Sr Cybersecurity GRC Analyst

McCormick & Company, Incorporated

Gurugram District

On-site

INR 1,800,000 - 2,600,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

McCormick & Company, Gurgaon, is seeking a Cyber Security GRC Analyst for a Hybrid (50/50) role. You will coordinate IT SOX activities and support IT audits across the organization, engaging with SMEs to mature controls and mitigate risk.

The ideal candidate has 8–11 years in internal/external audit, SOX, IT controls, and SAP expertise, with strong communication and project management skills for collaboration across global teams.

Qualifications

  • Bachelor’s degree or equivalent in IT/IS/Risk/Accounting.
  • 8–11 years of experience in internal/external audit, IT, or internal controls.
  • Knowledge of IT, operational, and business processes.
  • Understanding of core IT general control processes (Access/Change Management, SDLC, Information Security, IT Operations).
  • Familiarity with frameworks such as NIST and COBIT; SAP-focused IT controls.

Responsibilities

  • Coordinate Global IT SOX processes across regions and segments, including IT general controls and application controls.
  • Coordinate SOX testing, remediation activities, and training for IT staff; interact with external auditors.
  • Perform SOX testing, data analytics, and audit objectives to support findings.
  • Monitor corrective action plans and report status to management.
  • Draft clear audit reports communicating insights to stakeholders; work with SMEs to mature security controls.

Skills

SOX compliance
SAP expertise
IT general controls
NIST/COBIT
Data analytics
Information security
Windows/SQL/HANA
Project management

Education

Bachelor’s degree in IT/IS/Risk/Accounting

Tools

HANA
Windows
SQL

Job description

Select how often (in days) to receive an alert:

You may know McCormick as a leader in herbs, spices, seasonings, and condiments – and we’re only getting started. At McCormick, we’re always looking for new people to bring their unique flavor to our team.

McCormick employees – all 14,000 of us across the world – are what makes this company a great place to work.

We are looking to hire a Cyber Security GRC Analyst in a Hybrid (50/50) capacity at our Gurgaon office.

Position Overview:

The Cybersecurity GRC Analyst is a key member of the Cybersecurity Governance, Risk, and Compliance team and will report to the Senior Manager, Cybersecurity Governance, Risk & Compliance. This position will be responsible for coordinating Sarbanes Oxley compliance activities for McCormick’s systems across the organization as well as supporting the execution of and response to IT audits. The ideal candidate has a strong work ethic along with strong organizational, project management, and problem-solving skills. Additional key qualities include the ability to work with others to drive results. This position requires excellent verbal and written communication skills spanning across all levels of management. Candidates must thrive in a demanding, fast-paced work environment that is energetic, driven, and team-oriented. This role will also work with SMEs across the organization to mature/design security controls & mitigate risk.

Key Responsibilities

  • Assist in coordinating Global IT SOX process across all regions and segments including on-going evaluation of proposed changes to McCormick’s internal controls over financial reporting including IT general controls as well as application controls; annual SOX scoping to determine the “coverage” of tested IT SOX controls; coordination of quarterly SOX controls testing and certifications; coordination of remediation activities (as required); developing training materials and providing training to McCormick IT team members with respect to SOX controls and performance; and coordinating with McCormick’s external auditors with respect to their SOX audit procedures. Monitor the performance of the key McCormick compliance program components and related activities on a continuing basis and reporting to management as appropriate.
  • Support McCormick IT transformational projects, internal IT projects, and ad hoc internal control requests from partners across the Globe. Understand Internal Audit processes related to planning, testing, and reporting for both SOX and Audit projects. Perform testing activities related to SOX compliance, key audit objectives, data analytics, etc.
  • Report against in progress corrective action plans for resolution of problematic issues and provide management with summary information on the status of the portfolio of corrective action plan. Discuss audit and control issues with management; support efforts in formulating recommendations for process improvements during financial & operational audits and control gap remediation identified during SOX testing.
  • Ability to execute a detailed audit plan and identify risk areas, develop action plans, and monitor completion.
  • Draft clear, concise audit reports that communicate key insights and observations to functional/business personnel and executive leadership.
  • Demonstrate effective teaming skills with the ability to work independently as needed; leading initiation, execution, and completion to finalization and reporting for key work tasks.

Desired Candidate Profile:

  • Bachelor’s degree in Information Technology, Information Systems, Risk Management, Accounting or similar.
  • 8-11 years of experience related to internal/external audit, information technology, or internal controls.
  • Internal/External Audit, Sarbanes-Oxley, or other internal control (IT or operational) project experiences.
  • Knowledge of IT, operational, and business processes.
  • Knowledge of operating systems and database technologies (e.g., HANA, Windows, SQL), with a focus on SAP expertise and experience.
  • Understanding of core IT general control processes (e.g., Access and Change Management, System Development Lifecycle, Information Security, IT Operations, etc.), automated control processes, and overall reporting to management.
  • Familiarity with common technology, project management, and control assessment frameworks (e.g., NIST, COBIT).

McCormick & Company is an equal opportunity/affirmative action employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected veteran status, age, or any other characteristic protected by law.

As a general policy, McCormick does not offer employment visa sponsorships upon hire or in the future.

WHY WORK AT MCCORMICK?

As a McCormick employee you’ll be empowered to focus on more than your individual responsibilities. You’ll have the opportunity to be part of something bigger than yourself—to have a say in where the company is going and how it’s growing.

Between our passion for flavor, our 130-year history of leadership and integrity, the competitive and comprehensive benefits we offer, and our culture, which is built on respect and opportunities for growth, there are many reasons to join us at McCormick.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity GRC Analyst
Cybersecurity GRC Analyst

McCormick & Company, Incorporated • Gurugram District

Hybrid
INR 1,200,000 - 2,200,000
Career growth opportunities
Flexibility & support for diverse life
Wellbeing programs
Sr Cybersecurity GRC Anaylyst
Sr Cybersecurity GRC Anaylyst

McCormick & Company, Incorporated • Gurgaon

Hybrid
INR 1,200,000 - 1,800,000
Cybersecurity GRC Analyst
Cybersecurity GRC Analyst

McCormick & Company • Gurugram District

Hybrid
INR 1,200,000 - 1,800,000
Competitive compensation
Career growth opportunities
Wellbeing programs
Cybersecurity GRC Analyst
Cybersecurity GRC Analyst

McCormick & Company, Incorporated • Gurgaon

Hybrid
INR 1,000,000 - 1,500,000
401k
Health insurance
Paid time off
+2
Sr Cybersecurity GRC Analyst
Sr Cybersecurity GRC Analyst

McCormick & Company, Incorporated • Gurgaon

Hybrid
INR 1,000,000 - 1,500,000
IT Compliance Manager
IT Compliance Manager

McCormick & Company, Incorporated • Gurgaon

Hybrid
INR 1,500,000 - 2,000,000
Career growth opportunities
Flexibility for diverse life stages
Wellbeing programs
Security Risk Analyst
Security Risk Analyst

McCormick & Company, Incorporated • Gurgaon

Hybrid
INR 1,200,000 - 1,800,000
Career growth opportunities
Flexibility and support for diverse life stages
Wellbeing programs
Senior Manager, Cyber Threat Exposure
Senior Manager, Cyber Threat Exposure

McCormick & Company, Incorporated • Gurugram District

Hybrid
INR 4,000,000 - 7,000,000
Career growth opportunities
Flexibility and support for diverse生活
Security Risk Team Lead
Security Risk Team Lead

McCormick & Company, Incorporated • Gurgaon

On-site
INR 1,800,000 - 2,500,000
Comprehensive benefits
Opportunities for growth
IT Compliance Manager
IT Compliance Manager

McCormick & Company, Incorporated • Gurugram District

On-site
INR 1,500,000 - 2,500,000
Health insurance
Paid time off
Career growth opportunities
+1