Please click on the Apply to verify the status of jobs posted more than 15 days ago, as they may have expired. Similar Jobs
Job Description
Inviting applications for the role of Senior Consultant - IT Security, IT-TPRM
In this role, you&rsquoll be responsible for providing expert-level guidance and support in the identification, assessment, and mitigation of IT security risks across the organization. This role plays a critical part in developing security policies, conducting risk assessments, and implementing technical and procedural controls to maintain security compliance with standards such as NIST SP 800-53 and ISO/IEC 27001. The Senior Consultant will support cloud and on-premises infrastructure security, guide risk mitigation strategies, and collaborate closely with stakeholders to address complex security challenges.
Responsibilities
. Assist in the development, enhancement, and enforcement of IT security policies, procedures, and guidelines aligned with industry standards (NIST SP 800-53, ISO/IEC 27001).
. Implement and manage security configurations for on-premises (Linux and Windows) and cloud infrastructures (AWS, Azure, Google Cloud) ensuring alignment with compliance requirements.
. Conduct regular IT security risk assessments to identify, assess, and prioritize vulnerabilities, threats, and weaknesses across the organization&rsquos IT systems, networks, and cloud environments.
. Collaborate with teams to remediate security vulnerabilities and track the progress of corrective actions.
. Assist in managing security configurations and controls for cloud platforms, ensuring adherence to best practices (CIS benchmarks, NIST standards) and security policies.
. Evaluate and improve user access control mechanisms, including Role-Based Access Control (RBAC) and Privileged Access Management (PAM), to enhance security posture.
. Provide expertise in managing incident response processes, including root cause analysis, documentation, and implementation of corrective measures.
. Support data protection efforts through encryption, backup, and disaster recovery strategies, ensuring the security and availability of critical data.
. Assist in maintaining compliance with data security regulations and standards through governance, risk, and compliance (GRC) processes.
. Participate in internal and external audits, ensure documentation is up-to-date, and help address audit findings related to IT security.
. Support the design and execution of patch management processes, monitoring security agent performance to ensure consistent security across the environment.
. Assist in the development and delivery of security awareness programs, conducting training sessions to educate employees on IT security controls and emerging threats.
. Promote security best practices and ensure company-wide understanding of security risks and mitigation strategies.
. Assist in overseeing business continuity and disaster recovery planning processes, ensuring systems and procedures are in place to minimize the impact of security incidents on business operations.
. Prepare detailed reports and summaries of security assessments, audit results, and risk mitigation plans for internal stakeholders and senior management.
. Work closely with cross-functional teams, including IT, legal, and compliance, to address security issues and integrate security practices across all business units.
Qualifications we seek in you!
Minimum qualifications
. Graduate in IT Technology, Cybersecurity or related domain.
. Relevant experience in IT security, information security, and/or GRC roles, with hands-on experience in both cloud and on-premises environments.
. Strong experience in performing security risk assessments and implementing security controls in medium to large-scale IT environments
. Relevant certifications would be preferrable (AWS Certified security, Microsoft Certified: Azure Security, Engineer, Google Professional Cloud Security Engineer).
. Certifications in security governance and risk management (CISM, CRISC, CISA, CCSP, CCSK) are preferred
Preferred qualifications
. Comprehensive knowledge of security frameworks and compliance standards such as NIST, ISO/IEC 27001, and ITIL.
. Strong expertise in securing cloud environments, including experience with encryption, identity management, and vulnerability management in AWS, Azure, or Google Cloud.
. Familiarity with GRC tools like RSA Archer, MetricStream, or ServiceNow GRC.
. Strong analytical and problem-solving skills, with the ability to assess security risks and propose effective solutions.
. Excellent communication skills, capable of explaining complex security concepts to both technical and non-technical stakeholders.
. Team-oriented mindset with the ability to collaborate effectively across departments and manage multiple priorities in a fast-paced environment.
Looking to get Placed? Try our Placement Guarantee Plan
Skills
CybersecurityItilLinuxCloudInformation SecurityIf an employer asks you to pay any kind of fee, please notify us immediately. Jobaaj does not charge any fee from the applicants and we do not allow other companies also to do so.
About Company
Genpact was founded in 1997 as a unit of General Electric. The company was founded as GE Capital International Services (GECIS) in New Delhi. Starting with 20 employees under the leadership of CEO Pramod Bhasin, its charter was to provide business process outsourcing solutions to GE's businesses. In the beginning, GECIS created processes for outsourcing back-office activities for GE Capital such as processing car loans and credit card transactions. It was an experimental concept at the time and the beginning of the Business-Process-Outsourcing (BPO) industry.
One year after its launch, GECIS employed about 800 people and generated revenues of US$4 million. By 2001, GECIS operations had grown to 12,000 employees and the company began to manage a wide range of processes across GE's financial services and manufacturing businesses. Jack Welsh, CEO of GE at the time, said that GECIS was a key driver of GE’s growth between 1998 and 2001, and was responsible for reducing operating costs by approximately US$1 billion.
In 2003, GE reduced its stake in GECIS to 40% and sold the remainder to two American private equity firms. At the time of the sale, GECIS employed around 13,000 people in India and 4,000 people in the US, China, Hungary and Mexico, providing a range of solutions in areas such as finance and accounting, insurance claim processing, IT management and technical support.
By 2004, GECIS oversaw around 700 business processes for GE that had migrated from the US to India, generating revenues of US$426 million.
Important dates & deadlines?
Application Deadline
30 Jun 25, 03:11 PM IST
Similar Jobs
View All

