Senior Manager – Digital, Cyber Security (GRC)

Tata Consumer Products

Bengaluru

On-site

INR 1,500,000 - 1,900,000

Full time

19 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Tata Consumer Products is seeking a cybersecurity GRC professional to support governance, risk assessments, audits and compliance across the enterprise. The role emphasizes embedding security controls within IT and business processes and driving remediation actions.

Ideal candidates will have hands-on experience with ISO 27001/NIST CSF, strong documentation skills and the ability to coordinate across IT, privacy, and audit teams to ensure timely reporting and action closure.

Qualifications

  • Hands-on experience in cybersecurity governance, risk assessment, compliance coordination and audit support.
  • Knowledge of ISO 27001 and NIST CSF.
  • Ability to maintain trackers and dashboards with accuracy.
  • Strong coordination across IT, cyber, business, audit and privacy teams.
  • Good documentation and reporting skills.
  • Follow-up to drive closure of actions with multiple stakeholders.

Responsibilities

  • Provide timely cybersecurity governance inputs for projects and initiatives.
  • Coordinate risk assessments, audit evidence, compliance reviews and remediation updates.
  • Maintain risk registers and remediation plans.
  • Develop and maintain KPI/KRI dashboards and management reports.
  • Support incident governance activities and post-incident reviews.
  • Stay updated on cybersecurity frameworks and regulatory expectations.

Skills

Cybersecurity governance
Risk assessment
Compliance coordination
Audit support

Tools

GRC tools
Audit management platforms
Security dashboards

Job description

How does this Job align to our Strategy?

This role aligns with TCPL’s strategic pillar of Drive Digital and Innovation and Create Future Ready Organization by supporting cybersecurity governance, risk assessments, compliance tracking and control assurance activities. The role helps improve security maturity, strengthen compliance posture and ensure cybersecurity requirements are consistently embedded across business and technology processes.

This role operates as a cybersecurity GRC (Governance, Risk & Compliance) execution role responsible for supporting governance activities, conducting risk and control assessments, coordinating audits, tracking remediation actions and maintaining cybersecurity reporting across the enterprise.

What are the Key Deliverables in this role?
  • Support cost-effective cybersecurity governance by tracking risks, control gaps and remediation actions.
  • Help reduce business exposure from cyber risks, audit observations, non-compliance and third-party control weaknesses.
  • Support prioritization of remediation activities based on risk severity, business impact and compliance requirements.
Customer Service
  • Support business and technology teams by providing timely cybersecurity governance inputs for projects and initiatives.
  • Coordinate with stakeholders for risk assessments, audit evidence, compliance reviews and remediation updates.
  • Enable consistent cybersecurity practices across functions by supporting awareness, governance reporting and control reviews.
Internal Processes
  • Support implementation and maintenance of cybersecurity policies, standards, procedures and governance documentation.
  • Conduct cyber risk assessments, maintain risk registers and track remediation plans.
  • Support risk treatment, risk acceptance documentation and periodic risk reporting.
  • Perform control assessments and gap assessments against ISO 27001, NIST CSF and internal security requirements.
  • Support cybersecurity maturity assessments and monitor closure of improvement actions.
  • Develop and maintain cybersecurity KPI/KRI dashboards, trackers and management reports.
  • Coordinate evidence collection for internal audits, external audits, compliance reviews and regulatory assessments.
  • Track audit observations, action plans and closure status.
  • Support third-party cybersecurity assessments and follow up on vendor remediation actions.
  • Support governance reviews across IAM, vulnerability management, endpoint security, cloud security, application security, data protection and security operations.
  • Assist in incident governance activities, post-incident reviews and corrective action tracking.
  • Support privacy, business continuity, disaster recovery, cyber resilience
Innovation and Learning
  • Contribute to continuous improvement of cybersecurity governance processes, dashboards and reporting templates.
  • Support automation and standardization of GRC trackers, evidence repositories and compliance reporting.
  • Stay updated on cybersecurity frameworks, regulatory expectations and emerging risk areas.
  • Support awareness campaigns, training initiatives and security culture-building activities
What are the Critical success factors for the Role?
  • Hands-on experience in cybersecurity governance, risk assessment, compliance coordination and audit support.
  • Working knowledge of ISO 27001, NIST CSF, cyber risk management and enterprise security controls.
  • Ability to maintain trackers, dashboards, risk registers and audit action plans with accuracy.
  • Strong coordination skills across IT, cyber, business, audit, privacy and third-party stakeholders.
  • Good analytical skills to identify control gaps, risk themes and remediation priorities.
  • Strong documentation and reporting skills.
  • Ability to follow up effectively and drive closure of actions with multiple stakeholders.

Mandatory Language Requirements (spoken), if any: English

What are the Desirable success factors for the Role?
  • Experience in third-party risk assessments, privacy compliance, business continuity, cyber resilience or AI Governance support.
  • Exposure to GRC tools, security dashboards, audit management platforms or compliance automation.
  • Certifications such as ISO 27001 Foundation / Internal Auditor, Security+, CISA, CRISC Foundation or equivalent preferred.
  • Experience in a multi-function enterprise environment would be an advantage.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Manager - Digital, Cyber Security
Senior Manager - Digital, Cyber Security

Tataconsumer • Bengaluru

On-site
INR 2,500,000 - 4,200,000
Senior Security GRC & ISO 27001 Manager
Senior Security GRC & ISO 27001 Manager

UST • Thiruvananthapuram

On-site
INR 1,500,000 - 2,100,000
Senior Security GRC & ISO 27001 Specialist
Senior Security GRC & ISO 27001 Specialist

UST • Ernakulam

On-site
INR 2,800,000 - 4,200,000
Technical Manager
Technical Manager

Incedo Inc. • Gurugram District

On-site
INR 2,500,000 - 5,000,000
Lead -Governance, Risk and Compliance (GRC)
Lead -Governance, Risk and Compliance (GRC)

ARCON • Mumbai

On-site
INR 1,500,000 - 2,500,000
Senior Analyst GRC (Cyber Security)
Senior Analyst GRC (Cyber Security)

Qtsolv • Hyderabad

On-site
INR 1,200,000 - 2,000,000
T&T | Cyber- CST | Manager | Delhi | TPRM
T&T | Cyber- CST | Manager | Delhi | TPRM

Deloitte & Touche GmbH Wirtschaftsprüfungsgesellschaft • Delhi

On-site
INR 2,500,000 - 4,000,000
Lead Security GRC Analyst
Lead Security GRC Analyst

Providence India • Hyderabad

On-site
INR 1,800,000 - 2,400,000
Security Analyst - IT GRC & Audit (CSCRF)
Security Analyst - IT GRC & Audit (CSCRF)

Kotak Alternate Asset Managers Limited • Mumbai

On-site
INR 3,000,000 - 5,500,000
GRC /SOC Analyst
GRC /SOC Analyst

fulcrumdigital • Pune District

Hybrid
INR 600,000 - 900,000