Back to jobs
R
Hiring companyriveron

Verified today

Senior Associate, RAS

India Full-time Remote

About the role

Riveron's Cyber Security Advisory (CSA) group seeks a Senior Associate, RAS to help organizations implement governance, risk, and compliance practices. Day-to-day, you will support GRC/cybersecurity program implementation, assess IT General Controls, develop remediation roadmaps, perform IT risk assessments, and manage day-to-day GRC platform operations. This is a full-time, remote role based in India.

What you’ll do

  • Support delivery team in implementing cybersecurity programs aligned with SOC 2, ISO 27001, and other security and privacy frameworks
  • Own day-to-day GRC platform operations, including monitoring automated testing results, tracking controls, managing evidence uploads, inputting vendor and risk records, and maintaining policy assignme
  • Serve as the first line of response for audit requests, drafting initial responses and gathering information before escalating to the Client Lead for review
  • Assist with recurring compliance tasks including User Access Reviews, IR/DR tabletop exercises, and Risk Assessments
  • Take ownership of ad-hoc tasks such as SAQs, documentation, and one-off client requests, making a first attempt before seeking feedback
  • Monitor and respond to client communications across Slack, Teams, and email, drafting proposed solutions rather than simply surfacing problems
  • Contribute to client calls and weekly status updates, coordinating with delivery team members on expectations for external-facing communication
  • Maintain the project management tool with accurate, up-to-date task tracking across all active engagements

What you’ll bring

  • Bachelor's and/or Master's degree in Information Technology (IT), Computer Information Systems (CIS), Management Information Systems (MIS), or a related field
  • 3+ years of experience in an IT Audit, Cybersecurity, or IT Risk Advisory role (candidates with 5+ years and prior management experience are encouraged to apply)
  • Demonstrated knowledge of compliance frameworks such as SOC 2, ISO 27001, HIPAA, PCI-DSS, NIST, FedRAMP, and CMMC
  • Familiarity with GRC solutions, tools, and technologies

Nice to have

Relevant certification preferred: CompTIA Security+, CISA, CISM, CISSP, or AWS Cloud Practitioner

Skills

IT AuditCybersecurityIT Risk AdvisoryGRC PlatformsSOC 2ISO 27001Compliance Frameworks

Benefits

  • Medical, dental, and vision insurance
  • 401(k) with company match
  • PTO

Education

Bachelor's and/or Master's degree in Information Technology (IT), Computer Information Systems (CIS), Management Information Systems (MIS), or a related field