GRC Analyst

IDX™

Vadodara

On-site

INR 900,000 - 1,700,000

Full time

5 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Paid leave 29 days
Festival holidays 10
Family insurance
Accident insurance
Wellness sessions
Rewards & recognition
Volunteer opportunities
Cultural & sporting events

Job summary

IDX is seeking a GRC Analyst to support governance, risk, and compliance initiatives across information security, privacy, AI governance, and regulatory requirements. You will coordinate audits, assess risks, and drive continuous improvement of the governance framework to protect client data and company assets.

The role collaborates with Engineering, Legal, HR, and Product teams to implement security and privacy controls, review vendor risk, and respond to due diligence requests.

Qualifications

  • Understanding of GRC principles and information security basics.
  • Experience with ISO 27001 and related frameworks.
  • Ability to coordinate audits, risk assessments, and compliance programs.
  • Strong written and verbal communication, and cross-functional collaboration.

Responsibilities

  • Support and manage GRC activities to ensure compliance with information security, privacy, AI governance, and regulatory requirements.
  • Coordinate audits, track observations, and drive corrective actions and continual improvement.
  • Review client security questionnaires, RFPs, due diligence requests, and contractual security requirements.
  • Conduct third-party risk assessments and manage cloud, SaaS, and AI vendor risks.
  • Develop and maintain governance policies, procedures, and compliance documentation.
  • Monitor GDPR, UK GDPR, DPDP Act, CCPA/CPRA, and other privacy regulations.

Skills

GRC principles
Information security
Risk management
ISO 27001
Auditing
Policy development
Regulatory compliance
Privacy & data protection
Stakholder management

Education

Bachelor's degree in IT, CS, Cyber Security, or related

Tools

AWS
Google Cloud Platform (GCP)
OCI

Job description

Not Just Any Brands: See your work come to life for iconic brands like Vodafone, Rolls Royce and Diageo.

Collaborative Spirit: Work alongside passionate innovators who share your thirst for progress.

Continuous Learning: Grow your skills with ongoing training, mentorship, and the freedom to experiment.

Fast Paced & Fun: Thrive in a dynamic environment where big ideas and bold action collide.

Cutting-Edge Technology: Play with the latest analytics tools, use AR to build immersive digital events, and explore the future of brand storytelling!

Global Presence: We Get It Done morning, day and night with offices across multiple time-zones!

  • 29 paid annual leave days.
  • 10 Festival holidays (including 1 optional Holiday for your special day through the year).
  • Family Insurance Plan.
  • Accident Insurance Plan.
  • Regular Wellness Sessions.
  • Regular Rewards & Recognition.
  • Opportunity to participate in charity initiatives and volunteering.
  • Opportunity to participate in Cultural and Sporting Events.
The Gig:

The GRC Analyst is responsible for supporting and managing the organization's Governance, Risk, and Compliance (GRC) activities to ensure compliance with information security, privacy, AI governance, and regulatory requirements. The role involves coordinating audits, conducting risk assessments, managing compliance initiatives, responding to client security due diligence, evaluating third-party risks, developing policies and procedures, and driving continuous improvement of the organization's governance framework.

What you'll be doing:
  • Support and maintain the organization's compliance programs, including ISO 27001, ISO 27701, ISO 42001, ISO 9001, and other applicable standards and frameworks.
  • Plan, coordinate, and support internal and external audits, including tracking observations, corrective actions, and continual improvement initiatives.
  • Review and respond to client security questionnaires, RFPs, due diligence requests, and contractual security requirements.
  • Conduct supplier and third-party risk assessments, including cloud services, SaaS platforms, AI tools, and technology vendors.
  • Perform information security, privacy, AI, and business risk assessments, including DPIAs, AI Impact Assessments (AIIAs), and risk register maintenance.
  • Develop, review, and maintain policies, procedures, standards, guidelines, and compliance documentation.
  • Monitor applicable regulatory and industry requirements, including GDPR, UK GDPR, DPDP Act, CCPA/CPRA, and other relevant privacy and security regulations.
  • Collaborate with Engineering, Infrastructure, Product, Legal, HR, Sales, and other business teams to implement security, privacy, and compliance controls.
  • Support governance activities for cloud environments, AI solutions, and emerging technologies.
  • Track compliance metrics, audit evidence, risk treatment plans, and management reports.
  • Identify compliance gaps and recommend practical remediation and process improvement initiatives.
  • Support security awareness and compliance training across the organization.
  • Stay informed of emerging regulatory requirements, industry standards, cybersecurity threats, and best practices.
About you:
  • Good understanding of Governance, Risk, and Compliance (GRC) principles.
  • Knowledge of information security fundamentals and risk management concepts.
  • Understanding of ISO management systems, particularly ISO 27001.
  • Strong analytical and problem-solving skills.
  • Excellent written and verbal communication skills.
  • Strong documentation and report-writing abilities.
  • Ability to manage multiple priorities and work effectively in a cross-functional environment.
  • Good stakeholder management and interpersonal skills.
  • Proficiency in Microsoft Office applications, particularly Excel, Word, and PowerPoint.
Preferred Qualifications
  • Bachelor's degree in information technology, Computer Science, Cyber Security, Information Systems, Business Administration, or a related field.
  • Basic understanding of cloud platforms such as AWS, Google Cloud Platform (GCP), and Oracle Cloud Infrastructure (OCI), including identity and access management, networking, storage, compute, and cloud security concepts.
  • Familiarity with information security frameworks and standards such as ISO 27001, ISO 27701, ISO 42001, SOC 2, NIST Cybersecurity Framework, and CIS Controls.
  • Understanding of privacy regulations such as GDPR, UK GDPR, DPDP Act, CCPA/CPRA, or similar global privacy laws.
  • Knowledge of risk assessments, audit methodologies, supplier risk management, and security governance.
  • Familiarity with AI governance, responsible AI principles, and AI risk management is desirable.
About Us

IDX isn't your average communications company. With over 20 years industry experience and a portfolio of prominent global clients, our award-winning communication solutions are seen by billions every month across a global audience.

We seek The Bold. Shatter expectations, push boundaries - that's the fuel that ignites our powerhouse team. Collaboration is our superpower, where we bring expertise and individuality to elevate and deliver. Rising Stars with boundless hunger, this is your launchpad. Seasoned pros who want to define their Legacy in the industry, this is your home. Be BOLD - Own Your Story at IDX.

An Inclusive Workplace

IDX is an Equal Opportunity Employer. We aim to foster an environment that desires and recruits diverse talent, cultivates a culture that celebrates all identities, life experiences, perspectives, and ensures equal opportunity for all.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Associate Security Operations Specialist
Associate Security Operations Specialist

IDX™ • Vadodara

On-site
INR 700,000 - 1,000,000
29 paid annual leave days
10 Festival holidays
Family Insurance Plan
+5
Associate Cloud Engineer
Associate Cloud Engineer

Investis Digital • Vadodara

On-site
INR 600,000 - 800,000
29 paid annual leave days
10 Festival holidays
Family Insurance Plan
+5
Cloud Engineer (Windows,IIS)
Cloud Engineer (Windows,IIS)

IDX™ • Vadodara

On-site
INR 900,000 - 1,400,000
29 paid annual leave days.
10 Festival holidays.
Family Insurance Plan.
+5
GRC Analyst
GRC Analyst

Cyderes • Bengaluru

Hybrid
INR 1,200,000 - 2,400,000
Medical Insurance
Life Insurance
Retirement Match Program
+6
GRC Lead / Security Compliance Lead
GRC Lead / Security Compliance Lead

Gnani Innovations Private Limited. • India

On-site
INR 350,000 - 600,000
Client Security Executive
Client Security Executive

DigitalXForce Corporation • New Delhi

On-site
INR 3,000,000 - 8,000,000
Senior GRC Analyst
Senior GRC Analyst

Litmos • India

On-site
INR 2,400,000 - 3,200,000
Senior GRC Analyst - 26157
Senior GRC Analyst - 26157

Pearl Street Technologies • Bengaluru

On-site
INR 1,200,000 - 1,800,000
GRC Analyst
GRC Analyst

Demandbase • India

On-site
INR 1,500,000 - 2,500,000
Sr Security GRC & ISO 27001 Manager
Sr Security GRC & ISO 27001 Manager

UST • Thiruvananthapuram

On-site
INR 2,500,000 - 4,000,000