08 Sep
|
Luxoft
|
Bengaluru
Job Summary
Modernization as a Service (MaaS) is a cross-functional practice that supports all business verticals within the company. We are seeking a Senior IT Risk Project Manager to join our project for a leading US financial institution.
Responsibilities
- Ensure successful delivery of projects
- Achieve financial targets
- Manage stakeholders' expectations
- Drive presales business development activities
- People management activities
- Project manager activities:
- Project start
- Project Planning and Execution
- Team Management
- Self-management
Skills Must have
- Core project management
- 7+ years of skilled experience in software development projects and management
- 5+ years of experience in large scale Project/Program management
- Proven track record in complex projects with global, distributed teams
- People management experience for 20+ FTEs
- Good understanding of program financials and reporting
- Project Planning
- Backlog prioritization, detailing and decomposition
- Understanding of SDLC and ability to build/optimize project processes
- Communication with the team and client
- Understanding of motivation factors
- Result-oriented
- Working with feedback: provide and receive
- Risk management:
- Demonstrable experience running IT risk, security, or compliance-driven programmes
- not only feature delivery
- Ability to build and maintain a risk register: identification, qualification, scoring, mitigation planning, ownership assignment, and escalation
- Experience coordinating remediation programmes across multiple engineering teams (patching, vulnerability closure, control implementation) and tracking them to measurable closure
- Comfortable operating with audit, InfoSec, and compliance stakeholders; experience preparing evidence and status for governance forums or steering committees
- Working knowledge of at least one control or risk framework (NIST CSF/RMF, ISO 27001, CIS Controls, SOC 2, or similar)
- Ability to translate technical findings into business impact and risk-based prioritization for senior stakeholders
- Soft skills and education:
- Verbal and written business communication skills
- Presentation skills, including to executive and risk-committee audiences
- Negotiation skills
- Master's Degree in computer science or similar education
- Certification advantage: PMP / PRINCE2 / SAFe, plus one of CISSP, CISM, CRISC, or CISA
Nice to have
- Familiarity with security vulnerability management: CVE/CVSS, severity triage, SLA-based remediation cycles
- Exposure to penetration testing engagements
- Scoping, vendor coordination, findings review, retest tracking
- Understanding of AI/GenAI risk: model and data governance, AI risk scans and assessments, prompt injection and data leakage exposure, third-party AI tooling review
- Awareness of emerging AI governance and regulation (EU AI Act, NIST AI RMF) and how it lands on delivery teams
- Understanding of secure SDLC practices: SAST/DAST/SCA, dependency and supply chain risk, threat modelling
📌 Senior IT Risk Project Manager (Bengaluru)
🏢 Luxoft
📍 Bengaluru