Information Security Engineer - GRC

EDGE Executive Search

Gurugram District

On-site

INR 900,000 - 1,500,000

Full time

6 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

EDGE Executive Search is seeking an Information Security Engineer to join the GRC team. The role focuses on maintaining, maturing, and auditing our information security management framework, with 3–5 years of GRC experience and hands-on ISO 27001 work.

Responsibilities include ISO 27001 management, internal and external audit facilitation, access reviews, exception handling, and security awareness programs to strengthen the organization’s security posture.

Qualifications

  • 3–5 years in an Information Security GRC role.
  • Hands-on ISO 27001 ISMS management and audits.
  • Experience with user access reviews, phishing simulations, and policy exception workflows.

Responsibilities

  • ISMS governance and ISO 27001 management.
  • Lead internal audits and support external certification audits.
  • Manage policy updates and security standards across the org.
  • Oversee access reviews and exception management.
  • Run security awareness programs and phishing simulations.

Skills

InfoSec GRC
ISO 27001
Audit facilitation
Access governance
Phishing simulations
Policy management

Job description

The Company

The company's products and services simplify and connect the post-trade ecosystem across asset classes - from trade processing and portfolio optimization to collateral, risk, and regulatory solutions, the company brings together a deep heritage of market-trusted platforms and are now building the next generation of systems that combine modern architecture, data engineering, and advanced automation at global scale.

The Job

We are seeking a dedicated and collaborative Information Security Engineer to join our growing Governance, Risk, and Compliance (GRC) team. In this role, you will play a pivotal part in maintaining, maturing, and auditing our information security management framework.

The ideal candidate has 3 - 5 years of direct experience within an InfoSec GRC function and thrives in a team-oriented environment. You will be responsible for ensuring our policies remain up-to-date, driving our ISO 27001 certification lifecycle, and executing core compliance operations like user access reviews, exception management, and security awareness programs.

Key Responsibilities
Governance & ISO 27001 Management
  • ISMS Governance: Manage and maintain our ISO 27001 Information Security Management System (ISMS) to ensure continuous compliance.
  • Audit Facilitation: Lead internal security audits and act as a point of contact for external certification audits.
  • Policy Management: Regularly review, update, and draft information security policies, standards, and procedures to align with evolving regulatory landscapes and business needs.
GRC Operations & Risk Management
  • Access Governance: Coordinate and oversee periodic user access reviews across critical systems.
  • Exception Management: Evaluate, log, and monitor security policy exceptions, ensuring compensating controls are effectively implemented and tracked.
  • Risk Culture: Administer the company-wide security awareness training program and orchestrate routine phishing simulations to strengthen our human firewall.
Required Experience & Skills
  • Experience: 3 - 5 years of proven experience specifically within an Information Security GRC role.
  • ISO 27001 Expertise: Hands-on experience managing an ISO 27001 ISMS, including active participation in both internal and external certification audits.
  • Core GRC Competencies: Direct experience executing user access reviews, phishing simulations, security training, and policy exception workflows.
Your Profile
  • Experience: 3 - 5 years of proven experience specifically within an Information Security GRC role.
  • ISO 27001 Expertise: Hands-on experience managing an ISO 27001 ISMS, including active participation in both internal and external certification audits.
  • Core GRC Competencies: Direct experience executing user access reviews, phishing simulations, security training, and policy exception workflows.
Preferred Qualifications (Good to Have)
  • Security Standards Knowledge: Familiarity with major security and compliance frameworks, including:
    • ISO 27001
    • SOC 2
    • NIST CSF
    • CIS v8
    • ISO 42001 (AI)
  • Program Experience: Experience in managing and implementing the following programs and processes:
    • Security Awareness programs and tools.
    • User Access Review processes and tools.
    • Data Loss Prevention (DLP).
  • Documentation: Experience in writing and maintaining policy documents and security standards.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security GRC Analyst
Information Security GRC Analyst

Perydot • Mumbai

On-site
INR 600,000 - 1,000,000
Senior GRC Analyst - 26157
Senior GRC Analyst - 26157

Pearl Street Technologies • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Compliance Analyst
Compliance Analyst

INTECH Creative Services Pvt. Ltd. • Mumbai, Navi Mumbai

On-site
INR 900,000 - 1,500,000
Information Security GRC Manager
Information Security GRC Manager

Mount Talent Consulting • Mumbai

On-site
INR 3,000,000 - 5,000,000
Information Security GRC Manager
Information Security GRC Manager

Mount Talent Consulting Pvt Ltd. • Mumbai

On-site
INR 1,800,000 - 2,400,000
Information Security and Data Privacy Manager
Information Security and Data Privacy Manager

Tiger Analytics • Chennai District

Hybrid
INR 2,500,000 - 6,000,000
Sr. Information Security Engineer (GRC)
Sr. Information Security Engineer (GRC)

Osttra • Gurugram District

On-site
INR 1,800,000 - 2,600,000
The Trust employee ownership plan
Senior GRC Analyst
Senior GRC Analyst

Exotel • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Sr Engineer, Governance, Risk & Compliance
Sr Engineer, Governance, Risk & Compliance

NextGen Healthcare India • Bengaluru

On-site
INR 1,600,000 - 2,800,000
GRC Analyst
GRC Analyst

Exotel • Bengaluru

On-site
INR 800,000 - 1,200,000