AVP - Information Security (Goverance, Risk & Compliance)
India
Headquartered in Tokyo, Sumitomo Mitsui Banking Corporation (SMBC) is a leading global financial institution and a core member of Sumitomo Mitsui Financial Group (SMBC Group). Built upon our rich Japanese heritage since 1876, we put our customers first and provide seamless access to, from and within the Asia Pacific region. SMBC is one of the largest Japanese banks by assets and maintain strong credit ratings across our global integrated network. We work closely as one SMBC Group to offer personal, corporate and investment banking services to meet the needs of our customers.
With sustainability embedded within our strategy and operations, we are committed to creating a society in which today’s generation can enjoy economic prosperity and well-being, and pass it on to future generations.
- The incumbent shall be responsible for the managing, maintaining and enhancing the Information Security Governance & IT Risk Mgmt, and Cyber Compliance posture of the Bank.
- He /She shall be responsible for maintenance of Information Security policies & procedures and imparting of the policy education, training and awareness.
- He /She shall be responsible for execution of various Information Security controls and processes, monitoring compliance with the regulatory and organizational regulations, managing data confidentiality & security, conducting investigations and reporting of security incidents. Timely and quality submission of all regulatory returns & reports is a key responsibility.
- He /She should be able to improve the IT Security KRIs and appropriate reporting thereof.
- Shall be responsible to perform IT Security Risk assessments of new & existing processes, projects and applications / infrastructure.
- Shall be responsible to guide and collaborate with IT & business teams on risk mitigation measures, new & existing controls, security procedures, InfoSec / Cyber related regulatory guidelines and related compliance.
- Shall be responsible for initiating and completing IT Security related projects, especially the ones driven by regulatory requirements.
The incumbent shall be able to continuously analyse bank’s information security program, implementation & execution of defined controls, and work towards sustained compliance to those and improvement of the same.
A & B. Knowledge & Skills:
C. Experience:
D. Qualifications:
Any one or more of the below or other similar security related certifications:
|