EY is seeking a Staff to join their EY-NFS TPRM team. This role involves participating in third-party risk management engagements, developing operational models, assessing risk, and assisting with technology enhancements. The role offers a leadership opportunity within a growing team and the chance to contribute to a more effective and innovative working environment.
Requirements
- B.Tech (IT/Computer Science), BSc. (IT), BE, MCA from a Tier 1 or Tier 2 college.
- 1 to 4 years of demonstrated experience with Risk Management.
- Basic understanding of the TPRM framework, Risk Management, Information Security practices.
- Good to have exposure in Contract Risk Reviews.
- Good exposure in TPRM tools and technology solutions (e.g., GRC enablement solutions, such as ProcessUnity, Prevalent, Archer, ServiceNow, etc.).
- Basic knowledge of standards such as ISO 27001/2, ISO 22301, ISO 27018, PCI – DSS, HITRUST, etc.
- Basic knowledge of privacy regulations such as GDPR, CCPA, etc.
- Basic knowledge of regulations such as FISMA, HIPAA, Reg SCI, MAS, etc.
- Basic knowledge of TCP/IP, concepts of OSI layer and protocols, networking and security concepts, Physical & Environmental Security, Asset Security and Identity & Access Management.
- Good to have certifications - CISSP, CISA, CISM, CTPRP, CIPP, ISO 27001 Lead Auditor or Lead Implementer
Benefits
- Support and coaching
- Opportunities for career development
- Flexibility in role and work-life balance