Talent.com
IT Risk Officer
IT Risk OfficerIHX - A Perfios Company • bangalore, karnataka, in
No longer accepting applications
IT Risk Officer

IT Risk Officer

IHX - A Perfios Company • bangalore, karnataka, in
1 day ago
Job description

The IT Risk Officer owns day-to-day information-security, privacy, and IT-risk governance for IHX. Acting as the single point of contact between local teams and the Perfios central security office, the role ensures that technology risks are identified, assessed, mitigated, and reported in line with ISO 27001 : 2022 , the Digital Personal Data Protection (DPDP) Act , and Perfios Group policies.

Key Responsibilities

Risk Governance & GRC

Maintain and periodically review the IT / InfoSec risk register with the IT Head and Perfios security lead.

Align the subsidiary’s Statement of Applicability (SoA) with the Perfios ISO 27001 scope and manage related evidence collection.

Policy & Compliance

Localize Perfios security, privacy, and AI policies for complete compliance across teams.

Monitor adherence to the DPDP Act, client contractual obligations, and emerging regulatory requirements.

Security Operations Oversight

Oversee the health and performance of security solutions including CrowdStrike, Netskope, JumpCloud, and SOC integrations.

Triage high-severity alerts and coordinate incident response activities including root-cause analysis.

System Troubleshooting & Correlation

Troubleshoot and correlate system-level issues across Linux / Windows environments with cybersecurity alerts.

Analyze security events across multiple systems and platforms.

Threat & Vulnerability Management

Schedule vulnerability assessments, penetration tests, configuration audits, and GuardDuty reviews.

Track remediation SLAs and provide monthly status updates.

Third-Party Risk Management (TPISA)

Perform risk-based assessments of third-party service providers.

Follow up on identified remediations and verify compliance with contract clauses.

Incident Response & Forensics

Participate in incident response activities including log analysis, forensic triage, containment, and remediation.

Collaborate with forensic specialists to validate findings and assist in root-cause analysis.

Business Continuity & Disaster Recovery

Support disaster-recovery drills for client deployments and verify RTO / RPO compliance.

Update and maintain DR documentation and runbooks.

Awareness & Training

Conduct phishing simulations, awareness programs, and secure-coding refreshers.

Track awareness performance metrics and implement improvements.

Reporting & Metrics

Prepare monthly KPI / KRI dashboards covering risk posture, incidents, and roadmap progress for leadership review.

Required Qualifications & Experience

Mandatory

  • Education : Bachelor’s degree in IT, Computer Science, Information Security, or a related field.
  • Experience : 5–6 years in InfoSec, IT Risk, or Security Operations with hands-on exposure to SIEM / EDR and audits.
  • Certifications : CISSP, CISM, ISO 27001 Lead Auditor, or equivalent.
  • Technical Skills : Vulnerability management, endpoint security, cloud security (AWS / Azure / GCP), IAM (JumpCloud / AD), EDR / AV, IDS / IPS, encryption, DLP, SIEM / SOC operations, DDoS protection, patch management.
  • Frameworks : ISO 27001, NIST CSF, DPDP Act, OWASP.

Preferred

  • Education : Post-graduate in Cybersecurity or MBA (Tech Management).
  • Experience : Familiarity with BFSI or FinTech domains.
  • Certifications : CRISC, CCSP, CCSK.
  • Technical : DevSecOps tooling, IaC security frameworks.
  • Frameworks : RBI / SEBI guidelines, SOC 2.
  • Core Competencies

  • Risk-based decision-making.
  • Strong communication skills (technical and executive).
  • Analytical problem-solving and root-cause analysis.
  • Ownership and execution discipline.
  • Continuous learning mindset.
  • Create a job alert for this search

    Officer • bangalore, karnataka, in

    Related jobs
    IT Manager / IT Officer

    IT Manager / IT Officer

    Confidential • Bengaluru / Bangalore, India
    CA / CS / law firms or consulting setups).Strong understanding of networking, Windows environments, Microsoft 365, antivirus / firewall systems, and data security protocols. Exposure to cloud computing, d...Show more
    Last updated: 25 days ago • Promoted
    Cybersecurity Risk and Compliance Manager

    Cybersecurity Risk and Compliance Manager

    CSC • Bengaluru, Republic Of India, IN
    The IT Audit and Risk Manager is an essential role to assist our business with making risk informed decisions.The position is responsible for supporting the security direction of the business and e...Show more
    Last updated: 1 day ago • Promoted
    Manager Enterprise Risk

    Manager Enterprise Risk

    Ujjivan Small Finance Bank • Bangalore Urban, Karnataka, India
    These responsibilities are representative and the role holder is also responsible for any other job assigned by the superior authorities from time to time. This section in not intended to be an exha...Show more
    Last updated: 30+ days ago • Promoted
    IT Risk Management Manager

    IT Risk Management Manager

    PwC Acceleration Center India • Bengaluru, Republic Of India, IN
    Main purpose of the job and key background information.Cyber, Risk & Regulatory-Enterprise Technology Solutions - Oracle provides a broad range of assess and recommend services specific to the Orac...Show more
    Last updated: 21 days ago • Promoted
    IT Risk and Compliance Analyst

    IT Risk and Compliance Analyst

    Computacenter • Bengaluru, Republic Of India, IN
    Computacenter seeking confident and experienced Compliance Analyst who is accountable for relevant laws, regulations, and industry standards by researching, interpreting, and applying compliance re...Show more
    Last updated: 14 days ago • Promoted
    Manager - IT Risk

    Manager - IT Risk

    Grant Thornton INDUS • Bengaluru, Karnataka, India
    The Controls Advisory delivers all project and engagement management phases for multiple clients in various industries.Responsibilities include executing business processes, IT control reviews, and...Show more
    Last updated: 21 days ago • Promoted
    IT Risk Management Lead

    IT Risk Management Lead

    Grant Thornton INDUS • Bengaluru, Republic Of India, IN
    The Controls Advisory delivers all project and engagement management phases for multiple clients in various industries.Responsibilities include executing business processes, IT control reviews, and...Show more
    Last updated: 21 days ago • Promoted
    IT Risk Advisory Specialist

    IT Risk Advisory Specialist

    BDO India • Bengaluru, Republic Of India, IN
    BDO is a global network of professional services firms with a presence in over 166 countries, revenue of over USD 14 billion, and experience of over 60 years. It’s a leading service provider for the...Show more
    Last updated: 22 days ago • Promoted
    IT Risk & Compliance Consultant

    IT Risk & Compliance Consultant

    EliteRecruitments • Bengaluru, Republic Of India, IN
    GGN | Bangalore | Pune | Hyderabad.Individual Contributor / Supervisory.Deliver IT Risk & Controls Assessments, IT Audits, and Compliance reviews. Coordinate with global teams on engagements.Ensure ...Show more
    Last updated: 3 days ago • Promoted
    IT Governance Risk and Compliance- AVP

    IT Governance Risk and Compliance- AVP

    MUFG Global Service (MGS) • Bengaluru, India
    Japans premier bank, with a global network spanning in more than 40 markets.Outside of Japan, the bank offers an extensive scope of commercial and investment banking products and services to busine...Show more
    Last updated: 6 days ago • Promoted
    IT Audit and Risk Management Lead

    IT Audit and Risk Management Lead

    CSC • Bengaluru, Republic Of India, IN
    The IT Audit and Risk Manager is an essential role to assist our business with making risk informed decisions.The position is responsible for supporting the security direction of the business and e...Show more
    Last updated: 1 day ago • Promoted
    AVP, IT Governance Risk and Compliance

    AVP, IT Governance Risk and Compliance

    Confidential • Bengaluru / Bangalore, India
    AVP – IT Governance, Risk & Compliance.We are seeking an experienced IT GRC professional to join the First Line of Defence, driving IT governance, risk oversight, compliance management, and audit r...Show more
    Last updated: 18 hours ago • Promoted • New!
    Manager - IT Risk

    Manager - IT Risk

    Confidential • Bengaluru / Bangalore, India
    The Controls Advisory delivers all project and engagement management phases for multiple clients in various industries.Responsibilities include executing business processes, IT control reviews, and...Show more
    Last updated: 14 days ago • Promoted
    Technology Risk and Audit Director

    Technology Risk and Audit Director

    CSC • Bengaluru, Republic Of India, IN
    The IT Audit and Risk Manager is an essential role to assist our business with making risk informed decisions.The position is responsible for supporting the security direction of the business and e...Show more
    Last updated: 1 day ago • Promoted
    Manager - It Risk

    Manager - It Risk

    Grant Thornton INDUS • Bengaluru, Republic Of India, IN
    The Controls Advisory delivers all project and engagement management phases for multiple clients in various industries.Responsibilities include executing business processes, IT control reviews, and...Show more
    Last updated: 21 days ago • Promoted
    Lead IT Risk Analyst

    Lead IT Risk Analyst

    7-Eleven Global Solution Center – India • Bangalore Urban, Karnataka, India
    Why Join 7-Eleven Global Solution Center?.When you join us, you'll embrace ownership as teams within specific product areas take responsibility for end-to-end solution delivery, supporting local te...Show more
    Last updated: 4 days ago • Promoted
    IT Risk and Compliance Advisor

    IT Risk and Compliance Advisor

    PwC Acceleration Center India • Bengaluru, Republic Of India, IN
    Main purpose of the job and key background information.ETS Oracle provides a broad range of assess and recommend services specific to the Oracle related to controls around the financial reporting p...Show more
    Last updated: 21 days ago • Promoted
    Manager IT Risk

    Manager IT Risk

    Confidential • Bengaluru / Bangalore
    Manage a portfolio of engagements, leading a team of Assistant Managers, Senior Associates, and Associates / Analysts.Execute business processes, IT control reviews, and activities related to Sarbane...Show more
    Last updated: 20 days ago • Promoted