Upload Button Icon Add office photos
filter salaries All Filters

33 CME Group Jobs

Senior Tech Risk Management Analyst - TPRM

3-6 years

Bangalore / Bengaluru

1 vacancy

Senior Tech Risk Management Analyst - TPRM

CME Group

posted 8hr ago

Job Description

The Global Information Security (GIS) Sr Technology Risk Management Analyst will collaborate with peers in GIS
and across the enterprise to ensure that Information Security risks are properly identified, assessed, addressed,
and communicated in support of the overall GIS Third Party Risk Management (GIS TPRM) program. The Sr
Technology Risk Management Analyst role will assist with the continuous improvement and daily operation of the
GIS TPRM program, including maturation of assessment methods, supporting instrumentation, registration and
tracking of InfoSec risks, maturation and operation of an information management system (e.g., a GRC solution) to
support the function, and communicating InfoSec risks to CME Group s broader Enterprise Risk Management
(ERM) function.
Responsibilities Include:
Work with peers to identify and assess Information Security risks
Conduct risk assessments using CME Group s established GIS TPRM Risk Management assessment process
Collaboratively author and edit various assessment related documents, including Deficiencies Observed,
Summary of Work, Risk Advisory Memos, exceptions from various GIS technical policies and standards,
and other related output resulting from risk assessment activities
Assist the GIS Third Party Risk Management function with:
o Maturation and continued deployment of an information security risk management system (e.g.,
a GRC solution) that will drive efficiencies and automation in the management of InfoSec risks,
rollup into ERM, and the registration, tracking, reporting, and re-assessment of identified InfoSec
risks
o Continuous improvement and maturation of the methods, instrumentation, training,
documentation, and processes required to effectively manage third party technology risks
o Providing advisory and consulting services to the Information Technology Management Team
related to InfoSec risks, treatment strategies, and decision-making
o Assist in the preparation of management reports, presentations, operational metrics, and other
documentation required to support governance functions
o Promoting a culture of risk awareness and accountability through training, education, and risk
management consultative support

Problem Solving:
Objectively assess the impact, likelihood, velocity of identified risks
Objectively advise on any number of technical controls that will mitigate risk and assist stakeholders with
remediation knowledge gaps
Mediate differing perspectives on risks between a variety of Technology Division stakeholders
Drive objectivity and build consensus among stakeholders with widely divergent perspectives and drivers
Rapidly analyze complex technical details
Synthesize detailed analysis into a big picture view that can be easily understood by non-technical
stakeholders to support risk-based decision-making for senior managers within the Technology Division

Decision Making:
Recommends risk treatment decisions
Recommends remediation actions when risk mitigation is desired
Recommends improvements to methods, instrumentation, training, documentation, and processes

Recommends solutions for automating and streamlining GIS TPRM risk management practices
Advises on GIS TPRM risk management program, policies, standards, and procedures

Working Relationships:
Communicates regularly with cross-functional peers inside and outside of the Technology Division,
including Legal, Information Governance, Global Operations, Global Assurance (Internal Audit), Enterprise
Risk Management, Third Party Risk Management, and other business unit leadership
Interacts occasionally with industry peers from other Systemically Important Financial Market Utilities
(SIFMUs), research organizations, solution providers, etc.

Required Experience:
Bachelor s Degree
Minimum of 4 years of experience in publicly traded companies or finance/technology industry
operations with Third Party Risk Management experience
Experience in at least two of the following: InfoSec (Operations, Program Management, Governance, Risk
Management, etc.), Enterprise Architecture, Identity & Access Management, Application Development,
Infrastructure & Operations, IT Compliance, or Internal Audit
Experience working with industry-based information security and/or control frameworks (NIST Cyber
Security Framework, ISO 27002, CobIT, etc.)
Experience working with information security standards or cyber security standards (e.g., NIST 800-53)
Demonstrable knowledge of a broad range InfoSec technologies and practices
Demonstrable, impeccable writing skills for technical, management, and executive audiences
Possesses strong verbal communication skills/presentation skills

Additional preferred experience:
Demonstrable knowledge of InfoSec risk management methods and practices
Experience with operating Governance, Risk, and Compliance (GRC) solution s - Third Party Risk
Management functionality
Experience leading and working with global teams
Professional certification in InfoSec or Risk Management (such as CRISC, CISM, CISSP, CGEIT, CISA, etc.)

CME Group : Where Futures are Made

CME Group is the world s leading and most diverse derivatives marketplace. But who we are goes deeper than that. Here, you can impact markets worldwide. Transform industries. And build a career by shaping tomorrow. We invest in your success and you own it - all while working alongside a team of leading experts who inspire you in ways big and small. Problem solvers, difference makers, trailblazers. Those are our people. And we re looking for more.


Employment Type: Full Time, Permanent

Read full job description

CME Group Interview Questions & Tips

Prepare for CME Group roles with real interview advice

People are getting interviews at CME Group through

(based on 10 CME Group interviews)
Job Portal
Campus Placement
Recruitment Consultant
40%
10%
10%
40% candidates got the interview through other sources.
Moderate Confidence
?
Moderate Confidence means the data is based on a sufficient number of responses received from the candidates

What people at CME Group are saying

Senior Technology Risk Management Analyst salary at CME Group

reported by 1 employee with 12 years exp.
₹33.8 L/yr - ₹43.1 L/yr
602% more than the average Senior Technology Risk Management Analyst Salary in India
View more details

What CME Group employees are saying about work life

based on 66 employees
69%
77%
77%
100%
Flexible timing
Monday to Friday
No travel
Day Shift
View more insights

CME Group Benefits

Submitted by Company
Flexible Work Model
Continuous Learning
Paid Time Off / Vacation
Health Insurance
Submitted by Employees
Free Transport
Free Food
Health Insurance
Cafeteria
Work From Home
Job Training +6 more
View more benefits

Compare CME Group with

National Stock Exchange of India

3.6
Compare

Bombay Stock Exchange

3.9
Compare

Multi Commodity Exchange of India

3.4
Compare

Reliance Industries

4.0
Compare

TCS

3.7
Compare

Infosys

3.7
Compare

HDFC Bank

3.9
Compare

State Bank of India

3.8
Compare

ICICI Bank

4.0
Compare

Hindustan Unilever

4.2
Compare

Stock Holding Corporation of India

3.5
Compare

TMF Group

3.9
Compare

Manappuram Home Finance

4.0
Compare

Travelex

3.7
Compare

PC Financial Services

4.0
Compare

Toppan Merrill Technology Services India

4.1
Compare

Armstrong International

4.0
Compare

Dealmoney Securities

3.8
Compare

Weizmann Forex

3.9
Compare

ICE Data Services

3.3
Compare

Similar Jobs for you

Risk Management at CA Monk

Bangalore / Bengaluru

5-8 Yrs

₹ 7-10 LPA

Risk Management at Ernst Young

Noida

5-13 Yrs

₹ 7-15 LPA

Risk Analyst at Experian PLC

Mumbai

5-10 Yrs

₹ 7-12 LPA

Security Engineer at TriNet Group, Inc

Hyderabad / Secunderabad

2-3 Yrs

₹ 4-5 LPA

Security Risk Analyst at Anthology Inc

Bangalore / Bengaluru

2-5 Yrs

₹ 4-7 LPA

Security Risk Analyst at Anthology Inc

Bangalore / Bengaluru

2-5 Yrs

₹ 4-7 LPA

Senior Analyst at ABBYY

Kolkata, Mumbai + 5

2-5 Yrs

₹ 4-7 LPA

Digital at Ernst Young

Noida

3-6 Yrs

₹ 5-8 LPA

Information Security Analyst at Resy

Gurgaon / Gurugram

2-5 Yrs

₹ 4-7 LPA

Technology at KPMG India

Bangalore / Bengaluru

2-5 Yrs

₹ 4-7 LPA

Senior Tech Risk Management Analyst - TPRM

3-6 Yrs

Bangalore / Bengaluru

1d ago·via naukri.com

Software Engineer III - India

3-11 Yrs

Bangalore / Bengaluru

1d ago·via naukri.com

Cloud Security Engineer - III

5-8 Yrs

Bangalore / Bengaluru

1d ago·via naukri.com

Manager IT Vendor Management

5-8 Yrs

Bangalore / Bengaluru

1d ago·via naukri.com

Soft Engineer in Test II-India

5-9 Yrs

Bangalore / Bengaluru

1d ago·via naukri.com

Senior Network Ops Engineer

6-12 Yrs

Bangalore / Bengaluru

1d ago·via naukri.com

Sr Software Engineer - Java ( full stack )

5-8 Yrs

Bangalore / Bengaluru

1d ago·via naukri.com

Senior Security Engineer - IAM

9-12 Yrs

Bangalore / Bengaluru

1d ago·via naukri.com

Tech Ops Engineer II - India

6-9 Yrs

Bangalore / Bengaluru

1d ago·via naukri.com

Tech Ops Engineer I - India

6-9 Yrs

Bangalore / Bengaluru

1d ago·via naukri.com
write
Share an Interview