ASAI job platform logo
  1. Home
  2. /Jobs
  3. /Security Engineer Jobs in Bengaluru
  4. /Information Risk Assessment - Assistant Manager - MFT - KGS CH
KPMG India

Information Risk Assessment - Assistant Manager - MFT - KGS CH

Bengaluru · Mid Level

Good timing - competition is buildingVerified listingPosted 4d ago

Applicants who checked fit first are 3.1× more likely to hear back

Your match scoreCalculated · locked
86Overall
64Skills
97Experience

Your score for this role already exists

ASAI compared this JD against 41 signals - skills, seniority, domain, stack overlap etc. Add a resume and it unlocks in about 30 seconds.

No credit card · 1 tap with Google

What we know about this role

Hiring pulse

HIGH

KPMG India is actively reviewing profiles and moving candidates through the pipeline right now.

Apply window

First 72 hours

Window passed - posted 4d ago

Early applicants get seen before the pile builds.

Not a repost

The first time we've seen this listing - it hasn't been closed and reopened.

Skills required

7 listed
Risk Management FrameworkTechnical InformationRisk ControlNetwork SecuritySecurity TestingRisk AppetiteMedia Foundation Transforms (MFT)
Risk Management FrameworkTechnical InformationRisk ControlNetwork SecuritySecurity Testing

You almost certainly match several of these already. Unlock your skill map to see the matches, the gaps, and what to fix first.

Job description

This is an assistant manager role in the Information Risk Assessment team, helping to provide information risk assessments by supporting how the firm identifies and analyses information security threats and risks to KPMG and client information in projects, initiatives, applications and IT resources, to advise on the controls necessary to keep these risks within agreed limits. The role holder will provide support for the day-to-day service, to support the Information Risk Assessments Manager ensuring risks are identified and are entered into the Information Risk Assessment tool.

Key Activities include:

  • Conduct Information Security Risk assessments of the technologies used.
  • Supplier information risk assessments are completed in line with the inherent risk rating.
  • Appropriate information security contractual clauses are used in any formal agreement.
  • Provide support to the Information Risk Assessments Manager. Working within agreed timescales, and keeping the Information Risk Assessments on track within agreed SLA’s with business stakeholders.

Technical Information Risk Assessment

  • Along with other Risk Assessors, responsible for performing risk assessments upon projects, suppliers and hybrid (technology projects with a supplier), KPMG managed technology solutions, managing demand and prioritising assessment appropriately.
  • Provide guidance towards completing risk assessments
  • Provide consulting advice to CTO’s, Technology Engineering and Operations, business service owners and 3rd parties on how best to implement the firm’s information security policies
  • Support the firm’s mission to build client trust and confidence with regard to information security generally and information risk assessment specifically
  • Stay abreast of industry best practice in relation to information risk assessments
  • Support the delivery of a high-quality and timely information risk assessment service to the firm.
  • Promote good information security practices and standards across the firm.

Information Risk Management

  • Proactively foster an environment that drives appropriate information risk control behaviour, including early anticipation, identification and mitigation of information risk, as well as escalation of issues in line with the Information Risk Management Framework.
  • Support the ongoing development and maintenance of the firm’s Information Risk Management Framework, including its supporting methodologies, processes and artefacts.

Co-ordination

  • Working with Project Team and requestors to ensure the accuracy of Risk Assessment forms, managing expectations, clarifying timelines and obtaining artefacts for the Risk Assessment Process.
  • Ensure teams understand the Information Risk Assessment process and manage the process for specific assessments.
  • Support the Information Risk Assessment team with other ad hoc work as required.

Awareness and collaboration

  • Establish strong relationships with business, functional teams and other relevant stakeholders.
  • Build on and preserve the firm’s reputation with third-party suppliers around information security.

Technical knowledge and qualifications

  • A minimum of 3 years’ experience of technical information security risk assessments required.
  • Good working knowledge of industry best practice around information security controls covering: cloud security, network security, application security, encryption, information security testing, vulnerability management, access governance, and SaaS assurance.
  • Familiarity with information security standards (e.g. Cyber Essentials, ISO 27001, NIST Cybersecurity Framework, CIS Top 20 Controls).
  • Understanding of personal data and privacy.
  • Security certifications desirable.
  • Excellent English-language communication skills essential – both spoken and written.
  • Diligent and focused, with the ability to prioritise multiple tasks and manage multiple risk assessments concurrently by themselves.
  • Ability to deal with a broad range of stakeholders at all levels, both internal and external, in a confident and assured manner. Happy to engage, manage, chase and communicate with stakeholders.
  • Good team player who is enthusiastic about engaging with the wider Information Risk Assessment team, and with the ability to act independently and exercise sound judgment.
  • Assertive, by being able to articulate technical concerns with stakeholders.
  • Strong analytical and problem-solving skills, with excellent attention to detail.
  • Proven ability to identify and articulate information security requirements, risks and issues, and formulate clear decisions and recommendations.
  • Ability to understand business drivers and risk appetite, in order to make informed risk assessment decisions.
  • Covering at least 75% of UK working hours.
  • Willing and able to obtain BPSS clearance for the UK.

Personal qualities and leadership skills

  • Excellent English-language communication skills essential – both spoken and written.
  • Diligent and focused, with the ability to prioritise multiple tasks and manage multiple risk assessments concurrently by themselves.
  • Ability to deal with a broad range of stakeholders at all levels, both internal and external, in a confident and assured manner. Happy to engage, manage, chase and communicate with stakeholders.
  • Good team player who is enthusiastic about engaging with the wider Information Risk Assessment team, and with the ability to act independently and exercise sound judgment.
  • Assertive, by being able to articulate technical concerns with stakeholders.

Analytical skills

  • Strong analytical and problem-solving skills, with excellent attention to detail.
  • Proven ability to identify and articulate information security requirements, risks and issues, and formulate clear decisions and recommendations.
  • Ability to understand business drivers and risk appetite, in order to make informed risk assessment decisions.

Other requirements

  • Covering at least 75% of UK working hours.
  • Willing and able to obtain BPSS clearance for the UK.

Free · no signup

Get tomorrow's jobs before you have to search

Daily job drops, skill trends and free resources - posted straight to the group. Leave any time.

Join WhatsAppJoin Telegram

No spam. Just jobs and resources.

Why people use ASAI

Someone shared one job with you. ASAI keeps finding the rest.

  • Scored, not searched. Every role ranked against your actual profile.

  • Alerts as often as hourly. Reach new roles while the pile is still small.

  • Skill gaps, spelled out. See exactly which requirements you don't meet yet.

  • Verified jobs, only. Say no to ghost jobs. Your time deserves respect.

More Security Engineer roles in Bengaluru

See all

Senior Software engineer - Advanced Threat Protection

Okta · Bengaluru

Lead Security Engineer IGA

Cyderes · Bengaluru

Sr Software Engineer - Cybersecurity Integrations (Armis)

ServiceNow · Bengaluru

Software Engineer (Cybersecurity Integrations) - Armis

ServiceNow · Bengaluru

Keep browsing

All open roles at KPMG IndiaAll Security Engineer jobs in Bengaluru

Two ways in

Applicants who checked fit first are 3.1× more likely to hear back

Your match scoreCalculated · locked
86Overall
64Skills
97Experience

Your score for this role already exists

ASAI compared this JD against 41 signals - skills, seniority, domain, stack overlap etc. Add a resume and it unlocks in about 30 seconds.

No credit card · 1 tap with Google

Free · no signup

Get tomorrow's jobs before you have to search

Daily job drops, skill trends and free resources - posted straight to the group. Leave any time.

Join WhatsAppJoin Telegram

No spam. Just jobs and resources.

Why people use ASAI

Someone shared one job with you. ASAI keeps finding the rest.

  • Scored, not searched. Every role ranked against your actual profile.

  • Alerts as often as hourly. Reach new roles while the pile is still small.

  • Skill gaps, spelled out. See exactly which requirements you don't meet yet.

  • Verified jobs, only. Say no to ghost jobs. Your time deserves respect.

ASAI job platform logo

A job platform finally, balanced in your favour.

Jobs by CityJobs by CompanyGuidesHow We VerifyAboutPrivacy PolicyTerms of Service

Built in India 🇮🇳

© 2026 ASAI. All rights reserved.