Verified today
Cybersecurity Control Testing & CRI Maturity Assessor, AVP
About the role
CISO of America’s team within the Cybersecurity GRC function at MUFG builds and maintains robust security controls across on‑premises and cloud environments. The AVP leads independent control testing, CRI Profile maturity assessments, and third‑party vendor evaluations, producing detailed workpapers and remediation reports. Bengaluru, India, on‑site work model.
What you’ll do
- Plan and execute control testing engagements across on‑prem and cloud environments
- Perform CRI Profile maturity assessments and third‑party vendor assessments
- Produce high‑quality assessment workpapers, test scripts, and remediation reports
Nice to have
- 3-5+ years risk management or IT audit experience
- On‑prem and cloud control testing expertise
- Third‑party vendor assessment experience
- CRI Profile maturity assessment experience
- Documentation and workpaper production
- Regulatory knowledge (FFIEC, GDPR, etc.)
- SDLC secure engineering controls experience
- Professional certifications (CISSP, CISM, etc.)
Skills
Education
Bachelor's degree