FS-EGRC-Senior

Bengaluru, KA, IN, 560016

EY

EY provides consulting, assurance, tax and transaction services that help solve our client’s toughest challenges and build a better working world for all.

View company page

At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all. 

 

 

 

 

JOB DESCRIPTION--Manager –Tech Risk- Derisk IT

Job Location: Delhi NCR/Bangalore/Hyderabad/Pune

 

Job Summary

Derisk IT focuses on proactively identifying and managing risks across the technology environment in real-time, to enable business functionality and provide operational stability. Bringing Derisk IT to life requires actions beyond refining existing methodologies and operating models. Strategic investments in tools and systems that unify the technology environment supporting key risk activities will enable the organization to reduce risk effectively and efficiently. In this role, you will advise clients in identifying and managing risks to their IT environments. You’ll also identify potential business opportunities for EY within existing engagements and enable new wins.

 

Responsibilities

  • Develop an understanding of client’s technology architecture and platforms, current transformation efforts, process execution, and/or culture and skillsets across competencies including, but not limited to Technology and Data  Public and Hybrid Cloud Technologies, Data Governance, Tech Transformation, and Path to Production/Tech Change Management.
  • Understand the implications that are driving the increased level of risk for each  identified risk contributor; consider risk impacts that directly affect the client’s desired target state and how these risks can be mitigated using a combination of technology and process enhancements
  • Develop a strategy to Derisk the IT environment across current risk contributors; identify interaction points between the Derisk IT strategy and current IT and risk strategies; prioritize any elements of the strategy that introduce new risk
  • Establish process, risk, and control metrics that prioritize high-risk services and capabilities and are designed to be monitored, ensuring risk reduction can be accurately measured in real time in order to make risk decisions before an exposure occurs
  • Develop specific action plans to bring down the level of risk across previously identified risk contributors, including technology, platforms, transformation efforts, and process execution
  • Identify opportunities to embed controls earlier in key IT and business processes and automate where possible, preventing downstream risk exposure across technology and processes 
  • Proven ability to work as a team lead within Derisk IT projects

 

People responsibilities

  • Foster teamwork, quality culture and lead by example.
  • Understand and follow workplace policies and procedures
  • Train and mentor the project resources and team members
  • Right attitude towards teaming, ownership, and knowledge sharing
  • Prepare reports and schedules that will be delivered to clients and other parties
  • Develop and maintain productive working relationships with client personnel
  • Planning and monitoring of the project deliverables for the team
  • Mentor the project team in executing the project deliverables
  • Regular status reporting to the project manager and onsite coordinators
  • Demonstrate flexibility to travel to the customer locations / other EY offices, on need basis
  • Good documentation and communication skills

 

Mandatory skills requirements

  • 3-8 years of experience in the field of technology and technology risk management
  • Ability to identify risks within IT and business processes and design appropriate controls to mitigate risks
  • Experience in various IT service management, change management and application development tools (e.g. JIRA, GitHub, etc.)
  • Experience of embedding security and privacy controls into information systems design
  • Experience of using key risk indicators and key performance indicators to manage technology infrastructure risks

 

Preferred skills

  • Demonstrated track record with a consulting organization and/or financial services organization.
  • Relevant professional qualifications such as M. Tech, MCA, MS, MBA-IT
  • B.E/B. Tech (Electronics, Electronics & Telecommunications, Comp. Science)

 

Certifications (Preferred)

  • Relevant professional certifications such as CISSP, ITIL, CISA, etc.
  • Certifications in any tools such as ServiceNow, Jenkins, JIRA, Terraform, GITHUB, etc.
  • Cloud certifications for AWS, Azure and GCP and/or relevant cloud security certifications

 

EY | Building a better working world 


 
EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.  


 
Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate.  


 
Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today.  

Apply now Apply later
  • Share this job via
  • or

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: AWS Azure CISA CISSP Cloud GCP GitHub Governance ITIL Jira Monitoring Privacy Risk management Strategy Terraform

Perks/benefits: Career development Team events

Region: Asia/Pacific
Country: India
Job stats:  5  0  0
Category: Compliance Jobs

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.