
Senior Manager - Cyber Risk Consulting
Job Description
Company:
MarshDescription:
Job Profile: Senior Manager, Cyber Risk Consulting, Marsh Risk Consulting UK
Location: Mumbai
MMC Business Unit: Marsh
MMC Office Name: Marsh McLennan India Private Limited (MMIPL)
MMIPL Function: Knowledge Services
Marsh is a global leader in insurance broking and risk management. In more than 130 countries, our experts in every facet of risk and across industries help clients to anticipate, quantify, and more fully understand the range of risks they face.
Marsh Advisory is the consultative branch of Marsh, which operates internationally and provides solutions in the increasing needs of our clients to implement risk management programs within their organization. Marsh Advisory helps companies to change their risk profiles so they can improve resiliency, reduce claims, and minimize the total cost of risk. Businesses today regularly tackle multiple challenges, whether facing property and casualty, cyber, reputation, or other risks, Marsh Advisory can help.
The global Cyber Risk Consulting (CRC) practice of Marsh Advisory supports customers to understand, estimate and mitigate cyber risks. This role is open in Marsh McLennan India Private Limited (MMIPL) a global in-house center for Marsh. The MMIPL in Mumbai has a function called ‘Knowledge Services which supports the MMC group by providing specialized services. Under the Knowledge Services function, there is Marsh Advisory team, which supports the global clients and colleagues. This role will initiate a new service line for Marsh Advisory team in Mumbai, which entails supporting the CRC colleagues in execution of the cyber consulting projects.
What can you expect?
- You will join an international team of cyber security experts helping our clients with all aspects of their cyber security programs and contributing toward their business resilience.
- You will be flexible and ready to adapt to a constantly changing environment, sharing your time between reviewing and developing cyber strategies and products, managing consulting projects, advising stakeholders, leading workshops, as well as supporting business development and marketing.
- Immediate exposure to top-tier clients and excellent opportunities for personal and professional development.
- Since you will be working directly with clients, some travel will be required.
We will count on you to:
- Support business development of Cyber Risk Consulting UK Region.
- Support the design and delivery of multiple Cyber Risk Consulting projects through to their timely completion as required.
- Collaborate across the Marsh (global and regional) community and provide expert input and contributions where necessary.
- Build and maintain strong relationships with other involved parties such as Marsh cyber brokerage colleagues, global cyber teams and business partners.
What you need to have [Required Skills and Experience]:
- Graduate degree in Computer Science or Engineering.
- 6 to 8 years professional experience in the cybersecurity field.
- Demonstrable understanding of technology and security principles and deep knowledge of cyber threat landscape.
- Good understanding of IT architectures, networks, common business applications, SaaS services and data storage.
- Understanding network security principles, including firewalls, VPNs, and secure network architecture.
- Familiarity with cloud security, endpoint security, and network security best practices.
- Good understanding of UK and European cybersecurity regulations and standards, such as: General Data Protection Regulation (GDPR), Network and Information Systems (NIS) Directive, EU Cybersecurity Act, European Union Agency for Cybersecurity (ENISA) guidelines, DORA (Digital Operational Resilience Act) for financial institutions.
- Good knowledge of cybersecurity compliance standards and frameworks, including ISO 27001, NIST, and CIS Controls.
- Analytical problem-solving skills and experience ideally gained in the management-consulting sector although other sectors could be relevant.
- Experience in supporting multiple projects from inception to completion with high quality of delivery in a complex and challenging environment.
- Smart, collaborative, strong sense of business ethics and principles
- Ability to demonstrate sound judgment in the prioritization of competing work assignments, escalation of issues and the formulation of solutions.
- Effective organization skills with key attention to detail and delivery of high-quality documentation with the ability to implement/influence change.
- Professional security certifications (CISA, CISM, CISSP) would be advantageous.
- Experience and skills acquired in Incident Response is advantageous.
- Experience in Vulnerability Assessment, Penetration Testing techniques and tools is advantageous.
- Excellent English language skills (both verbal and written) and the ability to communicate technical matters to a non-technical audience.