Portfolio Compliance Specialist - Senior Associate
Bengaluru, KA, IN, 560048
EY
Tarjoamme palveluita, jotka auttavat ratkaisemaan asiakkaidemme vaikeimmat haasteetAt EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all.
Portfolio Compliance Enablement Compliance Specialist
Today’s world is fueled by vast amounts of information. Data is more valuable than ever before. Protecting data and information systems is central to doing business, and everyone in EY Information Security has a critical role to play. Join a global team of over 1000 people who collaborate to support the business of EY by protecting EY and client information assets! Our Information Security professionals enable EY to work securely and deliver secure products and services, as well as detect and quickly respond to security events as they happen. Together, the efforts of our dedicated team help protect the EY brand and build client trust.
Within Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we consider the entire security lifecycle. You will join a team of hardworking, security-focused individuals dedicated to supporting, protecting and enabling the business through innovative, secure solutions that provide speed to market and business value.
The Opportunity
As a Senior Associate in the Information Security Portfolio Compliance Enablement function, you will support EY's commitment to secure digital services by helping to ensure compliance with Information Security policies. This role involves actively participating in projects to strengthen risk management, collaborating with various business teams, and contributing to the maintenance of the technology compliance posture through detailed work and analysis. You will also assist in aligning data protection, privacy, and software development practices with legal and regulatory standards.
Key Responsibilities
- Contribute to projects that aim to improve EY's risk posture and compliance with Information Security policies.
- Assist in developing and implementing compliance strategies and remediation plans.
- Manage delivery of one or more processes and/or solutions with a focus on quality and effective risk management.
- Support the translation of technical vulnerabilities into business risk terms for clear communication to stakeholders.
- Participate in the use and enhancement of compliance assessment toolkits.
- Be involved in assessments for technology infrastructure, applications, and third-party dependencies.
- Collaborate with compliance specialists and contribute expertise to specific projects and initiatives.
Skills and Attributes for Success
- Experience in compliance management within Information Security.
- Ability to understand the impact of security requirements on business operations.
- Good organizational skills and a proactive approach to problem-solving.
- Effective communication skills for building relationships and promoting compliance with security policies.
- Experience in conducting risk assessments, supporting remediation strategies, and writing technical documentation
- Familiarity with technical infrastructure, applications, and compliance frameworks.
To Qualify for the Role, You Must Have
- A minimum of 3 years of experience in Cyber Security, Information Security, or a related field.
- A degree in Cyber Security, Information Security, Computer Science, or a related discipline.
- Certifications such as Security+, Network+, CRISC, CISSP, CISM, CISA, or equivalent are desirable.
- Knowledge of information security standards like ISO 27001/27002, NIST, PCI DSS.
- Awareness of regulatory requirements such as PCI, SOX, HIPAA, GDPR.
- Strong communication skills and the ability to work effectively within a team.
Ideally, You’ll Also Have
- Strong analytical and decision-making skills.
- The ability to adapt to new challenges and evolving project requirements.
- Strong interpersonal skills and the ability to communicate technical concepts effectively.
- Experience with GRC platforms like RSA Archer or IBM Open Pages is beneficial.
What we look for
- We are looking for individuals with a passion for information security and demonstrated ability to apply their knowledge to new and emerging technologies that are supporting the growth strategy of a global professional services firm.
What we offer
As part of this role, you will work in a highly coordinated, globally diverse team with the opportunity and tools to grow, develop and drive your career forward. Here, you can combine global opportunity with flexible working. The EY benefits package goes above and beyond too, focusing on your physical, emotional, financial and social well-being. Your recruiter can talk to you about the benefits available in your country. Here’s a snapshot of what we offer:
- Continuous learning: You will develop the mindset and skills to navigate whatever comes next.
- Success as defined by you: We will provide the tools and flexibility, so you can make a significant impact, your way.
- Transformative leadership: We will give you the insights, coaching and confidence to be the leader the world needs.
- Diverse and inclusive culture: You will be accepted for who you are and empowered to use your voice to help others find theirs.
EY | Building a better working world
EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.
Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate.
Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Application security CISA CISM CISSP Compliance Computer Science CRISC Cyber defense GDPR HIPAA ISO 27001 NIST PCI DSS Privacy Risk assessment Risk management RSA SOX Strategy Vulnerabilities
Perks/benefits: Career development Flex hours Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.