Key IT- GRC Responsibilities :
- Risk Assessment and Management : Identify, assess, and prioritize IT-related risks, developing mitigation strategies.
- Compliance Management : Ensure adherence to relevant regulations, industry standards, and internal policies. E.g. GDPR, CCPA, ISO 270001, SOC2.
- Policy Development and Implementation : Create and maintain IT governance policies and procedures.
- Audit Management, tracking and Reporting : Conduct internal audits, document findings, and prepare reports for management and stakeholders.
- Collaboration : Work with IT, security, and other business teams to implement and maintain GRC programs.
- Staying Current : Keep abreast of evolving regulations, industry best practices, and emerging technologies, continuous controls evaluation, mapping to standards and improvement, evaluating existing IT general and entity level controls and improving them.
Skills and Qualifications :
Technical Skills : Understanding of IT systems, networks, and security technologies.Analytical Skills : Ability to analyze data, identify trends, and make recommendations.Communication Skills : Ability to explain complex technical concepts to non-technical audiences.Problem-Solving Skills : Ability to identify and resolve issues related to compliance and risk.Certifications : CISA , CISM , CISSP , or other relevant certifications can be beneficial.Soft & Analytical Skills
Ability to fluently communicate in English with local and international usersAbility to communicate effectively with peers and managementHaving the Ability to critically think and problem solve a given situation / challengeAbility to collaborate with peers and team members within and outside security function and the large organizational teams.Ability to logically reason out and question and improve posture and control positionsBeing proactive and self-drivenSkills Required
Cisa, Cism, Cissp, audit management