Technology Risk Analyst

Hyderabad, Telangana, India
Jul 08, 2024
Jul 09, 2025
Onsite
Full-Time
5 Years
Job Description

As a Technology Risk Analyst at System Soft Technologies, you will play a crucial role in supporting both Information Technology and Information Security through comprehensive end-to-end technology and information security risk assessments. This role offers an opportunity to assess risks across a wide spectrum of targets, including applications, systems, technical environments, and business processes, aimed at safeguarding our clients' information assets. You will lead and execute detailed risk assessments, monitor compliance, and quantify strategic, operational, and regulatory risks spanning our organization's technology landscape.

Responsibilities

  1. Operational Risk Management. Apply operational risk policies, technology tools, and governance processes to develop sustainable solutions that minimize losses from internal process failures, inadequate controls, and emerging risks.
  2. Risk Assessment and Mitigation. Conduct thorough risk assessments to anticipate, identify, and evaluate complex data, mitigating risks to our clients' digital maturity and information security posture. Document identified risks and drive key remediation and migration efforts, fostering cross-functional relationships with stakeholders.
  3. Issue Management and Communication. Effectively manage issues, track remediation progress, and interface with business units. Represent management’s perspective in communicating risk-related concerns pertaining to technology products and services.
  4. Security Guidance for IT Projects. Provide security risk guidance for IT projects, including evaluating and recommending technical controls to ensure alignment between security and technology implementation practices.
  5. Problem Solving. Demonstrate strong problem-solving skills, seeking streamlined solutions while acknowledging inherent complexities in technology risk management.
  6. Key Risk Indicators (KRIs) and Key Performance Indicators (KPIs). Develop and report on KRIs and KPIs to measure risk exposure and performance. Make recommendations for changes or improvements that balance business needs with effective risk assessment practices.
  7. Third-Party Risk Management. Proactively manage third-party risk through outsourced service providers, ensuring compliance and minimizing risks associated with external vendors.

Required Skills and Experience

  • 5-8 years of experience in internal risk management, cybersecurity, Governance, Risk and Compliance (GRC), internal technology audit, or information security assurance.
  • Strong understanding of operational technology risks and the ability to identify gaps in security controls.
  • Experience conducting risk assessments and evaluating various types of systems, networks, and cloud technologies.
  • Excellent verbal and written communication skills, with the ability to communicate complex technical issues effectively to diverse stakeholders.
  • Customer-focused mindset with strong interpersonal skills, fostering collaboration across diverse teams and stakeholders.
  • Ability to multitask and manage multiple objectives simultaneously, prioritizing effectively in a dynamic environment.
  • Ability to present a compelling case and influence stakeholders appropriately based on risk assessment findings.
  • Bachelor's degree in Computer Science, Information Technology, or a related field, or equivalent combination of education and experience.