GRC Analyst

IDX™

Vadodara

On-site

INR 900,000 - 1,300,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Family Insurance Plan
Accident Insurance Plan
Wellness Sessions
Rewards & Recognition
Charity & volunteering opportunities

Job summary

IDX is seeking a GRC Analyst to drive governance, risk, and compliance activities. You will coordinate audits, assess third‑party risks, and develop policies across ISO standards while collaborating with engineering, legal, and product teams.

The role focuses on privacy, information security, and AI governance, with opportunities to engage in continuous improvement and security training within a dynamic, global environment.

Qualifications

  • Understanding of governance, risk and compliance (GRC) principles.
  • Knowledge of information security fundamentals and risk management concepts.
  • Familiarity with ISO management systems, particularly ISO 27001.
  • Strong analytical and problem-solving skills.
  • Excellent written and verbal communication.

Responsibilities

  • Support and maintain the organization's compliance programs (ISO 27001, 27701, 42001, 9001).
  • Coordinate internal and external audits, track observations and corrective actions.
  • Review client security questionnaires, RFPs, due diligence requests, and contractual security requirements.
  • Conduct supplier and third-party risk assessments, including cloud services and AI tools.
  • Perform information security, privacy, AI, and business risk assessments (DPIAs, AIIAs).
  • Develop, review, and maintain policies, procedures and standards.
  • Monitor regulatory requirements (GDPR, UK GDPR, DPDP Act, CCPA/CPRA).
  • Collaborate across Engineering, Legal, HR, Sales, and Product to implement controls.
  • Support security governance for cloud environments and emerging technologies.
  • Track compliance metrics, audit evidence, and risk treatment plans.
  • Identify gaps and drive remediation and process improvements.
  • Support security awareness and training across the organization.

Skills

GRC principles
Information security concepts
Risk management concepts
Cross-functional collaboration
Documentation & reporting

Education

Bachelor's degree in IT / CS / Cyber Security / Information Systems / Business Administration

Tools

AWS
Google Cloud Platform
OCI (Oracle Cloud Infrastructure)
Excel
PowerPoint

Job description

Not Just Any Brands:

See your work come to life for iconic brands like Vodafone, Rolls Royce and Diageo.

Collaborative Spirit:

Work alongside passionate innovators who share your thirst for progress.

Continuous Learning:

Grow your skills with ongoing training, mentorship, and the freedom to experiment.

Fast Paced & Fun:

Thrive in a dynamic environment where big ideas and bold action collide.

Cutting-Edge Technology:

Play with the latest analytics tools, use AR to build immersive digital events, and explore the future of brand storytelling!

Global Presence:

We Get It Done morning, day and night with offices across multiple time-zones!

  • 29 paid annual leave days.
  • 10 Festival holidays (including 1 optional Holiday for your special day through the year).
  • Family Insurance Plan.
  • Accident Insurance Plan.
  • Regular Wellness Sessions.
  • Regular Rewards & Recognition.
  • Opportunity to participate in charity initiatives and volunteering.
  • Opportunity to participate in Cultural and Sporting Events.
The Gig:

The GRC Analyst is responsible for supporting and managing the organization's Governance, Risk, and Compliance (GRC) activities to ensure compliance with information security, privacy, AI governance, and regulatory requirements. The role involves coordinating audits, conducting risk assessments, managing compliance initiatives, responding to client security due diligence, evaluating third-party risks, developing policies and procedures, and driving continuous improvement of the organization's governance framework.

What you'll be doing:
  • Support and maintain the organization's compliance programs, including ISO 27001, ISO 27701, ISO 42001, ISO 9001, and other applicable standards and frameworks.
  • Plan, coordinate, and support internal and external audits, including tracking observations, corrective actions, and continual improvement initiatives.
  • Review and respond to client security questionnaires, RFPs, due diligence requests, and contractual security requirements.
  • Conduct supplier and third-party risk assessments, including cloud services, SaaS platforms, AI tools, and technology vendors.
  • Perform information security, privacy, AI, and business risk assessments, including DPIAs, AI Impact Assessments (AIIAs), and risk register maintenance.
  • Develop, review, and maintain policies, procedures, standards, guidelines, and compliance documentation.
  • Monitor applicable regulatory and industry requirements, including GDPR, UK GDPR, DPDP Act, CCPA/CPRA, and other relevant privacy and security regulations.
  • Collaborate with Engineering, Infrastructure, Product, Legal, HR, Sales, and other business teams to implement security, privacy, and compliance controls.
  • Support governance activities for cloud environments, AI solutions, and emerging technologies.
  • Track compliance metrics, audit evidence, risk treatment plans, and management reports.
  • Identify compliance gaps and recommend practical remediation and process improvement initiatives.
  • Support security awareness and compliance training across the organization.
  • Stay informed of emerging regulatory requirements, industry standards, cybersecurity threats, and best practices.
About you:
  • Good understanding of Governance, Risk, and Compliance (GRC) principles.
  • Knowledge of information security fundamentals and risk management concepts.
  • Understanding of ISO management systems, particularly ISO 27001.
  • Strong analytical and problem-solving skills.
  • Excellent written and verbal communication skills.
  • Strong documentation and report-writing abilities.
  • Ability to manage multiple priorities and work effectively in a cross-functional environment.
  • Good stakeholder management and interpersonal skills.
  • Proficiency in Microsoft Office applications, particularly Excel, Word, and PowerPoint.
Preferred Qualifications
  • Bachelor's degree in information technology, Computer Science, Cyber Security, Information Systems, Business Administration, or a related field.
  • Basic understanding of cloud platforms such as AWS, Google Cloud Platform (GCP), and Oracle Cloud Infrastructure (OCI), including identity and access management, networking, storage, compute, and cloud security concepts.
  • Familiarity with information security frameworks and standards such as ISO 27001, ISO 27701, ISO 42001, SOC 2, NIST Cybersecurity Framework, and CIS Controls.
  • Understanding of privacy regulations such as GDPR, UK GDPR, DPDP Act, CCPA/CPRA, or similar global privacy laws.
  • Knowledge of risk assessments, audit methodologies, supplier risk management, and security governance.
  • Familiarity with AI governance, responsible AI principles, and AI risk management is desirable.
About Us

IDX isn't your average communications company. With over 20 years industry experience and a portfolio of prominent global clients, our award-winning communication solutions are seen by billions every month across a global audience.

We seek The Bold. Shatter expectations, push boundaries - that's the fuel that ignites our powerhouse team. Collaboration is our superpower, where we bring expertise and individuality to elevate and deliver. Rising Stars with boundless hunger, this is your launchpad. Seasoned pros who want to define their Legacy in the industry, this is your home. Be BOLD - Own Your Story at IDX.

An Inclusive Workplace

IDX is an Equal Opportunity Employer. We aim to foster an environment that desires and recruits diverse talent, cultivates a culture that celebrates all identities, life experiences, perspectives, and ensures equal opportunity for all.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Associate Security Operations Specialist
Associate Security Operations Specialist

IDX™ • Vadodara

On-site
INR 700,000 - 1,000,000
29 paid annual leave days
10 Festival holidays
Family Insurance Plan
+5
Associate Cloud Engineer
Associate Cloud Engineer

IDX • Vadodara

On-site
INR 600,000 - 1,200,000
29 paid annual leave days
10 Festival holidays
Family Insurance Plan
+5
Associate Cloud Engineer
Associate Cloud Engineer

Investis Digital • Vadodara

On-site
INR 600,000 - 800,000
29 paid annual leave days
10 Festival holidays
Family Insurance Plan
+5
GRC Analyst
GRC Analyst

Cyderes • Bengaluru

Hybrid
INR 1,200,000 - 2,400,000
Medical Insurance
Life Insurance
Retirement Match Program
+6
Full Stack Engineer - .NET Core
Full Stack Engineer - .NET Core

IDX™ • Vadodara

On-site
INR 1,200,000 - 2,400,000
29 paid annual leave days
10 Festival holidays (including 1 for-
Family Insurance Plan
+5
GRC Lead / Security Compliance Lead
GRC Lead / Security Compliance Lead

Gnani Innovations Private Limited. • India

On-site
INR 350,000 - 600,000
Senior Security & Compliance Analyst
Senior Security & Compliance Analyst

Energy Exemplar • Pune District

Hybrid
INR 1,200,000 - 1,800,000
Cybersecurity GRC Analyst
Cybersecurity GRC Analyst

Power Bridge • Bengaluru

On-site
INR 1,800,000 - 2,800,000
Health insurance
Professional development
Career advancement
Senior GRC Analyst - 26157
Senior GRC Analyst - 26157

Pearl Street Technologies • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Client Security Executive
Client Security Executive

DigitalXForce Corporation • New Delhi

On-site
INR 3,000,000 - 8,000,000