
Senior Associate, Tech and Cyber Risk Compliance
PwC
full-time
Posted on:
Location Type: Office
Location: Bangalore • India
Visit company websiteExplore more
Job Level
About the role
- Provide guidance on compliance strategies
- Help clients navigate complex regulatory landscapes
- Lead portions of cybersecurity strategy, maturity, and framework assessments
- Drive current-state assessments, identify meaningful control or capability gaps, and help design strategic roadmaps
- Synthesize complex assessment findings into structured, client-ready deliverables
- Conduct threat modeling and incorporate insights into assessments.
- Experience implementing effective and innovative technology solutions
- Collaborate with cross-functional cybersecurity teams to document and operationalize cybersecurity processes.
Requirements
- Minimum 5-8 years of experience required
- Strong understanding of security strategy, program design, security assessments, and deep technical controls
- Experience applying methods across at least two industry frameworks such as NIST CSF, NIST 800-53, CIS, FFIEC, ISO 27001 etc
- Hands-on experience designing and implementing program frameworks
- Proven experience creating, writing, reviewing, and maintaining cybersecurity standards, policies, and procedures
- Conduct threat modeling using established frameworks (e.g., MITRE ATT&CK, STRIDE)
- Ability to interpret and assess Enterprise Security Architecture
- Experience assisting with cloud security designing across AWS, Azure, or GCP environments
- In-depth understanding of IT cyber resilience architecture, business continuity, disaster recovery, and relevant cybersecurity standards
- Experience with GenAI/LLMs to automate and enhance GRC processes
- Strong project management and stakeholder management skills
- Proven capability to independently drive cybersecurity and GRC initiatives end-to-end
- Proficiency with Microsoft 365 and Microsoft Office Suite
- Excellent written and verbal communication skills.
- MCA / BE / B Tech / MS (Field of Study: Computer and Information Science, Information Cybersecurity, Information Technology, Management Information Systems).
- Certification(s) Preferred: CISA, CISM, CISSP, or CRISC.
Benefits
- Professional development opportunities
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
cybersecurity strategysecurity assessmentsthreat modelingprogram frameworkscloud securityIT cyber resilience architecturebusiness continuitydisaster recoveryGRC processestechnical controls
Soft Skills
project managementstakeholder managementwritten communicationverbal communicationcollaborationguidancesynthesis of findingsindependent initiativeorganizational skillsproblem-solving
Certifications
CISACISMCISSPCRISC