Manager, Risk Manager, Cyber security (GRC)

ACG

Mumbai

On-site

INR 3,000,000 - 6,000,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

ACG Group seeks a Risk Manager in Cyber Security to strengthen enterprise risk governance and drive proactive identification and mitigation of cyber risks. Based in Jogeshwari, Mumbai, you will manage risk dashboards, KRIs, and governance reporting while coordinating with IT and business teams.

You will review cyber policies and control frameworks, support incident response and audits, and advance AI-enabled risk analytics to enhance resilience and compliance across the enterprise.

Qualifications

  • Bachelor's degree in Information Security with ISO27001 Lead Auditor/Lead Implementer certifications.
  • Master's degree with CRISC, CISSP, CISA or CISM certifications.

Responsibilities

  • Conduct enterprise-wide cyber risk assessments covering IT, cloud, OT, applications, and third-party environments.
  • Maintain and update the cyber risk register, prioritizing and tracking risks.
  • Monitor risk mitigation actions and coordinate with tech and business teams for timely closure.
  • Develop cyber risk dashboards, KRIs, and management updates for governance forums.
  • Review policies and control frameworks to ensure regulatory alignment.
  • Support incident response, business continuity, audits, and vendor risk assessments.

Skills

Decision making
Security frameworks
Problem solving
Risk management
Cross-functional teamwork
Communications
Vendor management
Compliance management

Education

Bachelor's degree + InfoSec certs ISO27001 Lead Auditor/Lead Implementer
Master's degree + InfoSec certs CRISC/CISSP/CISA/CISM

Job description

Position Title :

Risk Manager, Cyber Security, ACG Group

Organization Context:
Position Title:

Risk Manager, Cyber Security, ACG Group

Grade : M-05

Department: Corporate Information Technology

Location: Jogeshwari, Mumbai

Reports to: Head, Cyber Security, ACG Group

ACG is the world's only integrated pharma manufacturing solutions company. We are headquartered in Mumbai , India. ACG has a presence in over 100 countries with its products and services that strive to provide world-class technology across multiple domains. We offer a complete range of solutions beginning with empty capsules; granulation and tablet coating; capsule filling; tabletting; packaging films; blister packing and carton packing to the end-of-line solutions and track and trace systems.
We have an opportunity in ACG Corporate of a Risk Manager, Cyber Security, ACG Group.

Job Objective
  • Strengthen enterprise cyber risk governance
  • Drive proactive risk identification & mitigation
  • Enhance risk monitoring & reporting
  • Improve cyber resilience & compliance
  • Strengthen third party / supply chain cyber risk management
  • Improve cyber risk awareness
  • Advance AI enabled cyber risk intelligence & analytics
Primary responsibilities
  • Conduct enterprise-wide cyber risk assessments covering IT, cloud, OT, applications, and third-party environments to identify and evaluate security risks.
  • Maintain and update the cyber risk register, ensuring risks are documented, prioritized, tracked, and periodically reviewed with relevant stakeholders.
  • Monitor implementation of risk mitigation and remediation actions, and coordinate with technology and business teams to ensure timely closure of identified gaps.
  • Develop and present cyber risk dashboards, KRIs, compliance reports, and management updates for leadership and governance forums.
  • Review cybersecurity policies, standards, and control frameworks to ensure alignment with regulatory requirements, industry best practices, and organizational objectives.
  • Support cyber incident response, business continuity, audit activities, and vendor risk assessments by providing risk analysis, impact evaluation, and recommendations for resilience improvement.
Key Result Areas
  • Effectiveness of enterprise cyber risk identification, assessment, prioritization, and governance processes
  • Timely closure of identified cyber risks, vulnerabilities, audit findings, and control gaps
  • Accuracy, timeliness, and quality of cyber risk dashboards, KRIs, executive reports, and risk insights
  • Adherence to cybersecurity policies, standards, and internal control frameworks, including audit readiness and compliance tracking.
  • Assessment and ongoing monitoring of cybersecurity risks associated with vendors, service providers, and external partners.
  • Contribution to incident response preparedness, business continuity planning, crisis coordination, and post-incident risk evaluation activities.
  • Adoption of automation, threat intelligence, AI-enabled analysis, and process improvements to enhance cyber risk visibility and operational efficiency.
Key Interfaces
Internal InterfacesExternal Interfaces
  • ACG IT Team
  • ACG Businesses
  • Security Vendors
  • Security Consultants
ACG Persona
Persona LevelCompetencyLevel

Decision Making, Security frameworks, Problem Solving, Risk & Threat Management, Cross functional teamwork, Security tools & technologies, Communications, Compliance management, Deliver consistent results, Vendor Management, Persona Innovator, Persona Partner 4

Educational and Experience Requirements
Minimum Requirement Desired Level of Education
  • Bachelors + InfoSec certs such as ISO 27001 Lead Auditor or ISO 27001 Lead Implementer
  • Masters + InfoSec certs such as CRISC, CISSP, CISA / CISM.
Experience
  • 8+ years
  • 10-12 years
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Technical Manager
Technical Manager

Incedo Inc. • Gurugram District

On-site
INR 2,500,000 - 5,000,000
Manager – Risk & Compliance
Manager – Risk & Compliance

r3 Consultant • Dadri

On-site
INR 1,000,000 - 1,500,000
Associate Manager - Information & Cyber Security
Associate Manager - Information & Cyber Security

Iris Software • Dadri

On-site
INR 1,500,000 - 2,500,000
IT Risk Analyst
IT Risk Analyst

Sayyam Investments Private Limited • Bengaluru

On-site
INR 1,200,000 - 2,000,000
Head Cyber & IT
Head Cyber & IT

Michael Page • Mumbai

On-site
INR 6,000,000 - 9,000,000
Leadership opportunity
Exposure to high-impact technology domains
Collaborative culture with visibility to top leadership
+1
Lead -Governance, Risk and Compliance (GRC)
Lead -Governance, Risk and Compliance (GRC)

ARCON • Mumbai

On-site
INR 1,500,000 - 2,500,000
Senior Role - GRC & Infosec
Senior Role - GRC & Infosec

NPCI Bharat BillPay Limited • Mumbai

On-site
INR 2,000,000 - 3,000,000
Information Security Manager
Information Security Manager

Dmi Finance • Dadri, Delhi

On-site
INR 1,200,000 - 1,800,000
Cybersecurity Lead - GRC
Cybersecurity Lead - GRC

Medusind Solutions, Inc. • Mumbai

On-site
INR 1,500,000 - 2,100,000
Cybersecurity Specialist – Governance, Risk & Compliance (GRC)
Cybersecurity Specialist – Governance, Risk & Compliance (GRC)

TalaKunchi Networks Pvt Ltd • Mumbai

On-site
INR 800,000 - 1,200,000
Opportunity to shape InfoSec practices
Work on cutting-edge cybersecurity initiatives
Be part of a forward-thinking team