Assistant Manager - Information Security/ IT GRC

KVAT & Co

Navi Mumbai

On-site

INR 1,800,000 - 3,400,000

Full time

8 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

KVAT & Co is seeking an Assistant Manager - Information Security/ IT GRC for its Governance, Risk, and Compliance - Technology (GRC-T) practice. The role focuses on executing and leading Information Security, Cybersecurity, and Data Privacy projects, ensuring regulatory compliance and providing strategic client guidance.

It is a client-facing role demanding executive presence and leadership. The candidate should independently manage projects, lead client engagements, and stay updated with GDPR,

Qualifications

  • 5+ years of experience in Information Security, Cybersecurity, and IT GRC domains.
  • Experience in consulting firms or IT security advisory firms is an added advantage.
  • Strong client-facing experience and ability to manage projects independently.
  • Regulatory knowledge across GDPR, DPDP, RBI, IRDAI, SEBI, SOX and related cybersecurity guidelines.

Responsibilities

  • Lead Information Security, Cybersecurity, and Data Privacy projects for clients.
  • Conduct and oversee security assessments against frameworks (ISO 27001, NIST, CIS).
  • Implement and monitor information security controls; ensure regulatory compliance (RBI, IRDAI, SEBI, GDPR, DPDP, SOX).
  • Draft policies and perform IT risk assessments to identify vulnerabilities and threats.
  • Provide client-facing guidance; develop decks and proposals; engage senior stakeholders.

Skills

Cybersecurity frameworks
Risk management
IT governance
Regulatory understanding
Communication
Leadership
Report writing
Project management
Business acumen

Education

Bachelor's degree in related field
Certifications advantageous

Job description

Job Title: Assistant Manager - Information Security/ IT GRC

Base Location: Thane/ Mumbai

Employment Type: Full-Time/ Contractual

Reporting To: Partner

Firm Overview: KVAT & Co, a business consulting and auditing firm with deep expertise in corporate governance, risk management, compliance, monitoring services, technology, and training. Established in 2021, our firm has rapidly evolved from a pioneering partnership between two visionary leaders to a robust team of seasoned professionals with a diverse industry presence. Our operational capacity has expanded significantly to accommodate the increasing demands of clientele which are some of the leading organizations in the diverse industry segments. We continue to scale our services to deliver unparalleled solutions tailored to meet and exceed the evolving needs of our clients. We have forged strategic alliances in India, the Kingdom of Saudi Arabia, the United Arab Emirates and Cameroon enhancing our capability to serve a global clientele effectively. With a registered office in India, our international perspective ensures that we provide comprehensive solutions that meet global standards.

Job Summary

KVAT & Co is seeking a highly skilled and experienced Assistant Manager - Information Security/ IT GRC for its Governance, Risk, and Compliance - Technology (GRC-T) practice. The ideal candidate will be responsible for executing and leading Information Security, Cybersecurity, and Data Privacy projects, ensuring compliance with regulatory standards, and providing strategic guidance to clients. This is a client-facing role requiring strong executive presence, leadership abilities, and technical expertise in the domain. The candidate should be able to independently manage projects and lead client engagements.

Key Responsibilities
  • Cybersecurity & Information Security Assessments:
    • Conduct comprehensive cybersecurity reviews for clients.
    • Perform gap assessments against leading security frameworks (ISO 27001, NIST, CIS, etc.).
    • Evaluate existing information security controls and recommend remediation measures.
  • Security Implementation & Monitoring:
    • Act as an implementation partner for information security controls and frameworks.
    • Oversee and monitor the implementation process to ensure adherence to industry best practices.
    • Support organizations in achieving compliance with regulatory frameworks (RBI, IRDAI, SEBI, GDPR, DPDP, SOX, etc.).
  • Policy Drafting & IT Risk Management:
    • Develop and draft information security policies for clients as per industry standards.
    • Conduct IT risk assessments to identify vulnerabilities and threats.
    • Develop risk mitigation strategies to enhance IT governance frameworks.
  • Security Testing & Third-Party Risk Assessments:
    • Provide support in vulnerability assessments & penetration testing (VAPT).
    • Conduct third-party IT risk assessments and vendor information security reviews.
  • Data Privacy & Regulatory Compliance:
    • Assist in GDPR compliance assessments and implementation projects.
    • In-depth understanding of DPDP (Digital Personal Data Protection) framework and Indian data privacy laws.
    • Stay updated with IRDAI, RBI, SEBI master circulars, and cybersecurity regulations to ensure compliance.
  • Client & Team Management:
    • Serve as a point of contact for clients on information security project execution.
    • Conduct awareness sessions for clients
    • Assist in presentations for clients.
  • Business Development & Stakeholder Engagement:
    • Develop decks, case study-based proposals, and service presentations.
    • Present service offerings and project-based case studies to prospective clients.
    • Lead discussions with CXOs, CIOs, and other senior stakeholders on cybersecurity matters.
Key Skills & Competencies
  • Technical Expertise: Strong knowledge of cybersecurity frameworks, risk management, and IT governance.
  • Regulatory Understanding: Hands-on experience with GDPR, DPDP, RBI, IRDAI, SEB, SOX and relevant cybersecurity guidelines.
  • Communication & Presentation: Ability to clearly articulate cybersecurity strategies and deliver high-impact presentations to clients.
  • Leadership & Client Handling: Prior experience in a client-facing role with the ability to manage projects independently.
  • Report Writing & Documentation: Strong reporting, policy drafting, and technical documentation skills.
  • Project Management: Ability to plan, execute, and ensure timely delivery of IT GRC projects.
  • Business Acumen: Experience in service pitching, proposal drafting, and stakeholder engagement.
Required Qualifications & Experience
  • Educational Background:
    • Bachelor's in related fields
    • Any additional certifications will serve as an added advantage.
  • Experience:
    • 5+ years of experience in Information Security, Cybersecurity, and IT GRC domains.
    • Proven track record of handling projects independently and client interactions.
    • Prior experience in consulting firms or IT security advisory firms is an added advantage.

CTC: As per industry standards and experience

Why Join KVAT & Co?
  • Opportunity to lead the projects
  • High visibility role with direct client exposure and impact.
  • Work on diverse industry sectors, handling cutting-edge cybersecurity projects.
  • Collaborative and growth-oriented work environment.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Assistant Manager - Information Security/ IT GRC
Assistant Manager - Information Security/ IT GRC

KVAT & Co • Thane

On-site
INR 1,200,000 - 1,800,000
Required Skillset
Required Skillset

eProtect 360 • Mumbai

On-site
INR 2,000,000 - 3,500,000
IN_Director_Cybersecurity GTM_Cyber Defense & Engineering_Advisory_Mumbai
IN_Director_Cybersecurity GTM_Cyber Defense & Engineering_Advisory_Mumbai

PwC India • Thane

On-site
INR 3,500,000 - 7,500,000
Head of IT Governance, Risk and Compliance
Head of IT Governance, Risk and Compliance

Kotak Mahindra Bank Limited • Mumbai

On-site
INR 3,000,000 - 4,000,000
Cybersecurity Specialist – Governance, Risk & Compliance (GRC)
Cybersecurity Specialist – Governance, Risk & Compliance (GRC)

TalaKunchi Networks Pvt Ltd • Mumbai

On-site
INR 800,000 - 1,200,000
Opportunity to shape InfoSec practices
Work on cutting-edge cybersecurity initiatives
Be part of a forward-thinking team
Data Protection Officer & IS Compliance lead (DPO&ISCL)
Data Protection Officer & IS Compliance lead (DPO&ISCL)

GMR Power Urban Infra • New Delhi

On-site
INR 3,200,000 - 5,200,000
Senior Role - GRC & Infosec
Senior Role - GRC & Infosec

NPCI Bharat BillPay Limited • Mumbai

On-site
INR 2,000,000 - 3,000,000
Senior GRC Analyst
Senior GRC Analyst

Qualys • Maharashtra

Hybrid
INR 1,500,000 - 2,500,000
Assistant Manager - ITGC
Assistant Manager - ITGC

BDO EDGE India Private Limited • Gurugram District

On-site
INR 1,800,000 - 3,200,000
IN_Manager_ Governance GRC_Managed Services_Advisory_Gurgaon
IN_Manager_ Governance GRC_Managed Services_Advisory_Gurgaon

PwC • Gurugram District

On-site
INR 1,400,000 - 2,800,000