Compliance Analyst

INTECH Creative Services Pvt. Ltd.

Mumbai, Navi Mumbai

On-site

INR 900,000 - 1,500,000

Full time

4 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

INTECH Creative Services Pvt. Ltd.

in Mumbai is seeking an experienced GRC professional to drive governance, risk, and compliance initiatives and strengthen the information security and data privacy framework across the organization. You will collaborate with Security, Legal, IT, Engineering, and business teams to ensure regulatory compliance and security readiness, lead audits, and manage third-party risk.

Qualifications

  • 3+ years of experience in GRC, Information Security Compliance, Data Privacy, IT Risk, or Cybersecurity.
  • Strong hands-on knowledge of ISO 27001, SOC 2, GDPR/DPDP, ITGC, NIST, PCI-DSS, and Third-Party Risk Management.
  • Experience with risk assessments, audits, security controls, compliance documentation, and GRC tools.
  • Strong stakeholder management, analytical and problem-solving skills.
  • Bachelor's/Master's degree in Cybersecurity, Information Security, IT, Compliance, or a related field.
  • Certifications such as CISA, CISM, CISSP, CRISC, CIPP/E, CIPM, or ISO 27001 Lead Auditor/Implementer will be an advantage.

Responsibilities

  • Manage and strengthen GRC programs covering risk assessments, ITGC, policies, controls, audits, and third-party risk.
  • Drive compliance initiatives for ISO 27001, SOC 2, GDPR, DPDP, PCI-DSS, and NIST frameworks.
  • Lead Data Privacy activities including DPIAs, data protection assessments, retention policies, and privacy compliance.
  • Manage security audits, control testing, evidence collection, remediation, and certification requirements.
  • Support Business Continuity & Disaster Recovery programs and security incident response activities.
  • Implement and automate compliance processes using GRC tools.
  • Partner with internal and external stakeholders to identify risks, close compliance gaps, and improve security posture.

Skills

GRC
Information Security
Data Privacy
IT Risk
Cybersecurity

Education

Bachelor's/Master's degree in Cybersecurity, Information Security, IT, Compliance, or a related field

Tools

GRC tools

Job description

GRC

We are looking for an experienced GRC to drive Governance, Risk & Compliance initiatives and strengthen our Information Security and Data Privacy framework. The role will work closely with Security, Legal, IT, Engineering, and business teams to ensure regulatory compliance and security readiness.

Key Responsibilities
  • Manage and strengthen GRC programs covering risk assessments, ITGC, policies, controls, audits, and third-party risk.
  • Drive compliance initiatives for ISO 27001, SOC 2, GDPR, DPDP, PCI-DSS, and NIST frameworks.
  • Lead Data Privacy activities including DPIAs, data protection assessments, retention policies, and privacy compliance.
  • Manage security audits, control testing, evidence collection, remediation, and certification requirements.
  • Support Business Continuity & Disaster Recovery programs and security incident response activities.
  • Implement and automate compliance processes using GRC tools.
  • Partner with internal and external stakeholders to identify risks, close compliance gaps, and improve security posture.
What Were Looking For
  • 3+ years of experience in GRC, Information Security Compliance, Data Privacy, IT Risk, or Cybersecurity.
  • Strong hands-on knowledge of ISO 27001, SOC 2, GDPR/DPDP, ITGC, NIST, PCI-DSS, and Third-Party Risk Management.
  • Experience with risk assessments, audits, security controls, compliance documentation, and GRC tools.
  • Strong stakeholder management, analytical and problem-solving skills.
  • Bachelor's/Master's degree in Cybersecurity, Information Security, IT, Compliance, or a related field.
  • Certifications such as CISA, CISM, CISSP, CRISC, CIPP/E, CIPM, or ISO 27001 Lead Auditor/Implementer will be an advantage.
Why This Role?

This is a great opportunity to work on enterprise-level Security, GRC, and Data Privacy initiatives, contribute to regulatory and certification programs, and play a key role in strengthening the organization's overall security and compliance posture.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC Analyst
GRC Analyst

Exotel • Bengaluru

On-site
INR 800,000 - 1,200,000
GRC Analyst
GRC Analyst

AST Spacemobile • Bengaluru

On-site
INR 450,000 - 750,000
Senior GRC Analyst
Senior GRC Analyst

Exotel • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Cybersecurity - Risk & Compliance Analyst
Cybersecurity - Risk & Compliance Analyst

Scybers • Chennai District

On-site
INR 900,000 - 1,500,000
Information Security and Data Privacy Manager
Information Security and Data Privacy Manager

Tiger Analytics • Chennai District

Hybrid
INR 2,500,000 - 6,000,000
GRC Analyst
GRC Analyst

NewSpace Research and Technologies • Bengaluru

On-site
INR 350,000 - 550,000
GRC Analyst
GRC Analyst

Exotel Techcom Pvt Ltd • Bengaluru

On-site
INR 600,000 - 900,000
Information Security Engineer - GRC
Information Security Engineer - GRC

EDGE Executive Search • Gurugram District

On-site
INR 900,000 - 1,500,000
Information Security GRC Analyst
Information Security GRC Analyst

Perydot • Mumbai

On-site
INR 600,000 - 1,000,000
Technical Manager
Technical Manager

Incedo Inc. • Gurugram District

On-site
INR 2,500,000 - 5,000,000