Job Summary :
The role focuses on shaping and advancing cyber risk programs, ensuring operational excellence, and aligning with enterprise objectives. The ideal candidate is a strategic, execution-driven leader with deep expertise in governance, documentation standards, and managing high-performing teams.
Key Deliverables (Duties and Responsibilities)
Governance, Risk & Controls (GRC) :
- Lead the revamp and uplift of the cyber Third Party Risk Management (TPRM) program, ensuring alignment with regulatory expectations and enterprise risk appetite.
- Design, build, and pilot a targeted cyber risk assessment program to proactively identify, measure, and address emerging risks.
- Elevate the quality, clarity, and consistency of policy, standard, and procedure documentation in alignment with corporate governance frameworks.
- Drive corporate and industry regulatory mapping to ensure full traceability and compliance across frameworks (e.g., NIST, ISO, FFIEC, RBI).
- Deliver impactful metrics, dashboards, and risk reporting, tailored to senior executive and board-level stakeholders.
Business Enablement (BE) :
Partner with US-based portfolio and business enablement teams to support key operational activities in a “follow-the-sun” model.Lead the planning and delivery of processes and requirements that enable the broader enterprise risk-based cybersecurity strategy.Key Deliverables (Duties and Responsibilities) :
Lead the revamp and uplift of the cyber Third Party Risk Management (TPRM) program, ensuring alignment with regulatory expectations and enterprise risk appetite.Design, build, and pilot a targeted cyber risk assessment program to proactively identify, measure, and address emerging risks.Elevate the quality, clarity, and consistency of policy, standard, and procedure documentation in alignment with corporate governance frameworks.Drive corporate and industry regulatory mapping to ensure full traceability and compliance across frameworks (e.g., NIST, ISO, FFIEC, RBI).Deliver impactful metrics, dashboards, and risk reporting, tailored to senior executive and board-level stakeholders.Partner with US-based portfolio and business enablement teams to support key operational activities in a “follow-the-sun” model.Lead the planning and delivery of processes and requirements that enable the broader enterprise risk-based cybersecurity strategy.Provide leadership and oversight for key enablement pillars including financial management, vendor engagement, workforce planning, executive reporting, and automationStrategic mindset with the ability to see the big picture while delivering tactical outcomes.Deep knowledge of cybersecurity risk, controls, policy, and documentation standards within a highly regulated environment.Experience leading cross-functional and cross-regional teams, with demonstrated success in influencing and executing across global stakeholders.Skills and Qualification (Functional and Technical Skills)
Bachelor’s degree in Information Security, Risk Management, Business Administration, or related field; Master’s degree preferred.Overall 15+ years of experience with minimum 10 years of experience in cybersecurity, governance, risk, or compliance and project / program management.Minimum 5 years of direct people leadership.Experience in the financial services sector strongly preferred.Familiarity with key regulatory frameworks and standards including NIST, ISO 27001, RBI, FFIEC, and others.Proven ability to analyze, report, and communicate complex risks and data to senior leadership and executive stakeholders.If you wish to explore this opportunity, Kindly write to me at "shalu@credencehrservices.com".