Identity Protection Manager
Mumbai, Maharashtra, India
Identity Protection Manager
- 202507352
- Mumbai, Maharashtra, India
Description
The Role
This role will support Governance, Risk and Compliance responsibilities within WTW and includes activities such as;
Provide oversight and input to IAM processes undertaken across WTW including access recertification, privileged access, JML, policies/standards and risk process ensuring alignment with the internal Information and Cyber Security framework.
Assist the IAM Leads in developing the Identity Control Framework by continually researching new technologies, processes and practices contributing to the long-term Identity strategy within WTW.
Manage key audit requests from both internal and external auditors to provide regulatory evidence to support SOX, SOC2, HIPPA etc.
Perform as a subject matter expert within IAM covering all aspects of the Identity Security
Support solution development through problem solving to ensure adherence to Security Controls, Policies and Standards with a focus on automation and control.
Derive themes from identified gaps and recommend appropriate remediation measures to mitigate risk associated with gaps.
Work closely with senior leadership to identify improvement opportunities to enhance existing controls.
Manage the end-to-end audit lifecycle and Own Management Action Plans
Govern IAM documentation: design, maintain, and continuously improve policies, SOPs, and compliance dashboards.
Qualifications
The Requirement:
Knowledge and understanding of Information Security Frameworks and standards (FFIEC, NIST, ISO etc)
Knowledge and understanding of Regulatory Risk and Compliance policies and programs
Experience of Cloud technology and Identity solutions and practices
Ability to work as part of a team
Knowledge of IAM controls and how to implement them effectively such as; toxic combinations, segregation of duties, lead privileged and zero trust
Ability to deliver change through people
Excellent Communication skills, especially written English
Strong Stakeholder management and ability to influence business and IT leadership.
The ability to foster and grow relationships.
Knowledge of SOx/SOC2 requirements for Privileged Access Monitoring and Access Governance Controls.
Experience of working in a live operational environment with an understanding of the impact of policy adherence is desirable.
其他人还看过
主动联系
任何未经请求主动通过我们的网站或韦莱韬悦员工的个人电子邮件帐户提交的简历/应聘者资料,均视为韦莱韬悦的财产,且无需支付代理费用。要成为韦莱韬悦的授权招聘机构/猎头公司,此类机构必须持有由韦莱韬悦授权招聘人员签署的正式书面协议,并与公司保持积极的工作关系。简历必须按照我们的应聘者提交流程进行提交,包括积极参与特定职位的搜索工作。同样,对于我们授权的招聘机构/猎头公司,如果未能遵守应聘者提交流程,韦莱韬悦将不支付任何代理费用。韦莱韬悦是提倡机会均等的雇主。如果您希望我们保存您的联系信息以便将来考虑,请发送电子邮件至:Agency.inquiries@willistowerswatson.com 。
我们的办事处
我们的员工为全球 140 多个国家和市场提供服务。这为我们所做的每一项工作注入了全球视野,同时也能够为您创造许多绝佳的合作机遇与成长空间。探索下面的地图,探索您的职业发展可能。