GRC Engineer

Indian Institute of Technology Delhi (IIT Delhi)

Hyderabad

On-site

INR 1,000,000 - 1,500,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

The Indian Institute of Technology Delhi (IIT Delhi) is seeking a high-energy, results-oriented GRC professional. The ideal candidate should have 6 to 10 years of experience and will work closely with the CISO's office, contributing to internal audits and critical projects.

Key responsibilities include executing security assessments, managing internal audits, and driving risk management initiatives. The position requires mandatory certification like CISA or ISO 27001 Lead Auditor.

Qualifications

  • 6 to 10 years of experience in IT and GRC functions.
  • Experience in internal audits, consulting, and cybersecurity risk advisory.
  • Deep understanding of information security principles and compliance frameworks.

Responsibilities

  • Serve as a subject matter expert on GRC services and solutions.
  • Execute security assessments aligned with regulatory requirements.
  • Manage and perform internal audits as per CISOs directives.

Skills

Governance, Risk, and Compliance (GRC)
Information security principles
Cybersecurity risk advisory
IT compliance frameworks
Communication skills
Stakeholder engagement

Education

CISA or ISO 27001 Lead Auditor certification

Tools

Vulnerability scanners
Code review platforms

Job description

Description: We are looking for a high-energy, results-oriented GRC professional with 6 to 10 years of experience, combining expertise in IT and Governance, Risk, and Compliance (GRC). The candidate will report directly to the CISOs office and contribute to internal audits and projects executed under CISOs instructions.

Key Responsibilities
  • Serve as a subject matter expert on information and cybersecurity governance, risk, and compliance (GRC) services and solutions.
  • Execute security assessments of on-premise/cloud IT environments aligned with business objectives and regulatory requirements.
  • Conduct testing and validation of IT security controls, documenting findings and preparing detailed reports.
  • Manage and perform internal audits as per the CISOs directives, contributing to risk posture improvements and present the metrics to the CISO on a regular basis.
  • Apply knowledge of the Digital Personal Data Protection Act, 2023, and other global data protection laws.
  • Utilize and manage GRC tools and platforms.
  • Conduct security control assessments for web/mobile applications and enterprise systems.
  • Drive third-party risk management and support client-facing initiatives.
  • Deliver complex GRC projects in dynamic, fast-paced environments.
  • Engage in knowledge-sharing forums to strengthen team capabilities.
  • Continuously enhance the cybersecurity strategy based on evolving threats and technologies.
Mandatory Certification
  • Must possess CISA or ISO 27001 Lead Auditor certification.
Additional Certifications Preferred
  • ISO 27001 Lead Implementer
  • CISSP, CIPP, CCSK, or CCSP
  • Public Cloud certifications (AWS, Azure, GCP)
Qualifications & Experience
  • 6 to 10 years of total experience with proven exposure to both IT and GRC functions.
  • Experience in internal audits, consulting, and cybersecurity risk advisory.
  • Deep understanding of information security principles and compliance frameworks.
  • Strong understanding of the IT topology and application development principles
  • Hands-on experience with security tools (e.g., vulnerability scanners, code review platforms).
  • Strong exposure to IT/cybersecurity standards : ISO 27001/27005, NIST CSF, PCI DSS, SOC 1/2, GDPR, COBIT.
  • Excellent communication skills, documentation abilities, and stakeholder engagement.
  • Experience in program and project management within cybersecurity initiatives.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Technical Manager
Technical Manager

Incedo Inc. • Gurugram District

On-site
INR 2,500,000 - 5,000,000
Senior Information Security Analyst
Senior Information Security Analyst

Quantiphi • Bengaluru Urban

On-site
INR 900,000 - 1,500,000
GRC Manager - Cyber
GRC Manager - Cyber

Cubical Operations LLP • Chennai District

On-site
INR 800,000 - 1,200,000
GRC Consultant
GRC Consultant

Lonvec Technologies Private Limited • Hyderabad

On-site
INR 1,200,000 - 2,200,000
Product GRC Consultant
Product GRC Consultant

CyRAACS™ • Bengaluru

On-site
INR 600,000 - 1,200,000
Cybersecurity Lead - Governance, Risk & Compliance
Cybersecurity Lead - Governance, Risk & Compliance

Scybers Inc • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Opportunities for professional development
Flexible work arrangements
Supportive team culture
Lead Security GRC Analyst
Lead Security GRC Analyst

Providence India • Hyderabad

On-site
INR 2,500,000 - 4,000,000
Cybersecurity Lead - Governance, Risk & Compliance
Cybersecurity Lead - Governance, Risk & Compliance

Scybers • Bengaluru

On-site
INR 1,000,000 - 1,500,000
Career Growth opportunities
Innovative Environment
Flexible work arrangements
Senior Governance Risk & Compliance (GRC) Solution Architect
Senior Governance Risk & Compliance (GRC) Solution Architect

Zensar Technologies • Maharashtra

On-site
INR 2,500,000 - 4,500,000
Senior GRC Analyst
Senior GRC Analyst

3M HEALTHCARE • Hyderabad

On-site
INR 1,500,000 - 2,200,000