Riveron Logo

Riveron

Senior Associate, RAS

Reposted 4 Days Ago
Be an Early Applicant
Remote or Hybrid
Hiring Remotely in India
Mid level
Remote or Hybrid
Hiring Remotely in India
Mid level
The Senior Associate will support GRC/Cybersecurity program implementations, conduct IT risk assessments, and manage compliance tasks, ensuring adherence to various cybersecurity frameworks.
The summary above was generated by AI

In today's dynamic environment, business leaders face constantly shifting risks. Riveron helps organizations implement leading governance, risk and compliance practices by combining deep expertise with pragmatic partnership, using a hands-on approach to understand the specific needs of the organization and create tailored solutions to address key compliance risks.

Our Cyber Security Advisory (CSA) services include building GRC/Cybersecurity programs from the ground up, framework readiness, design and maintenance of critical security domains, managed internal controls testing and monitoring, co-sourced/outsourced internal audit, segregation of duties and access risk review, policy and procedure development, enterprise risk management, and IT and cybersecurity risk assessment.

The Sr Associate level position for Riveron's CSA group will work collaboratively with delivery team members who provide guidance, coaching, and direction. The role includes supporting the implementation of GRC/Cybersecurity programs, assessing the design and operating effectiveness of IT General Controls (ITGC), developing and executing remediation roadmaps, incident response, completing vendor reviews, and performing IT risk assessments.

What You Have

● Bachelor's and/or Master's degree in Information Technology (IT), Computer Information Systems (CIS), Management Information Systems (MIS), or a related field

● Relevant certification preferred: CompTIA Security+, CISA, CISM, CISSP, or AWS Cloud Practitioner

● 3+ years of experience in an IT Audit, Cybersecurity, or IT Risk Advisory role (candidates with 5+ years and prior management experience are encouraged to apply)

● Demonstrated knowledge of compliance frameworks such as SOC 2, ISO 27001, HIPAA, PCI-DSS, NIST, FedRAMP, and CMMC

● Familiarity with GRC solutions, tools, and technologies

Who You Are

● You have a passion for developing and maintaining client relationships

● You get the job done and have fun doing it

● You communicate skillfully with a variety of audiences and can create compelling stories from data

● You thrive in an ever-changing, dynamic work environment

● You readily identify problems and instinctively look for solutions

● You enjoy participating in internal and external company initiatives such as community service, training, recruiting, and firm events

What You'll Do

● Support delivery team in implementing cybersecurity programs aligned with SOC 2, ISO 27001, and other security and privacy frameworks

● Own day-to-day GRC platform operations, including monitoring automated testing results, tracking controls, managing evidence uploads, inputting vendor and risk records, and maintaining policy assignments

● Serve as the first line of response for audit requests, drafting initial responses and gathering information before escalating to the Client Lead for review

● Assist with recurring compliance tasks including User Access Reviews, IR/DR tabletop exercises, and Risk Assessments

● Take ownership of ad-hoc tasks such as SAQs, documentation, and one-off client requests, making a first attempt before seeking feedback

● Monitor and respond to client communications across Slack, Teams, and email, drafting proposed solutions rather than simply surfacing problems

● Contribute to client calls and weekly status updates, coordinating with delivery team members on expectations for external-facing communication

● Maintain the project management tool with accurate, up-to-date task tracking across all active engagements

● Stay current on emerging risks and evolving control practices

● Build and maintain strong industry relationships to support long-term business development

About Riveron:

At Riveron, we partner with clients—from global multinationals to high-growth private entities—to solve complex finance challenges, guided by our DELTA values: Drive, Excellence, Leadership, Teamwork, and Accountability. Our entrepreneurial culture thrives on collaboration, diverse perspectives, and delivering exceptional outcomes. We are committed to fostering growth, both for our clients and our people, through mentorship, integrity, and a client-centric approach. This inclusive environment offers flexibility, progressive benefits, and meaningful opportunities for impactful work that supports well-being in and out of the office.

Check us out on social media:

LinkedIn Glassdoor Instagram Facebook

Riveron Consulting is an Equal Opportunity Employer and believes that we are stronger together through our diversity. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, national origin, disability status, protected veteran status, sexual orientation, gender identity or any other characteristic protected by law.

Full time roles are eligible for a full range of benefits including medical, dental, and vision insurance, 401(k) with company match, and PTO. A complete description of all available benefits can be found at Riveron's Benefits page at https://riveron.com/riveron-life/. Contract roles are not eligible for benefits.

Fraud Alert

Please beware of fraudulent schemes or impersonations when going through the job application process. A Riveron employee will never recruit via text or extend unsolicited employment offers. Additionally, a Riveron employee will never ask you to exchange money or purchase anything as part of the recruiting process.

Artificial intelligence (AI) tools are used to support the hiring process in screening, assessing, and/or selecting applicants for this position. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Similar Jobs

3 Hours Ago
Remote or Hybrid
India
Senior level
Senior level
Digital Media • Information Technology • News + Entertainment
Design, develop, and maintain microservices-based Python applications and REST APIs. Implement asynchronous processing, ensure test coverage and code quality, deploy and operate services in Docker/Kubernetes, contribute to CI/CD pipelines, mentor junior engineers, collaborate with cross-functional teams, and optimize performance, scalability, and reliability.
Top Skills: CeleryDjangoDjango Rest FrameworkDockerFastapiGit/GitlabGitlab CiJenkinsKubernetesMongoDBNoSQLPostgresPythonRabbitMQRedisSQL
5 Hours Ago
Remote or Hybrid
India
Senior level
Senior level
Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Lead business analysis for Risk Weighted Assets (RWA) and Counterparty Credit Risk (CCR) initiatives. Translate Basel III/IV and SA-CCR/IMM/EAD regulatory requirements into BRDs, FRDs, user stories, process flows and data mappings. Liaise with Market Risk, CCR, Regulatory Reporting, Finance, Quant and Technology teams to support capital calculations, RWA optimization and regulatory reporting for transformation programs.
5 Hours Ago
Remote or Hybrid
India
Senior level
Senior level
Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Design and develop web applications and UI/UX solutions, collaborate with stakeholders to define technical solutions, implement Python and JavaScript components, evaluate visualization tools and recommend approaches, deliver quality work in Agile teams under tight deadlines.
Top Skills: JavaScriptPython

What you need to know about the Delhi Tech Scene

Delhi, India's capital city, is a place where tradition and progress co-exist. While Old Delhi is known for its rich history and bustling markets, New Delhi is defined by its modern architecture. It's clear the region places a strong emphasis on preserving its cultural heritage while embracing technological advancements, particularly in artificial intelligence, which plays a central role in shaping the city's tech landscape, fueled by investments in research and development.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account