Tekion Logo

Tekion

Governance & Risk and Compliance Analyst

Job Posted 16 Days Ago Posted 16 Days Ago
Be an Early Applicant
Chennai, Tamil Nadu
Mid level
Chennai, Tamil Nadu
Mid level
The Governance & Risk and Compliance Analyst is responsible for vendor risk assessment, documentation, training, and collaboration with various departments to manage third-party risk effectively.
The summary above was generated by AI

About Tekion:

Positively disrupting an industry that has not seen any innovation in over 50 years, Tekion has challenged the paradigm with the first and fastest cloud-native automotive platform that includes the revolutionary Automotive Retail Cloud (ARC) for retailers, Automotive Enterprise Cloud (AEC) for manufacturers and other large automotive enterprises and Automotive Partner Cloud (APC) for technology and industry partners. Tekion connects the entire spectrum of the automotive retail ecosystem through one seamless platform. The transformative platform uses cutting-edge technology, big data, machine learning, and AI to seamlessly bring together OEMs, retailers/dealers and consumers. With its highly configurable integration and greater customer engagement capabilities, Tekion is enabling the best automotive retail experiences ever. Tekion employs close to 3,000 people across North America, Asia and Europe.

This is a hybrid role comprising Risk and Compliance management duties. This requires an in-depth understanding of SaaS companies and ISMS, PIMS, SOC 1 & SOC 2 PCI DSS, GDPR, and CPRA frameworks. We're looking for talented professionals who love challenges, push boundaries, and are passionate about successfully managing the Information Security and Privacy framework.

Location: Chennai only

Responsibilities:

  • Vendor Risk Assessment: Conduct thorough due diligence on potential third-party vendors to assess their cyber security, Data privacy, operational capabilities, and compliance with legal and regulatory requirements.
  • Due Diligence: Perform due diligence reviews of vendors, including reviewing security policies, audit reports, and compliance documentation.
  • Documentation and Reporting: Maintain comprehensive documentation of risk assessments, findings, processes, and recommendations.
  • Prepare reports for management and stakeholders on third-party risk status including critical data breaches, security incidents, and service disruptions.
  • Policy Development: Assist in the development and implementation of third-party risk management policies and procedures in line with industry best practices and regulatory requirements.
  • Training and Awareness: Provide training and support to internal teams on third-party risk management practices and the importance of vendor assessments.
  • Collaboration: Collaborate with various departments, including IT, legal, compliance, and procurement, to ensure a cohesive approach to third-party risk management. Support internal and external audits related to vendor cybersecurity.
  • Security Questionnaire Response: Responds to information security-related questions, RFP's, RFI's SIG, and inquiries using established information security tools and procedures.

Requirements:

  • Strong knowledge of information security and cybersecurity, including control testing, network security, and infrastructure assessments.
  • Bachelor's degree in information technology, Computer Science, or a related/applicable field.
  • Have 4-5 years of work experience related to Risk Management, procurement, and third-party risk management.
  • 2+ years of experience in a team management role.
  • Experience in assessing cloud security and application security for third-party vendors.
  • Good knowledge of ISO 27001 ISO 27701 SOC 1 SOC 2 CPRA, GDPR, and PCI DSS.
  • Certified CRiSP/ISO 27001/ISO 27701 Lead Auditor.
  • Excellent written and verbal communication skills.

Tekion is proud to be an Equal Employment Opportunity employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, victim of violence or having a family member who is a victim of violence, the intersectionality of two or more protected categories, or other applicable legally protected characteristics. 

For more information on our privacy practices, please refer to our Applicant Privacy Notice here.

Top Skills

Crisp
Gdpr
Iso 27001
Iso 27701
Pci Dss
Soc 1
Soc 2

Tekion Chennai, Tamil Nadu, IND Office

Pallavaram Thoraipakkam 200 feet Road, 2nd floor, Module 5 D North Block, Chennai One - IT SEZ,, Thoraipakkam, , Chennai, India, 600097

Similar Jobs

7 Days Ago
Chennai, Tamil Nadu, IND
Senior level
Senior level
Agency • Digital Media • eCommerce • Professional Services • Software • Analytics • Consulting
The Senior Full-Cycle Recruiter will manage the entire recruitment process, partner with hiring managers, source candidates, and ensure a positive candidate experience.
Top Skills: ConfluenceGoogle WorkspaceJIRALeverOffice 365
8 Days Ago
Chennai, Tamil Nadu, IND
Mid level
Mid level
Agency • Digital Media • eCommerce • Professional Services • Software • Analytics • Consulting
Maintain and administer network systems, troubleshoot issues, manage network security measures, and collaborate with teams for network optimization.
Top Skills: AnsibleCiscoFortinetHpe ArubaLinux ShellMerakiWindows PowershellZscaler
10 Days Ago
Hybrid
Chennai, Tamil Nadu, IND
Mid level
Mid level
Big Data • Fintech • Information Technology • Business Intelligence • Financial Services • Cybersecurity • Big Data Analytics
The Advisor will enhance email protection by assessing threats, implementing strategies, and analyzing trends within the organization. This role focuses on cybersecurity measures against email threats.
Top Skills: Business Email CompromiseCybersecurityEmail ProtectionMalwarePhishingThreat Intelligence

What you need to know about the Chennai Tech Scene

To locals, it's no secret that South India is leading the charge in big data infrastructure. While the environmental impact of data centers has long been a concern, emerging hubs like Chennai are favored by companies seeking ready access to renewable energy resources, which provide more sustainable and cost-effective solutions. As a result, Chennai, along with neighboring Bengaluru and Hyderabad, is poised for significant growth, with a projected 65 percent increase in data center capacity over the next decade.
By clicking Apply you agree to share your profile information with the hiring company.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account