18 Aug
|
Moody's
|
Greater Noida
18 Aug
Moody's
Greater Noida
Job Type: Full-time
This job is with Moody's, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly.Skills and CompetenciesProven experience in technology risk, operational risk, cybersecurity, or compliance within a regulated or enterprise environment, with expertise in identifying, assessing, and mitigating business and technology risksStrong knowledge of risk and control frameworks, including ISO 27001, SOC, NIST, COSO, GDPR, and related governance, risk, and compliance practicesExperience managing vulnerability governance processes, validating remediation plans, monitoring control effectiveness, and reducing technology risk exposureUnderstanding of application security, secure software development lifecycle (SDLC), security-by-design principles, technical debt management, and infrastructure risk mitigationStrong analytical, problem-solving, and stakeholder management skills, with the ability to communicate complex technical risks to both technical and non-technical audiencesExperience supporting audits, regulatory compliance activities, customer assurance programs, vendor risk assessments, and GRC platforms such as ServiceNow, Archer, OneTrust, or AuditBoardEducationBachelor’s degree in Business, Risk Management, Computer Science, or a related disciplineProfessional certifications such as CISA, CRISC, CISSP, Security+, or ISO 27001 Lead Implementor/Auditor are preferredResponsibilitiesIdentify, assess, monitor, and report technology, operational,
and cybersecurity risks across the Insurance Business Unit to support business objectives and regulatory requirementsManage vulnerability governance processes, including remediation tracking, risk treatment validation, escalation management, and control gap closurePartner with engineering and product teams to embed secure development practices, vulnerability management, secure design principles, and testing standardsEvaluate technology risk drivers, including technical debt, legacy platforms, infrastructure weaknesses, and control deficiencies, while supporting remediation prioritizationSupport governance, compliance, and assurance activities through control assessments, issue management, policy reviews, audit coordination, and framework alignmentContribute to customer assurance and commercial initiatives by supporting RFP responses, vendor assessments, security reviews, and customer due diligence activitiesCollaborate with stakeholders across engineering, cybersecurity, legal, compliance, and business teams to strengthen controls and improve risk outcomesDevelop and maintain risk dashboards, metrics, and reporting capabilities that provide actionable insights for decision-making and continuous improvementAbout the TeamThe Risk Management team within the Insurance Business Unit serves as the first line of defense, driving the adoption of effective risk management practices and fostering a robust culture of risk awareness. Working closely with engineering, product, and business stakeholders, the team proactively manages technology and operational risks, strengthens control environments, supports regulatory and customer expectations, and enables sustainable business growth.
📌 Asst Dir-Risk Management (Greater Noida)
🏢 Moody's
📍 Greater Noida