Wipro Limited (NYSE: WIT, BSE: 507685, NSE: WIPRO) is a leading technology services and consulting company focused on building innovative solutions that address clients’ most complex digital transformation needs. Leveraging our holistic portfolio of capabilities in consulting, design, engineering, and operations, we help clients realize their boldest ambitions and build future-ready, sustainable businesses. With over 230,000 employees and business partners across 65 countries, we deliver on the promise of helping our customers, colleagues, and communities thrive in an ever-changing world. For additional information, visit us at www.wipro.com.
Job Description
AI Security & Risk Assessor (AI-GRC)
Function: Group CISO Office | Location: Bengaluru, India
Role Summary
We are seeking an experienced IT Risk Professional with experience in IT Risk Management, Technology Risk Governance, and Security Risk Assessment. The candidate should possess strong knowledge of application and infrastructure technologies, enterprise risk frameworks, and automated risk management processes. The role will be responsible for enhancing risk management practices, assessing technology risks, AI risk and driving risk automation initiatives across the organization through analysis of existing processing and enhancing and automating them to provide a real time risk view.
R͏oles & Responsibilites
Risk Management & Governance
• Design, implement, and enhance enterprise IT risk management frameworks, methodologies, standards, and procedures.
• Analyse current risk assessment and governance process and provide logic to automate them.
• Define and maintain risk taxonomy, risk appetite, risk registers, and risk scoring methodologies.
• Facilitate risk workshops and assessments with business and technology stakeholders.
• Monitor and report key risk indicators (KRIs), risk trends, and emerging technology risks.
Framework Enhancement
• Enhance and maintain the existing enterprise IT risk management frameworks aligned with industry standards which includes governance processes for application onboarding, infrastructure changes, cloud adoption, vendor assessments, and project reviews.
• Define risk acceptance, exception management, and escalation procedures.
• Ensure alignment with regulatory and compliance requirements.
Risk Automation & Transformation
• Establishes and enhances enterprise risk management frameworks.
• Design and implement automated risk management workflows and processes.
• Drive integration of risk management platforms with security, ITSM, vulnerability management, asset management, and compliance tools.
• Enhance risk dashboards, metrics, workflow automation, and management reporting.
• Improves risk visibility through automation and reporting.
• Reduces technology and security risks auto remediation logic
• Enables informed business and technology decision-making through risk insights.
• Drives risk management maturity and operational efficiency across the organization.
K͏ey Skills
Strong understanding of:
- Enterprise Risk Management (ERM)
- IT Risk Management, Technology Risk Governance
- Risk Assessment Methodologies Platforms and Workflows
- Application Security & Infrastructure Security( Identity , Network, Data, enduser device, monitoring)
- Cloud Security (AWS, Azure, GCP)
- Vulnerability Management, Identity and Access Management
- Security Architecture Principles.
Familiarity with regulatory and industry frameworks including:
- NIST Cybersecurity Framework
- NIST 800-53
- NIST AI RMF
- COBIT
- CIS Controls
- PCI-DSS
- SOC Frameworks
- Automation and workflow orchestration platforms
- Risk analytics and reporting tools
͏Qualifications
- 8–12+ years of experience in cyber security, application security, or risk assessment roles, with exposure to AI/GenAI systems.
- Hands-on experience in security design reviews, threat modeling, and GRC assessments.
- Preferred to have certifications such as CISSP, CISM, AAIA, AA or are desirable.
P͏referred Qualifications
One or more of the following certifications will be considered a strong advantage:
• CISA (Certified Information Systems Auditor)
• CISM (Certified Information Security Manager)
• CRISC (Certified in Risk and Information Systems Control)
• CISSP (Certified Information Systems Security Professional)
Reinvent your world. We are building a modern Wipro. We are an end-to-end digital transformation partner with the boldest ambitions. To realize them, we need people inspired by reinvention. Of yourself, your career, and your skills. We want to see the constant evolution of our business and our industry. It has always been in our DNA - as the world around us changes, so do we. Join a business powered by purpose and a place that empowers you to design your own reinvention. Come to Wipro. Realize your ambitions.
Applications from people with disabilities are explicitly welcome.