
Risk Analyst
EY · Bengaluru, Karnataka, India
- On site
- Full-time
- $85,000 / year
- Bengaluru, Karnataka, India
Job highlights
- Manage IT BCM and risk document creation and signoff.
- Perform periodic refreshes of business impact analyses.
- Collaborate with global teams and stakeholders.
- Support risk-aware culture and protect data.
- Develop skills in a diverse, global environment.
About the role
About EY and the Role
At EY, we are committed to shaping your future with confidence and building a better working world. We foster a globally connected powerhouse of diverse teams, offering opportunities to advance your career wherever you choose to go. Join EY and help us achieve our mission.
Information Security at EY
In today’s data-driven world, protecting information systems is paramount. EY Information Security comprises a global team of nearly 900 professionals dedicated to safeguarding EY and client information assets. We enable secure business operations, deliver secure products and services, and swiftly respond to security events. Our collective efforts protect the EY brand and build client trust. Within Information Security, we integrate risk strategy, digital identity, cyber defense, application security, and technology solutions across the entire security lifecycle.
The Opportunity: IT BCM Risk Analyst
The IT BCM Risk Analyst is responsible for administering the creation, completion, and management signoff of IT Business Continuity Management (BCM) and general risk documents, adhering to established policies and procedures. This role involves managing the ongoing cycle of periodic refreshes and signoffs for existing documents, ensuring compliance with standards and policies. We offer opportunities for skill development and career progression, supported by colleagues worldwide, and the chance to collaborate with top industry talent.
Your Key Responsibilities
The TARP BCM function establishes and maintains the business continuity management framework, processes, tooling, and strategy. Our key objectives include fostering a risk-aware culture within EY Technology, reducing IT risk, defending against threats, and protecting client and EY data.
- Undertake new Business Impact Analyses (BIAs), collaborating with stakeholders to ensure timely completion in compliance with policies and procedures.
- Perform regular, “business as usual” tasks, including periodic BIAs refreshes.
- Engage with established contacts within IT services and the wider firm to ensure BIAs meet established standards.
- Respond to queries and questions regarding BIA completion and subsequent actions.
- Assist with education and awareness sessions, and individual training to empower stakeholders in completing BIAs effectively.
- Liaise with global team members to ensure seamless operation across different locations and time zones.
- Demonstrate skills in efficiently implementing agreed roadmaps and managing work streams.
- Work independently with required supervision.
Skills and Attributes For Success
- Flexibility to manage multiple work streams and adapt to change.
- Ability to collaborate effectively with colleagues at various levels and locations.
- Aptitude for understanding when to escalate potentially difficult situations.
- Capability to understand and adhere to established policies and procedures.
- A methodical and detailed approach to tasks.
Qualifications and Experience
- Understanding and exposure to risk management/BCM, preferably in a multinational environment.
- Flexibility to manage multiple work streams, shifting priorities, ambiguity, and rapid change.
- Ability to collaborate effectively with diverse, cross-cultural teams globally.
- Capacity to balance EY’s needs with business impact and benefit.
- Proven ability to multitask and prioritize in a fast-paced environment with a methodical and detailed approach.
- Strong English language skills, including excellent writing, presentation, interpersonal, and communication skills.
- 1+ years of relevant experience in information technology, Business Continuity, Disaster Recovery, IT Risk Management, or similar roles.
- An advanced degree in Computer Science, Information Security, or a related discipline, or equivalent work experience.
Preferred Experience
- Operational understanding of ISO 22301, ISO 27001, ISO 31000.
- Relevant certifications such as BCI Certified (AMBCI, MBCI), CRISC, CISSP, or CISM.
- Familiarity with local and regional regulatory requirements and their impact on IT policies.
- Appreciation for the business benefits of internal controls and good risk management.
- Working knowledge of cloud fundamentals (Azure, AWS, etc.).
- Proficiency in advanced reporting and data visualization tools, specifically Power BI.
- Experience with RSA Archer.
What We Look For
We seek a collaborative teammate with a global mindset, open to different regions and cultures, and possessing a creative approach. Critical thinking and problem-solving skills are essential, along with strong customer service and communication abilities.
What Working At EY Offers
This role offers a position within a highly coordinated, globally diverse team, equipped with the tools for career growth and development. You’ll combine global opportunities with flexible working. EY’s comprehensive benefits package focuses on your physical, emotional, financial, and social well-being. Specific benefits vary by country.
- Continuous learning: Develop the mindset and skills for future challenges.
- Success as defined by you: Utilize tools and flexibility to make a significant impact your way.
- Transformative leadership: Gain insights, coaching, and confidence to become a leader.
- Diverse and inclusive culture: Be accepted for who you are and empowered to use your voice.
About EY
EY is dedicated to building a better working world by creating value for clients, people, society, and the planet, while fostering trust in capital markets. Enabled by data, AI, and advanced technology, EY teams help clients confidently shape the future and address pressing issues. EY operates across assurance, consulting, tax, strategy, and transactions, serving clients in over 150 countries and territories.
Key skills/competency
- IT BCM Risk Analyst
- Risk Management
- Business Continuity Management
- Information Security
- IT Risk
- Disaster Recovery
- Compliance
- Policy and Procedures
- Stakeholder Management
- Cross-functional Collaboration
Skills & topics
- IT Risk Analyst
- Business Continuity
- Risk Management
- Information Security
- IT BCM
- Disaster Recovery
- Compliance
- Policy
- EY
- Analyst
How to get hired
- Tailor your resume: Highlight relevant experience in IT risk, BCM, or disaster recovery, using keywords from the job description.
- Showcase your skills: Emphasize your analytical abilities, methodical approach, and experience with policy adherence in your application.
- Prepare for interviews: Be ready to discuss your experience with risk assessments and stakeholder collaboration, demonstrating your problem-solving skills.
- Understand EY's values: Research EY's commitment to building a better working world and how your contributions align with their mission.
Technical preparation
Behavioral questions
Frequently asked questions
- What are the primary responsibilities of an IT BIA Risk Analyst at EY?
- The IT BIA Risk Analyst at EY is primarily responsible for administering the creation, completion, and management signoff of IT Business Continuity Management (BCM) and general risk documents. This includes managing the periodic refresh and signoff of existing documents to ensure compliance with established standards and policies. You will also collaborate with stakeholders, field queries, and assist with training to ensure effective BCM practices.
- What experience is required for the IT BIA Risk Analyst role at EY?
- The role requires at least 1+ years of relevant experience in areas such as information technology, Business Continuity, Disaster Recovery, or IT Risk Management. An advanced degree in Computer Science, Information Security, or a related discipline, or equivalent work experience, is also necessary. Exposure to risk management/BCM in a multinational environment is preferred.
- What are the preferred qualifications for an IT BIA Risk Analyst at EY?
- Preferred qualifications include an operational understanding of ISO standards like 22301, 27001, or 31000, and relevant certifications such as BCI, CRISC, CISSP, or CISM. Familiarity with regulatory requirements, business benefits of internal controls, cloud fundamentals (Azure, AWS), proficiency in Power BI, and experience with RSA Archer are also advantageous.
- How does EY support career development for its Risk Analysts?
- EY offers continuous learning opportunities, providing the mindset and skills for future challenges. They empower employees to define their own success with the tools and flexibility to make a significant impact. Transformative leadership is encouraged through insights, coaching, and confidence-building, all within a diverse and inclusive culture.
- What is the work arrangement for the IT BIA Risk Analyst position at EY?
- While the job description emphasizes global collaboration and flexible working, specific details on whether the role is remote, hybrid, or on-site are not explicitly stated. However, the emphasis on global teams suggests a flexible approach, and candidates should clarify this during the application process. Given EY's global presence, remote or hybrid arrangements are common.
- What kind of skills does EY look for in an IT BIA Risk Analyst candidate?
- EY seeks candidates with strong analytical and problem-solving skills, a methodical and detailed approach, and the ability to collaborate effectively with diverse teams globally. Essential attributes include flexibility to manage multiple work streams, adaptability to change, strong communication, organizational, and decision-making skills, and a customer-service orientation.