Prudential plc Logo

Prudential plc

PHI - Lead- Tech Risk

Reposted 3 Days Ago
Be an Early Applicant
In-Office
Mumbai, Maharashtra
Senior level
In-Office
Mumbai, Maharashtra
Senior level
The Tech Risk Lead will establish and lead the technology risk function, ensuring compliance, overseeing risk mitigation, and collaborating with teams to manage vulnerabilities in PHI's infrastructure.
The summary above was generated by AI

Prudential’s purpose is to be partners for every life and protectors for every future. Our purpose encourages everything we do by creating a culture in which diversity is celebrated and inclusion assured, for our people, customers, and partners. We provide a platform for our people to do their best work and make an impact to the business, and we support our people’s career ambitions. We pledge to make Prudential a place where you can Connect, Grow, and Succeed.

About the Job

Prudential’s purpose is to be partners for every life and protectors for every future. Our purpose encourages everything we do by creating a culture in which diversity is celebrated and inclusion assured—for our people, customers, and partners. We provide a platform for our people to do their best work and make an impact to the business, and we support our people’s career ambitions. We pledge to make Prudential a place where you can Connect, Grow, and Succeed.

At Prudential Health India (PHI), we are on a mission to make Indians healthier, while bridging the health protection gap. This is a Zero-to-One team undertaking a greenfield health insurance deployment in India committed to building journeys that truly empathise with the customer and offer a differentiated, bespoke experience.

To partner us in this mission, we are looking for a talented candidate for the role of…

Tech Risk Lead

Note: The title will depend on (1) Experience (2) Expertise and (3) Performance. So the title could be:

  • Tech Risk Lead
  • Senior Tech Risk Lead
  • (Associate Director) Technology Risk

People Manager Role

Experience: 10–18 years
Location: Mumbai
Work Mode: Work from office only

Job Profile Summary

The Tech Risk Lead will be responsible for establishing and leading the technology Risk function at PHI, ensuring compliance with internal policies, regulatory frameworks (IRDAI, GDPR, HIPAA), and global Prudential standards. This role will oversee Risk trails, vulnerability management, and risk mitigation across PHI’s cloud-native infrastructure and applications.

Job Description

  • Develop and implement a comprehensive technology Risk strategy and annual Risk plan aligned with PHI’s business and regulatory requirements.
  • Conduct risk-based Risks across infrastructure, applications, data platforms, and security controls.
  • Ensure complete and tamper-proof Risk trails of user activities, data changes, and system events.
  • Collaborate with InfoSec, DevSecOps, and AppSec teams to validate remediation of vulnerabilities and ensure patch compliance.
  • Lead privacy impact assessmentspenetration testing reviews, and security onboarding for new applications.
  • Monitor and report on the implementation of Risk recommendations and track remediation progress.
  • Maintain documentation and Risk logs in accordance with professional standards and Prudential Group policies.
  • Support investigations into technology-related incidents, control breaches, or compliance failures.
  • Present Risk findings and risk assessments to senior leadership and the Risk Committee.
  • Stay updated on emerging risks, regulatory changes, and best practices in technology Risk and governance.
  • Develop and maintain risk registers and mitigation plans.
  • Monitor emerging risks (cloud, AI, third-party integrations).
  • Collaborate with architecture and security teams to embed controls.
  • Support risk reporting and governance forums.
  • Conduct impact analysis and scenario modelling.
  • Align risk controls with Prudential Group standards and regulatory expectations.
  • Work with product and engineering teams to ensure risk-aware design and delivery.
  • Maintain risk dashboards, metrics, and control effectiveness reports.

Security & Compliance Technologies

  • Implement and Risk SASTDAST, and SCA scanning tools and processes.
  • Ensure secure integration of CI/CD pipelines using CheckmarxGitHubGitHub ActionsHashiCorp Vault, and Azure AD.
  • Oversee onboarding and compliance of WAF (Web Application Firewall) solutions including Imperva API Security and DDoS/WAAP protection.
  • Validate controls for privileged access management using tools like CyberArk.
  • Ensure compliance with data classificationencryption standards, and endpoint protection policies.

Who We Are Looking For

Technical Skills & Work Experience

  • Bachelor's in Engineering, Computer Science, or equivalent; certifications in CISA, CISSP, or ISO 27001 are a plus.
  • 10–18 years of experience in technology Risk, risk management, or compliance, preferably in insurance or financial services.
  • Strong understanding of GCPCI/CD pipelinesDevSecOps, and infrastructure as code.
  • Experience with tools such as CheckmarxGitHubAzure ADHashiCorp VaultCyberArk, and Imperva.
  • Familiarity with SQL and NoSQL databases, encryption standards, and data classification frameworks.
  • Proven ability to lead cross-functional Risk engagements and manage stakeholder expectations.
  • Familiarity with enterprise risk frameworks (COSO, NIST).
  • Experience in risk modelling and impact analysis.
  • Exposure to cloud risk, data privacy, and third-party risk domains.
  • Understanding of DevSecOps and secure SDLC practices.
  • Experience with risk tooling and control libraries.

Personal Traits

  • Strategic thinker with strong analytical and investigative skills.
  • High integrity and ethical standards.
  • Excellent communication and presentation skills.
  • Ability to work independently and manage multiple concurrent Risks.
  • Strong attention to detail and documentation discipline.

What Can Make You Extra Special

  • Experience in setting up Risk functions in greenfield environments.
  • Exposure to IRDAI Risks and regulatory inspections.
  • Familiarity with centralised vulnerability dashboards and build breaker enforcement.
  • Experience with public-facing application security, DDoS/WAAP onboarding, and penetration testing workflows.

Language

Fluent written and spoken English

Equal Opportunity Statement

Prudential is an equal opportunity employer. We provide equality of opportunity and benefits for all who apply and perform work for our organisation irrespective of sex, race, age, ethnic origin, educational, social and cultural background, marital status, pregnancy and maternity, religion or belief, disability, part-time/fixed-term work, or any other status protected by applicable law.

 

Prudential is an equal opportunity employer. We provide equality of opportunity of benefits for all who apply and who perform work for our organisation irrespective of sex, race, age, ethnic origin, educational, social and cultural background, marital status, pregnancy and maternity, religion or belief, disability or part-time / fixed-term work, or any other status protected by applicable law. We encourage the same standards from our recruitment and third-party suppliers taking into account the context of grade, job and location. We also allow for reasonable adjustments to support people with individual physical or mental health requirements.

Top Skills

Azure Ad
Checkmarx
Ci/Cd
Cyberark
Dast
Devsecops
GCP
Git
Hashicorp Vault
Imperva
NoSQL
Sast
Sca
SQL

Similar Jobs

2 Hours Ago
Hybrid
Mumbai, Maharashtra, IND
Mid level
Mid level
Big Data • Food • Hardware • Machine Learning • Retail • Automation • Manufacturing
Lead cutover planning and execution activities for O9 and SAP S4HANA implementations, collaborating with teams and ensuring compliance.
Top Skills: O9 SolutionsSap S4Hana
2 Hours Ago
Hybrid
Mumbai, Maharashtra, IND
Senior level
Senior level
Big Data • Food • Hardware • Machine Learning • Retail • Automation • Manufacturing
Lead the Inventory/Warehouse Management system transformation across AMEA, ensuring adoption and alignment with global S4 HANA templates. Manage stakeholders and oversee implementation.
Top Skills: O9 SolutionsSap CertificationSap S4Hana
2 Hours Ago
Hybrid
Mumbai, Maharashtra, IND
Senior level
Senior level
Big Data • Food • Hardware • Machine Learning • Retail • Automation • Manufacturing
Lead business transformation initiatives for manufacturing production execution across AMEA, ensuring the implementation of O9 and SAP S4HANA systems. Provide expertise in software and application to support strategy execution.
Top Skills: O9 SolutionsS4 HanaSAP

What you need to know about the Mumbai Tech Scene

From haggling for the best price at Chor Bazaar to the bustle of Crawford Market, the energy of Mumbai's traditional markets is a key part of the city's charm. And while these markets will always have their place, the city also boasts a thriving e-commerce scene, ranking among the largest in the region. Driven by online sales in everything from snacks to licensed sports merchandise to children's apparel, the local industry is worth billions, with companies actively recruiting to meet the demands of continued growth.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account