Risk Analyst

Thinkahead
Gurugram +1 more
On-site

Who this role is best for

Strong fit for mid-level IT risk management professionals who collaborate across departments and align with regulatory compliance in Gurugram, Haryana.

Best fit for

  • Mid-level professionals with cross-department collaboration experience in IT risk management
    — “Work closely with Management, Operations, Infrastructure, and Applications teams
  • Candidates who can bridge regulatory requirements with business objectives through framework implementation
    — “aligning IT processes with business objectives, regulatory requirements, and industry best practices
  • Individuals with proven vendor and client risk assessment expertise
    — “Execute Vendor risk assessment and analysis efforts... Support Client due diligence efforts
  • Professionals skilled in creating compliance training programs for enterprise audiences
    — “Develop and deliver training programs to raise awareness of IT risk management and compliance policies

Things to consider

  • Certifications like CISSP or CISA are desired, indicating potential value in having them
    — “One or more security certifications such as CISSP, CRISC, CISA or Security+ is desired

How to stand out

  • Emphasize cross-functional collaboration experience with sales, legal, and technical teams
    — “Work closely with sales and legal teams... Management, Operations, Infrastructure, and Applications teams
  • Highlight specific compliance frameworks (e.g., ISO/IEC, GDPR) in your resume and interview responses
    — “Demonstrated experience with... frameworks such as ISO/IEC, NIST, COBIT, PCI-DSS, GDPR, or CMMI
  • Showcase audit support experience, including documentation and remediation tracking
    — “Support internal and external audits by providing necessary documentation
Pace · SteadyCollaboration · HighAutonomy · MediumDecision Impact · CompanyLevel · Mid

Derived from job-description analysis by Serendipath's career intelligence engine.

What success looks like

  • develop IT risk management framework
  • support internal and external audits
  • deliver training programs
Typical background
IT risk managementinformation security

Skills & requirements

Required

IT Risk ManagementComplianceIT Audit

Preferred

Vendor Risk AssessmentClient Due Diligence

Stack & domain

IT Risk ManagementIT ComplianceInformation SecurityIso/iecNISTCobitPci-dssGDPRCMMILeadershipCommunicationCisspCriscCISASecurity+ITRisk ManagementComplianceSecurity

About the role

Original posting from Thinkahead via Lever

AHEAD builds platforms for digital business. By weaving together advances in cloud infrastructure, automation and analytics, and software delivery, we help enterprises deliver on the promise of digital transformation.

At AHEAD, we prioritize creating a culture of belonging, where all perspectives and voices are represented, valued, respected, and heard. We create spaces to empower everyone to speak up, make change, and drive the culture at AHEAD. 

We are an equal opportunity employer, and do not discriminate based on an individual's race, national origin, color, gender, gender identity, gender expression, sexual orientation, religion, age, disability, marital status, or any other protected characteristic under applicable law, whether actual or perceived. 

We embrace all candidates that will contribute to the diversification and enrichment of ideas and perspectives at AHEAD. 

Job Summary

The Risk Analyst supports the delivery of the design, implementation, and maintenance of the information technology risk management and compliance program. This role is crucial to ensuring the alignment of IT processes with business objectives, regulatory requirements, and industry best practices. This individual will work with leadership to monitor and instill trust in the security, compliance and reliability of AHEAD systems, services and programs.

Responsibilities:

  • Develop, implement, and maintain an effective IT risk management and compliance framework that aligns with the organization's objectives and regulatory requirements.
  • Develop and oversee the IT risk assessment process to ensure that risks are identified, assessed, and managed in a controlled and systematic manner.
  • Ensure that IT processes and systems are properly assessed for risk and compliance, and that they receive appropriate evaluation and authorization before implementation.
  • Support creating, reviewing, and updating IT risk management and compliance policies and procedures to ensure they reflect current best practices, regulatory requirements, and organizational needs.
  • Execute Vendor risk assessment and analysis efforts by developing, delivering, and evaluating vendor responses.
  • Support Client due diligence efforts by reviewing, routing, and responding to client assessments, RFPs, and other inbound inquiries.
  • Work closely with sales and legal teams to ensure that client security and risk obligations are understood and met.
  • Support internal and external audits by providing necessary documentation and ensuring that findings are addressed in a timely manner.
  • Develop and deliver training programs to raise awareness of IT risk management and compliance policies and procedures across the organization.
  • Work closely with Management, Operations, Infrastructure, and Applications teams to establish processes, procedures, and documentation that ensure systems and resources meet necessary compliance requirements and obligations.
  • Develop and execute metrics and KPIs for IT risk management and compliance.

Education and Experience:

  • Bachelor’s degree or equivalent experience.
  • Experience in IT Risk Management, IT Audit/Compliance, or Information Security is desired.
  • One or more security certifications such as CISSP, CRISC, CISA or Security+ is desired.
  • Demonstrated experience with the use and management of risk management and compliance frameworks such as ISO/IEC, NIST, COBIT, PCI-DSS, GDPR, or CMMI.
  • Excellent oral and written communication skills are required.
  • Highly organized and able to work independently.

Why AHEAD:

Through our daily work and internal groups like Moving Women AHEAD and RISE AHEAD, we value and benefit from diversity of people, ideas, experience, and everything in between.

We fuel growth by stacking our office with top-notch technologies in a multi-million-dollar lab, by encouraging cross department training and development, sponsoring certifications and credentials for continued learning.

India Employment Benefits include: 

Comprehensive health insurance coverage for employees, with options to extend coverage to dependents

Paid time off and company holidays, along with additional leave benefits as per policy

Flexible work arrangements, supporting work-life balance

Learning and development opportunities to support continuous growth and upskilling

Employee wellness initiatives and programs focused on physical and mental well-being

Retirement and statutory benefits in line with India regulations

Inclusive and people-first culture, with a strong focus on collaboration and ownership

Source: Thinkahead careers (Lever)

Similar roles