Senior Technology Risk Analyst
On-site · Chennai, Tamil Nadu, India
Job Summary
Senior Technology Risk Analyst with responsibility for day-to-day identification, assessment, oversight and monitoring of technology-related risks across IT infrastructure, cloud environments, systems, and digital operations. Acts as a trusted advisor to technology and business stakeholders, providing independent risk oversight to ensure effective management of technology and cybersecurity risks. Lead and independently conduct technology risk assessments across IT systems, applications, cloud environments, and third-party vendors; manage ITGCs, regulatory and industry requirements (ISO 27001, NIST, PCI DSS, SOC 2), vulnerability management, incident support, governance reporting, and third-party risk. Collaborate with IT, Engineering, Compliance, Legal and Business teams to ensure robust risk management practices and regulatory compliance, and support business continuity and security enablement. Strong communication, ownership, and ability to balance security needs with business realities, with 5-10 years of relevant experience and a bachelor’s degree. Certifications such as CISA, CISM, CIPP/E, CRISC are strongly preferred.
Required Qualifications
- Bachelor’s degree in Computer Science, Information Technology, Risk Management, or related field
- 5-10 years of experience in IT risk, IT Audit, cybersecurity, or technology audit, preferably with banking, financial services, fintech or similar industry
- Strong understanding of IT infrastructure/environment concepts: networks, cloud, databases, operating systems, and security principles
- Strong working Knowledge of security frameworks and standards (ISO 27001, PCI DSS, NIST, CIS)
- Ability to independently assess complex technology risks and provide pragmatic, risk-based recommendations
- Experience with risk assessment tools and methodologies
- Strong analytical and problem-solving skills with attention to detail
- Excellent communication and stakeholder management abilities
- Strong sense of ownership and accountability
- Ability to balance security needs with business realities
- Ability to prioritize and manage multiple security issues simultaneously
- Clear communicator with the ability to work cross-functionally with technical and non-technical teams
- Relevant professional industry certifications (e.g., CISA, CISM, CIPP/E, CRISC) are strongly preferred
Apply with one swipe on Sorce. We auto-fill applications and apply on your behalf — no cover letters, no 40-minute forms.
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.