Job Description
Summary
EY (Ernst & Young), a global leader in assurance, consulting, tax, and strategy, is hiring for the position of Technology Risk Senior in Kolkata, India. This role is a great opportunity for IT professionals with experience in cybersecurity, identity and access management (IAM), information security audits, compliance frameworks, and technology risk management.
As a Senior in EY’s Technology Risk team, you will support high-impact cybersecurity, IT assurance, and risk management engagements while collaborating with global clients across industries. This role offers exposure to ISO, NIST, GDPR, and IT risk frameworks, and the chance to strengthen your expertise in IAM, PAM, and cloud security while working in one of the world’s most trusted firms.
Job Details at a Glance
| Job Title | Technology Risk Senior |
|---|---|
| Company | EY (Ernst & Young) |
| Location | Kolkata, India |
| Department | Technology Risk / Cybersecurity |
| Experience Required | 4–7 years in IT Risk, Cybersecurity, or Information Security |
| Education | Graduate in CS/IT/Electronics or MBA/M.Sc. |
| Certifications | Preferred: CISSP, CISM, CRISC, CISA |
| Specialization | IAM, PAM, ISO 27001, NIST, ITGC, Data Privacy, Risk Audits |
| Salary | Competitive |
| Job Type | Full-Time |
Key Responsibilities
As a Technology Risk Senior at EY Kolkata, your role will include:
- Delivering IT risk and assurance services including ITGC, ITAC, ISO 27001, NIST, privacy, and cyber maturity assessments.
- Conducting IAM/PAM implementations, user lifecycle management, and access control evaluations.
- Performing information security audits: change management, incident response, backups, antivirus, SLA monitoring, and physical security.
- Advising clients on information classification frameworks and risk mitigation strategies.
- Assessing vendor risks and providing holistic security exposure analysis.
- Reviewing IT policies, standards, and ensuring compliance with regulatory frameworks (ISO, GDPR, PCI-DSS, etc.).
- Leading client workshops, training sessions, and cybersecurity awareness programs.
- Collaborating with senior stakeholders (CIO, CISO, CRO) and presenting insights clearly and effectively.
- Staying current with cybersecurity trends, GenAI audits, data privacy regulations, and emerging IT risk practices.
Skills and Attributes for Success
- Strong knowledge of Identity & Access Management (IAM), Privileged Access Management (PAM), MFA, SSO, and RBAC.
- Expertise in ISO 27001, NIST assessments, GDPR, Data Privacy audits, and vendor risk assessments.
- Hands-on with tools/technologies such as SIEM, SOAR, CSPM, EDR, and vulnerability management solutions.
- Excellent analytical, problem-solving, and communication skills.
- Ability to manage multiple client engagements, ensuring on-time and quality deliverables.
- Strong consulting, advisory, and stakeholder management skills.
Qualifications
- Graduate degree in Computer Science, IT, Electronics, or equivalent.
- MBA/M.Sc. in Information Security or Risk Management preferred.
- 4–7 years of relevant experience in IT risk, cybersecurity, or assurance.
- Professional certifications: CISSP, CISA, CISM, CRISC (preferred).
- Experience in ISO/NIST assessments, cybersecurity audits, privacy impact audits, and ITGC reviews.
Why Join EY?
- Work with global leaders in cybersecurity and IT risk.
- Gain exposure to Fortune 500 clients and diverse industries.
- Access career development programs, coaching, and certifications support.
- Join an inclusive, collaborative culture that values innovation and professional growth.
Apply Now
If you are ready to take the next step in your career as a Technology Risk Senior at EY Kolkata, apply today via the official EY careers page:
👉 Apply Now on EY Careers