Lead Security GRC Analyst

Providence India

Hyderabad

On-site

INR 2,500,000 - 4,000,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Providence India in Hyderabad is seeking a Lead Cybersecurity Compliance Management Analyst to drive the organization’s compliance program across HIPAA, NIST, ISO, PCI-DSS and SOX, coordinating with Cyber Engineering, GRC, Risk, Internal Audit and Privacy teams.

You will own control testing, evidence validation, audit support, remediation tracking, and dashboards to ensure audit readiness and regulatory adherence, with a focus on process improvement and automation using ServiceNow GRC.

Qualifications

  • 6–9 years in cybersecurity compliance, GRC, risk management, or audit support roles.
  • Working knowledge of frameworks such as HIPAA, NIST, ISO, PCI, CIS.
  • Experience with compliance assessments, audits, and control testing.
  • Familiarity with GRC tools (ServiceNow GRC preferred).
  • Strong analytical and documentation skills.

Responsibilities

  • Execute cybersecurity compliance activities aligned to HIPAA, NIST CSF, NIST 800-53, ISO 27001, CIS Benchmarks, PCI-DSS, and SOX.
  • Support periodic compliance assessments across applications, infrastructure, cloud, and security platforms.
  • Interpret regulatory requirements and map them to controls.
  • Maintain compliance trackers and posture dashboards.
  • Support control documentation, walkthroughs, testing, and evidence validation.
  • Perform control effectiveness testing and maturity assessments.
  • Identify control gaps and support remediation planning.
  • Track remediation progress and validate closure.
  • Support maintenance of cybersecurity policies and standards.
  • Ensure alignment with regulatory requirements and industry frameworks.
  • Support compliance governance forums and exception tracking.
  • Maintain control libraries and documentation repositories.
  • Support internal and external audits and regulatory examinations.
  • Collect, validate, and manage audit evidence.
  • Track audit findings, management action plans, and closure status.
  • Coordinate with stakeholders for timely audit responses.
  • Maintain compliance metrics, dashboards, and status reporting.
  • Analyze trends in findings and recurring issues.
  • Support process improvement and automation initiatives.
  • Leverage GRC tools such as ServiceNow GRC.

Skills

experience in cybersecurity compliance
regulatory frameworks
audits and control testing
GRC tools (ServiceNow GRC)
analytical and documentation skills

Tools

ServiceNow GRC

Job description

Job Description – Lead Cybersecurity Compliance Management Analyst Role Summary

The Lead Cybersecurity Compliance Management Analyst supports the execution and ongoing operation of the organization’s cybersecurity compliance program. This role is responsible for performing compliance assessments, control testing, evidence management, audit support, and remediation tracking across cybersecurity domains. The analyst partners closely with Cyber Engineering, GRC, Risk Management, Internal Audit, Privacy, and IT teams to maintain audit readiness and regulatory compliance.

Cybersecurity Compliance Execution
  • Execute cybersecurity compliance activities aligned to frameworks such as HIPAA, NIST CSF, NIST 800-53, ISO 27001, CIS Benchmarks, PCI-DSS, and SOX.
  • Support periodic compliance assessments across applications, infrastructure, cloud, and security platforms.
  • Interpret regulatory and security requirements and map them to applicable controls.
  • Maintain compliance trackers and posture dashboards.
Control Assurance & Testing
  • Support control documentation, walkthroughs, testing, and evidence validation.
  • Perform control effectiveness testing and maturity assessments.
  • Identify control gaps and support remediation planning.
  • Track remediation progress and validate closure.
Policy, Standards & Governance Support
  • Support maintenance and periodic review of cybersecurity policies and standards.
  • Ensure alignment with regulatory requirements and industry frameworks.
  • Support compliance governance forums and exception tracking.
  • Maintain control libraries and documentation repositories.
Audit & Regulatory Support
  • Support internal and external audits and regulatory examinations.
  • Collect, validate, and manage audit evidence.
  • Track audit findings, management action plans, and closure status.
  • Coordinate with stakeholders for timely audit responses.
Reporting & Continuous Improvement
  • Maintain compliance metrics, dashboards, and status reporting.
  • Analyze trends in findings and recurring issues.
  • Support process improvement and automation initiatives.
  • Leverage GRC tools such as ServiceNow GRC.
Required Skills & Experience
  • 6~9 years of experience in cybersecurity compliance, GRC, risk management, or audit support roles.
  • Working knowledge of frameworks such as HIPAA, NIST, ISO, PCI, and CIS.
  • Experience with compliance assessments, audits, and control testing.
  • Familiarity with GRC tools (ServiceNow GRC preferred).
  • Strong analytical and documentation skills.
Preferred Qualifications
  • Experience in healthcare or other regulated industries.
  • Exposure to policy lifecycle management and control frameworks.
  • Certifications or progress toward CISA, CRISC, CISM, CISSP, or ISO 27001.
Behavioral & Professional Competencies
  • Strong attention to detail and audit discipline.
  • Ability to translate regulatory requirements into actionable controls.
  • Strong written and verbal communication skills.
  • Collaborative and continuous improvement mindset.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC Analyst
GRC Analyst

Exxat • Bengaluru

On-site
INR 1,100,000 - 1,800,000
Senior GRC Analyst
Senior GRC Analyst

3M HEALTHCARE • Hyderabad

On-site
INR 1,500,000 - 2,200,000
Cybersecurity Lead - Governance, Risk & Compliance
Cybersecurity Lead - Governance, Risk & Compliance

Scybers Inc • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Opportunities for professional development
Flexible work arrangements
Supportive team culture
Cybersecurity Lead - Governance, Risk & Compliance
Cybersecurity Lead - Governance, Risk & Compliance

Scybers • Bengaluru

On-site
INR 1,000,000 - 1,500,000
Career Growth opportunities
Innovative Environment
Flexible work arrangements
Senior Information Security Analyst
Senior Information Security Analyst

Quantiphi • Bengaluru Urban

On-site
INR 900,000 - 1,500,000
GRC Engineer
GRC Engineer

Indian Institute of Technology Delhi (IIT Delhi) • Hyderabad

On-site
INR 1,000,000 - 1,500,000
Product GRC Consultant
Product GRC Consultant

CyRAACS™ • Bengaluru

On-site
INR 600,000 - 1,200,000
Cybersecurity GRC Analyst
Cybersecurity GRC Analyst

Power Bridge • Bengaluru

On-site
INR 1,800,000 - 2,800,000
Health insurance
Professional development
Career advancement
Security Analyst - IT GRC & Audit (CSCRF)
Security Analyst - IT GRC & Audit (CSCRF)

Kotak Alternate Asset Managers Limited • Mumbai

On-site
INR 3,000,000 - 5,500,000
Technical Manager
Technical Manager

Incedo Inc. • Gurugram District

On-site
INR 2,500,000 - 5,000,000