Talent.com
TC - CS - SRCR - Cyber Risk And Compliance - Manager - E
TC - CS - SRCR - Cyber Risk And Compliance - Manager - EConfidential • Chennai, India
TC - CS - SRCR - Cyber Risk And Compliance - Manager - E

TC - CS - SRCR - Cyber Risk And Compliance - Manager - E

Confidential • Chennai, India
6 days ago
Job description

At EY, we're all in to shape your future with confidence.

We'll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go.

Join EY and help to build a better working world.

Consultant / Senior Consultant / Assistant Manager / Manager - Cyber Security- GRC Specialist

As part of our Cyber Technology Consulting team, you will handle leading and managing Cyber Governance, Risk, and Compliance (GRC) engagements for clients across the MENA region. You will collaborate closely with stakeholders to assess, develop, and enhance cybersecurity governance frameworks, risk management practices, and compliance programs in line with global standards and regulatory requirements. The client base spans diverse sectors and includes collaboration with other teams across Advisory services.

The opportunity

We're looking for consultant / senior consultant / assistant manager / manager with strong consulting background and hands-on expertise in implementing enterprise cyber risk and governance programs. This is an exceptional opportunity to work with senior leadership across industries and influence strategic cybersecurity decision-making at the highest levels.

Your Key Responsibilities

  • Lead and deliver end-to-end cyber GRC engagements, including policy and framework development, control assessments, regulatory compliance, and cyber risk assessments.
  • Design and implement cybersecurity governance models, risk management processes, and third-party risk programs aligned with leading standards (e.g., ISO 27001, NIST CSF, COBIT, CSA).
  • Assess client readiness for local and global regulations such as NCA ECC, SAMA, UAE IA, GDPR, and sector-specific guidelines.
  • Manage enterprise cyber risk assessments, maturity assessments, and business impact analyses (BIAs).
  • Advise on the implementation and enhancement of GRC tools and technologies (e.g., eGRC platforms).
  • Support business development by identifying client needs, preparing proposals, and managing relationships.
  • Mentor and coach team members, ensuring professional growth and knowledge sharing across the practice.
  • Develop detailed reports, articulate technical findings, and deliver actionable recommendations to both technical teams and executive stakeholders.
  • Manage multiple engagements, ensuring timely delivery, quality assurance, and adherence to industry best practices.
  • Stay updated with emerging cyber threats, vulnerabilities, and offensive security techniques, and incorporate these insights into client engagements

Skills And Attributes For Success

  • Strong understanding of cybersecurity and risk governance principles, regulatory landscapes, and compliance obligations.
  • Experience designing and implementing enterprise-wide GRC programs and policies.
  • In-depth knowledge of control frameworks (e.g., ISO 27001 / 2, NIST CSF, NIST 800-53, COBIT, PCI DSS, SWIFT CSCF).
  • Familiarity with sector-specific standards (e.g., NCA ECC / SAMA CSF for KSA, UAE IA / NESA, or energy and financial sector mandates).
  • Ability to conduct technology and cybersecurity risk assessments for applications, infrastructure and network assets
  • Collaborating with other members of the engagement team to plan the engagement and develop work program timelines, risk assessments and other documents / templates.
  • Mentor and coach team members, ensuring professional growth and knowledge sharing across the practice.
  • Ability to interpret complex technical results and present insights to business stakeholders.
  • Strong analytical, problem-solving, and critical-thinking skills.
  • Excellent communication and collaboration skills
  • To qualify for the role, you must have

  • A bachelor's or master's degree in information technology, cyber security etc.
  • Excellent communication skills with a consulting mindset.
  • 2-8 years of experience in GRC and cyber security assessments
  • A valid passport for travel.
  • Excellent communication skills with a consulting mindset.
  • Ideally, you'll also have

  • Industry-recognized certifications such as CISSP, CISM, CRISC, ISO 27001 LA
  • Experience working with GRC platforms (e.g., Archer, ServiceNow GRC etc.).
  • Familiarity with data privacy regulations (e.g., GDPR, DPD, PDPL).
  • Understanding of cyber risk quantification methods (e.g., FAIR, Monte Carlo simulations).
  • What We Offer

    We offer a competitive compensation package where you'll be rewarded based on performance and recognized for the value you bring to our business. Plus, we offer :

  • Continuous learning : You'll develop the mindset and skills to navigate whatever comes next.
  • Success as defined by you : We'll provide the tools and flexibility, so you can make a meaningful impact, your way.
  • Transformative leadership : We'll give you the insights, coaching and confidence to be the leader the world needs.
  • Diverse and inclusive culture : You'll be embraced for who you are and empowered to use your voice to help others find theirs.
  • EY | Building a better working world

    EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.

    Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.

    EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.

    Skills Required

    Pci Dss, Gdpr, Archer, Fair, Ecc, Swift, Iso 27001, Cobit

    Create a job alert for this search

    Cs • Chennai, India

    Related jobs
    TC - CS - Cyber Architecture OT and Engineering - Email Security - Senior

    TC - CS - Cyber Architecture OT and Engineering - Email Security - Senior

    Confidential • Chennai, India
    At EY, you'll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we're counting on your u...Show more
    Last updated: 14 days ago • Promoted
    Cybersecurity - Risk & Compliance Analyst

    Cybersecurity - Risk & Compliance Analyst

    Confidential • India, Chennai
    We help progressive enterprises navigate the new reality of digital risks with proactive and intelligent cybersecurity.Carry out risk management activities with a specific client, technical area or...Show more
    Last updated: 8 hours ago • Promoted • New!
    Senior Manager IS Cyber Culture & Awareness

    Senior Manager IS Cyber Culture & Awareness

    Mashreq • Chennai, IN
    The Cyber Security Awareness Specialist plays a critical role in maturing Mashreq Bank’s cyber security awareness program. The specialist is responsible for fostering a culture where Cybersecurity i...Show more
    Last updated: 20 days ago • Promoted
    CyberArk Emplementation Engineer

    CyberArk Emplementation Engineer

    ITC Infotech • Chennai, Tamil Nadu, India
    CyberArk Emplementation Engineer.Good experience with Privileged account administration of various Windows and UNIX accounts. Integrating various platforms with different LDAP providers, Splunk.Wind...Show more
    Last updated: 30+ days ago • Promoted
    TPRM Assistant Manager - Cyber

    TPRM Assistant Manager - Cyber

    Cubical Operations LLP • chennai, tamil nadu, in
    Third-Party Risk Management (TPRM) - Deputy Manager.Minimum 3 to 8 years in TPRM / Vendor Risk / Information Security / Risk Advisory. We are looking for a skilled and motivated.Third-Party Risk Man...Show more
    Last updated: 6 hours ago • Promoted • New!
    Security Operations Center Manager - Vulnerability Management

    Security Operations Center Manager - Vulnerability Management

    MNR Solutions • Chennai
    Description : Job Summary : - We are seeking an experienced SOC Manager (L4) to lead our Security Operations Center.The candidate will oversee mon...Show more
    Last updated: 30+ days ago • Promoted
    Lead - Risk & Compliance

    Lead - Risk & Compliance

    Confidential • Chennai, India
    Provide management with expertise on IT general controls effectiveness and operational audit oversight.Provide guidance to Guardian's IT organization around IT general controls.Evaluate controls th...Show more
    Last updated: 20 days ago • Promoted
    Sr. Manager, Insider Threat Engineering

    Sr. Manager, Insider Threat Engineering

    Confidential • India, Chennai
    TransUnion's Job Applicant Privacy Notice.TransUnion's Global Information Security organization is seeking a passionate and experienced leader to join our Global Insider Threat Program as Manager –...Show more
    Last updated: 8 hours ago • Promoted • New!
    Enterprise Risk-SVP

    Enterprise Risk-SVP

    Confidential • Chennai, India
    The role works proactively in identifying internal and external risks, building robust internal controls, risk.Laws and Regulations to help build out the proper controls. Also a guardian of the digi...Show more
    Last updated: 18 days ago • Promoted
    TC-CS-IAM-IMP-Cyber Ark-Staff

    TC-CS-IAM-IMP-Cyber Ark-Staff

    Confidential • India, Chennai
    At EY, you'll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we're counting on your u...Show more
    Last updated: 8 hours ago • Promoted • New!
    Kanoo Elite - Senior Consultant - Cyber Security

    Kanoo Elite - Senior Consultant - Cyber Security

    Kanoo Elite • Chennai
    Description : About Kanoo Elite : Kanoo Elite is a GCC (Gulf Cooperation Council) based global level consulting and outsourcing firm leveraging...Show more
    Last updated: 30+ days ago • Promoted
    Lead Cybersecurity Risk & Compliance

    Lead Cybersecurity Risk & Compliance

    Freshworks • Chennai, Tamil Nadu, India
    The Cybersecurity Risk & Compliance function is responsible for evaluating security and compliance risks within the organization. They set up security benchmarks verify adherence to these standa...Show more
    Last updated: 30+ days ago • Promoted
    Risk Analyst, TPRM - Technology Risk Management

    Risk Analyst, TPRM - Technology Risk Management

    Confidential • Chennai, India
    The Third Party Risk Manager is responsible for the oversight and execution of the third party risk management (TPRM) framework, ensuring all external vendor and partner relationships are assessed,...Show more
    Last updated: 15 days ago • Promoted
    Sr. Manager - Insider Threat Engineering

    Sr. Manager - Insider Threat Engineering

    TransUnion • Chennai, Tamil Nadu, India
    TransUnion’s Global Information Security organization is seeking a passionate and experienced leader to join our Global Insider Threat Program as Manager – Insider Threat Engineering.In this role, ...Show more
    Last updated: 2 days ago • Promoted
    Cybersecurity - Risk & Compliance Analyst

    Cybersecurity - Risk & Compliance Analyst

    Scybers • Chennai, TN, in
    Quick Apply
    Carry out risk management activities with a specific client, technical area or project of medium complexity.Identify risks and vulnerabilities, assess their impact and probability, develop mitigati...Show more
    Last updated: 1 day ago
    Technology Manager

    Technology Manager

    Confidential • Chennai
    Certifications(OptionalCISA, CRISC, or relevant certifications).Deep KnowledgeEnterprise Risk Management (ERM)Business Continuity Planning (BCP), Internal Audit Processes, Vendor Risk Management (V...Show more
    Last updated: 30+ days ago • Promoted
    Cybersecurity Risk & Compliance Analyst

    Cybersecurity Risk & Compliance Analyst

    Scybers • Chennai, Tamil Nadu, India
    Carry out risk management activities with a specific client technical area or project of medium complexity.Identify risks and vulnerabilities assess their impact and probability develop mitigation ...Show more
    Last updated: 8 hours ago • Promoted • New!
    TPRM Consultant - Cyber

    TPRM Consultant - Cyber

    Cubical Operations LLP • chennai, tamil nadu, in
    Consultant / Senior Consultant – Third-Party Risk Management (TPRM).Minimum 2 to 6 years in TPRM / Vendor Risk / Information Security / Risk Advisory. We are looking for a skilled and motivated.Senior...Show more
    Last updated: 30+ days ago • Promoted