Function Head - Technology Risk
Responsibilities
For each assigned review you will report to Head of Technology Risk – RISQ CTL. You will be expected to:
Manage the risk assessment, scoping and planning of a review.
Manage the presentations related to scope, progress, and results of the review to internal stakeholders.
Monitor the execution the review. Specifically focusing on the following:
Analyze the design of controls around the underlying system architecture in the context of information technology/information security controls and its impact on the business.
Analyze the business and technology processes to evaluate the design and effectiveness of the relevant technology controls by designing and executing tests to validate identified system control features, which may require data analysis, code inspection and re-performance of system processes.
Document the results of the test steps executed project repository as per the departmental guidelines and best practices.
Manage the vetting review observations/findings.
Manage the report preparation
Manage the tracking, monitoring, and recording remediation of risks identified in reviews.
Manage Continuous Monitoring of technology business units to pro-actively identify changes to the risk profile of the business units/service units.
Profile required
15 to 20 years of relevant experience in technology audit, information/cyber security, technology consulting or other relevant industry experience.
Experience of using, auditing, or understanding a combination of the following technologies:
Cloud Computing, Cloud Security, CI/CD, Containerisation.
Security Operation Centre, SIEM
Programming languages like C, C++, C#, Java, Perl etc
Databases (Sybase, Oracle etc)
System Architecture (Distributed/Messaging/Mainframe)
Operating Systems (Linux etc)
Infrastructure Controls (Networks, Voice, Backups, Storage, data centres etc)
Experience in data analysis using Advanced Excel, Power BI, Alteryx or similar tools.
At least one of the relevant certifications or industry accreditations (CISA, CISSP, AWS, Azure, Google Cloud, CEH, CCNA).
BE/B Tech/MCA/MBA/MS in Information Technology or Cyber Security or equivalent University degrees in technology
Experience in managing audit engagements or information/cyber security or technology projects
Strong interpersonal, written, and verbal communication skills as the job requires frequent interaction with technology and business management
COMPETENCIES
-
Functional Expertise - Keeps up to date with emerging technology, business, and market trends
Technical Skills - Demonstrates strong technical skills required for the role, pays attention to detail, takes initiative to broaden his/her knowledge and demonstrates appropriate financial/analytical skills
Drive and Motivation - Successfully handles multiple tasks, takes initiative to improve his/her own performance, works intensely towards extremely challenging goals and persists in the face of obstacles or setbacks
Client and Business Focus - Effectively handles difficult requests, builds trusting, long-term relationships with clients, helps the client to identify/define needs and manages client/business expectations
Teamwork – Gives evidence of being a strong team player, collaborates with others within and across teams, encourages other team members to participate and contribute and acknowledges others' contributions
Communication Skills - Communicates what is relevant and important in a clear and concise manner and shares information/new ideas with others
Judgement and Problem solving - Thinks ahead, anticipates questions, plans for contingencies, finds alternative solutions, and identifies clear objectives. Sees the big picture and effectively analyses complex issues
Creativity/Innovation - Looks for new ways to improve current processes and develop creative solutions that are grounded and have practical value
Influencing Outcomes - Presents sound, persuasive rationale for ideas or opinions. Takes a position on issues and influences others' opinions and presents persuasive recommendations
Why join us
“We are committed to creating a diverse environment and are proud to be an equal opportunity employer. All qualified applicants receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status”.
Business insight
A 100% owned subsidiary of European banking and financial services major Societe Generale (SG), Societe Generale Global Solution Centre (SG GSC) came into existence in 2000. Established as an offshore development centre in Bangalore, also having a presence in Chennai, SG GSC has 15 years of sustainable delivery expertise to its credit, and develops global best practices to promote the strategic objectives of the Societe Generale Group.
SG GSC possesses in-depth understanding of the business processes and cutting-edge technologies across domains of Societe Generale’s diverse portfolio. We deliver best-in-class solutions to the Group’s entities in the realm of corporate and investment banking, retail banking, specialized financing and insurance, private banking, and global investment management and services.
We place the highest importance on our employees and provide extensive opportunities for career progression and development. SG GSC conforms to the group diversity principles, and has a multi-cultural staff representing seven nationalities, and speaking 20 languages. Women comprise 25% of our workforce