Title: TPRM Analyst
Job Description
Job Desciption
• Conducting due diligence on potential and existing third parties to evaluate their IT security, compliance, performance, and quality standards
• Developing and maintaining third party risk assessments, contracts, service level agreements, action plans, and issues logs
• Monitoring and reporting on the IT risks and performance of third parties, and escalating issues as needed
• Implementing and enhancing the TPRM tools, processes, and best practices to improve efficiency and effectiveness
• Conduct third party risk assessments in alignment with company security policies and industry standards
• Develop and maintain supplier risk and control monitoring plans, performing monitoring activities and analysis of evidence to determine controls are operating effectively
• Good knowledge of OS (Windows / Linux) security, Database security, IT infrastructure (switches, routers, firewalls, IDS, IPS, etc.), Security architecture design, and review
• Good familiarity with OWASP, and Secure SDLC standards
Some of the desired qualifications and skills for this role are: • Bachelor’s or master’s degree in IT, computer science, information systems, or a related field
• Relevant certifications, such as CISA, CISSP, CRISC, CISM, etc.
• Experience in IT risk management, audit, compliance, or governance
• Knowledge of IT-related regulations, standards, and frameworks, such as ISO 27001, NIST CSF, SOC 2, PCI DSS, etc.
͏
Do
-
Ensuring customer centricity by providing apt cybersecurity
- Monitoring and safeguarding the log sources and security access
- Planning for disaster recovery in the event of any security breaches
- Monitor for attacks, intrusions and unusual, unauthorized or illegal activity
- Performs moderately complex log reviews and forensic analysis to identify unauthorized or unacceptable access to data or systems
- Conduct security assessments, risk analysis and root cause analysis of security incidents
- Handling incidents escalated by the L1 team in 24x7 rotational shifts
- Use advanced analytics tools to determine emerging threat patterns and vulnerabilities
- Completing all tactical security operations tasks associated with this engagement.
- Analyses all the attacks and come up with remedial attack analysis
- Conduct detailed analysis of incidents and create reports and dashboards
-
Stakeholder coordination & audit assistance
- Liaise with stakeholders in relation to cyber security issues and provide future recommendations
- Maintain an information security risk register and assist with internal and external audits relating to information security
- Assist with the creation, maintenance and delivery of cyber security awareness training for colleagues
- Advice and guidance to employees on issues such as spam and unwanted or malicious emails
͏
Deliver
No. |
Performance Parameter |
Measure |
1. |
Customer centricity |
Timely security breach solutioning to end users, Internal stakeholders & external customers experience |
2. |
Process Adherence |
Adherence to SLAâs (90-95%), response time and resolution time TAT |
͏
͏
Experience: 5-8 Years .
Expected annual pay for this role ranges from $60,000 to $1,35,000 . Based on the position, the role is also eligible for Wipro’s standard benefits including a full range of medical and dental benefits options, disability insurance, paid time off (inclusive of sick leave), other paid and unpaid leave options.
Reinvent your world. We are building a modern Wipro. We are an end-to-end digital transformation partner with the boldest ambitions. To realize them, we need people inspired by reinvention. Of yourself, your career, and your skills. We want to see the constant evolution of our business and our industry. It has always been in our DNA - as the world around us changes, so do we. Join a business powered by purpose and a place that empowers you to design your own reinvention. Come to Wipro. Realize your ambitions. Applications from people with disabilities are explicitly welcome.
Nearest Major Market: Dallas
Nearest Secondary Market: Fort Worth