Consultant -GRC

Value Point Systems Pvt Ltd

Bengaluru

On-site

INR 111,600 - 279,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A leading IT consultancy is seeking a Consultant - GRC in Bangalore, Karnataka. The ideal candidate will implement security controls and risk assessment frameworks, manage compliance requirements, and provide guidance on security policies and automation. Candidates should have a Bachelor or PG degree with certifications in ISO 27001, CBCP, CISA, among others, and possess 2 to 20 years of relevant experience in cyber security practices. This is a full-time position with competitive salary and benefits.

Qualifications

  • Bachelor or PG degree with relevant certifications (ISO 27001, CBCP, CISA, etc.).
  • 2 to 20 years of experience in cyber security roles.
  • Familiarity with regulatory compliance standards.

Responsibilities

  • Implement security controls and risk assessment frameworks.
  • Evaluate risks and develop security standards and procedures.
  • Automate and monitor information security controls.
  • Document and report control failures and gaps.
  • Provide training on security assessment functions.

Skills

Cyber security programs
Risk assessment
Compliance management
Policy development

Education

Bachelor / PG degree with certifications

Tools

ServiceNow GRC
Archer
OneTrust
SAP GRC

Job description

Overview

Designation: Consultant - GRC

Qualifications and Experience
  • Bachelor / PG degree with any of the certifications - ISO 27001, CBCP, CISA, CISM, CRISC, CISSP
  • 2 years to 20 years of applied work experience in cyber security programs, audits, assessments, risk, remediation, or cyber security compliance management.
Job Description
  • Implements security controls, risk assessment framework (ISO 31000, NIST), and program that align to regulatory requirements, ensuring documented and sustainable compliance that aligns and advances client business objectives.
  • Evaluates risks and develops security standards, procedures, and controls to manage risks. Improves client security positioning through process improvement, policy, automation, and the continuous evolution of capabilities.
  • Implements processes, such as GRC (governance, risk and compliance), to automate and continuously monitor information security controls, exceptions, risks, testing. Develops reporting metrics, dashboards, and evidence artifacts.
  • Defines and documents business process responsibilities and ownership of the controls in GRC tool (e.g. ServiceNow GRC, Archer, OneTrust, SAP GRC). Schedules regular assessments and testing of effectiveness and efficiency of controls and creates GRC reports.
  • Updates security controls and provides support to all stakeholders on security controls covering internal assessments, regulations, protecting Personally Identifying Information (PII) data, and compliance such PCI DSS, SOX, SOC2, HIPAA, RBI Guideline, ISO standards
  • Performs and investigates internal and external information security risk and exceptions assessments. Assess incidents, vulnerability management, scans, patching status, secure baselines, penetration test result, phishing, and social engineering tests and attacks.
  • Documents and reports control failures and gaps to stakeholders. Provides remediation guidance and prepares management reports to track remediation activities.
  • Assists other staff in the management and oversight of security program functions.
  • Trains, guides, and acts as a resource on security assessment functions to other departments within Client sites.
  • Remains current on best practices and technological advancements and acts as the Client’s technical resource for security assessment and regulatory compliance.
  • Performs other related duties as assigned.

Location: Bangalore - VPS, Bangalore, Karnataka, India

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC Consultant
GRC Consultant

Lonvec Technologies Private Limited • Hyderabad

On-site
INR 1,200,000 - 2,200,000
GRC Consultant
GRC Consultant

Pentabay Softwares • Chennai District

On-site
INR 600,000 - 1,000,000
GRC Analyst
GRC Analyst

Soffit Infrastructure Services (P) Ltd • Ernakulam

On-site
INR 800,000 - 1,200,000
Product GRC Consultant
Product GRC Consultant

CyRAACS™ • Bengaluru

On-site
INR 600,000 - 1,200,000
Security Consultant - GRC
Security Consultant - GRC

IBM • Mumbai

On-site
INR 2,400,000 - 3,600,000
Consultant - GRC
Consultant - GRC

Value Point Systems Pvt Ltd • Bengaluru

On-site
INR 700,000 - 1,200,000
GRC Specialist
GRC Specialist

NopalCyber • Hyderabad

On-site
INR 800,000 - 1,200,000
GRC Engineer
GRC Engineer

Indian Institute of Technology Delhi (IIT Delhi) • Hyderabad

On-site
INR 1,000,000 - 1,500,000
Senior / Principal GRC Analyst
Senior / Principal GRC Analyst

844 Altera Semiconductor Technology India Pvt. Ltd. • Bengaluru

On-site
INR 2,000,000 - 3,000,000
GRC Manager - Cyber
GRC Manager - Cyber

Cubical Operations LLP • Chennai District

On-site
INR 800,000 - 1,200,000