54 Certified Safety Professional jobs in India

Risk Assessment

Bengaluru, Karnataka Talent Worx

Posted today

Job Viewed

Tap Again To Close

Job Description

Talworx is hiring!

Our client in India, a professional services firm, is the Indian member firm affiliated. Our professionals leverage the global network of firms, providing detailed knowledge of local laws, regulations, markets, and competition. Our client has offices across India in Ahmedabad, Bengaluru, Chandigarh, Chennai, Gurugram, Hyderabad, Jaipur, Kochi, Kolkata, Mumbai,

Noida, Pune, Vadodara, and Vijayawada.

Our client in India offers services to national and international clients in India across sectors. We strive to

provide rapid, performance-based, industry-focussed and technology-enabled services, which reflect a

shared knowledge of global and local industries and our experience of the Indian business environment.

Our professionals provide the experience to help companies stay on track and deal with risks that could

unhinge their business survival. Our services enable clients to effectively co-ordinate their key growth,

quality and operational challenges and working in partnership with us.

Requirements

Roles & Responsibility:

• Conduct thorough and detailed cyber risk assessments for our clients, analyzing their digital

infrastructure, systems, and security controls.

• Collaborate with cross-functional teams to gather essential information and data required for

comprehensive risk assessments.

• Evaluate and interpret assessment results to identify potential vulnerabilities and risks, and provide

actionable recommendations for risk mitigation.

• Stay up-to-date with the latest cyber threats, attack vectors, and industry best practices to enhance the

effectiveness of risk assessments.

• Prepare and deliver clear and concise reports summarizing the findings of risk assessments to clients

and internal stakeholders.

• Provide expert advice and consultancy to clients, guiding them in implementing robust cybersecurity

risk management strategies.

• Mentor and support junior team members to foster their professional growth and skills in cyber risk

assessments.

Bachelor's or Master's degree in Computer Science, Cybersecurity, Information Technology, or related

fields.

• A minimum of 5+ years of hands-on experience in conducting cyber risk assessments and related

security assessments.

• Industry certifications such as CISSP, CCSP, CISA, CISM, CRISC, ISO/IEC:27001/22301/2000 LI/LA or

equivalent are highly valued.

• Profound knowledge of cybersecurity frameworks, industry standards, and best practices.

• Proficiency in using various security assessment and techniques.

• Strong analytical and problem-solving skills, with the ability to think critically and strategically.

• Excellent communication and presentation skills, capable of effectively communicating technical

concepts to both technical and non-technical audiences.

• Demonstrated experience in project management and handling multiple assessments simultaneously.

• A proactive and self-motivated approach to work, with a commitment to continuous learning and

professional development.

• Network Security, infrastructure assessment and network architecture design review.

• Conceptual knowledge of OT Security/ISA 62443 standard is preferable.

>> CRITERIA

o Education 60% above throughout academics

o One 3 years (at least) regular course is must either Diploma or Graduation

o Course: B.E. / B. Tech / MCA / M. Tech / MBA degree or equivalent

o Certification: CISM / CISSP / CCSP / CISA / CRISC / ITIL / ISO 27001/22301/2000 LI/LA (At least

one)

o CCNA (Mandatory), CCNP or equivalent(optional).

>> COMPENSATION

O Compensation is competitive with industry standards

o Details of the compensation breakup will be shared with short-listed candidates only

Benefits

Work with one of the Big 4's in India

Healthy work Environment

Work Life Balance

This advertiser has chosen not to accept applicants from your region.

Toxicology Risk Assessment

Bengaluru, Karnataka Confidential

Posted today

Job Viewed

Tap Again To Close

Job Description

Please look for the profiles for Toxicology Risk Assessment with the below skill set. Share you updated resume to (HIDDEN TEXT)

Toxicology Risk Assessment

Location : Bangalore.

Job Description:

  1. Master&aposs degree/ Ph.D. in pharmacology, biotechnology, veterinary science, life sciences, or relevant science discipline. MUST have DABT or ERT certification
  2. 5-8 years of experience in preclinical toxicology and biocompatibility testing.
  3. In-depth understanding and hands-on experience on ISO 10993-1; ISO 10993-17 and other ISO 10993 series standards, ISO 18562 series standards , OECD, ICH, and EU-MDR guidelines.
  4. Experimental data analysis, interpretation, and report preparation.
  5. Hands-on experience in evaluating, interpreting, and summarizing biocompatibility/toxicological testing data.
  6. Knowledge of the field of product safety assessment as per EU-MDR and FDA regulations.
  7. Experience in technical writing and test protocol/report preparation.
  8. Experience in toxicological risk assessment per ISO 10993-17 and raw materials safety assessment.
  9. Familiar with the calculation of Permitted Daily Exposure/Acceptable Daily Intake/Reference Dose/Margin of Safety (MoS)/ Tolerable Intake (TI)
  10. Hands-on experience with in-silico prediction tools


Skills Required
Technical Writing
This advertiser has chosen not to accept applicants from your region.

IT Risk Assessment

Bengaluru, Karnataka Confidential

Posted today

Job Viewed

Tap Again To Close

Job Description

Job Description:

Location: Bangalore

Experience: 5 to 9 years

We are looking for an experienced IT Risk & Information Security Specialist to join our team in Bangalore. The ideal candidate will have a strong background in Information Security, IT compliance, and security controls, with hands-on experience supporting audits, risk assessments, and driving continuous improvement in IRM processes.

Key Responsibilities:

• Understand end-to-end IT processes and how controls are integrated within them

• Assess and operate IT controls effectively and in a timely manner

• Identify and understand risks covered by controls

• Ensure controls are properly designed to mitigate risks and serve their intended purpose

• Maintain and provide supporting evidence for control operations and monitoring

• Support internal and external audits

• Lead and optimize project risk assessments including security reviews, stage gate sign-offs, and remediation plans

• Ensure compliance with legal, regulatory, and company-specific requirements

• Collaborate with Information Risk Management (IRM) teams and other stakeholders

• Drive continuous improvement (CI) of IRM processes and innovation in security practices

• Educate staff and influence behaviours toward risk awareness and mitigation

• Participate in quarterly risk updates and contribute to safety, health, and compliance reporting

Required Skills:

• 5–9 years of experience in Information Security, IT Risk Management, or IT Compliance

• Strong understanding of ITGC, SOX, security frameworks (ISO 27001, NIST, PCI-DSS, GDPR, HIPAA)

• Experience supporting audits and preparing documentation for control effectiveness

• Familiarity with IRM frameworks, policies, and risk assessment methodologies

• Excellent stakeholder management, communication, and collaboration skills


Skills Required
Gdpr, Iso 27001, nist, Hipaa, itgc, Sox
This advertiser has chosen not to accept applicants from your region.

Vendor Risk Assessment

Chennai, Tamil Nadu Anicalls (Pty) Ltd

Posted today

Job Viewed

Tap Again To Close

Job Description

• Develop and sustain meaningful relationships through building Trust and rapport with internal Santander stakeholders
• Partners with Business stakeholders to report on risks from third parties related to information security and business continuity.
• Provides leadership to other analysts and assists management in validating the quality and timely delivery of assessments
• Represent Santander's position in front of suppliers, and act as the communication link between Santander and suppliers as needed
• Management of issue resolution falling within the scope of the department
This advertiser has chosen not to accept applicants from your region.

IT Audit Risk Assessment

Bengaluru, Karnataka Talent Worx

Posted today

Job Viewed

Tap Again To Close

Job Description

IT Advisory Risk Consulting—IT Audit & Assurance 

Our client’s IT Advisory – Risk Consulting team is looking for Associate Consultants/ Consultants/ Assistant Managers to join their IT Audit & Assurance team in Bengaluru. Team provides Independent assurance on controls in place across client’s IT environment and ways to mitigate Technology risks. 

Following are some of our key solution offerings

  • Risk Based IT Internal Audit
  • IT SOX 404 Controls Testing, Quality Assurance
  • Internal Financial Controls related to IT General Controls 
  • IT General Controls as part of Financial Statements Audits
  • IT Risk & Control Self-Assessment 
  • Business Systems Controls / IT Application Controls 
  • Auditing Emerging Technologies such as Cloud Security, Intelligent Automation, RPA, IoT etc.
  • IT Attestation (SOC1/SOC2/ISAE 3402, ISAE 3000 etc.)
  • Third Party/Vendor Risk Assessments 

Position: Associate Consultants/ Consultants/ Assistant Managers

Location: Bengaluru  

Requirements

Industry Experience:

  • Plan, budget and execute the day-to-day activities of infrastructure audit engagements for clients
  • Assess client's security landscape, assess, evaluate and recommend most suitable security solution, tools & techniques to create a threat resilient landscape using our client's differentiated approach and methodologies. Provide security concept, framework & standards for development & support client teams for the solution design, customization build and roll out to end users. 
  • Perform a holistic security risk assessment of the client’s IT landscape taking various assets, threats, vulnerabilities, business impact & legal aspects into consideration. Designing and implementing controls to mitigate identified risks by lucid communication to client stakeholders. Effective persuasive/convincing abilities while communicating gaps detected during audits, risk assessments, attestation engagements.   
  • Collaborate with other practice groups to review the effects of new threats and vulnerabilities in the security space to assess, remediate, test and protect client application artefacts, data and enterprise ecosystems from threat vectors as they emerge. 
  • Work with other technology groups to provide cohesive solutions in Risk assessments, Financial statement audits, Attestation engagements encompassing network architecture, application, database, , standards and implementation related mandates for development, deployment and maintenance. 
  • Manage teams delivering co-working discovery workshops & support delivery teams to provide assessment, remediation, testing and standards refresh for the application security practice. 
  • Present and distill complex Security solutions into simple, easy to understand concepts for both technical and non-technical audiences especially in the context of opportunity pursuit. 
  • Drive Innovation through Offerings: — Drive profitable growth through the execution of the strategy and the strengthening of the audit and assurance practice 
  • Building innovative & collaborative solutions to bring combined offerings such as security related combinations with J2C, API, Data security as advisory & execution footprint to capture opportunities & illustrate convergence 
  • Bring the audit and assurance practice to life to achieve sales and commercial opportunities in a collaborative ecosystem and follow through with support for cost effective high quality execution. 

Additional Responsibilities for Assistant Managers:

  • Supervise associates and interns on engagements
  • Serve as a liaison between financial services clients and upper management
  • Establish and sustain long-term profitable client relationships that drive value creation, delivery excellence and a positive client work environment
  • Works with the client to minimize delivery disruptions and effectively manages client urgencies.
    Qualifications
    • Engineering / MBAs with atleast 6+ years of experience 
    • 3+ years of experience with hands on exposure to Infrastructure / Mobile/ Web application security spanning across various technologies. 
    • Working level familiarity of advanced security assessment concepts, including but not limited to –, Malware analysis, OT/ICS security, Cloud security, security in IoT, Blockchain, RPA and emerging technologies, etc. 
    • Working level familiarity with Static and Dynamic Analysis tools (SAST, DAST, IAST). Ability to manage deployment & use of OWASP tools and methodologies. 
    • Ability to elucidate vulnerabilities and weaknesses in the OWASP Top10,WASCTCv2, SANS Top-25 and CWE25 to client IT/ISO audiences and discuss effective defensive techniques. 
    • Comprehensive understanding and previous oversight of IT hardware, software, networking, databases, API services, J2C storage, licensing and related hosting needs.
    • Infrastructural configuration reviews to identify the security related gaps within the IT environment
    • Preference would be given to significant experience in relevant technical knowledge: (a) financial statement – IT  Audits; (b) IT internal or IT operations audits; (c) IT SOX engagements (d) Emerging Technology Risks (e) Data Privacy and PCI-DSS risks
    • Good to have, add on skills - Working level familiarity with relevant vulnerability scanning tools (e.g., Qualys, Nessus, Nexpose, Saint or any other open source tools). Working level familiarity with web application vulnerability scanning tools (e.g. IBM AppScan, HP Fortify, Accunetix, NTO Spider, Burpsuite Pro or any other open source tools), SIEM tools (SolarWinds, Splunk, LogRhythm, IBM QRadar) 
    • Ability to understand/identify best practices for infrastructure process and controls.
    • CISA, CISM, CISSP, CRISC, TOGAF certifications would be an added advantage
    • Prior experience in client facing / account management roles
    • Possess strong domain knowledge, understanding of IT processes supporting business and possible risks in operations of at least two industry sectors
    • Demonstrate integrity, values, principles, and work ethic and lead by example

Benefits

Work with one of the Big 4's in India

Healthy work Environment

Work Life Balance

This advertiser has chosen not to accept applicants from your region.

Conflicts Risk Assessment Lawyer

Prayagraj, Uttar Pradesh K&L Gates Australia

Posted today

Job Viewed

Tap Again To Close

Job Description

  • Permanent full time position available
  • Predominantly remote working
  • Practising legal role - with no billable hours

DISCOVER  more opportunities to DEVELOP  your talents and THRIVE  in a dynamic legal landscape.

About the role

Our global Conflicts and new Business Intake department is seeking a Conflicts Risk Assessment Lawyer to join our global team. This role will be permanent full time role with the opportunity to work in a hybrid or predominantly remote work environment (with the occasional in office meeting and social events). This global department, part of the Firm wide Office of the General Counsel function, is responsible for the critical tasks of handling new business intake requests and associated conflict checks, client due-diligence and compliance work.

 What does the role involve?

This is a great role which involves exposure to a variety of matters with daily interactions with colleagues all around the world. On a daily basis you will be:

  • Analysing and evaluating conflict search requests;
  • Conducting extensive corporate affiliation and client quality research;
  • Applying relevant professional rules of conduct, firm policies, regulations, and risk guidelines;
  • Identifying and resolving potential conflict issues and providing a concise and complete summary report for relevant stakeholders such as partners, senior management and the General Counsel;
  • Reviewing, drafting and providing advice on client engagement agreements, conflict waivers, external publications and outside counsel guidelines; and
  • Vetting all new business intake requests to ensure compliance with the Firm's business direction.

What are we looking for?

We value our culture at K&L Gates and are proud of our friendly and respectful reputation. We are looking for a likeminded individual who, in addition to possessing technical excellence, is able to work collaboratively in a team and support their colleagues.  In addition to this we are looking for:

  • Qualified lawyers with a current practising certificate and a minimum of 2 years PQE;
  • Experience in a risk management or compliance role is highly desirable, but not essential. (Candidates who have been practising law for 2 or more years will be considered); 
  • Excellent people skills with the ability to communicate concisely, influence stakeholders and build strong business relationships;
  • Strong research skills and knowledge of corporate affiliations;
  • High level computer skills with the ability to learn new systems quickly; and
  • A desire to work in a legal compliance role.

To be successful in this role, you will exhibit a high degree of professionalism and confidentiality while maintaining a good rapport with the firm’s partners, lawyers and staff.  We seek exceptional employees who want to become a part of our practice on all levels, to help us expand, challenge our limits, and push us to grow into the future. If you are motivated by job challenges and personal growth, then K&L Gates could be the right place for you.

The extras

K&L Gates promotes equal opportunities for all employees to progress in their careers. 

Initiatives include:

  • Regular social events and an active social club;
  • Salary continuance insurance;
  • Pro-bono programs and community involvement via our payroll giving program, Global Day of Service and charitable fundraisers;
  • Generous leave options as well as a broad range of flexible working options;
  • 26 weeks paid parental leave;
  • An extensive range of learning and professional development programs; and
  • Committees that tackle the big issues including diversity and inclusion, Women in the Profession and work/life balance.

About Us

The firm’s Australian operations provide vast knowledge of the Australian legal marketplace across a wide spectrum of industries.  With lawyers located in four established offices in Australia’s leading financial and commercial centres and possessing substantial experience.

At K&L Gates, we foster an inclusive and collaborative environment across our fully integrated global platform that enables us to diligently combine the knowledge and expertise of our people to create teams that provide exceptional client solutions. We marry process with vision, success with dedication, method with passion, and innovation with creativity. The outcome: The K&L Gates Experience.

Located across five continents, we represent a broad array of leading global corporations in every major industry, capital markets participants, and ambitious middle-market and emerging growth companies. We also serve public sector entities, educational institutions, philanthropic organisations, and individuals. Our lawyers counsel clients on their most sophisticated legal challenges in all areas of corporate and regulatory law as well as litigation.

We are leaders in legal issues relating to industries critical to the economies of both the developed and developing worlds—technology, manufacturing, energy, transportation, telecommunications, financial services, and life sciences, among others.

Do you like what you see?

Please apply via our Careers page at

For more information, please contact Tania Brierley, Recruitment Consultant at

For more information about K&L Gates please see our website

Referrals from agencies are not accepted at this time.

K&L Gates reserve the right to close advertising earlier at our discretion.

K&L Gates is an equal opportunity employer and promotes the safety, wellbeing and inclusion of those with a disability. We welcome applications from people who have an indigenous and/or culturally and linguistically diverse background.

Stay safe when applying on-line and be aware of jobs and employment related scams via scamwatch.gov.au   

Attachments:
- K&L Gates Employee Benefits.pdf

This advertiser has chosen not to accept applicants from your region.

Information Security Manager - Risk Assessment

226010 Lucknow, Uttar Pradesh ₹95000 Annually WhatJobs

Posted today

Job Viewed

Tap Again To Close

Job Description

full-time
Our client is seeking an experienced Information Security Manager to lead their risk assessment and compliance efforts in Lucknow, Uttar Pradesh, IN . This senior role is responsible for identifying, evaluating, and mitigating information security risks across the organization, ensuring compliance with relevant regulations and industry standards. You will develop and implement comprehensive risk management frameworks, conduct security audits, and oversee the implementation of security controls. Key responsibilities include managing vulnerability assessments, penetration testing programs, and developing incident response plans. The ideal candidate will have a strong understanding of information security principles, governance, risk management, and compliance (GRC). Experience with security frameworks such as ISO 27001, NIST, or SOC 2 is essential. You will lead a team of security professionals, mentor junior staff, and foster a security-aware culture throughout the organization. Excellent leadership, communication, and strategic planning skills are critical. This position requires a Bachelor's or Master's degree in Computer Science, Information Security, or a related field, with a minimum of 7 years of progressive experience in information security, including at least 3 years in a management or leadership role. Professional certifications such as CISSP, CISM, or CRISC are highly desirable. This role will involve a combination of remote work for strategic planning and analysis, and on-site presence for team collaboration and operational oversight.
This advertiser has chosen not to accept applicants from your region.
Be The First To Know

About the latest Certified safety professional Jobs in India !

Insurance Underwriter - Risk Assessment Specialist

452001 Indore, Madhya Pradesh ₹70000 Annually WhatJobs

Posted 2 days ago

Job Viewed

Tap Again To Close

Job Description

full-time
Our client is seeking a meticulous and analytical Insurance Underwriter to join their fully remote team. This role is pivotal in assessing and evaluating the risks associated with insurance applications, ensuring the company's financial stability and profitability. As a remote underwriter, you will conduct thorough reviews of applications for various insurance products, utilizing diverse data sources and sophisticated risk assessment tools. Your responsibilities will include analyzing applicant information, financial statements, medical records (where applicable), and other relevant data to determine insurability and set appropriate premiums. You will need to adhere strictly to underwriting guidelines and company policies while making informed decisions. The ability to interpret complex information and communicate findings clearly, both written and verbally, is crucial for collaborating with agents, brokers, and internal stakeholders. This position requires a keen eye for detail, a strong understanding of risk management principles, and excellent decision-making capabilities. The ideal candidate holds a Bachelor's degree in Business, Finance, Economics, or a related field, coupled with at least 3 years of experience in insurance underwriting, preferably in a remote setting. Professional designations such as Associate in Underwriting (AU) or Chartered Property Casualty Underwriter (CPCU) are highly valued. Proficiency in underwriting software and a strong command of Microsoft Office Suite are expected. If you are a seasoned professional seeking a challenging and rewarding remote career opportunity where you can leverage your expertise in risk assessment, we encourage you to apply.

Key Responsibilities:
  • Evaluate insurance applications to assess risk exposure and determine insurability.
  • Analyze applicant data, including financial history, claims history, and other relevant factors.
  • Apply underwriting guidelines and company policies consistently to make informed decisions.
  • Calculate and set appropriate premiums based on risk assessment.
  • Communicate underwriting decisions and rationale clearly to agents, brokers, and policyholders.
  • Maintain accurate records of underwriting decisions and supporting documentation.
  • Stay updated on industry trends, regulations, and risk management best practices.
  • Collaborate with claims and actuarial departments to refine underwriting strategies.
  • Contribute to the development and improvement of underwriting processes and tools.
Qualifications:
  • Bachelor's degree in Business Administration, Finance, Economics, or a related field.
  • Minimum of 3 years of experience in insurance underwriting.
  • Proven ability to analyze complex data and assess risk effectively.
  • Strong understanding of insurance principles, risk management, and regulatory requirements.
  • Excellent analytical, decision-making, and problem-solving skills.
  • Proficiency in underwriting software and Microsoft Office Suite.
  • Strong written and verbal communication skills.
  • Ability to work independently and manage workload efficiently in a remote environment.
  • Relevant professional designations (e.g., AU, CPCU) are a significant advantage.
This advertiser has chosen not to accept applicants from your region.

Director Business Risk Assessment & Advisory

Bengaluru, Karnataka Confidential

Posted today

Job Viewed

Tap Again To Close

Job Description

Job Summary

  • To us, good performance is about much more than turning a profit. It&aposs about showing how you embody our valued behaviours as well as our brand promise, Here for good.
  • We&aposre committed to promoting equality in the workplace and creating an inclusive and flexible culture - one where everyone can realise their full potential and make a positive contribution to our organisation. This in turn helps us to provide better support to our broad client base.
  • The successful candidate has a strong business acumen and understanding of "CFCC - Conduct, Financial Crime and Compliance Business Risk Assessment and Advisory". The candidate is highly skilled individuals with Practioners level experience in CFCC risk assessment and monitoring, business risk advisory, regulatory and policy interpretation & compliance management, issue and event management and change risk management with exposure to product development, regulatory technology and innovation, data and analytics led risk management practices. This is a global role covering across the SCB footprint in Asia, Africa, Middle East, Europe, and Americas, covering multiple Businesses from Retail Bank, Private Bank, Affluent & Wealth Management, Transaction Banking including Trade & Cash, Banking and Financial Markets Business.
  • The responsibilities includes, working across Business, Products, Clusters and Countries Compliance and Specialist teams to perform:
  • Risk Identification, Analysis and Assessment of CFCC Risks, measure exposure to those risks and design, build and recommend control framework to mitigate and manage those risks, to enable structural and thematic risk response or remediation.
  • Risk monitoring of dynamic changes to risk and control environment, generate operational level insights to enable operational or tactical risk response or remediation.
  • Perform targeted deep dive into material or emerging or unknown risk areas due to a change in threat profile or business strategy, to enable structural risk response or remediation.
  • Manage issues and events as it occurs, perform root cause analysis and lessons learnt, remediate vulnerabilities, reduce exposures, fix gaps to improve control environment.
  • Manage CFCC risks introduced due to business change, perform a holistic assessment of impact of those changes to Businesses, mitigate and manage those risks proactively, to enable a sustainable growth of business.
  • Provide Business risk advisory in areas such as policy and regulation, business, or product change, to enable a sustainable growth of business.
  • Provide actionable risk insights and recommendation actions & decisions to Business, Products, Clusters and Countries Compliance and Specialist teams for them to drive & deliver client aware and risk focused outcomes and decisions.
  • Work with CFCC Product Owners in continuous improvement of products and services, build and innovate using reg tech and data analytical products.

Key Responsibilities

Strategy

  • Contribute materially towards the development, support, and implementation of the vision, strategy, and direction of the CFCC Professional Services team and in support of the Bank's strategic direction and growth aspirations.
  • Responsible to work with CFCC Product & Professional Services colleagues, CFCC Coverage & Specialist Teams and Business Risk Managers to identify risks across the Bank and drive appropriate action.

Business

  • Build and maintain an effective and constructive relationship with all CFCC Product & Professional Services colleagues, CFCC Coverage & Specialist Teams and Business Risk Managers that is based on trust, capability and integrity, providing timely, responsive and
  • INTERNAL GLOBAL STANDARD JOB DESCRIPTION TEMPLATE
  • quality CFCC related advice and guidance to enable the business and functions to meet/ achieve their strategic tactical objectives.
  • Support the integration of the Professional Services into the Bank's overall CFCC Risk Management strategy. This includes (but not limited to): taking ownership of incoming queries by not handling them off, taking a leading role in actively becoming the go-to person for all risk assessments and monitoring and ensuring Business advise provided is consistent and aligned to CFCC's advisory model.
  • Work closely with CFCC Product & Professional Services colleagues, CFCC Coverage & Specialist Teams and Business Risk Managers, as well as other key stakeholders, to provide substantive oversight support and enable sustainable CFCC outcomes.
  • Execute high standards of regulatory compliance and deliver key priorities and initiatives, aligned to the Professional Services performance scorecard.
  • Advanced level Expertise on CFCC risks, respective Business and Product and Global regulatory frameworks.

Processes

  • Analyse comprehensive impact of CFCC related risk and regulatory matters which has impact in SCB through quantitative and qualitative assessment.
  • Establish workflows, build, and maintain effective processes / DOIs to perform Risk Assessments, Risk Monitoring and Risk Advisory, aligning with Group and relevant regulatory requirements.
  • Independently perform deep dive reviews and thematic analysis to completion.
  • Continuous improve and calibrate the processes, approaches, practices and methodologies.
  • Provide actional risk insights to stakeholders.
  • Keep track of and provide advice to relevant stakeholders on the interpretation and application of regulatory expectations, emerging risks best practices and policies related to Compliance.
  • Supports efforts to ensure the effective management of CFCC matters management of regulatory issues that have a significant impact on the Bank and support relevant stakeholders to respond to regulatory questions. Collaborate with relevant Business, Risk and CFCC stakeholders to work towards holistic risk management across business, product, country, and cluster risks.

People & Talent

  • Promote and contribute to an environment where knowledge exchange, continuous learning, agile, prioritisation, deadline management, streamlined workflows and collaborative work practices are the norm.
  • Promote and embed a culture of openness, trust, and risk awareness, where ethical, legal, regulatory and policy compliant conduct is the norm.
  • Execute through example, build, and influence the appropriate culture and values. Maintain strong relationships with the wider Professional Services team, Countries, Business and CFCC Risk Managers encouraging collaboration.
  • Provide constructive development feedback at business, function, country, and individual level as appropriate on CFCC matters.
  • Contribute materially to the exchange of knowledge, best practice and lesson learned across the network between Professional Services and CFCC colleagues especially in relation to regulatory risks and compliance with relevant regulations and internal policies/standards.
  • Transmit, receive, and accurately interpret ideas, information, and needs through the application of appropriate communication behaviours.

Risk Management

  • Deliver the defined aspects of the Professional Services role to support the Group's CFCC risk management approach and objectives.
  • A full understanding of the risk and control environment for CFCC risks.
  • Supports efforts to ensure the effective management of CFCC matters management of regulatory issues that have a significant impact on the Bank and support relevant stakeholders to respond to regulatory questions. Collaborate with relevant Business, Risk and CFCC stakeholders to work towards holistic risk management across client segments / products risks.
  • Determine applicability and priority of Issues and Events triggered internally / externally, perform root-cause analysis, and perform look-across analysis. Establish unified Issue & Event management across all lines of defence.
  • Validate CFCC applicability of Change Risk Assessments.
  • Take a leading role in the proposal of control improvements, enhancements and simplifications related to processes that manage CFCC risk, where appropriate.
  • Collaborate with Business and CFCC Risk Managers to work towards holistic risk management across client segments / products risks.
  • Liaise with the internal audit and CFCC Assurance functions to ensure that any CFCC weakness identified by the internal audit function relating to the Professional Services function, including oversight of risk acceptance and/or mitigating action plans.
  • Collaborate with the other CFCC teams to anticipate horizon risks that may have a significant impact on the Bank and develop effective strategies to mitigate such horizon risks including global standards for conduct or business.

Governance

  • Develop appropriate risk-based compliance framework for identifying, assessing, managing, monitoring, mitigating, and reporting CFCC risks.
  • Develop or assist in developing and recommend appropriate Risk Assessment standards across CFCC risk types, meeting all Compliance requirements.
  • Build in the identification and escalation of potential business CFCC related risks and issues to senior management through appropriate governance channels and the Quality Assurance framework.
  • Support the management of end-to-end lifecycle of audit, assurance, and regulatory reviews, in relation to Professional Services, including tracking, remediation and preparing lessons learned from such reviews.

Regulatory & Business Conduct

  • Display exemplary conduct and live by the Group's Values and Code of Conduct.
  • Take personal responsibility for embedding the highest standards of ethics, including regulatory and business conduct, across Standard Chartered Bank. This includes understanding and ensuring compliance with, in letter and spirit, all applicable laws, regulations, guidelines and the Group Code of Conduct.
  • Effectively and collaboratively identify, escalate, mitigate, and resolve risk, conduct and compliance matters.

Key stakeholders

  • Global Compliance Officers covering Business or Products or Client Segments or Clusters, and their respective team.
  • Chief Country Compliance Officers covering Countries, and their respective team.
  • Global Product Owners covering respective CFCC & Risk products
  • Global and Country Business Heads
  • Global and Country Business Risk Management
  • Global and Country Process Leads
  • Chief Data Officer and teams involved in developing Data analytical products
  • Global Head Technology involved in developing technology solutions and regulatory technology products.
  • Audit & Assurance teams

Other Responsibilities

  • Embed Here for good and Group's brand and values in the Professional Services, Risk Insights team.
  • Perform other responsibilities assigned under Group, Country, Business or Functional policies and procedures;

Skills And Experience

  • Business Acumen, Product and Operations
  • Business Ethics
  • CFCC Risk Management
  • CFCC Risk Advisory
  • Leadership (Influencing and Inspiring)
  • Managing Change
  • Data gathering, analytics and insights
  • Enterprise and Operational Risk Management
  • Collaboration and Stakeholder Management
  • Regulatory Environment – Financial Services

Qualifications

Overall Working Experience:

  • 12+ overall working experience, Banking or Financial Institution or Regulator or Fintech or equivalent industry

Business & Contextual Experience:

  • 5+ years in atleast one of the below Businesses or Products
  • Retail Banking
  • Wealth Management
  • Private Banking
  • Transaction Banking – Trade
  • Transaction Banking – Cash Management
  • Markets (e.g., Sales & Trading, Global Credit Markets, Private Side)

Domain And Functional Experience:

  • 5+ years in atleast one of the below
  • 5+ years of advanced practitioner level experience in Conduct or Compliance or Financial Crime Risk management, and/or
  • Conduct & Compliance Risks
  • Data Risk
  • Conflict of Interest
  • Non-Financial Regulatory Reporting
  • Regulatory Conduct
  • Market Conduct
  • Client Conduct
  • Financial Crime Risks
  • Anti-Money Laundering
  • Anti-Bribery & Corruption
  • Sanctions
  • Fraud (Internal and External)
  • 5+ years of advanced practitioner level experience in Business or Product or Operations Risk Management with exposure to Conduct or Compliance or Financial Crime or Control Oversight in a front or first-line role, and/or
  • 7+ years of advanced practitioner level experience in adjunct or interconnected risk operations disciplines (e.g., Financial Crime Risk Surveillance Operations, Compliance Surveillance Operations)

Leadership Experience:

  • 3+ years of extensive experience
  • demonstrating leadership skills, leading, inspiring, and influencing stakeholders & colleagues across multiple geographies and/or
  • Project or Change Management skills in overseeing, delivering, and implementing strategic or tactical initiatives or projects.

Other Important Experience:

  • 3+ years of extensive experience
  • Well versed with tools and techniques of analysing potential risk exposures
  • Understanding of effective communication skills.
  • Understanding of best practice risk assessment techniques and risk management frameworks.
  • Understanding of the key features of relevant laws and regulations relevant to the Group

Global Standard Job Description Template

(All items in square brackets require tailoring for the individual job and / or person)

  • Sound judgement on business practices, regulatory relationship management and reputational risk,
  • Ability to balance both detail oriented and big picture perspectives.
  • Ability to collaborate and work dynamically across functions.

Other Important Experience:

  • We value your practical and hands-on experience in the above domains .
  • Any industry certifications in the CFCC domain are most welcome (e.g., ACAMS, ICA).
  • Any industry certifications in the Business or Product domain are most welcome

About Standard Chartered

We&aposre an international bank, nimble enough to act, big enough for impact. For more than 170 years, we&aposve worked to make a positive difference for our clients, communities, and each other. We question the status quo, love a challenge and enjoy finding new opportunities to grow and do better than before. If you&aposre looking for a career with purpose and you want to work for a bank making a difference, we want to hear from you. You can count on us to celebrate your unique talents and we can&apost wait to see the talents you can bring us.

Our purpose, to drive commerce and prosperity through our unique diversity, together with our brand promise, to be here for good are achieved by how we each live our valued behaviours. When you work with us, you&aposll see how we value difference and advocate inclusion.

Together We:

  • Do the right thing and are assertive, challenge one another, and live with integrity, while putting the client at the heart of what we do
  • Never settle, continuously striving to improve and innovate, keeping things simple and learning from doing well, and not so well
  • Are better together, we can be ourselves, be inclusive, see more good in others, and work collectively to build for the long term

What We Offer

In line with our Fair Pay Charter, we offer a competitive salary and benefits to support your mental, physical, financial and social wellbeing.

  • Core bank funding for retirement savings, medical and life insurance, with flexible and voluntary benefits available in some locations.
  • Time-off including annual leave, parental/maternity (20 weeks), sabbatical (12 months maximum) and volunteering leave (3 days), along with minimum global standards for annual and public holiday, which is combined to 30 days minimum.
  • Flexible working options based around home and office locations, with flexible working patterns.
  • Proactive wellbeing support through Unmind, a market-leading digital wellbeing platform, development courses for resilience and other human skills, global Employee Assistance Programme, sick leave, mental health first-aiders and all sorts of self-help toolkits
  • A continuous learning culture to support your growth, with opportunities to reskill and upskill and access to physical, virtual and digital learning.
  • Being part of an inclusive and values driven organisation, one that embraces and celebrates our unique diversity, across our teams, business functions and geographies - everyone feels respected and can realise their full potential.


Skills Required
business ethics
This advertiser has chosen not to accept applicants from your region.

Control and Risk Assessment Lead

Kochi, Kerala EY

Posted today

Job Viewed

Tap Again To Close

Job Description

The opportunity

The Technology Assurance, Risk, and Policy (TARP) function within Information Security strives to create and promote a holistic Governance, Risk, and Compliance (GRC) program by creating a robust, resilient, and proactive governance framework, supported by a strategic risk management approach and stringent compliance structures. It aims to integrate and align its GRC initiatives in line with the global firm's objectives and emerging threats within the cybersecurity landscape.

Furthermore, the Policy, Risk, and Controls (PRC) Enablement & Awareness team aims to establish policies and procedures that reflect the value we place on safeguarding our digital environment, while ensuring that these policies are effectively communicated and enforced across all levels of the organization. The Control & Risk Assessment team sits within PRC Enablement & Awareness and aims to directly enables the GRC program by designing control testing and risk assessment methodology to measure and quantify compliance to policies and control objectives.

Your key responsibilities

The Control & Risk Assessment Leader will be responsible for building and owning a control testing and risk assessment program, following the model for 1st line and 2nd line testing best-practice strategies, that routinely tests and assesses the effectiveness and efficiency of Information Security controls put in place to mitigate risks to determine if they are supporting the desired business outcomes. They will need to rank and prioritize Information Security and Information Technology controls based on their risk profiles and design testing plans, inclusive of testing procedures, which will be used to measure effectiveness while, simultaneously looking for opportunities to enhance and improve EY’s control landscape. In certain instances, they will need to plan and execute risk assessments to quantify assumptions over the risk profiles.

The Control & Risk Assessment Leader is responsible for building a team of experienced professionals to assist in executing the strategic vision and objectives of the Control & Risk Assessment testing and assessment program. The Control & Risk Assessment team will work collectively to support the Information Security Program in the areas of risk assessment methodology development and execution of risk assessments, control testing design and execution, and identification of gaps and areas of improvement utilizing testing and assessment results.

Collaboration with other Information Security groups and external stakeholders across EY is key to this role. The Control & Risk Assessment Leader will need to build a network of multi-departmental and multi-level stakeholders inclusive of, but not limited to Information Security, Client and Enterprise Technology, Data Protection, Global and Enterprise Risk Management, Internal Audit, Area and Regional Risk & Data teams, Service Line Quality Leaders, etc.

Skills and attributes for success

  • Own and build multi-year roadmap to establish and mature the Control & Risk Assessment program. This includes development of the team’s charter, identification of resource needs, ongoing monitoring systems and tool requirements, performance metrics, and workstream prioritization.
  • Build and manage control testing and risk assessment service offerings aimed at identifying potential risks and validates mitigation controls by conducting regular and systematic assessments of the organization's IT infrastructure, including networks, systems, applications, and data processes.
  • Based on results of assessments and testing, assist control owners with the design and implementation of their controls in the organization's IT environment. Strategize on the appropriate amount of preventive, detective, or corrective controls which will have the most impact on reducing overall risk for the firm.
  • Create a 1st Line Testing framework that can be shared with control owners that will enhance security culture and support control ownership roles and responsibilities. Conduct training and awareness campaigns to facilitate the adoption of the framework.
  • Appropriately balance firm security needs with business impact and benefit when recommending advancements in policy and control objectives and directing those efforts to completion.
  • Think strategically to assist with the development of a long-term vision for Information Security’s Technology Assurance, Risk, and Policy direction inclusive of its program improvement, technology adoption, and integration of security solutions into business objectives.
  • Act as a thought leader in the firm, staying informed of changes in information security, regulatory requirements, audit standards, and industry trends, adjusting strategies, as necessary.
  • Build and maintain appropriate relationships with internal and external leaders to ensure awareness and understanding of potential strategic directions. 
  • Flexibility to adjust to multiple demands, shifting priorities, ambiguity, and rapid change.
  • Outstanding management, interpersonal, communication, organizational, and decision-making skills.
  • Ability to understand and integrate cultural differences and motives and to lead cross cultural teams.
  • Demonstrate integrity and judgment within a professional environment.
  • Evaluate, counsel, mentor and provide feedback on performance of others.
  • Plan the training and development of staff to develop their skills and maintain state-of-the-art knowledge in information security.
  • To qualify for the role you must have

  • 12+ years of experience in the Information Technology, Information Security and/or Risk Management field(s).
  • Audit experience or a demonstrated ability to design and test technology controls.
  • 5+ years of experience in managing and mentoring junior and senior level staff.
  • Experience leading global and virtual teams.
  • High proficiency in technical and general writing skills in English. 
  • An advanced degree in Computer Science, Information Security, or a related field; equivalent work experience will be considered on a case-by-case basis.
  • One or more of the following or equivalent certifications preferred: Certified Risk and Information Systems Control (CRISC), Certified Information Systems Security Processional (CISSP), Certified Information Security Manager (CISM), Certified Information System Auditor (CISA), Certified Internal Auditor (CIA), Global Information Assurance Certification (GIAC) in related area, CIPP, CIPT.
  • Ideally, you’ll also have

  • A working knowledge of external control standards like ISO 27001, NIST 800-53, COBIT, etc. and regulatory requirements like GDPR and SOX.
  • Skilled in Microsoft Office and M365 products; primarily Word, Excel, PowerPoint, SharePoint, PowerApps, and PowerBI.
  • Experience with RSA Archer or other GRC tools.
  • Flexibility to work outside of normal business hours when engaging with team members and stakeholders in various time zones.
  • What we offer

    As part of this role, you will work in a highly coordinated, globally diverse team with the opportunity and tools to grow, develop and drive your career forward. Here, you can combine global opportunity with flexible working. The EY benefits package goes above and beyond too, focusing on your physical, emotional, financial and social well-being. Your recruiter can talk to you about the benefits available in your country. Here’s a snapshot of what we offer:

  • Continuous learning : You will develop the mindset and skills to navigate whatever comes next.
  • Success as defined by you: We will provide the tools and flexibility, so you can make a significant impact, your way.
  • Transformative leadership : We will give you the insights, coaching and confidence to be the leader the world needs.
  • Diverse and inclusive culture : You will be accepted for who you are and empowered to use your voice to help others find theirs.
  • We ensure that individuals with disabilities are provided reasonable accommodations to participate in the job application or interview process, to perform essential job functions and to receive other benefits and privileges of employment. Please contact us to request accommodations.

    EY is committed to being an inclusive employer, and we are happy to consider flexible working arrangements. We strive to achieve the right balance for our people, enabling us to deliver excellent client service whilst allowing you to build your career without sacrificing your personal priorities. While our client-facing professionals can be required to travel regularly, and at times be based at client sites, our flexible working arrangements can help you to achieve a lifestyle balance.

    EY | Building a better working world

    EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.

    Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.

    EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.

    This advertiser has chosen not to accept applicants from your region.
     

    Nearby Locations

    Other Jobs Near Me

    Industry

    1. request_quote Accounting
    2. work Administrative
    3. eco Agriculture Forestry
    4. smart_toy AI & Emerging Technologies
    5. school Apprenticeships & Trainee
    6. apartment Architecture
    7. palette Arts & Entertainment
    8. directions_car Automotive
    9. flight_takeoff Aviation
    10. account_balance Banking & Finance
    11. local_florist Beauty & Wellness
    12. restaurant Catering
    13. volunteer_activism Charity & Voluntary
    14. science Chemical Engineering
    15. child_friendly Childcare
    16. foundation Civil Engineering
    17. clean_hands Cleaning & Sanitation
    18. diversity_3 Community & Social Care
    19. construction Construction
    20. brush Creative & Digital
    21. currency_bitcoin Crypto & Blockchain
    22. support_agent Customer Service & Helpdesk
    23. medical_services Dental
    24. medical_services Driving & Transport
    25. medical_services E Commerce & Social Media
    26. school Education & Teaching
    27. electrical_services Electrical Engineering
    28. bolt Energy
    29. local_mall Fmcg
    30. gavel Government & Non Profit
    31. emoji_events Graduate
    32. health_and_safety Healthcare
    33. beach_access Hospitality & Tourism
    34. groups Human Resources
    35. precision_manufacturing Industrial Engineering
    36. security Information Security
    37. handyman Installation & Maintenance
    38. policy Insurance
    39. code IT & Software
    40. gavel Legal
    41. sports_soccer Leisure & Sports
    42. inventory_2 Logistics & Warehousing
    43. supervisor_account Management
    44. supervisor_account Management Consultancy
    45. supervisor_account Manufacturing & Production
    46. campaign Marketing
    47. build Mechanical Engineering
    48. perm_media Media & PR
    49. local_hospital Medical
    50. local_hospital Military & Public Safety
    51. local_hospital Mining
    52. medical_services Nursing
    53. local_gas_station Oil & Gas
    54. biotech Pharmaceutical
    55. checklist_rtl Project Management
    56. shopping_bag Purchasing
    57. home_work Real Estate
    58. person_search Recruitment Consultancy
    59. store Retail
    60. point_of_sale Sales
    61. science Scientific Research & Development
    62. wifi Telecoms
    63. psychology Therapy
    64. pets Veterinary
    View All Certified Safety Professional Jobs