Talent.com
This job offer is not available in your country.
Senior Manager IS GRC-Risk Management&Reporting.Information Security Group-ISG

Senior Manager IS GRC-Risk Management&Reporting.Information Security Group-ISG

ConfidentialBengaluru / Bangalore, India
9 days ago
Job description

The Information Security Risk Management and Reporting Manager supports in formulating the overall risk management strategy and objectives for the bank&aposs information security function. This role involves aligning security risks with business goals, defining risk priorities, and establishing clear objectives to mitigate and manage risks effectively. The role will drive Information Security processes through enabling automation, designing & enabling solutions to automate risk management processes across the bank.), ensuring seamless integration, enhanced risk visibility, and streamlined reporting using advanced GRC tools.

  • Risk Management Life-Cycle :
  • Define risk lifecycle management process for the bank in alignment with ERM and ORM, and enable the same in ISG GRC solution to support the unit.
  • Act as a trusted advisor to the Business when supporting risk-based decisions.
  • Develop and implement, in collaboration with ERM and ORM, a Risk Appetite lifecycle framework to ensure continuous alignment with business needs, the internal and external threat landscape, and regulatory requirements.
  • Assure Information Security exceptions are documented, effectively assessed and approved by respective risk owners and tracked for closure.
  • Cyber Risk Management :
  • Manage the organization's cyber risks by having a mechanism to identify the key cyber risk to the organization and documenting and reporting to effectively track for closure.
  • Cyber Risk Quantification :
  • Quantify the organization's cyber risks. Use qualitative or quantitative methods to assess the potential impact of cyber risks on the organization.
  • Cyber Risk Register
  • Develop and maintain a centralized risk register to ensure proper tracking and effective reporting of the identified risks.
  • Ensure continuous updating to capture new risks, changes in risk status, and remediation progress, enabling informed decision-making and proactive risk management.
  • Cyber Best Practice Sharing :
  • Regularly share updates on the latest cybersecurity best practices.
  • Encourage teams to incorporate these practices into their daily operations.
  • Vendor Relationship Management :
  • Serve as the main liaison between the organization and GRC solution vendors. Manage BRDs, contracts, licensing, and renewals, ensuring that services and tools meet the company's evolving needs and compliance requirements.
  • IS GRC Solution Management :
  • Be the business owner of the bank's GRC platform for ISG and oversee the management of the organization's IS GRC solution.
  • Enable centralized knowledgebase and GRC solution to automate Information Security activities and governance process with a centralized risk register, risk reports, and dashboards related to overall risk posture for specific location and business unit.
  • Ensure that the solution is effectively used to support the organization's information security governance, risk, and compliance activities.
  • Support local CISOs / IS SPOCs in regulatory audit discussions and data required from ISG, and enable the local CISOs with Prism access to onboard the open issues for centralized tracking and governance.
  • Serve as the main liaison between the organization and GRC solution vendors. Manage BRDs, contracts, licensing, and renewals, ensuring that services and tools meet the company's evolving needs and compliance requirements.
  • Ensure that the GRC tools are properly configured to address the organization's specific risk, compliance, and audit requirements.
  • Ensure the smooth operation of GRC solutions, including monitoring system performance, identifying issues, and implementing resolutions promptly
  • Develop training materials and provide ongoing support for GRC platform users, ensuring they can effectively leverage the tools for risk and compliance activities.

General

  • Demonstrate adoption of ISG vision, mission, key principles, cultural and operational objectives. Support actively key ISG transverse initiatives.
  • Manage the main GRC Run the Bank and Change the Bank agenda to deliver quality results, on time and on budget. Escalate in advance any alert, risk, critical dependency, and issue that arises, with options for their management to ensure proactive management and no surprises.
  • Ensure preparation, execution, and follow-up of regulatory examinations, audits, and assessments. Those reviews shall not result in any critical or high-risk issue for ISG or for ISG GRC.
  • Ensure closing of all legal, regulatory, and audit issues with the expected level of quality, in time, and on budget.
  • A mid-senior level officer with sound knowledge and expertise in information security risk management, with experience in managing enterprise projects and of direct and indirect relationships with senior and executive management.
  • Strong experience with GRC platforms (e.g., RSA Archer, MetricStream, ...etc ), including administration, configuration, and integration with other business systems.
  • Strong experience and knowledge across the Information Security and Cyber Security domains, including governance, policy procedures, compliance management, risk management, and security incident response, etc.
  • Strong experience in a Banking environment with a strong understanding of key security frameworks such as ISO27001.XX, NIST 800.xx, PCI-DSS, SWIFT CSP, COBIT etc.
  • Strong interpersonal, analytical, and technical skills with strong decision-making and prioritization skills.
  • Sound knowledge of evolving advanced tech stacks and related control and risk universe.
  • Sound knowledge and expertise in conducting risk assessment.
  • Have 10+ years of rich experience in the information security domain and at least 2-3 years of dedicated experience in managing GRC solutions or in a similar role, with a strong background in governance, risk management, and compliance
  • Master's degree in IT / Information Security
  • Professional certifications : CISA, CISM, CISSP, CRISC, ISO27001 LA / LI, etc.
  • The leading financial institution in MENA

    While more than half a century old, we proudly think like a challenger, startup, and innovator

    in banking and finance, powered by a diverse and dynamic team who put customers first.

    Together, we pioneer key innovations and developments in banking and financial services.

    Our mandate To help customers find their way to Rise Every Day, partnering with them through

    the highs and lows to help them reach their goals and unlock their unique vision of success.

    Delivering superior service to clients by leading with innovation, treating colleagues with dignity and fairness while pursuing opportunities that grow shareholders value.

    We actively contribute to the community through responsible banking in our mission to inspire more people to Rise.

    Show more

    Show less

    Skills Required

    CSP, Risk Assessment, Cobit, Information Security, Iso27001, Cyber Security, Swift

    Create a job alert for this search

    Manager Security • Bengaluru / Bangalore, India

    Related jobs
    • Promoted
    IT GRC – AVP [T500-12809]

    IT GRC – AVP [T500-12809]

    Talent500Bengaluru, Karnataka, India
    Responsible for managing Cyber Security Risk, Compliance, and Assurance activities.Drive the global cyber security certifications as per MGS Management Strategy. Evaluating control effectiveness and...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Manager-Risk Assessment

    Senior Manager-Risk Assessment

    HCLTechBengaluru, Karnataka, India
    The position is a member of Risk & Compliance team within HCL Technologies.The DCO will be aligned to critical service delivery engagements and will be responsible for ensuring compliance in accord...Show moreLast updated: 7 days ago
    • Promoted
    Manager Enterprise Risk

    Manager Enterprise Risk

    Ujjivan Small Finance BankBangalore Urban, Karnataka, India
    These responsibilities are representative and the role holder is also responsible for any other job assigned by the superior authorities from time to time. This section in not intended to be an exha...Show moreLast updated: 15 days ago
    • Promoted
    SecOps_GRC_Techno Manager

    SecOps_GRC_Techno Manager

    ConfidentialBengaluru / Bangalore
    Security Operations and GRC Manager .Responsible for safeguarding an organizations information technology infrastructure and data from potential threats, vulnerabilities, and cyberattacks.Develop a...Show moreLast updated: 30+ days ago
    • Promoted
    Manager - Technology Risk & Compliance

    Manager - Technology Risk & Compliance

    ConfidentialBengaluru / Bangalore
    Review products and processes for regulatory, security, and risk alignment.Lead technology due diligence for new and existing implementations. Design and conduct gap assessments against regulatory a...Show moreLast updated: 25 days ago
    • Promoted
    Senior Consultant - GRC

    Senior Consultant - GRC

    Crossbow CybersecurityBengaluru, Karnataka, India
    We’re excited to announce that.ISO 27001 implementation and audit projects.NIST cybersecurity frameworks (e.Provide strategic guidance on . Information Security Management System (ISMS).Collaborate ...Show moreLast updated: 14 days ago
    • Promoted
    Vendor Risk Management and GRC

    Vendor Risk Management and GRC

    ConfidentialBengaluru / Bangalore
    Support the preparation, coordination, and documentation of compliance audits (e.ISO 27001, SOC 2, ISO 27701, etc.Manage periodic updates of Information security policies in terms of annual updates...Show moreLast updated: 7 days ago
    Director Technology Governance Risk and Compliance

    Director Technology Governance Risk and Compliance

    ScaleneWorksBengaluru, karnataka, India
    Quick Apply
    As a Director, R&D Tech Governance Risk and Compliance, you will be responsible for providing management and day to day support to the Senior Director for Governance, Risk & Compliance acti...Show moreLast updated: 30+ days ago
    Senior Manager - Information Security Trust & Compliance (Bangalore)

    Senior Manager - Information Security Trust & Compliance (Bangalore)

    First AdvantageBangalore, Karnataka, IN
    Quick Apply
    The role will own, lead, and scale large, multi-client GRC programs across diverse industries.This role will own the strategy and execution of a risk-based GRC approach that identifies, measures, m...Show moreLast updated: 21 days ago
    • Promoted
    Senior Manager Third Party Risk Management

    Senior Manager Third Party Risk Management

    ConfidentialBengaluru / Bangalore
    Lead TPRM transformation projects in a dynamic, fast-paced environment.Manage delivery of key TPRM initiatives and support execution of the global roadmap. Contribute to the governance and continuou...Show moreLast updated: 9 days ago
    • Promoted
    Senior Engineer - Risk Management

    Senior Engineer - Risk Management

    WSP in IndiaBangalore Urban, Karnataka, India
    Provide Risk Management professional advice to Project and Programme Managers.Application of risk management processes and systems. Lead the identification of risks on behalf of the Project Manager,...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Manager GRM

    Senior Manager GRM

    ConfidentialBengaluru / Bangalore
    We are seeking a highly skilled Senior Manager of Governance, Risk Management (GRM) to join our team in India.This role will be responsible for overseeing the organization's GRC strategies, ensurin...Show moreLast updated: 9 days ago
    • Promoted
    Senior Manager - IT Auditor

    Senior Manager - IT Auditor

    NaviBengaluru, Karnataka, India
    The Governance & Control team at Navi is responsible for overseeing internal audits across various domains, ensuring compliance with internal policies and regulatory requirements.The team proactive...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Analyst GRC

    Senior Analyst GRC

    Tyson Foods IndiaBengaluru, Karnataka, India
    As a Senior Security Engineer – II GRC in Governance, Risk, and Compliance (GRC) - Risk Management, you will be instrumental in the design, implementation, and enhancement of risk management and co...Show moreLast updated: 26 days ago
    • Promoted
    Senior Manager - Information Security Trust & Compliance (Bangalore)

    Senior Manager - Information Security Trust & Compliance (Bangalore)

    ConfidentialBengaluru / Bangalore, India
    The role will own, lead, and scale large, multi-client GRC programs across diverse industries.This role will own the strategy and execution of a risk-based GRC approach that identifies, measures, m...Show moreLast updated: 9 days ago
    • Promoted
    Senior Manager - Cyber Security

    Senior Manager - Cyber Security

    ConfidentialBengaluru / Bangalore
    Senior Manager - Cyber Security.This role involves developing and maintaining the end-to-end security architecture of products, working with cross-functional teams to implement cybersecurity standa...Show moreLast updated: 9 days ago
    • Promoted
    Senior Manager - IS_IT Service Delivery

    Senior Manager - IS_IT Service Delivery

    ConfidentialBengaluru / Bangalore, India
    Senior Manager - IS_IT Service Delivery.Our Digital and Technology (D&T) team are innovators,.Technology touches every part of our business, from the sourcing of sustainable ingredients to marketin...Show moreLast updated: 9 days ago
    • Promoted
    Senior Manager – HRIS & Governance Lead

    Senior Manager – HRIS & Governance Lead

    Elliott Scott - HR search & recruitmentBengaluru, Karnataka, India
    Our client, a leading financial services firm, is seeking an experienced.Senior Manager – HRIS & Governance Lead.This individual will be responsible for leading architectural design, governance, co...Show moreLast updated: 23 days ago