Talent.com
This job offer is not available in your country.
Information Security Specialist - GRC

Information Security Specialist - GRC

Cambridge TechnologyHyderabad, Telangana, India
30+ days ago
Job description

We are seeking GRC Certified Engineer in the IT services – Energy domain to ensures compliance with governance, risk, and cybersecurity regulations specific to the energy sector, including NERC CIP, ISO 27001, NIST, SOC 2, and GDPR. You will be responsible for risk assessments, security audits, and policy enforcement to protect critical infrastructure, operational technology (OT), and IT systems. You are expected to be skilled in Anaplan GRC tools, ServiceNow GRC, and Archer, they help energy companies mitigate cyber threats, manage third-party risks, and ensure regulatory adherence while maintaining business continuity.

Skills Required :

  • Governance : Develop and enforce security policies, procedures, and frameworks to align with business objectives and regulatory requirements.
  • Risk Management : Identify, assess, and mitigate cybersecurity risks related to IT infrastructure, applications, and data.
  • Compliance Management : Ensure adherence to industry standards such as ISO 27001, NIST, GDPR, SOC 2, HIPAA, PCI-DSS by conducting audits and implementing security controls.
  • Security Audits & Assessments : Perform internal security audits, gap analyses, and compliance assessments to identify vulnerabilities.
  • Incident Response & Reporting : Work with security teams to manage security incidents, analyze root causes, and implement corrective actions.
  • Third-Party Risk Management : Evaluate vendors and partners for compliance with security policies and contractual obligations.
  • Automation & GRC Tools : Utilize tools like Archer, ServiceNow GRC, OneTrust, MetricStream to track risks, controls, and compliance metrics.
  • Security Awareness & Training : Conduct security awareness programs for employees to reinforce compliance best practices.

Qualifications

  • 5+ years of experience in cybersecurity, with at least 2 years focused on cybersecurity governance, risk, and compliance
  • Proven success in promoting and collaborating on risk and compliance policies across IT and business units
  • Excellent written and verbal communication skills, with the ability to effectively communicate risks to executive leadership and key stakeholders
  • Strong understanding of cybersecurity frameworks (e.g., SOC2, ISO 27001) and experience leading their implementation while demonstrating their value
  • Expertise in cybersecurity risk management and control principles, with a proven ability to identify risks and take appropriate mitigating actions
  • Strong organizational and project management skills, with the ability to manage multiple tasks, align stakeholder expectations, and deliver results with professionalism, motivation, and integrity
  • Familiarity with industry standards and regulations, including NIST, SOX, PCI, ISO, GDPR, and others
  • Bachelor’s or Master’s degree in a relevant field, or equivalent combination of education and experience
  • Roles & Responsibilities

  • This role will report directly to the Chief Information Security Officer (CISO) and will focus on strengthening the organization’s security posture while promoting a transparent, risk-aware culture
  • Collaborate with the CISO to develop a service-oriented operating model that supports all GRC services, including data privacy compliance
  • Implement and manage key GRC capabilities, such as policy and exception management, third-party risk management, security reviews and audits, enterprise risk management, compliance management, and international data privacy compliance
  • Maintain the cybersecurity risk register and track associated risks
  • Establish security metrics and reporting across all GRC services
  • Perform risk assessments as required
  • Monitor the security risk profiles of suppliers and identify high-risk suppliers requiring additional review
  • Respond to customer security / compliance questionnaires
  • Demonstrate adherence to HIPAA, GDPR, PCI, and other relevant global regulations
  • Oversee the configuration and management of the GRC tool.
  • Collaborate with other GRC functions within the organization as required to that the business maintains a trustworthy culture with its clients
  • Stay up-to-date on evolving legislation, regulations, and industry dynamics, assessing their impact on business programs, policies, and training needs
  • Experience : 4-10 yrs

    Location : Hyderabad / Work From Office

    Create a job alert for this search

    Information Security Specialist • Hyderabad, Telangana, India

    Related jobs
    Information Security GRC Consultant

    Information Security GRC Consultant

    Bottomline TechnologiesINDIA
    Are you ready to transform the way businesses pay and get paid? Bottomline is a global leader in business payments and cash management, with over 30 years of experience and moving more than $10 tri...Show moreLast updated: 30+ days ago
    • Promoted
    Cambridge Technology Enterprises - Cyber Security Specialist - GRC Certified

    Cambridge Technology Enterprises - Cyber Security Specialist - GRC Certified

    Cambridge Technology EnterprisesHyderabad
    GRC Certified Engineer We are seeking GRC Certified Engineer in the IT services Energy domain to ensures compliance with governance, risk, and cybersecurity ...Show moreLast updated: 30+ days ago
    • Promoted
    SAP GRC Security

    SAP GRC Security

    Tata Consultancy ServicesHyderabad, Telangana, India
    TCS Deccan Park, Cafeteria Plot No.Hitech City Main Rd, Software Units Layout, HUDA Techno Enclave, Madhapur, Hyderabad, 500081. Education : Minimum 15 years of full-time education (10th, 12th and Gr...Show moreLast updated: 12 days ago
    • Promoted
    Information Security Analyst - Security Operations Center

    Information Security Analyst - Security Operations Center

    Savantis Solutions India Pvt.Ltd.Hyderabad
    We are hiring for one of our clients.Job Title : Information Security Analyst - SOC Experience : 4+ Years Du...Show moreLast updated: 30+ days ago
    SAP Security - GRC - PPR

    SAP Security - GRC - PPR

    Celanese CorporationHyderabad, India
    Celanese Corporation is a global chemical leader in the production of differentiated chemistry solutions and specialty materials used in most major industries and consumer applications.Our business...Show moreLast updated: 16 days ago
    • Promoted
    DAZN - Senior Information Security Specialist

    DAZN - Senior Information Security Specialist

    Dazn Software Private LimitedHyderabad
    HERES SOME INFORMATION FOR YOU? You will be responsible for guarding the vision, the development of strategy and the implementation of the Information Security Risk ...Show moreLast updated: 30+ days ago
    • Promoted
    Information Security Analyst

    Information Security Analyst

    hirezy.aiHyderabad
    Job Summary : The Security Analyst is responsible for ensuring the security and integrity of the organization's information systems an...Show moreLast updated: 30+ days ago
    SAP Security Consultant

    SAP Security Consultant

    Axiom Software Solutions LimitedHyderguda, TS, IN
    Quick Apply
    We are seeking an experienced SAP Security Consultant to manage and maintain SAP security roles, authorizations, and user access across our SAP landscape. The ideal candidate will be responsible for...Show moreLast updated: 30+ days ago
    Analyst, Information Security

    Analyst, Information Security

    CommScope Inc.Hyderabad, Tela, In
    Are you a technology professional with experience across the domains of Governance, Risk, and Compliance (GRC), such as policy / standards, third-party risk management, customer security assurance, a...Show moreLast updated: 7 days ago
    Information Security Analyst

    Information Security Analyst

    UnisysINDIA
    What success looks like in this role : .Having wide-ranging experience, uses professional concepts and company objectives to resolve complex issues in creative and effective ways.Influence programs a...Show moreLast updated: 30+ days ago
    • Promoted
    Cyber Security Specialist - GRC Tools

    Cyber Security Specialist - GRC Tools

    workingbees Global Pvt.LtdHyderabad
    Job Title : Cyber Security Specialist GRC (ERM) FAIR (Factor Analysis of Information Risk) is Mandatory ...Show moreLast updated: 15 days ago
    • Promoted
    SAP Security Consultant - GRC Module

    SAP Security Consultant - GRC Module

    consulantHyderabad
    SKILLS : SAP Security, GRC, SOX Mandatory Skills : SAP Security, GRC, SOX, Good Communication Skills Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Information Technology Security Analyst

    Information Technology Security Analyst

    Turnberry SolutionsHyderabad, IN
    Automate evidence collection and control testing processes using scripting tools (e.Develop scripts and queries to analyze datasets, identify anomalies, and validate data integrity.Build and mainta...Show moreLast updated: 13 hours ago
    Information Security Manager

    Information Security Manager

    cogoportINDIA
    Do you prefer to get speeding tickets or parking tickets?.Because at Cogoport we are speeding ahead to do something remarkable for the world. We are trying to solve the Trade Knowledge and Execution...Show moreLast updated: 30+ days ago
    Information Security Specialist - GRC

    Information Security Specialist - GRC

    CTEINDIA
    We are seeking GRC Certified Engineer in the IT services Energy domain to ensures compliance with governance, risk, and cybersecurity regulations specific to the energy sector, including NERC CIP,...Show moreLast updated: 30+ days ago
    Information Security Specialist - GRC Hyderabad, Telangana | Full Time

    Information Security Specialist - GRC Hyderabad, Telangana | Full Time

    CAMBRIDGE TECHNOLOGY INDIA PVT LTDINDIA
    We are seeking a GRC Certified Engineer in the IT services Energy domain to ensure compliance with governance, risk, and cybersecurity regulations specific to the energy sector, including NERC CIP...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Information Security engineers

    Information Security engineers

    RiDiK (a Subsidiary of CLPS. Nasdaq : CLPS)Hyderabad, Telangana, India
    Required Years of experience : 8+ Years.Required, Roles & Responsibilities : .Evaluation, certification, and re-certification of information protection technologies along with production support respo...Show moreLast updated: 11 hours ago
    SAP Security Engineer, GRC

    SAP Security Engineer, GRC

    AMGENINDIA
    Join Amgens Mission of Serving Patients.At Amgen, if you feel like youre part of something bigger, its because you are.Our shared missionto serve patients living with serious illnessesdrives all th...Show moreLast updated: 30+ days ago