Description : POSITION PURPOSE :
The purpose of the position is to add value and improve quality of the risk management and assurance functions of the ITGRC team.
A. KEY POSITION RESPONSIBILITIES :
Key Responsibilities :
- Focus on maturing risk management and assurance processes
- Evaluate adequacy and effectiveness of IT Controls
- Maintaining the Risk Control Matrix
- Preparing, reviewing and monitoring KRIs (Key Risk Indicators) for IT processes
B. QUALIFICATIONS AND EXPERIENCE Qualifications
Essential Any Science graduate
Preferred B.E. / B.Sc (IT / Computer Science) , B.C.A, MCA
Professional Qualifications
Essential Cleared CISSP, CCSP examination Cleared CISA, CRISC examination
Preferred Understanding of IT specific laws like IT Act, DPDP, etc. Knowledge of RBI, SEBI, IRDBT regulatory requirements
Work Experience
3-4 years in Infra Management / Network Management / Security Management / Application Development2-3 years in Auditing (preferably IT)Exposure to Information SecurityExposure to standards / frameworks like COBIT, ISO, PCI DSS, NIST etc.Behavioural Skills :
Competencies AttributeEntrepreneurial To be enterprising and take ownership of our actionsTeamwork Working collaboratively to achieve the common goals and be successful togetherStrategic thinking Assess complex situations, identify risks, and devise strategic solutions.Communication Convey complex security concepts, risks, and compliance requirements across the organization.Documentation Good documentation skillsStakeholderEngagement Building relationships with key stakeholders, including employees, regulatorsProfessionalism To conduct your duties with good judgment and in good faithRespect To be sensitive and responsible for what we say and do(ref : hirist.tech)