:
The successful candidate will have experience in the quality execution and assurance of Information and Cyber Security 3rd Party risk management including 3rd party audit & regulatory management along with continuous monitoring of third parties. Applicant will work collaboratively across the Bank, and particularly with the CISO team, business division & third party stakeholders, Global & Regional Governance teams, Audit & Control Teams, 2Lod and 3Lod.
We are looking for candidates who have experience in the following areas:
- Cyber security professionals who can conduct and quality assure risk assessments of third-party vendors to identify potential security threats and vulnerabilities;
- Coordinate and assign assessments across the quality assurance group
- Train/guide/mentor assessors to analyze and evaluate vendor security controls, policies, and procedures to ensure compliance with regulatory requirements and industry best practices;
You have:
- Knowledge and specialist in 3rd to n-th party security risk oversight and assessment
- Cyber and Information security or data privacy related certifications (e.g. CISSP, CISM, CISA or CRISC) are an advantage.
- Ability to communicate both written and verbal for business key partners and management audience. Excellent negotiation, influencing and analytical skills are highly desired
- Previous experience in technical/cyber training and mentoring
- Knowledge in NIST Cybersecurity Framework and NIST 800 series documents and other such related frameworks: COBIT/ITIL/ISO
- Information Security audit, control assessment or risk assessment experience in complex IT environments, including Cloud technologies, AI and Distributed Ledger Technology would be beneficial.
- Proven ability to work both independently and as part of a team to deliver quality work in a fast-paced environment
- Flexibility and ability to think creatively and to identify current ways to approach old problems
- Phenomenal analytical, decision-making, and problem-solving skills
- Dedication to fostering an inclusive culture and value varied perspectives.
- 6-8 years of experience in third-party risk assessment or cybersecurity assessment;
📌 Operational Consolidate Risk assessment (Pune)
🏢 Wipro
📍 Pune