Loading open roles
Loading open roles
Loading role

Leading Investment Bank · posted 6 months ago
Within Societe Generale Global Solution Center (SGGSC), you will join Global Cybersec Capability Centre (G3C) team based out of Bengaluru, working in Third Party Risk Management team to contribute in the information security and risk management practice.
The candidate will be involved in the infosec operations, risk management activities, Third party security and governance. This implies working relations with extended Business lines and IT teams on behalf of G3C team.
The candidate will be working in a high-pressure environment, it calls for assertiveness and flexibility to ensure deadlines are met based on agreements / defined milestones
We are seeking a skilled and experienced Information Security & Risk specialist to join our team. The ideal candidate will have 7-9 years of experience in risk and information security audit, with a focus on third party risk management.
In this role, you will be responsible for conducting risk assessments and audits of the company's information security systems, processes, and controls. You will work closely with the Information Security team and other stakeholders to identify and evaluate potential security risks, and provide recommendations for mitigating and managing these risks.
The main responsibilities as a lead & performer are:
Responsibilities
Profile
- 7-9 years of overall work experience in IT app/ Infrastructure,
risk, cybersecurity
- A strong understanding and experience of establishing security governance
across an organization
- Conducting risk assessments and audits of the company's information
security systems, processes, and controls
- Identifying and evaluating potential security risks, including risks related to third party vendors and partners
- Developing and implementing strategies and processes for managing and mitigating identified risks
- Working with the Information Security team and other stakeholders to implement and maintain security controls and standards
- Providing guidance and support to the Information Security team and other stakeholders on information security best practices and standards
- Developing and maintaining security policies, procedures, and standards
- Reporting on audit findings and recommendations to the Information Security team and other stakeholders
- Keeping up-to-date with the latest developments and trends in information
security, risk management, and third party risk management
- Strong a self-starter who has the ability to operate independently and
demonstrates complete ownership over assigned objectives in a
"semi-structured" environment
- Excellent oral/written presentation skills with ability to communicate
effectively with senior executive leadership