Senior Associate - Application Security Risk Management

PriceWaterhouseCoopers Pvt Ltd ( PWC )

Kolkata/Calcutta

Not disclosed

Work from Office

Full Time

Min. 4 years

Job Details

Job Description

IN_Senior Associate_Application Security Risk_Digital Integration_Advisory_Kolkata

Line of Service

Advisory

Industry/Sector

Not Applicable

Specialism

Microsoft

Management Level

Senior Associate

Job Description & Summary

At PwC, our people in business application consulting specialise in consulting services for a variety of business applications, helping clients optimise operational efficiency. These individuals analyse client needs, implement software solutions, and provide training and support for seamless integration and utilisation of business applications, enabling clients to achieve their strategic objectives.

As a business application consulting generalist at PwC, you will provide consulting services for a wide range of business applications. You will leverage a broad understanding of various software solutions to assist clients in optimising operational efficiency through analysis, implementation, training, and support.

Why PWC

At PwC, you will be part of a vibrant community of solvers that leads with trust and creates distinctive outcomes for our clients and communities. This purpose-led and values-driven work, powered by technology in an environment that drives innovation, will enable you to make a tangible impact in the real world. We reward your contributions, support your wellbeing, and offer inclusive benefits, flexibility programmes and mentorship that will help you thrive in work and life. Together, we grow, learn, care, collaborate, and create a future of infinite experiences for each other. Learn more about us.

At PwC, we believe in providing equal employment opportunities, without any discrimination on the grounds of gender, ethnic background, age, disability, marital status, sexual orientation, pregnancy, gender identity or expression, religion or other beliefs, perceived differences and status protected by law. We strive to create an environment where each one of our people can bring their true selves and contribute to their personal growth and the firm’s growth. To enable this, we have zero tolerance for any discrimination and harassment based on the above considerations.

Responsibilities:  

Work with Risk Reviewers to ensure tickets are being processed accurately and efficiently 

Work with Consultation Services Architects to identify gaps in compliance and determine inherent risk, mitigating factors, and residual risk 

Collaborate with other AppSec subpillar teams to ensure relevant processes are completed as necessary and in good standing to support AR disposition 

Interface with customers to provide guidance relevant to AppSec requirements 

Escalate risks and other concerns to Application Readiness Regional Leads, BISOs, CISOs, and other relevant stakeholders 

Interface with a number of other NIS service providers, such as Policy, TPRM, Issues Management, Threat Management 

Provide disposition on  tickets and publish other deliverables as applicable 

Skills Needed: 

Strong communication skills 

Strong English written and verbal skills 

Customer service skills to create a exceptional customer experience 

Strong organizational and time management skills to support multiple concurrent reviews 

People leadership skills to provide oversight of Risk Reviewers, coaching and mentoring in an informal fashion 

Self- Awareness 

Ability and confidence to exercise professional skepticism with soft skills to do so with diplomacy 

Knowledge of the Information Security Policy, Application Readiness Standard, and applicable supporting Standards 

Ability to assess whether a control is 'met' or 'not met' (black and white) 

Ability to navigate the grey when a control does not meet the letter of the control 

Ability to review documentation analytically, and assess control compliance based on information/ documentation provided. 

Ability to evaluate complex data and determine whether data can be used to support the reviews being conducted 

Ability to pull facts and details related to controls from different types of documentation and diagrams submitted 

An understanding of when and how to escalate 

Skill and Experience: 

Good understanding of  Application IT Security Standards, on-premise as well as cloud-based. 

Good understanding of risk management and experience with identifying and assessing potential information security risks. 

Good understanding and exposure to technical risk assessment along with vulnerability assessment and penetration testing. 

Strong communication skills and the ability to provide risk guidance, inform management about potential risk issues, and relay information about policy requirements effectively 

Proper Experience in coordination of issue tracking, Follow-Ups, communication skills in a global environment. 

 Desired Certifications:  (not mandatory)  

CISSP / CISM /CISA / CCSK / CCSP / CRISC " 

Mandatory skill sets:

Application Security Risk Manager 

Preferred skill sets:

Application Security Risk Manager 

Years of experience required:

4 to 8 years

Education qualification:

B.Tech/B.E.

Education (if blank, degree and/or field of study not specified)

Degrees/Field of Study required: Bachelor of Technology, Bachelor of EngineeringDegrees/Field of Study preferred:

Certifications (if blank, certifications not specified)

Required Skills

Information Security Risk Management

Optional Skills

Accepting Feedback, Accepting Feedback, Active Listening, Analytical Reasoning, Analytical Thinking, Application Software, Business Data Analytics, Business Management, Business Technology, Business Transformation, Communication, Creativity, Documentation Development, Embracing Change, Emotional Regulation, Empathy, Implementation Research, Implementation Support, Implementing Technology, Inclusion, Intellectual Curiosity, Learning Agility, Optimism, Performance Assessment, Performance Management Software {+ 16 more}

Desired Languages (If blank, desired languages not specified)

Travel Requirements

Available for Work Visa Sponsorship?

Government Clearance Required?

Job Posting End Date

April 15, 2026

Experience Level

Senior Level

Job role

Work location

Kolkata Y-14, India

Department

Risk Management & Compliance

Role / Category

Risk Management - Assessment / Advisory

Employment type

Full Time

Shift

Day Shift

Job requirements

Experience

Min. 4 years

About company

Name

PriceWaterhouseCoopers Pvt Ltd ( PWC )

Job posted by PriceWaterhouseCoopers Pvt Ltd ( PWC )

Apply on company website