You will join Global Cybersec Capability Centre (G3C) team based out of Bengaluru, working in Third Party Risk Management team to contribute in the information security and risk management practice.
The candidate will be involved in the infosec operations, risk management activities, Third party security and governance. This implies working relations with extended Business lines and IT teams on behalf of G3C team.
The candidate will be working in a high pressure workplace, it calls for assertiveness and flexibility to ensure deadlines are met based on agreements / defined milestones
We are seeking a skilled and experienced Information Security & Risk specialist to join our team. The ideal candidate will have 7 9 years of experience in risk and information security audit, with a focus on third party risk management.
In this role, you will be responsible for conducting risk assessments and audits of the company's information security systems, processes, and controls.
You will work closely with the Information Security team and other stakeholders to identify and evaluate potential security risks, and provide recommendations for mitigating and managing these risks.
The main responsibilities as a lead & performer are:
Perform third party risk assessments
Design security controls
Perform infosec audits
Act as a SPOC for the team
Work in close coordination with global Function Manager and local line manage
Responsibilities
Continuously evaluate existing security practices, define and measure security related activities and demonstrating improvements to the sec programs within the organization
Work closely with governance, regulatory and compliance to help formulate and implement a strategy for security that is tailored to the specific risks facing the organization
Monitor and provide continuous assurance on infrastructure security by leveraging available third party tools while assuring efficacy