ET SIC Reporting Analyst

Ernst & Young Advisory Services Sdn Bhd

Ernakulam

On-site

INR 1,500,000 - 2,200,000

Full time

4 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

EY SIC Reporting Analyst role in India focuses on supporting vulnerability management reporting for Enterprise Technology, excluding Platform Mgmt. The role demands accurate, timely compliance insights with cross-functional collaboration across Infosec and business teams.

Responsibilities include maintaining reports, validating data, tracking SLA adherence and delivering leadership-ready dashboards. Experience in IT risk, governance analytics and GRAC standards is essential.

Qualifications

  • Bachelor or Master’s in IT/Engineering.
  • 6–9+ years in IT risk, vulnerability management or data analytics.
  • Experience with governance reporting and compliance.

Responsibilities

  • Prepare and maintain global vulnerability mgmt compliance reports for ET functions.
  • Monitor SLA targets, track remediation progress and data quality.
  • Produce vulnerability management dashboards, scorecards and insights.
  • Collaborate with Infosec, product managers and leadership for reporting needs.
  • Refine reporting processes and ensure clear governance of data.

Skills

Stakeholder management
GRAC knowledge
IT risk reporting
Vulnerability management
Data analytics
Cross-functional collaboration
Project management
Communication skills
Attention to detail

Education

Bachelor or Master’s degree in Information Technology / Engineering

Job description

At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all.

EY is a global leader in assurance, tax, transaction and advisory services. Technology is at the heart of what we do and deliver at EY. Technology solutions are integrated in the client services we deliver and are key to our innovation as an organization. Fueled by a US$1.5+B investment in technology and innovation, EY is primed to guide clients in their efforts to drive sustainable growth, create new value, and build new and better ways of working. As part of Enterprise Technology, you’ll be at the forefront of integrating technology into what we do at EY. That means more growth for you, exciting learning opportunities, career choices and the chance to make a real impact.

The role

SIC Reporting Analyst is responsible for supporting vulnerability management reporting for ET (excluding Platform Mgmt) and providing accurate, timely and actionable compliance insights.

This position requires close collaboration with global teams across ET, Infosec and business functions to align reporting with the broader risk frameworks. The analyst will be responsible for monitoring progress against vulnerability mgmt goals, validating that vulnerabilities are remediated or approved plans are recorded within defined SLA targets, and providing compliance status through regular assessments, on-going leadership reviews and real-time dashboards.

As part of the role, the individual will assess existing reporting processes, refine them as business needs change, and work closely with Infosec and other stakeholders to strengthen data quality, reporting controls and governance models within Enterprise Technology. The ideal candidate brings relevant experience in IT risk reporting, governance and analytics, contributing to EY’s overall risk management plan.

Your key responsibilities

As the SIC Reporting Analyst, the key responsibilities would include:

  • Prepare and maintain Global Vulnerability mgmt compliance reports for all in-scope IT functions within Enterprise Technology (excluding Platform Mgmt), including GRAC reporting for in-scope I&O functions.
  • Consolidate vulnerability, remediation and exception data from approved sources; validate completeness and accuracy before reports are published.
  • Monitor compliance within agreed SLA’s as established by Infosec, tracking remediation progress, overdue items and adherence to security policies.
  • Prepare weekly / monthly SIC updates and leadership review materials to provide clear insights into vulnerability mgmt performance.
  • Maintain reporting definitions, templates, calculation logic and documented controls to enable consistent and repeatable reporting.
  • Collaborate with Infosec and I&O product managers to understand reporting requirements, source-data changes and future product road maps.
  • Maintain end-to-end reporting views for vulnerabilities across ET (excluding Platform Management), including remediation plans, exceptions, approvals and closure status.
  • Work closely with Infosec and stakeholders within ET to provide reporting support for Critical Vulnerability Response Plan (CVRP) exercises.
  • Produce vulnerability management dashboards, scorecards, trend analysis and actionable insights for operational and leadership reviews.
  • Collaborate with stakeholders and act as a reporting conduit between Infosec, Product/Application, Engineering, Operations & Management; follow up on data gaps and unresolved ownership issues.
  • Provide segmented reporting and follow-up views for Data Restricted Countries (DRCS) and Local Support teams (excluding Platform Management).
  • Identify, assess and highlight risk trends, ageing, recurring issues and priority remediation areas for I&O (excluding Platform Mgmt).
  • Compliance Management: Support reporting that demonstrates whether in-scope portfolios for I&O adhere to GCoC recommended policies, compliances, regulations and standards.
  • Identify opportunities to automate and standardize data preparation, validation, dashboard refresh and recurring report distribution.
Skills and attributes for success
  • Experienced in managing key Stakeholder relationships, including Senior Management.
  • Good understanding of Industry GRAC, vulnerability mgmt standards and compliance reporting.
  • Knowledge of other Risk domains such as Operations Risk Management, IT Security and Cyber Risks, with the ability to interpret and report these risks.
  • Good working knowledge of IT Operations, IT practices and operational reporting.
  • Can work with minimum direction and deliver timely, accurate and high-quality results.
  • High integrity; dedicated to excellence; highly attentive to details; flexible. Possesses sound Project Management and coordination skills.
  • Self‑motivated, with ability to work independently, as well as with other stakeholders in a collaborative manner.
  • Strong problem‑solving skills
  • Experience in working with multiple stakeholders at different levels of the organization, including senior management.
  • Excellent communication skills, especially related to facilitation, documentation and reporting
  • Coordination skills and the ability to leverage support from other parts of the organization.
  • Ability to work with cross-functional stakeholders and senior leadership
To qualify for the role, you must have
Education:
  • Bachelor or Master’s degree in Information Technology / Engineering
Experience:
  • 6 - 9+ years of relevant experience in IT risk, vulnerability management, compliance reporting, data analytics or Service Delivery
What we look for
  • Thought leadership
  • Strategic Thinking
  • Relationship Management
  • Interpersonal & Influencing skills
EY | Building a better working world

EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.

Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate.

Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today.

EY refers to the global organization, and may refer to one or more, of the member firms of Ernst & Young Global Limited, each of which is a separate legal entity. Ernst & Young Global Limited, a UK company limited by guarantee, does not provide services to clients.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

ET Stay-In-Compliance Consultant
ET Stay-In-Compliance Consultant

EY • Ernakulam

On-site
INR 3,500,000 - 6,500,000
Vulnerability Management Exposure Management - Associate
Vulnerability Management Exposure Management - Associate

Ernst & Young Advisory Services Sdn Bhd • Bengaluru

On-site
INR 400,000 - 800,000
Continuous learning opportunities
Flexible working options
Diverse and inclusive culture
+1
Risk Consulting - Digital Risk - Senior Manager Internal Controls
Risk Consulting - Digital Risk - Senior Manager Internal Controls

Ernst & Young Advisory Services Sdn Bhd • Bengaluru

On-site
INR 4,000,000 - 6,400,000
Exclusive health and wellness packages
Cutting-edge learning opportunities
Rewards and recognition programs
FS-RISK CONSULTING-TPRM-SENIOR
FS-RISK CONSULTING-TPRM-SENIOR

EY • Hyderabad

On-site
INR 1,000,000 - 1,600,000
Flexible working
Career development
FS-RISK CONSULTING-TPRM-SENIOR
FS-RISK CONSULTING-TPRM-SENIOR

Ernst & Young Advisory Services Sdn Bhd • Hyderabad

On-site
INR 900,000 - 1,400,000
RC FS-MS - EY COMPLY and RVS- Regulatory Reporting-Staff
RC FS-MS - EY COMPLY and RVS- Regulatory Reporting-Staff

EY • Dadri

On-site
INR 700,000 - 1,300,000
TC-CS-SRCR-Risk and Compliance-SeniorManager
TC-CS-SRCR-Risk and Compliance-SeniorManager

EY • Bengaluru

On-site
INR 4,200,000 - 6,400,000
RC FS-MS - EY COMPLY and RVS- Regulatory Reporting-Staff
RC FS-MS - EY COMPLY and RVS- Regulatory Reporting-Staff

EY • Bengaluru

On-site
INR 600,000 - 900,000
GMS-Senior-VM - Qualys
GMS-Senior-VM - Qualys

EY • Bengaluru

On-site
INR 2,400,000 - 3,200,000
Cyber Triage And Forensic Junior Analyst
Cyber Triage And Forensic Junior Analyst

Ernst & Young Advisory Services Sdn Bhd • Thiruvananthapuram

On-site
INR 600,000 - 1,000,000