Governance & Risk and Compliance Analyst

2 Months ago • 4-5 Years

Job Summary

Job Description

This is a hybrid role at Tekion, focusing on Risk and Compliance management, requiring a deep understanding of SaaS companies and frameworks like ISMS, PIMS, SOC 1 & SOC 2, PCI DSS, GDPR, and CPRA. Responsibilities include vendor risk assessment, due diligence, documentation and reporting, policy development, training and awareness, collaboration across departments, and responding to security questionnaires. The role involves managing the Information Security and Privacy framework, ensuring adherence to industry best practices and regulatory requirements. The role requires strong knowledge of information security, cybersecurity, control testing, network security and infrastructure assessments.
Must have:
  • Knowledge of information security and cybersecurity.
  • Bachelor's degree in a related field.
  • 4-5 years of experience in Risk Management.
  • 2+ years of experience in a team management role.
  • Experience in assessing cloud and application security.
  • Good knowledge of ISO 27001, SOC 1, SOC 2 etc.
  • Certified CRiSP/ISO 27001/ISO 27701 Lead Auditor.
  • Excellent written and verbal communication skills.

Job Details

About Tekion:

Positively disrupting an industry that has not seen any innovation in over 50 years, Tekion has challenged the paradigm with the first and fastest cloud-native automotive platform that includes the revolutionary Automotive Retail Cloud (ARC) for retailers, Automotive Enterprise Cloud (AEC) for manufacturers and other large automotive enterprises and Automotive Partner Cloud (APC) for technology and industry partners. Tekion connects the entire spectrum of the automotive retail ecosystem through one seamless platform. The transformative platform uses cutting-edge technology, big data, machine learning, and AI to seamlessly bring together OEMs, retailers/dealers and consumers. With its highly configurable integration and greater customer engagement capabilities, Tekion is enabling the best automotive retail experiences ever. Tekion employs close to 3,000 people across North America, Asia and Europe.

This is a hybrid role comprising Risk and Compliance management duties. This requires an in-depth understanding of SaaS companies and ISMS, PIMS, SOC 1 & SOC 2 PCI DSS, GDPR, and CPRA frameworks. We're looking for talented professionals who love challenges, push boundaries, and are passionate about successfully managing the Information Security and Privacy framework.

Location: Chennai only

Responsibilities:

  • Vendor Risk Assessment: Conduct thorough due diligence on potential third-party vendors to assess their cyber security, Data privacy, operational capabilities, and compliance with legal and regulatory requirements.
  • Due Diligence: Perform due diligence reviews of vendors, including reviewing security policies, audit reports, and compliance documentation.
  • Documentation and Reporting: Maintain comprehensive documentation of risk assessments, findings, processes, and recommendations.
  • Prepare reports for management and stakeholders on third-party risk status including critical data breaches, security incidents, and service disruptions.
  • Policy Development: Assist in the development and implementation of third-party risk management policies and procedures in line with industry best practices and regulatory requirements.
  • Training and Awareness: Provide training and support to internal teams on third-party risk management practices and the importance of vendor assessments.
  • Collaboration: Collaborate with various departments, including IT, legal, compliance, and procurement, to ensure a cohesive approach to third-party risk management. Support internal and external audits related to vendor cybersecurity.
  • Security Questionnaire Response: Responds to information security-related questions, RFP's, RFI's SIG, and inquiries using established information security tools and procedures.

Requirements:

  • Strong knowledge of information security and cybersecurity, including control testing, network security, and infrastructure assessments.
  • Bachelor's degree in information technology, Computer Science, or a related/applicable field.
  • Have 4-5 years of work experience related to Risk Management, procurement, and third-party risk management.
  • 2+ years of experience in a team management role.
  • Experience in assessing cloud security and application security for third-party vendors.
  • Good knowledge of ISO 27001 ISO 27701 SOC 1 SOC 2 CPRA, GDPR, and PCI DSS.
  • Certified CRiSP/ISO 27001/ISO 27701 Lead Auditor.
  • Excellent written and verbal communication skills.

Tekion is proud to be an Equal Employment Opportunity employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, victim of violence or having a family member who is a victim of violence, the intersectionality of two or more protected categories, or other applicable legally protected characteristics. 

For more information on our privacy practices, please refer to our Applicant Privacy Notice here.

Similar Jobs

Zscaler - Commercial Sales Engineer

Zscaler

Colorado, United States (Remote)
1 Month ago
Ion - Markets Product Security Engineer - UK

Ion

London, England, United Kingdom (On-Site)
8 Months ago
Crowd Strick - Threat Detection Engineer

Crowd Strick

Tel Aviv-Yafo, Tel Aviv District, Israel (Remote)
1 Month ago
Zscaler - Principal Software Engineer (ZDX)- Mac/IOS

Zscaler

San Jose, California, United States (Hybrid)
1 Month ago
bytedance - Product Manager - Edge Computing Platform

bytedance

Singapore (On-Site)
8 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Google - Staff Software Engineer, Infrastructure, Google Cloud Security and Privacy

Google

Kirkland, Washington, United States (On-Site)
2 Months ago
PhonePe - Product Security Engineer

PhonePe

Bengaluru, Karnataka, India (On-Site)
7 Months ago
Tencent - Tencent Cloud - Senior Cloud Architect (R&D & Solution Design)

Tencent

Singapore (On-Site)
7 Months ago
Zscaler - Senior Partner Marketing Manager, Public Sector

Zscaler

United States (Remote)
1 Month ago
Opendoor - Staff Software Engineer - Application Security (SAST, DAST, IAST)

Opendoor

Kraków, Lesser Poland Voivodeship, Poland (Hybrid)
1 Month ago
Ethos Life - Senior Security Engineer

Ethos Life

San Francisco, California, United States (Hybrid)
2 Months ago
Zscaler - Executive Administrative Partner

Zscaler

San Jose, California, United States (Hybrid)
1 Month ago
Palo Alto Networks - Sr Technical Support Engineer - Cloud (GCS)

Palo Alto Networks

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
1 Month ago
Zazz - Cybersecurity Analyst

Zazz

(Remote)
4 Months ago
Zscaler - Sales Development Representative

Zscaler

Sydney, New South Wales, Australia (Hybrid)
1 Month ago

Get notifed when new similar jobs are uploaded

Jobs in Chennai, Tamil Nadu, India

Qube Cinema - Audio Engineer

Qube Cinema

Chennai, Tamil Nadu, India (On-Site)
1 Month ago
Tide - Lead Data Scientist

Tide

Hyderabad, Telangana, India (Hybrid)
1 Month ago
InMobiInMobi - Senior Associate, Rewards

InMobiInMobi

Bengaluru, Karnataka, India (On-Site)
5 Months ago
Abnormal Security - Software Engineer II - Fullstack

Abnormal Security

Bengaluru, Karnataka, India (Hybrid)
8 Months ago
IT Gurus Software - ETL Test Automation Engineer (ETL Tester)

IT Gurus Software

Pune, Maharashtra, India (On-Site)
8 Months ago
Rackspace Technology - Sr. Project Manager

Rackspace Technology

Gurugram, Haryana, India (Remote)
7 Months ago
shyft labs - Network Engineer

shyft labs

Noida, Uttar Pradesh, India (Hybrid)
11 Months ago
Treck - HR Payroll Coordinator

Treck

India (On-Site)
1 Month ago
NCR Atleos - SW Engineer II BI

NCR Atleos

Hyderabad, Telangana, India (On-Site)
2 Months ago
Capgemini - Linux Administrator

Capgemini

Mumbai, Maharashtra, India (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

Similar Category Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

About The Company

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

United States (On-Site)

Pleasanton, California, United States (On-Site)

United States (On-Site)

Chennai, Tamil Nadu, India (On-Site)

View All Jobs

Get notified when new jobs are added by Tekion Corp

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug