Compliance Analyst (Hyderabad)

Compliance Analyst (Hyderabad)

06 Aug
|
Tech Mahindra
|
Hyderabad

06 Aug

Tech Mahindra

Hyderabad

The role

As part of the Stay-In-Compliance function, is responsible for vulnerability management for ET and man-aging risk mitigation activities.This position requires close collaboration with global teams across ET, Infosec and business functions to align the risk processes with the broader frameworks. In this role, will also be responsible for driving compliance to vulnerability mgmt. goals, ensuring that vulnerabilities are either remediated or plans are approved within the defined SLA targets. Responsibilities also include monitoring, reporting, and providing insights on compliance status through regular assessments, on-going leadership reviews and real-time dashboards.As part of the role the individual will be responsible to assess the existing processes, refine as per the changing business needs (e.g. define the governance framework to manage vulnerabilities with unknown owners) working closely with Infosec and other stakeholders and develop / deploy governance models to operationalize the processes within Enterprise Technology. The ideal candidate brings deep expertise in IT risk management, governance, and operational resilience, playing a pivotal role in strengthening EYsoverall risk management plan.Your key responsibilities.

Key responsibilities would include:

• Ensure Global Vulnerability mgmt. compliance plans are developed / remediated as per businessrequirements for all in scope IT functions within Enterprise Technology; Drive GRAC plans for in-scope I&O; functions• Responsible for vulnerability identification and remediation with the product group; maintain acomprehensive plan for remediation / exception through data-driven insights and analytics • Responsible for compliance management within agreed SLAs as established by Infosec,tracking the progress of vulnerability remediation,



and adherence to security policies• Establishing a governance framework / review mechanism with ET & Infosec leaders on SICupdates to provide insights into vulnerability mgmt. on a weekly / monthly basis• Policy and Procedure Oversight – Partner with Infosec and other relevant stakeholders inenforcing the policies and procedures that govern the organization's activities, ensuring they are in line with best practices and regulatory expectations• Maintaining a control framework that guides the operation of risk management and complianceactivities.

- Collaborate with Infosec and I&O; product managers to understand the as-is and road map forfuture products• Accountable for end-to end life cycle management of vulnerabilities for ET, work on the remediation plans with the product owners, work on necessary approvals and driving remediations to closure• Work closely with Infosec and stakeholders within ET for Critical Vulnerability Response Plan(CVRP) exercise• Vulnerability management reporting• Collaborate with stakeholders: Need to collaborate with various stakeholders and act as aconduit between Infosec, Product/Application, Engineering, Operations & Management, alsoresponsible to provide technical assistance to address vulnerabilities.• Vulnerability remediation for Data Restricted Countries (DRCS) and Local Support teams: This role plays a pivotal role in coordinating with Infosec,product teams,



DRCS and local support teams to drive remediation in DRCS countries and helplocal support teams to address vulnerabilities.• Risk Assessment and Mitigation: Identifying, assessing, and prioritizing risks to theorganization, and implementing strategies to mitigate their impact for I&O.;• Compliance Management: Ensure that in-scope portfolios for I&O; adhere to GCoC recommendedpolicies, compliances, regulations and standards.Skills and attributes for success
- Well experienced in managing key Stakeholder relationships, including Senior Management.
- In-depth understanding of Industry GRAC and vulnerability mgmt. Standards
- Should have strong knowledge of other Risk domains like Operations Risk Management, IT Security, Cyber Risks, to be able to evaluate these Risks.
- Should possess good working knowledge about IT Operations and IT practices.
- Can work with minimum direction. Possess a high drive for delivering timely, high-quality results.
- Hold high integrity; dedicated to excellence; highly attentive to details; flexible. Possess solid Project Management skills.
- Self-motivated, with ability to work independently, as well as with other stakeholders in a collaborative manner.
- Strong problem-solving skills
- A proven expert in managing multiple stakeholders at all levels of the organization, specifically at senior management level.
- Excellent communication skills, especially related to facilitation, documentation and reporting
- Ability to leverage support from other parts of the organization
- Ability to work with cross-functional stakeholders and senior leadership To qualify for the role, you must have Education:
- Bachelor or Master’s degree in Information Technology / Engineering Experience:
- 7 - 10 years of relevant experience in Service Delivery

📌 Compliance Analyst (Hyderabad)
🏢 Tech Mahindra
📍 Hyderabad

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: compliance analyst (hyderabad) / hyderabad

Subscribe to this job alert:

Get the latest job offers by email for: compliance analyst (hyderabad) / hyderabad