Risk & Controls (Non US) - ITGC Associate - BLR/KOL/HYD/MUM

3 Months ago • 2-3 Years • Cyber Security

Job Summary

Job Description

This role involves delivering security assessments, controls design, and testing across various sectors. Responsibilities include working with industry-standard frameworks (ISO 27001, NIST, PCI DSS), regulatory standards, and building strong peer relationships. You'll stay updated on emerging technology risks and best practices, ensuring compliance with engagement plans and internal procedures. Client interaction, including developing strong relationships and proactive communication, is crucial. The position requires contributing to engagement productivity and identifying opportunities for improved client service. Teamwork, integrity, and leadership are essential, involving setting goals and fostering innovation.
Must have:
  • Cybersecurity assessments
  • Internal audit experience
  • Technology controls testing
  • Security controls testing
  • ISO 27001, NIST knowledge
  • Data privacy & protection
  • Cloud technologies & security
Good to have:
  • Australian regulation experience
  • CISA/CISM/CRISC/CISSP/ISO 27001 LA certifications

Job Details

Line of Service

Advisory

Industry/Sector

Not Applicable

Specialism

Business Controls

Management Level

Associate

Job Description & Summary

A career within Internal Audit services, will provide you with an opportunity to gain an understanding of an organisation’s objectives, regulatory and risk management environment, and the diverse needs of their critical stakeholders. We focus on helping organisations look deeper and see further considering areas like culture and behaviours to help improve and embed controls. In short, we seek to address the right risks and ultimately add value to their organisation.

To really stand out and make us fit for the future in a constantly changing world, each and every one of us at PwC needs to be a purpose-led and values-driven leader at every level. To help us achieve this we have the PwC Professional; our global leadership development framework. It gives us a single set of expectations across our lines, geographies and career paths, and provides transparency on the skills we need as individuals to be successful and progress in our careers, now and in the future.

As an Associate, you'll work as part of a team of problem solvers, helping to solve complex business issues from strategy to execution. PwC Professional skills and responsibilities for this management level include but are not limited to:

  • Invite and give in the moment feedback in a constructive manner.

  • Share and collaborate effectively with others.

  • Identify and make suggestions for improvements when problems and/or opportunities arise.

  • Handle, manipulate and analyse data and information responsibly.

  • Follow risk management and compliance procedures.

  • Keep up-to-date with developments in area of specialism.

  • Communicate confidently in a clear, concise and articulate manner - verbally and in the materials I produce.

  • Build and maintain an internal and external network.

  • Seek opportunities to learn about how PwC works as a global network of firms.

  • Uphold the firm's code of ethics and business conduct.

Essential Duties and Responsibilities:

  • Deliver security assessments, controls design and testing across multiple industry sectors in the areas of Cyber Governance Risk and Compliance, Third Party Risk Management, Technology Controls Testing, Cloud Governance and Risk based on industry standard frameworks such as ISO 27001, NIST, PCI DSS etc. and regulatory standards (Australian regulation experience preferred but not mandatory)

  • Build and maintain strong peer relationships within the team and across the organisation.

  • Stay updated on emerging technology risks, trends. Stay informed on industry best practices and regulatory requirements related to technology controls.

  • Ensure compliance with engagement plans and internal quality & risk management procedures.

Interpersonal Skills:

  • Ability to work under general supervision with latitude for initiative and independent judgment.

  • Effective verbal and written communications, including active listening skills.

  • Ability to establish and maintain effective working relationships with co-workers and external contactors/auditors.

  • Detail-oriented and comfortable working on multiple projects simultaneously.

  • Individuals would be expected to cultivate a strong team environment and promote a positive working relationship amongst their team.

Client Management

  • Develop strong working relationships with the client and onshore client teams.

  • Maintain excellent rapport and proactive communication with the stakeholders and client.

Operational excellence

  • Suggest ideas on improving engagement productivity and identify opportunities for improving client service.

People related

  • Display teamwork, integrity, and leadership. Work with team members to set goals and responsibilities for specific engagements.

Foster teamwork and innovation.

Minimum Qualifications

  • Bachelor’s degree in information technology, computer science, or a related field.

  • Candidates with 2-3 years of relevant experience in similar roles, preferably with a “Big 4” or equivalent.

  • Experience in cyber security assessments, internal audit, or a related field.

  • Experience in technology and cybersecurity controls testing.

  • Experience in 1 or more of the following areas is essential:

  • Security controls testing

  • Security strategy, governance, risk, and compliance

  • Security policies, procedures, standards, and controls in line with regulation and/or current standards, ISO27001, NIST, SANS etc.,

  • Data privacy and data protection controls

  • Cloud technologies and cloud security

  • Third party security

  • Vulnerability management

  • Knowledge of regulations and standards relating to protection of data and cybersecurity (PCI, GDPR, SWIFT, etc.).

  • Experience using industry best practice frameworks (e.g., NIST CSF, ISO 27001, CIS, SANS, etc.)

Certification(s) preferred:

  • CISA / CISM / CRISC / CISSP / ISO 27001 LA certifications

Education (if blank, degree and/or field of study not specified)

Degrees/Field of Study required:

Degrees/Field of Study preferred:

Certifications (if blank, certifications not specified)

Required Skills

Optional Skills

Desired Languages (If blank, desired languages not specified)

Travel Requirements

Not Specified

Available for Work Visa Sponsorship?

No

Government Clearance Required?

Yes

Job Posting End Date

December 31, 2024

Similar Jobs

Axinous - Senior Director, Engineering - Datapath

Axinous

San Jose, California, United States (Hybrid)
2 Months ago
Netskope - Sr. Staff Engineer, Full-Stack (Backend heavy)

Netskope

Bengaluru, Karnataka, India (Remote)
5 Months ago
Axinous - Staff Software Engineer - Risk360

Axinous

San Jose, California, United States (Hybrid)
2 Months ago
PwC - CD&E -SOC L1 Support- Associate 2 - Bangalore

PwC

Bengaluru, Karnataka, India (On-Site)
4 Months ago
Unisys - Senior Detection and Response Security Engineer

Unisys

Karnataka, India (On-Site)
5 Months ago
Extreme Network - Senior/Staff/Principle FIPS 140 Software Development Engineer (9264)

Extreme Network

United States (Hybrid)
4 Months ago
Trendyol - Network Security Engineer

Trendyol

İstanbul, İstanbul, Türkiye (Hybrid)
3 Months ago
Infoblox - Product Security Architect

Infoblox

Washington, United States (On-Site)
2 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

PwC - Digital Risk Solutions Senior Associate

PwC

Vancouver, British Columbia, Canada (On-Site)
3 Months ago
Fractal - DevOps - Lead

Fractal

Mumbai, Maharashtra, India (On-Site)
3 Months ago
Morning Star - Senior Application Security Architect

Morning Star

Chicago, Illinois, United States (Hybrid)
4 Months ago
PwC - SAP S/4HANA Technical Consultant

PwC

Warsaw, Masovian Voivodeship, Poland (Hybrid)
4 Months ago
undefined - Senior Application Security Engineer

Hyderabad, Telangana, India (On-Site)
4 Months ago
PwC - Cyber Security & Privacy Services - Manager

PwC

Hanoi, Hanoi, Vietnam (On-Site)
4 Months ago
Sinch - Product Security Engineer

Sinch

Melbourne, Victoria, Australia (Hybrid)
4 Months ago
Axinous - Software Development Engineering Manager - Frontend

Axinous

Bengaluru, Karnataka, India (Hybrid)
3 Months ago
Barracuda Networks  Inc  - Senior Security Engineer

Barracuda Networks Inc

Bengaluru, Karnataka, India (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Kolkata, West Bengal, India

Infogain - User Interface Architect

Infogain

Bengaluru, Karnataka, India (Hybrid)
5 Months ago
bosh group india - Multi-Body Dynamic (MBD) simulations-Engineer for Projects

bosh group india

Bengaluru, Karnataka, India (On_site)
2 Months ago
Highspot - Frontend Engineer

Highspot

Hyderabad, Telangana, India (Hybrid)
4 Months ago
Medpace - Platform Engineer

Medpace

Navi Mumbai, Maharashtra, India (On-Site)
4 Months ago
Warner Bros Discovery - Senior Software Engineer - Full Stack

Warner Bros Discovery

Hyderabad, Telangana, India (Hybrid)
5 Months ago
Britive - SOFTWARE ENGINEER (CLOUD)

Britive

Bengaluru, Karnataka, India (Remote)
3 Months ago
Trek - Senior Oracle SOA Developer

Trek

Haryana, India (On-Site)
5 Months ago
Nielsen Holdings - Procurement Manager

Nielsen Holdings

Bengaluru, Karnataka, India (Hybrid)
3 Months ago
Ecolab - Talent Acquisitions Specialist

Ecolab

Pune, Maharashtra, India (On-Site)
5 Months ago
GoTo Group - Lead Software Engineer - Engineering Platforms

GoTo Group

Bengaluru, Karnataka, India (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

ION - Network Security Engineer

ION

Milan, Lombardy, Italy (Hybrid)
4 Months ago
Playtech - Network Security Engineer

Playtech

Kyiv, Kyiv City, Ukraine (On_site)
2 Months ago
PwC - Consultant Expérimenté / Manager Cybersécurité | CDI | H/F

PwC

Toulouse, Occitanie, France (On-Site)
4 Months ago
CloudLinux - Middle/Senior Python Developer with Security Expertise (worldwide remote)

CloudLinux

İstanbul, İstanbul, Türkiye (Remote)
3 Months ago
Blue Yonder - Penetration Tester consultant- (Pen Testing, API Testing, Mobile Testing)

Blue Yonder

Bengaluru, Karnataka, India (On-Site)
4 Months ago
Infoblox - Senior Cybersecurity Account Executive I - Japan

Infoblox

Tokyo, Japan (On-Site)
4 Months ago
PwC - IN_Manager_Tech Lead_SFDC_Advisory_Mumbai

PwC

Mumbai, Maharashtra, India (On-Site)
4 Months ago
Rackspace Technology - Security Risk and Compliance Management Specialist IV

Rackspace Technology

Aguascalientes, Aguascalientes, Mexico (Remote)
4 Months ago
Head Digital Works - Senior Risk and Compliance Analyst

Head Digital Works

Hyderabad, Telangana, India (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

About The Company

At PwC, our purpose is to build trust in society and solve important problems. We’re a network of firms in 152 countries with over 327,000 people who are committed to delivering quality in assurance, advisory and tax services. Find out more and tell us what matters to you by visiting us at www.pwc.com. PwC refers to the PwC network and/or one or more of its member firms, each of which is a separate legal entity.


Content on this page has been prepared for general information only and is not intended to be relied upon as accounting, tax or professional advice. Please reach out to your advisors for specific advice.

Gqeberha, Eastern Cape, South Africa (On-Site)

Athens, Greece (Remote)

Qormi, Malta (On-Site)

Kolkata, West Bengal, India (On-Site)

Copenhagen, Denmark (On-Site)

Bucharest, Bucharest, Romania (On-Site)

Kolkata, West Bengal, India (On-Site)

Kolkata, West Bengal, India (On-Site)

View All Jobs

Get notified when new jobs are added by PWC

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug