Governance & Risk Manager Technology
Telangana (Sandoz), India
Novartis
Working together, we can reimagine medicine to improve and extend people’s lives.Job Description Summary
As part of the Governance, Risk & Compliance (GRC) team, the Governance and Risk Manager will be supporting the creation and standardization of security policies and stand-ards, information security risk management operations, and the integration of cybersecurity into greater programs and projects. He would also be responsible for effective reporting & monitoring of cybersecurity metrics to the Leadership.
Job Description
Information Security Policy Governance
- Develop key policies, procedures and standards across multiple cyber domains that the rest of the organization will adhere too.
- Develop Information Security Management framework & control matrix, across multiple cyber domains that the rest of the organization will adhere too.
- Ensure security policies, standards, and procedures are aligned with the organization's objectives, risk environment, and legal/regulatory requirements.
- Provide guidance and enforce adherence to cybersecurity laws, regulations, guidelines, and specifications through effective designs of the cybersecurity policies & processes.
- Manage and deploy Governance, Risk and Compliance tools to automate process and provide seamless access to cybersecurity control matrix & risk data and insights
- Enhance overall security governance in projects and programs
- Deliver high quality work outcomes in a high-pressure, fast paced setting to meet company needs.
- Is Accountable to develop, deliver & continuously improvise Information Security & Risk management framework.
- Establish effective interface between Enterprise Risk Management & Information Security & Risk Management team.
IT Risk Management
- Develop, deliver & continuously monitor effectiveness of IT Risk Management framework, policy & procedures.
- Perform technology risk assessments and reviewing, documenting evaluating control design effectiveness.
- Performing risk analysis by reviewing the information security policies against industry standards, regulatory requirements& drafting risk reports.
- Support activities for cyber risk assessments and other regular information security risk assessments
- Enable transparency and accountability in managing security risk.
IT GRC Metrics Monitoring
- Establish risk focused monitoring metrics to ensure effective delivery of security services.
- Continuously monitor & report a comprehensive risk focused monitoring metrics to ensure effective delivery of security services.
- Is responsible to provide timely & accurate reporting for all security & risk management services/metrics, to various ISRM, IT & Business Leadership team
Skills Desired
Communication Skills, Compliance Audits, Compliance Management, Compliance Risk Assessment, Compliance Training, Influencing Skills, Quality Assurance* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
0
0
0
Categories:
Compliance Jobs
Leadership Jobs
Tags: Audits Compliance Governance Monitoring Risk analysis Risk assessment Risk management RMF
Region:
Asia/Pacific
Country:
India
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Information Systems Security Officer jobsInformation System Security Officer jobsSenior Cybersecurity Engineer jobsSenior Cloud Security Engineer jobsInformation Security Specialist jobsInformation Security Manager jobsSecurity Consultant jobsSenior Network Security Engineer jobsCyber Security Specialist jobsIT Security Engineer jobsSecurity Specialist jobsSenior Information Security Analyst jobsIT Security Analyst jobsSenior Cyber Security Engineer jobsSystems Engineer jobsSenior Penetration Tester jobsChief Information Security Officer jobsSystems Administrator jobsStaff Security Engineer jobsInformation System Security Officer (ISSO) jobsThreat Intelligence Analyst jobsSenior Product Security Engineer jobsSecurity Operations Analyst jobsPrincipal Security Engineer jobsInformation Systems Security Engineer jobs
Java jobsPowerShell jobsEncryption jobsDevSecOps jobsGDPR jobsIDS jobsSaaS jobsSplunk jobsIPS jobsTop Secret jobsSDLC jobsRMF jobsIntrusion detection jobsThreat detection jobsSQL jobsBash jobsActive Directory jobsOWASP jobsDoDD 8570 jobsCompTIA jobsDocker jobsITIL jobsGIAC jobsUNIX jobsCRISC jobs
Finance jobsClearance Required jobsCISO jobsTCP/IP jobsIndustrial jobsHIPAA jobsBanking jobsJavaScript jobsTerraform jobsOSCP jobsSANS jobsSOC 2 jobsVPN jobsMITRE ATT&CK jobsIT infrastructure jobsCCSP jobsSOAR jobsDNS jobsSOX jobsJira jobsPolygraph jobsData Analytics jobsGCIH jobsMachine Learning jobsNIST 800-53 jobs