Governance, Risk, and Compliance Engineer

Herman Miller

Bengaluru

On-site

INR 1,500,000 - 2,300,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

MillerKnoll is seeking a Governance, Risk and Compliance Engineer to lead efforts on cybersecurity and privacy compliance, data governance, and risk management. You will manage GRC/IAM platforms, implement APIs, and drive automation to reduce manual effort while improving audit readiness.

Collaborate with Legal, Cybersecurity, and IT teams to meet regulatory obligations and support business needs; explore AI opportunities to enhance GRC and IAM processes and ensure an acceptable risk posture

Qualifications

  • Bachelor degree or higher in a relevant field.
  • 4+ years of relevant experience in Internal Audit, Compliance, or IT.

Responsibilities

  • Manage GRC and IAM platforms, modules, workflows, integrations, and reporting.
  • Develop compliance and identity automation to improve processes and audit readiness.
  • Investigate AI opportunities to improve GRC, IAM, access review, and compliance.
  • Implement APIs and integrations for GRC/IAM platforms and enterprise systems.
  • Collaborate with partners on risk management, workflows, and access governance.
  • Create documentation for GRC/IAM platforms and support recurring compliance tasks.
  • Train partners on GRC/IAM platforms and processes.
  • Apply laws and regulations to specific issues.
  • Support consumer access rights and liaison roles for GRC/IAM.
  • Monitor systems development and operations for security and privacy compliance.
  • Provide optimization and recommendations for improvements.

Skills

GRC platforms
IAM platforms
API automation
AI opportunities
Regulatory compliance
Data protection laws
Risk management
Legal and business ethics
Communication/writing

Education

Bachelor in Information Systems, Cybersecurity, or Business Administration

Tools

GRC integrations
Identity governance tools

Job description

Governance, Risk and Compliance Engineer
Purpose / Profile

The MillerKnoll Governance, Risk, and Compliance Engineer will work collaboratively with global cross-functional teams to centrally perform Cybersecurity and Privacy compliance, data governance, identity governance, and risk management functions. The engineer will have primary responsibility for managing GRC and IAM platforms, implementing APIs and automations to support cybersecurity, privacy, compliance, and access governance practices, and investigating the use of AI to improve GRC and IAM processes. This position works closely with the Legal, Internal Audit, Cybersecurity, Identity and Access Management, and Technology teams to help ensure that contractual, policy, control, procedural, legal, and regulatory obligations are effectively defined and implemented.
The engineer must be collaborative and flexible while developing solutions that meet changing cybersecurity and privacy requirements while supporting business function needs. This individual will help grow and mature risk and compliance processes to gain efficiencies and effectiveness in collaboration with all departments to ensure an acceptable risk posture for the organization. This position requires a deep understanding of existing data protection laws and regulations, such as the EU-GDPR and CCPA/CPRA, but also be focused on broader implications of protections as a function of information/system lifecycle management and security and privacy by design. The engineer must possess high standards of legal and business ethics and a demonstrated ability to understand technology, independently problem solve, analyze large quantities of data, and clearly summarize and communicate facts.

Essential Functions
  • Manage GRC and IAM platforms and their associated modules, workflows, integrations, and reporting capabilities.
  • Develop compliance and identity automation to improve business processes, reduce manual effort, and strengthen audit readiness.
  • Investigate AI opportunities to improve GRC, IAM, access review, and compliance functions.
  • Implement APIs and integrations for our GRC and IAM platforms and other enterprise systems to support GRC controls, access governance, evidence collection, and compliance requirements.
  • Collaborate with key business partners on use cases for GRC and IAM platforms, including risk management, compliance workflows, user access reviews, identity lifecycle processes, and access governance.
  • Develop documentation on how to use GRC and IAM platforms, including platform administration, workflow support, integrations, and recurring compliance processes.
  • Train business partners on how to use GRC and IAM platforms effectively and consistently.
  • Interpret and apply laws, regulations, policies, standards, or procedures to specific issues.
  • Work cooperatively with applicable organization units in implanting consumer information access rights.
  • Serve as a liaison for GRC and IAM platforms to the organization.
  • Monitor systems development and operations for security and privacy compliance
Additional Functions
  • Stay current with compliance news and trends relevant to the business and industry.
  • Participate in providing support for compliance-related incidents.
  • Interface with other business units such as Cybersecurity to communicate program status and overall compliance and training posture.
  • Promote a positive security/compliance culture through knowledge sharing, influences, and conduct.
  • Create and maintain role-specific documentation.
  • Assist with our government, risk, and compliance projects as time permits.
Knowledge, Skills, and Abilities
  • Knowledge of Payment Card Industry (PCI) data security standards.
  • Knowledge of Personally Identifiable Information (PII) data security standards.
  • Knowledge of Personal Health Information (PHI) data security standards.
  • Knowledge of Risk Management Framework (RMF) requirements.
  • Knowledge of risk/threat assessment.
  • Knowledge of laws, policies, procedures, or governance relevant to Cybersecurity for critical infrastructures.
  • Knowledge of external organizations and academic institutions with a cyber focus (e.g., cyber curriculum/training and Research & Development).
  • Knowledge of controls related to data use, processing, storage, and transmission.
  • Skill in applying confidentiality, integrity, and availability principles.
  • Skill in conducting information searches.
  • Ability to communicate effectively when writing.
  • Ability to apply critical reading/thinking skills.
  • Interpret and apply laws, regulations, policies, standards, or procedures to specific issues.
  • Provide ongoing optimization and problem-solving support for GRC and IAM platforms, integrations, workflows, and reporting.
  • Provide recommendations for possible improvements and upgrades.
  • Ability to tailor technical and planning information to a customer's level of understanding.
  • Ability to work across departments and business units to implement the organizations privacy principles and programs and align privacy objectives with security objectives.
Qualifications
Education/Experience
  • Bachelor in Information Systems, Cybersecurity, or Business administration
  • 4+ years of relevant experience in Internal Audit, Compliance, or Information Technology
Licenses and Certifications
  • One or more compliance certifications are preferred (e.g., CIPP, CIPM, CIPT, PCIP, QSA, CISA)
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Governance, Risk and Compliance Engineer
Governance, Risk and Compliance Engineer

MillerKnoll • Bengaluru

On-site
INR 2,500,000 - 4,000,000
Sr Engineer, Governance, Risk & Compliance
Sr Engineer, Governance, Risk & Compliance

NextGen Healthcare India • Bengaluru

On-site
INR 1,600,000 - 2,800,000
Information Security and Data Privacy Manager
Information Security and Data Privacy Manager

Tiger Analytics • Chennai District

Hybrid
INR 2,500,000 - 6,000,000
Governance, Risk & Compliance (GRC) Manager
Governance, Risk & Compliance (GRC) Manager

TeamsWork.In • India

On-site
INR 1,500,000 - 2,100,000
IT Compliance and Security Manager
IT Compliance and Security Manager

RGP • Pune District

On-site
INR 900,000 - 1,500,000
Information Security & Compliance Lead
Information Security & Compliance Lead

Infra360 Solutions Pvt. Ltd. • Haryana

On-site
INR 1,000,000 - 1,500,000
Lead Security GRC Analyst
Lead Security GRC Analyst

Providence India • Hyderabad

On-site
INR 2,500,000 - 4,000,000
Senior Manager
Senior Manager

Pellera Technologies • India

On-site
INR 2,500,000 - 4,500,000
Senior GRC Analyst
Senior GRC Analyst

3M HEALTHCARE • Hyderabad

On-site
INR 1,500,000 - 2,200,000
Technical Manager
Technical Manager

Incedo Inc. • Gurugram District

On-site
INR 2,500,000 - 5,000,000