Identity Protection Manager
Mumbai, Maharashtra, India
Identity Protection Manager
- 202507352
- Mumbai, Maharashtra, India
- Full time
Description
The Role
This role will support Governance, Risk and Compliance responsibilities within WTW and includes activities such as;
Provide oversight and input to IAM processes undertaken across WTW including access recertification, privileged access, JML, policies/standards and risk process ensuring alignment with the internal Information and Cyber Security framework.
Assist the IAM Leads in developing the Identity Control Framework by continually researching new technologies, processes and practices contributing to the long-term Identity strategy within WTW.
Manage key audit requests from both internal and external auditors to provide regulatory evidence to support SOX, SOC2, HIPPA etc.
Perform as a subject matter expert within IAM covering all aspects of the Identity Security
Support solution development through problem solving to ensure adherence to Security Controls, Policies and Standards with a focus on automation and control.
Derive themes from identified gaps and recommend appropriate remediation measures to mitigate risk associated with gaps.
Work closely with senior leadership to identify improvement opportunities to enhance existing controls.
Manage the end-to-end audit lifecycle and Own Management Action Plans
Govern IAM documentation: design, maintain, and continuously improve policies, SOPs, and compliance dashboards.
Qualifications
The Requirement:
Knowledge and understanding of Information Security Frameworks and standards (FFIEC, NIST, ISO etc)
Knowledge and understanding of Regulatory Risk and Compliance policies and programs
Experience of Cloud technology and Identity solutions and practices
Ability to work as part of a team
Knowledge of IAM controls and how to implement them effectively such as; toxic combinations, segregation of duties, lead privileged and zero trust
Ability to deliver change through people
Excellent Communication skills, especially written English
Strong Stakeholder management and ability to influence business and IT leadership.
The ability to foster and grow relationships.
Knowledge of SOx/SOC2 requirements for Privileged Access Monitoring and Access Governance Controls.
Experience of working in a live operational environment with an understanding of the impact of policy adherence is desirable.
Other People Viewed
Unsolicited Contact
Any unsolicited resumes/candidate profiles submitted through our web site or to personal e-mail accounts of employees of Willis Towers Watson are considered property of Willis Towers Watson and are not subject to payment of agency fees. In order to be an authorized Recruitment Agency/Search Firm for Willis Towers Watson, any such agency must have an existing formal written agreement signed by an authorized Willis Towers Watson recruiter and an active working relationship with the organization. Resumes must be submitted according to our candidate submission process, which includes being actively engaged on the particular search. Likewise, for our authorized Recruitment Agencies/Search Firms, if the candidate submission process is not followed, no agency fees will be paid by Willis Towers Watson. Willis Towers Watson is an equal opportunity employer. If you would like to have your contact information saved for future consideration, please email: Agency.inquiries@willistowerswatson.com.
Our Offices
Our colleagues serve more than 140 countries and markets around the world. This gives a global dimension to everything we do and creates lots of exciting opportunities for you to collaborate and grow. Explore the map below to see where you career could take you.