Manager - Tech Consulting - FS - CNS - TC - Platforms - Hyderabad
EY.com
Office
Hyderabad, IN, 500032
Full Time
Technology Consulting
Title: Specialist III, Third Party Technical Risk Assessment Analyst
EY is a global leader in assurance, tax, transaction and advisory services. Technology is at the heart of what we do and deliver at EY. Technology solutions are integrated in the client services we deliver and are key to our innovation as an organization.
Fueled by strategic investment in technology and innovation, Client Technology seeks to drive growth opportunities and solve complex business problems for our clients through building a robust platform for business and powerful product engine that are vital to innovation at scale. As part of Client Technology, you’ll work with technologists and business experts, blending EY’s deep industry knowledge and innovative ideas with our platforms, capabilities, and technical expertise. As a catalyst for change and growth, you’ll be at the forefront of integrating emerging technologies from AI to Data Analytics into every corner of what we do at EY. That means more growth for you, exciting learning opportunities, career choices, and the chance to make a real impact.
Ey Technology:
Technology has always been at the heart of what we do and deliver at EY. We need technology to keep an organization the size of ours working efficiently. We have 250,000 people in more than 140 countries, all of whom rely on secure technology to be able to do their job every single day. Everything from the laptops we use, to the ability to work remotely on our mobile devices and connecting our people and our clients, to enabling hundreds of internal tools and external solutions delivered to our clients. Technology solutions are integrated in the client services we deliver and is key to us being more innovative as an organization.
EY Technology supports our technology needs through three business units:
Client Technology (CT) - focuses on developing new technology services for our clients. It enables EY to identify new technology-based opportunities faster and pursue those opportunities more rapidly.
Enterprise Workplace Technology (EWT) – EWT supports our Core Business Services functions and will deliver fit-for-purpose technology infrastructure at the cheapest possible cost for quality services. EWT will also support our internal technology needs by focusing on a better user experience.
Information Security (Info Sec) - Info Sec prevents, detects, responds and mitigates cyber-risk, protecting EY and client data, and our information management systems.
The Opportunity
The Third Party Technical Risk Assessment Analyst, Specialist role is responsible for assessing and mitigating IT security risks, ensuring compliance with industry standards and regulations. This role involves conducting risk assessments, evaluating third-party security frameworks, and managing vulnerabilities to protect enterprise systems. The specialist collaborates with IT, compliance, and vendor teams to strengthen security controls, improve risk assurance processes, and drive continuous enhancements in security governance.
Your Key Responsibilities
- Lead and coordinate security initiatives to safeguard IT infrastructure, data and applications from cyber threats and unauthorized access.
- Conduct risk assessments and security audits, identifying vulnerabilities and recommending mitigation strategies to enhance security controls.
- Evaluate third-party applications, technologies and technical acquisitions to ensure they meet internal security standards and compliance requirements.
- Design, implement, and test secure operating systems, networks and databases, ensuring the integrity of organizational IT infrastructure.
- Monitor and analyze system access logs to detect unauthorized access attempts, anomalies, or potential security breaches.
- Recommend and implement security process improvements related to third-party assessments, application security and risk mitigation strategies.
- Perform vulnerability scans, penetration testing and intrusion detection analysis to proactively identify and resolve security threats.
- Plan and oversee security measures for system backups and disaster recovery, ensuring business continuity and data protection.
- Collaborate with key stakeholders, including IT, compliance and leadership teams, to align security strategies with business objectives.
- Stay updated on emerging security threats, technologies and regulatory requirements, driving continuous improvement in security frameworks.
- Participate in special projects and support security-related initiatives, ensuring adherence to industry best practices and organizational security policies.
Skills and attributes for success
- A team player with strong analytical, communication and interpersonal skills
- Constantly updating yourself about new technologies in the market
- A winning personality and the ability to become a trusted advisor to the stakeholders
To qualify for the role, you must have
- Minimum 8 years of relevant work experience, including at least 5 years in application development and IT security.
- Bachelor’s degree (B.E./B.Tech) in Computer Science or IT(or equivalent combination of training and experience) or Bachelor’s in Computer Applications (BCA) from a recognized institution. MBA degree preferred
- Expertise in vendor risk assessment frameworks, third-party security reviews, and compliance standards such as SOC 2, ISO 27001, NIST, and COBIT.
- Experience with risk scoring methodologies, contract reviews, and regulatory compliance requirements.
- Familiarity with security tools such as Archer and ServiceNow for risk and compliance management.
- Strong knowledge of vulnerability assessments, penetration testing, and security auditing to identify and mitigate risks.
- Understanding of secure application development, encryption, authentication, and access control best practices.
- Proficiency in cloud security (AWS, Azure, GCP), network security, and endpoint protection.
- Strong analytical, critical-thinking, and technical writing skills to document findings, perform security assessments, and communicate risk mitigation strategies.
- Excellent interpersonal and communication abilities to collaborate with vendors, stakeholders, and IT teams.
- Certification requirements: Ability to obtain Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM)
Ideally, you’ll also have
- Strong verbal and written communication, facilitation, relationship-building, presentation and negotiation skills.
- Be highly flexible, adaptable, and creative.
- Comfortable interacting with senior executives (within the firm and at the client)
What we look for
- Strong teamwork, work ethic, product mindset, client centricity and a relentless commitment to EY values.
What working at EY offers
We offer a competitive remuneration package where you’ll be rewarded for your individual and team performance. Our comprehensive Total Rewards package includes support for flexible working and career development, and with FlexEY you can select benefits that suit your needs, covering holidays, health and well-being, insurance, savings and a wide range of discounts, offers and promotions. Plus, we offer:
- Support, coaching and feedback from some of the most engaging colleagues around
- Opportunities to develop new skills and progress your career
- The freedom and flexibility to handle your role in a way that’s right for you
EY is committed to being an inclusive employer and we are happy to consider flexible working arrangements. We strive to achieve the right balance for our people, enabling us to deliver excellent client service whilst allowing you to build your career without sacrificing your personal priorities. While our client-facing professionals can be required to travel regularly, and at times be based at client sites, our flexible working arrangements can help you to achieve a lifestyle balance.
About Ey
As a global leader in assurance, tax, transaction and advisory services, we’re using the finance products, expertise and systems we’ve developed to build a better working world. That starts with a culture that believes in giving you the training, opportunities and creative freedom to make things better. Whenever you join, however long you stay, the exceptional EY experience lasts a lifetime.
If you can confidently demonstrate that you meet the criteria above, please contact us as soon as possible.
Make Your Mark.
Apply Now.
Manager - Tech Consulting - FS - CNS - TC - Platforms - Hyderabad
Office
Hyderabad, IN, 500032
Full Time
September 19, 2025