GRC Specialist – Third-Party Risk Management

LogicHive®

Bengaluru

On-site

INR 600,000 - 800,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

A technology firm in Bengaluru is seeking a skilled GRC Specialist to oversee governance, risk, compliance, and third-party risk management efforts. The ideal candidate should have a bachelor's degree and 2–3 years of experience in GRC roles. Responsibilities include developing GRC policies, leading vendor risk assessments, and ensuring compliance with regulatory frameworks such as ISO 27001 and GDPR. This is a full-time position aimed at mid-senior level professionals with a strong emphasis on analytical and communication skills.

Qualifications

  • 2–3 years of direct experience in GRC roles, particularly in Third-Party Risk Management.
  • Strong analytical skills for risk identification and treatment.
  • Excellent verbal and written communication skills.

Responsibilities

  • Develop and manage organization-wide GRC policies and controls.
  • Lead Third-Party Risk Management lifecycle and vendor assessments.
  • Perform risk assessments of external vendors and maintain vendor risk registers.

Skills

Regulatory frameworks understanding
Analytical skills
Communication skills
Vendor relationship management

Education

Bachelor’s degree in Information Security, Risk Management, or Law

Job description

GRC Specialist – Third-Party Risk Management

We are seeking an experienced GRC Specialist to drive governance, risk, compliance, and third-party risk management initiatives in our organization. The ideal candidate will possess deep expertise in regulatory compliance (ISO 27001, GDPR, Indian privacy laws), risk assessment frameworks, and hands‑on experience in managing third‑party/vendor risk programs.

Key Responsibilities
  • Develop, implement, and manage organization‑wide GRC policies, processes, and controls in alignment with legal industry standards.
  • Lead Third‑Party Risk Management (TPRM) lifecycle, including vendor assessments, onboarding, monitoring, and due diligence.
  • Perform risk assessments of external vendors/partners, identifying, quantifying, and mitigating risks in data privacy, cybersecurity, and regulatory compliance.
  • Maintain and update vendor risk register; ensure effective risk tracking and regular reporting to leadership.
  • Create and manage GRC dashboards, metrics, and executive reports.
  • Collaborate with procurement, legal, and IT teams to enforce TPRM and GRC requirements throughout the vendor lifecycle.
  • Conduct periodic compliance audits, risk reviews, and policy updates.
  • Develop educational programs to raise GRC awareness across the organization.
  • Monitor changes in regulatory requirements and ensure timely policy alignment and implementation.
  • Support incident response actions involving vendors and ensure regulatory reporting where required.
Required Skills and Qualifications
  • Bachelor’s degree in Information Security, Risk Management, or Law (preferred).
  • 2–3 years of direct experience working in GRC roles, specifically in Third‑Party Risk Management.
  • Solid understanding of regulatory frameworks: ISO 27001, GDPR, HIPAA, Indian IT Act, or similar compliance standards.
  • Strong analytical skills in risk identification, quantification, and treatment.
  • Excellent verbal and written communication skills for policy documentation, reporting, and cross‑functional collaboration.
  • Demonstrated ability to manage multiple vendor relationships and drive risk mitigation strategies.
  • Familiarity with legal industry compliance requirements is advantageous.
Preferred Certifications

None specified.

Seniority Level

Mid‑Senior level

Employment Type

Full‑time

Job Function

Finance and Sales

Referrals increase your chances of interviewing at LogicHive® by 2x.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Jr. GRC Engineer
Jr. GRC Engineer

Neurealm • Chennai District

On-site
INR 700,000 - 1,100,000
Specialist – Governance Risk Compliance
Specialist – Governance Risk Compliance

Cubical Operations LLP • Mumbai, Pune District, Gurugram District, Bengaluru

On-site
INR 800,000 - 1,200,000
Jr. GRC Engineer
Jr. GRC Engineer

GAVS Technologies N.A., Inc • Chennai District

On-site
INR 900,000 - 1,500,000
Third-Party Risk Analyst
Third-Party Risk Analyst

Simfluent • Dadri

On-site
INR 600,000 - 900,000
Third-Party Risk Analyst
Third-Party Risk Analyst

Simfluent • India

On-site
INR 1,200,000 - 2,000,000
GRC – Information Security Third‑Party Risk Assessment Specialist
GRC – Information Security Third‑Party Risk Assessment Specialist

Soffit Infrastructure Services (P) Ltd • Gurugram District

On-site
INR 1,200,000 - 2,100,000
GRC - Security Analyst
GRC - Security Analyst

Jobgether • India

On-site
INR 1,200,000 - 1,800,000
Fully remote in India
Full-time employment
Exposure to multiple security framesk—
+2
Senior Manager – GRC
Senior Manager – GRC

ITHR Technologies Consulting LLC • Delhi

On-site
INR 4,000,000 - 7,000,000
Process Specialist - Third Party Risk Management - 3+ Years - Gurgaon
Process Specialist - Third Party Risk Management - 3+ Years - Gurgaon

Crescendo Global Leadership Hiring India • Gurugram District

On-site
INR 900,000 - 1,300,000
GRC Manager - Cyber
GRC Manager - Cyber

Cubical Operations LLP • Chennai District

On-site
INR 800,000 - 1,200,000