Managed Services - GDM Senior Manager - Service Delivery Manager - Consult.
Bangalore (SDC) - Bagmane Tech Park
PwC
We are a community of solvers combining human ingenuity, experience and technology innovation to help organisations build trust and deliver sustained outcomes.Line of Service
AdvisoryIndustry/Sector
Not ApplicableSpecialism
Managed ServicesManagement Level
Senior ManagerJob Description & Summary
At PwC, our people in business application consulting specialise in consulting services for a variety of business applications, helping clients optimise operational efficiency. These individuals analyse client needs, implement software solutions, and provide training and support for seamless integration and utilisation of business applications, enabling clients to achieve their strategic objectives.In Oracle finance at PwC, you will specialise in using and managing the Oracle Financials software. Oracle Financials is an integrated financial management system that provides tools for managing financial processes, such as general ledger, accounts payable, accounts receivable, cash management, and more. You will be responsible for configuring, implementing, and maintaining the Oracle Finance system.
Growing as a strategic advisor, you leverage your influence, expertise, and network to deliver quality results. You motivate and coach others, coming together to solve complex problems. As you increase in autonomy, you apply sound judgment, recognising when to take action and when to escalate. You are expected to solve through complexity, ask thoughtful questions, and clearly communicate how things fit together. Your ability to develop and sustain high performing, diverse, and inclusive teams, and your commitment to excellence, contributes to the success of our Firm.
Examples of the skills, knowledge, and experiences you need to lead and deliver value at this level include but are not limited to:
- Craft and convey clear, impactful and engaging messages that tell a holistic story.
- Apply systems thinking to identify underlying problems and/or opportunities.
- Validate outcomes with clients, share alternative perspectives, and act on client feedback.
- Direct the team through complexity, demonstrating composure through ambiguous, challenging and uncertain situations.
- Deepen and evolve your expertise with a focus on staying relevant.
- Initiate open and honest coaching conversations at all levels.
- Make difficult decisions and take action to resolve issues hindering team effectiveness.
- Model and reinforce professional and technical standards (e.g. refer to specific PwC tax and audit guidance), the Firm's code of conduct, and independence requirements.
SCPC Service Manager Job description
U.S. Managed Services’ Sovereign Cloud PC (SCPC) solution together with the SCPC Compliance
Monitoring Dashboard enables PwC to deliver Client Services from offshore and meet our legal
obligations to comply with Client contracts restricting the offshore storage of U.S.-regulated and other
sensitive, highly confidential Client data (also referred to as ‘digital residency’). PwC Internal Candidates
may view the SCPC infomercial here.
The Sovereign Cloud PC (SCPC) Offering hardens PwC’s standard Windows365 Cloud PC with an
enhanced security baseline to establish compliance boundaries for Client data flow, residency and
retention safeguards, including data loss prevention (DLP) and data lifecycle management (DLM) controls
that leverage an advanced identity strategy (Secure Identity) to safeguard the global remote processing
of highly confidential data and Client production systems access. SCPC technical controls reinforce PwC’s
administrative safeguards such as user training, acceptable use and recordkeeping policies, and network
monitoring with a broad array of preventative (blocking) and detective (monitoring) endpoint and user
behavioral risk controls.
The Managed Services Global Delivery - SCPC Compliance Monitoring Dashboard provides single-paneof-glass and near real-time visibility to end-user and endpoint activity that triggers SCPC preventative or
detective controls, which potential compliance events must be actioned promptly by MSP Offering
Compliance teams to maintain Client trust. The SCPC control environment and monitoring capability
must therefore be continuously maintained and evolved with new requirements, as they emerge from
MSP Offering teams expanding their delivery models, Engagements meeting varying Client connectivity
requirements, and the PwC Global IT estate that serves the entire network of PwC member firms.
As SCPC Services Lead, you will embrace a challenging and continuous learning opportunity, to
understand the operational requirements of PwC Managed Services global delivery teams and the
continuously evolving PwC Global IT estate, to maintain the SCPC estate and SCPC Compliance
Monitoring Offering, to safeguard Managed Services Client data and secure connectivity to Client
production systems.
As SCPC Services Lead, you will embrace the Client data protection and information security mindset,
serving as a trusted liaison between our DPO Enhanced Security Services (Offering Compliance) and
Managed Services engagement delivery teams to drive outcomes that require engagement with Global
IT teams, NIS, and second-line Risk and Quality teams. PwC Global IT and NIS teams you will interact with
fluently will include but are not limited CTO, Network, Identity, Desktop Engineering, Desktop
Operations, Azure W365/DaaS/VDI team, Application deployment team, Perimeter Security teams,
W365 team, GPO Policy design team, Thycotic PAM team, DSO-DLP Team, TSO Reporting (monitoring
dashboard), Splunk (log queries), ServiceNow (ticket/workflow KPIs and enhancements), Microsoft
Power Automation team. Second-line of defense and supporting teams you may also be called on to
interact with fluently will include US BISO, OFRO and Ethics & Compliance – Incident Response.
• Client/ Stakeholders Service management - Internal and External clients - Be point of contact
and escalation for internal customers and external customers. Collaborate with clients, project
managers, and other stakeholders to understand security requirements and develop custom
controls and tailored solutions to address their needs.
• SCPC Controls monitoring/Reporting - Drive continuous improvement in monitoring and events
/alerts being ingested from various data sources. Engage with Tech teams to ensure the data
sources are validated/QA. provide insights into security incidents and compliance.
• Innovate/Automate – Ability to identify and automate tasks that provide business value, by
leveraging Microsoft automate tools.
• ServiceNow Workflow improvements – Improve SCPC workflow to reduce error in
onboarding/off-boarding process, improve SLA’s and TAT by making the fulfiller groups
accountable.
• Quality Assurance - Have keen eye for details to validate the data being ingested from various
data sources and corelated to provide outcome that is well understood by business users
/compliance officers digesting the data.
• Data Loss Prevention (DLP): Knowledge of DLP tools and techniques to protect sensitive
information. General understanding on capability and controls that can be designed and tested.
• M365 collaboration controls - knowledge of M365 and ability to drive discussions with M365
teams to provide controls in MS TEAMS, Email
• Perimeter Security: Understanding of network and perimeter security principles and measures
to safeguard network boundaries. Ability to drive the discussions with perimeter team to design,
test and deploy solution without impacting business.
• Identity Management: Understanding of Identity management in general and specifically
behavior in Hybrid environment - OnPrem and Azure Entra /Azure AD. SCPC design and
architecture is around controls applied to Secondary Identity
• Thycotic/ Privilege Access Management principles - Monitor the PAM access within SCPC and
ensure business approvals are taken only as exception.
• Red team testing - Collaborate with NIS and Security teams to perform Red team testing of
controls and drive mitigations
• Group administration - Understand the principles of group policies, group administration,
nested group policies and ability to drive the discussions with technology teams to perform
changes without impacting business.
• Roster administration - Understand the ingestion of Roster data into MSP Dashboard and
provide oversight/guidance of the process.
• Policy Management: Ability to drive discussions with Desktop engineering, Thycotic team and
DaaS Operations to manage policies inside/outside of SCPC/CPC for controls that are either
blocked /allowed with monitoring.
• Virtual Desktop Management: Knowledge of DaaS policies for secure and efficient management
of virtual desktops.
• Role-Based Access Control: Understanding of structured role-based access control systems.
• Conditional Access policies: Familiarity with Conditional access policies by coordinating with
Azure Entra team, Perimeter team, Network team and ability to drive solutions and roll out in
Global delivery location.
• Compliance and audit processes - Familiarity with compliance requirements and necessary audit
controls internally must be followed to industry standards.
• Authentication Methods: Proficiency in using various authentication methods, including MFA
hard tokens, and soft tokens.
• Financial Reporting - Monthly reports to be generated and shared with stakeholders.
• Performance/ Continuous Improvement areas - proactively identify and drive areas of
improvement.
• Drive weekly and Monthly QBR / ESEC calls with key stakeholders - Internal client leads, AC
OFRO Gate review leads, Delivery leads onshore/offshore/partners.
• Change management and communication - regular updates/communication with leadership.
Qualifications
• Bachelor's degree with significant coursework in computer science, information systems or
architecture, data privacy or cybersecurity. Post-grad certification or master’s level training and
teaching experience is preferred.
• Relevant certifications such as CISSP, CISM, CCSP; CIPP/CIPT, CISA, CRISC, or equivalent is highly
desirable.
• Minimum of 5 years of experience with a combination of any of the following: information and
cloud security, systems thinking and digital transformation, privacy and security by design, data
protection and privacy, data and systems risk management, cyber supply chain risk
management, security assessments (internal and independent auditors, Client audits)
• Effective communication and interpersonal skills, high capacity for judgment and discretion in
sensitive situations that could impact the Managed Services brand, strong preference for
defensive action with very circumspect communication and effective executive escalations, with
the ability to articulate and teach technical concepts to non-technical audiences, to explain
process maturity models and continuous systems evolution, and maintain professional integrity
in high pressure situations. These skills are typically not found in candidates with less than 10-
15yrs experience in security management.
• Strong understanding of security principles, protocols, and technologies, including encryption,
authentication, access control, and network security.
• Experience with security tools and technologies such as DLP, IDS/IPS, endpoint protection, and
cloud security solutions.
• Familiarity with industry standard ISMS frameworks such as ISO 27001 and NIST, FedRAMP,
consumer data protection, privacy regulation compliance baselines including HIPAA-Security
Rule, HITRUST, etc.
• Excellent analytical and problem-solving skills, with the ability to assess complex security issues
and develop/drive effective solutions by working with multiple Global technology, Security, and
Internal /External Client teams.
• Experience collaborating with Global teams in consulting environment, Big-4 strongly preferred.
• Ability to design and implement end-to-end security architectures for complex systems and
networks, considering business requirements, regulatory compliance, and industry best
practices.
• Conduct/coordinate security assessments and risk analyses to identify vulnerabilities and
recommend appropriate countermeasures.
• Develop/design, maintain & document security policies, standards, and procedures in alignment
with client requirements and SCPC Security framework.
• Ability to take lead/ guide Global teams throughout the lifecycle of changes in SCPC and
enhancements to SCPC Compliance Monitoring Dashboard.
• Contribute to the development of MSP Data Protection Office offerings and thought leadership
with the Enhanced Security Controls team through continuous research, innovation, and
knowledge sharing.
Preferred Skills:
• Strong analytical and problem-solving skills.
• Excellent written and verbal communication abilities.
• Ability to work collaboratively in a team environment.
• High attention to detail and organizational skills.
Education (if blank, degree and/or field of study not specified)
Degrees/Field of Study required:Degrees/Field of Study preferred:Certifications (if blank, certifications not specified)
Required Skills
Optional Skills
Accepting Feedback, Accepting Feedback, Accounting and Financial Reporting Standards, Accounting Consulting, Active Listening, Analytical Thinking, Budgetary Management, Business Process Improvement, Coaching and Feedback, Communication, Creativity, Embracing Change, Emotional Regulation, Empathy, Finance Process Improvements, Finance Transformation, Financial Accounting, Financial Advising, Financial Budgeting, Financial Economics, Financial Forecasting, Financial Management, Financial Management Software, Financial Market, Financial Modeling {+ 33 more}Desired Languages (If blank, desired languages not specified)
Travel Requirements
Not SpecifiedAvailable for Work Visa Sponsorship?
NoGovernment Clearance Required?
NoJob Posting End Date
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Audits Automation Azure BISO CCSP CIPP CISA CISM CISSP Clearance Clearance Required Cloud Compliance Computer Science CRISC Encryption FedRAMP Finance HIPAA HITRUST IDS Incident response IPS ISMS ISO 27001 KPIs Monitoring Network security NIST Oracle Privacy Red team Risk management Security assessment Splunk Strategy Teaching Vulnerabilities
Perks/benefits: Career development Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.