GRC /SOC Analyst

Fulcrum Digital

Pune District

Hybrid

INR 800,000 - 1,200,000

Full time

7 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Fulcrum Digital is seeking a detail-oriented GRC Analyst to drive governance, risk management, and compliance initiatives across the organization. You will identify risks, support audits, and strengthen controls to protect assets and reputation.

The role requires 2–5 years in GRC-related functions, knowledge of ISO 27001/NIST/SOC 2, and familiarity with GDPR/HIPAA/PCI-DSS. A hybrid/remote work setup is available where applicable.

Qualifications

  • Bachelor’s degree in Information Security, Cybersecurity, IT, Risk Management, or related field.
  • 2–5 years of experience in GRC, risk management, compliance, or IT audit.
  • Knowledge of security frameworks (ISO 27001, NIST, SOC 2).
  • Understanding of regulatory requirements (GDPR, HIPAA, PCI-DSS).
  • Strong analytical and documentation skills.

Responsibilities

  • Support development and maintenance of security policies, standards, and procedures.
  • Ensure alignment with industry frameworks (ISO 27001, NIST, SOC 2).
  • Assist in risk assessments and maintain risk registers.
  • Monitor compliance with regulatory and industry requirements (GDPR, HIPAA, PCI‑DSS).
  • Prepare risk and compliance reports for management.
  • Maintain documentation of controls and audit artifacts.

Skills

GRC
Risk assessment
Regulatory compliance
Documentation
Audit coordination
Stakeholder management
Policy writing
Communication

Education

Bachelor’s degree in Information Security, Cybersecurity, IT, Risk Management, or related field

Tools

Archer
ServiceNow GRC

Job description

Fulcrum Digital is an agile and next-generation digital accelerating company providing digital transformation and technology services right from ideation to implementation. These services have applicability across a variety of industries, including banking & financial services, insurance, retail, higher education, food, healthcare, and manufacturing.

Job Summary

We are seeking a detail-oriented and analytical GRC Analyst to support the organization’s governance, risk management, and compliance initiatives. The ideal candidate will help identify risks, ensure regulatory compliance, support audit processes, and strengthen internal controls to protect the organization’s assets and reputation.

Key Responsibilities
Governance
  • Support development and maintenance of security policies, standards, and procedures
  • Ensure alignment with industry frameworks (e.g., ISO 27001, NIST, SOC 2)
  • Assist in policy awareness and training initiatives
  • Conduct risk assessments and maintain risk registers
  • Identify, analyze, and document security and operational risks
  • Track remediation plans and risk mitigation efforts
  • Support third-party/vendor risk assessments
Compliance
  • Monitor compliance with regulatory and industry requirements (e.g., GDPR, HIPAA, PCI-DSS as applicable)
  • Assist with internal and external audits
  • Collect and maintain evidence for compliance reporting
  • Coordinate remediation of audit findings
Reporting & Documentation
  • Prepare risk and compliance reports for management
  • Maintain documentation of controls and audit artifacts
  • Track KPIs and KRIs
Required Qualifications
  • Bachelor’s degree in Information Security, Cybersecurity, IT, Risk Management, or related field
  • 2–5 years of experience in GRC, risk management, compliance, or IT audit
  • Knowledge of security frameworks (ISO 27001, NIST, SOC 2, etc.)
  • Understanding of regulatory requirements (GDPR, HIPAA, PCI-DSS, etc.)
  • Strong analytical and documentation skills
Preferred Qualifications
  • Mandatory - Certifications such as CISA, CRISC, CISM, ISO 27001 Lead Implementer/Auditor
  • Experience with GRC tools (e.g., Archer, ServiceNow GRC)
  • Experience working with cloud environments (Azure, AWS, GCP)
  • Knowledge of cybersecurity controls and risk methodologies
Key Skills
  • Risk assessment and analysis
  • Policy and control documentation
  • Audit coordination
  • Strong communication and stakeholder management
  • Ability to work independently and manage multiple priorities
  • Full-time position
  • Hybrid/Remote (as applicable)
  • Cross-functional collaboration with IT, Security, Legal, and Business teams
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC Analyst
GRC Analyst

Soffit Infrastructure Services (P) Ltd • Ernakulam

On-site
INR 800,000 - 1,200,000
Compliance Analyst
Compliance Analyst

ECLAT Health Solutions • Hyderabad

On-site
INR 700,000 - 1,000,000
Senior GRC Analyst
Senior GRC Analyst

3M HEALTHCARE • Hyderabad

On-site
INR 1,500,000 - 2,200,000
Product GRC Consultant
Product GRC Consultant

CyRAACS™ • Bengaluru

On-site
INR 600,000 - 1,200,000
Compliance Analyst
Compliance Analyst

TRDFIN Support Services Pvt Ltd • Gurugram District

On-site
INR 800,000 - 1,000,000
Competitive compensation and benefits
Exposure to technology and financial compliance landscapes
Career growth in GRC and risk management
Lead Security GRC Analyst
Lead Security GRC Analyst

Providence India • Hyderabad

On-site
INR 1,800,000 - 2,400,000
Senior GRC Analyst
Senior GRC Analyst

Litmos • India

On-site
INR 2,400,000 - 3,200,000
GRC Consultant
GRC Consultant

Lonvec Technologies Private Limited • Hyderabad

On-site
INR 1,200,000 - 2,200,000
Manager- GRC
Manager- GRC

CyberCube Services • Gurugram District

On-site
INR 1,500,000 - 2,100,000
Senior GRC Analyst - 26157
Senior GRC Analyst - 26157

Pearl Street Technologies • Bengaluru

On-site
INR 1,200,000 - 1,800,000