content quality and timely delivery. Own and lead the remediation of complex technical security and compliance risks with cross-functional teams, orchestrating meetings, assigning and tracking tasks, and generating comprehensive reports.

Preferred Qualifications:

7+ years of experience in Information Security Governance, Risk and Compliance (GRC) or relevant high-level compliance roles, preferably in the technology sector. Proven leadership in managing comprehensive security and/or operational risk frameworks in organizations with sophisticated risk oversight functions. Expertise in designing and operationalizing risk & control assessments, with a deep understanding of various information levels and assessment strategies. Proficient in managing risk registers and prioritizing security-related initiatives. Capable of designing and executing strategic solutions, operational plans, and roadmaps to achieve organizational goals. Experience in implementing and leveraging agile methodologies within a GRC technology framework. Demonstrated executive presence, with a track record of representing visions and building consensus among diverse stakeholders. Advanced skills in estimating work efforts and fostering team skill development to meet objectives. In-depth knowledge of security risks, vulnerabilities, and threats, with the ability to lead discussions on risk treatment and management. Comprehensive understanding of prominent information security frameworks, regulatory compliance requirements, and risk management methodologies. Expertise in risk quantification, with experience in FAIR or similar models for risk analysis and reporting. Advanced proficiency in data analytics and business intelligence tools, along with agile project management platforms. Exceptional problem-solving skills, with an ability to grasp the larger context while managing detailed technical issues. Quick learner with the capacity to adapt to new technologies and methodologies with minimal transition time. Effective communicator, capable of discussing technical and business issues with varied audiences. Experience in fast-paced, high-growth environments is desirable. Advanced degree in Security, Computer Science, Management Information Systems, or a related field is preferred. Experience in SaaS and data management industries is a plus. Professional certifications in Information Security or Risk Management (e.g., CISA, CISM, CRISC, CGEIT, CSX-P, CISSP, CCSK) are strongly preferred.

  • Bengaluru, Karnataka, India Wipro Limited Full time

    Bengaluru, India - GSH - 3051710 **Job Description**: - Senior Manager - Global Security Risk and Intelligence, - Global Security Command Centre (GSCC) - Global Security Group (GSG), - Wipro, Bangalore - Overview - The Senior Manager - Global Security Risk and Intelligence, Global Security Command Centre (GSCC) will - be responsible for managing,...

  • Market Risk Mv

    4 weeks ago


    Bengaluru, India Market Risk MV Full time

    Market Risk MV Model Validation, Model Development (Market Risk): 4-8 years of experience. - Proven experience in market risk, risk modeling or model validation. Assess the model's conceptual soundness and methodology. Models - Value at Risk, Counterparty Risk Exposure models, Pricing of plain vanilla and exotic derivatives, FVA, PVA, IPV, Pricing of Credit...


  • Bengaluru, India Talent Ocean Full time

    Client : MNCPayroll: Third partyBudget : As per marketstandardsExperience : 36 YearsNP : Immediate to April joinersonlyLocation : BangaloreWFORisk Security &Compliance AnalystCertification : ISO 27001 LI CISSP / CISM / CISA IAMConsultant JobResponsibilities: Implementation of ISMSacross the organization working in European time zone driving thetopics and...

  • Risk Assessments

    3 days ago


    Bengaluru, India CrossRoad Solution Full time

    - As a part of the Operational Risk Governance Group (ORGG) Process Risk Self-Assessment (PRSA) Program within Global Risk & Compliance, you will contribute to developing and maintaining a global internal control framework and governing standards, capabilities, and risk assessment methodologies. Within the second line of defense, you provide effective...

  • Risk Assessments

    1 week ago


    Bengaluru, India CrossRoad Solution Full time

    As a part of the Operational Risk Governance Group (ORGG) Process Risk Self-Assessment (PRSA) Program within Global Risk & Compliance, you will contribute to developing and maintaining a global internal control framework and governing standards, capabilities, and risk assessment methodologies. Within the second line of defense, you provide effective...

  • Risk Assessments

    1 week ago


    Bengaluru, India CrossRoad Solution Full time

    As a part of the Operational Risk Governance Group (ORGG) Process Risk Self-Assessment (PRSA) Program within Global Risk & Compliance, you will contribute to developing and maintaining a global internal control framework and governing standards, capabilities, and risk assessment methodologies. Within the second line of defense, you provide effective...

  • Risk Assessments

    1 week ago


    Bengaluru, India CrossRoad Solution Full time

    As a part of the Operational Risk Governance Group (ORGG) Process Risk Self-Assessment (PRSA) Program within Global Risk & Compliance, you will contribute to developing and maintaining a globalinternal control framework and governing standards,capabilities, and risk assessment methodologies. Within the second line of defense, you provide effective challenge...


  • Bengaluru, Karnataka, India timesjobs Full time

    Job Summary: This role will undertake and deliver security projects effectively and efficiently with enhanced business requirements as well as ensuring compliance to security standards and policies.This role provides operational and conformance checking of information security implemented. The role will undertake specific security tasks directly and will...


  • Bengaluru, India Paradise Placement Consultancy Full time

    Job Description:Job Title:Infosec LeadDepartment:ITLevel/DesignationManager/Sr. ManagerPosition Type:Full TimeJob OverviewThis role is responsible for implementing processes such as GRC to automate and continuously monitor the information security controls, risks, etc. Evaluates the firm to ensure compliance with security standards andrelevance with...


  • Bengaluru, India Landmark Group Full time

    Responsibilities: Contributes to the development of policies, standards and guidelines related to personal data regulations and information security. Ensures controls are implemented inline with the approved security policies. Maintain an inventory of all information assets affecting personal data. Identifies security and privacy risks and vulnerabilities,...


  • Bengaluru, India Mancer Consulting Services Full time

    Roles & Responsibilities- Lead operational and compliance risk advice to Global Technology Services on the design and operation of controls.- Lead delivery of papers, presentations and reports for the Chief Technology Office Non-Financial Risk Committee and other committees, forums and project committees as required.- Develop and drive the automation of...


  • Bengaluru, India IT Full time

    Job Overview :We are looking for an experienced IT Security Analyst with a strong background in vendor risk assessments, gap assessments, and information security audits. The ideal candidate will have at least 4 years of IT security experience and possess excellent communication skills. This role requires a proactive approach to identifying and mitigating...


  • Bengaluru, India Nutanix Full time

    The Opportunity Reporting to the Director Information Security, Governance, Risk, and Compliance, the Senior GRC Lead will contribute to the development and operational execution of the program, including risk management and compliance with standards and regulations such as ISO27001 and EU GDPR.Information Technology at NutanixYour Role· Support the...


  • Bengaluru, India Indus Face Private Limited Full time

    Manager - Risk & Compliance Job Description:- Develop, implement and monitor a strategic, comprehensive enterprise Information Security and IT risk management program- Implement , maintain and manage various security compliance and best practises, ISO27001, PCI DSS , ITGC, SOC 2 , GDPR etc - Ensure Information Security monitoring tools and systems in place...


  • Bengaluru, Karnataka, India HKIT Security Solutions Full time

    **Job Title: Cybersecurity Intern** As a Cybersecurity Intern, you will work closely with our cybersecurity team to assist in various tasks related to ensuring the security and integrity of our organization's digital assets. You will gain hands-on experience in identifying and mitigating cyber threats, implementing security measures, and analyzing security...


  • Bengaluru, India Societe Generale Global Solution Centre Full time

    Mandatory SkillsShould have work experience in Public Cloud Security Implementation and Management like CSPM, CNAPP, IAM on Azure & AWS.AWS: IAM, VPN, EC2, S3, Lambda, AWS Inspector, API , CFT, CloudWatchAzure: Azure Policy ( definition & assignment ) , Azure Monitor, ARM templates, Azure Functions, VM, Storage, Azure AD( IAM), KQLRisk analysisPublic Cloud...


  • Bengaluru, India Atos Full time

    Experience -10+yrsLocation-Bangalore/Chennai/Pune/MumbaiTools & skills- Vulnerability management, ISO 27001 clauses & controls,Anti Virus/Patching, Security Tools, Risk Management, IPS/IDE firewall, Data protection, Penetration testing, Security Baselines, Access Management, Physical and environmental security controls, Certification : CISM , CISSP...


  • Bengaluru, India Movate Full time

    Hello NetworkWe are at Movate Technologies, Looking for an Information Security ManagerJob Title: Information Security ManagerExperience: 8+ yearsLocation: Bangalore/Hyderabad/ChennaiWork from OfficeNo.of Positions: 2Top 5 Skill Set- Hands-on experience with security technologies- Experience in Information security and business continuity internal audits-...


  • Bengaluru, India First Advantage Full time

    Who You Are: You are self-motivated and ready to “roll up your sleeves." While you are an independent contributor, you are also collaborative. You can spearhead a project and see it through from start to completion. As a team player, you navigate cross-functional teams and work well with team members in other business units and departments toward a common...


  • Bengaluru, India IntraEdge Full time

    Amex: Event Manager - Information Security - Bengaluru (Upendra) Information Security Managers know security is a top priority for our business, our partners, and customers. As cyber-attacks increase and compliance is rigorously implemented, they strive to stay ahead of what’s next to protect our brand and future. The IT Risk Assessment & Operational Risk...