Randstadeos
SENIOR –Risk Transformation-EGRC- IT Risk Management
Client Responsibilities:
Lead IT Risk Management (ITRM) projects, demonstrating teamwork, ownership, and knowledge sharing.
Collaborate with the project team to maintain transparent communication, identify risks, and share mitigation plans.
Visualize and propose solutions based on client requirements.
Prepare reports and schedules for clients and stakeholders.
Build and maintain productive relationships with client personnel.
Plan and monitor project deliverables for the team.
Mentor team members in executing project tasks.
Provide regular status updates to the project manager and onsite coordinators.
Exhibit flexibility to travel to client locations or other offices as needed.
Maintain good documentation and communication skills.
People Responsibilities:
Conduct performance reviews and provide feedback for team members.
Foster a culture of teamwork and quality, leading by example.
Adhere to workplace policies and procedures.
Train and mentor project resources and team members.
Mandatory Skills Requirements:
5-9 years of experience in IT Security, Information Security, Cyber Security, or Cloud Security.
Experience in IT audits, IT General Controls, SOC1/SOC2 Reporting, and SOX-ITGC.
Proficient in using IT Risk Management frameworks to identify, analyze, mitigate, monitor, and communicate IT risks.
Conduct risk assessments for processes, applications, network infrastructure, and vendors.
Draft IT/Cyber risk assessment reports, including findings and recommendations.
Develop Key Risk Indicators (KRIs) and create dashboards for continuous risk monitoring.
Experience in IT controls validation, testing, and identifying deficiencies.
Create IT and Information Security policies, standards, and procedures.
Familiarity with industry standards such as NIST-CSF, ISO27001, ITIL, COBIT, PCI-DSS, and CSA-CCM.
Experience with cloud platforms like Azure, AWS, or GCP is a plus.
Strong understanding of security design concepts and the ability to engage in discussions about IT risk management with clients.
Preferred Skills:
Experience in conducting awareness training and workshops on IT Risk Management.
Proven track record in a consulting or blue-chip organization.
Demonstrated experience in client management and engagement delivery.
Relevant qualifications such as CA, MBA, MCA, MS, or B.E/B.Tech (Electronics, Telecommunications, Computer Science) with experience in other top-tier IT/ITeS companies.
Certifications (Preferred):
Relevant professional certifications such as CISA, CISSP, CRISC, ISO27001, ITIL, or COBIT.
Certifications in cloud platforms such as Azure, AWS, or GCP.
4o mini