Marsh Corporate
We are seeking a talented individual to join our GIS team at Marsh Tech. This role will be based in Pune. This is a hybrid role that has a requirement of working at least three days a week in the office.
Associate Director, IT Risk Management (Third Party Risk Managment/TRA)
The Global Information Security (GIS) team at Marsh is seeking a highly skilled and collaborative Associate Director to lead the design, development, and improvement of technical risk management capabilities across cyber, IT, third party, and AI-related risk domains. In this role, you will provide deep technical expertise, help shape risk and control strategy, and partner across engineering, security, infrastructure, and business teams to strengthen the resilience of critical systems and services. You will also serve as a trusted technical leader, helping guide less experienced team members and influencing technical decisions across the organization.
This is a hybrid role requiring three days per week in the office and two days per week remote.
We will count on you to:
Lead technical risk assessments across infrastructure, applications, cloud environments, endpoints, and supporting platforms.
- Identify control gaps, assess technical exposure, and partner with teams to define practical remediation actions.
- Support vendor and third party technical assessments by reviewing security architecture, evidence, and control design.
- Collaborate with engineering, architecture, infrastructure, and security teams to improve the resilience of critical systems and services.
- Contribute to the assessment of AI-related technical risks, control requirements, and governance considerations.
- Help develop risk metrics, dashboards, and technical reporting for leadership visibility.
- Improve and automate risk workflows, control testing, evidence collection, and reporting processes.
- Participate in incident response, issue management, root cause analysis, and remediation tracking.
- Review technical documentation, architecture diagrams, and system designs to evaluate risk.
- Develop technical standards, playbooks, and guidance to support consistent risk management practices.
- Mentor engineers and analysts and help build technical capability across the team.
- Influence stakeholders through strong technical judgment, communication, and collaboration.
What you need to have:
- Significant experience in technical risk assessment, cybersecurity engineering, infrastructure, cloud, or related technical disciplines.
- Strong hands-on knowledge of security controls, system architectures, and remediation practices.
- Experience guiding technical work in a large, complex enterprise environment.
- Ability to evaluate technical evidence, identify gaps, and translate findings into clear recommendations.
- Strong understanding of cybersecurity and IT risk principles, standards, and frameworks.
- Experience supporting third party technical reviews or vendor security assessments.
- Familiarity with scripting, automation, or workflow tools used to improve technical processes.
- Strong analytical and problem-solving skills with attention to detail.
- Excellent communication skills and ability to collaborate effectively with technical and non-technical stakeholders.
- Familiarity with emerging technology risks, including AI, cloud, and modern infrastructure environments.
What makes you stand out?
- Deep technical expertise across infrastructure, cloud, application, or security engineering domains.
- Experience serving as a technical lead, principal contributor, or mentor in a complex enterprise environment.
- Demonstrated ability to influence technical direction and drive adoption of risk-reducing solutions.
- Experience automating risk, control, or compliance workflows.
- Ability to assess complex technical environments and identify practical, risk-based solutions.
- Strong understanding of AI-related technical risks and control considerations.
- A proactive mindset with the ability to work independently and drive technical work forward.
Why join our team:
- We help you be your best through professional development opportunities, interesting work and supportive leaders.
- We foster a vibrant and inclusive culture where you can work with talented colleagues to create new solutions and have impact for colleagues, clients and communities.
- Our scale enables us to provide a range of career opportunities, as well as benefits and rewards to enhance your well-being.
Marsh is committed to embracing a diverse, inclusive and flexible work environment. We aim to attract and retain the best people and embrace diversity of age, background, caste, disability, ethnic origin, family duties, gender orientation or expression, gender reassignment, marital status, nationality, parental status, personal or social status, political affiliation, race, religion and beliefs, sex/gender, sexual orientation or expression, skin color, or any other characteristic protected by applicable law
Marsh is committed to hybrid work, which includes the flexibility of working remotely and the collaboration, connections and professional development benefits of working together in the office. All Marsh McLennan colleagues are expected to be in their local office or working onsite with clients at least three days per week. Office-based teams will identify at least one anchor day per week on which their full team will be together in person
Marsh (NYSE: MRSH) is a global leader in risk, reinsurance and capital, people and investments, and management consulting, advising clients in 130 countries. With annual revenue of over $27 billion and more than 95,000 colleagues, Marsh helps build the confidence to thrive through the power of perspective. For more information, visit marsh.com, or follow us on LinkedIn and X.