Talent.com
GRC - Snr Analyst
GRC - Snr AnalystConfidential • Bengaluru / Bangalore
GRC - Snr Analyst

GRC - Snr Analyst

Confidential • Bengaluru / Bangalore
30+ days ago
Job description

Overview

The Cybersecurity Governance, Risk, Compliance (GRC) Senior Analyst position is responsible for managing risks related to information security, privacy, governance, vendor security assurance, policy, and compliance.

Contributes to preserving the high standards of confidentiality, integrity, and availability of EagleView mission-critical information.

Conducts Cybersecurity risk assessments, evaluates controls, and provides feedback to management and process owners on the design and effectiveness of control processes.

Implements and maintains on-going programs and processes to test the design and operational effectiveness of security controls.

Responsible for ensuring IT assurance and compliance related activities are completed in accordance with industry standards and regulatory requirements.

The position reports to the Manager, GRC, and is responsible for executing the key functions of information risk management, security compliance, governance, and information security assurance.

Primary Responsibilities

  • In these roles, you are part analyst, engineer, and advisor. You have the ability to ramp up quickly into a solid, productive member of the Security GRC team.
  • You are organized and have the ability to innovate and automate as we continually look to improve our processes and tools. You may own process areas, projects, or technologies for governance, risk and compliance purposes.
  • You create and maintain relationships with business and technical experts through the company who provide expertise in security requirements and solution management. You are expected to work independently while still asking for help on some areas. You are a bridge builder helping to coordinate and bring together various parts of the organization around a common process through the use of tools, and communications channels.
  • Ensure compliance with laws, regulations, and industry standards, and compliance programs (e.g. SOC2, PCI, ISO 27001, NIST 800-X)
  • Create processes to support effective risk identification, evaluation, communication, and remediation
  • Participate in Risk Management Committee meetings
  • Work with risk owners to develop plans of action to reduce or mitigate risks
  • Analyzes security controls for effectiveness of design by evaluation of control documentation and process
  • Analyzes security controls for operational effectiveness by evaluation of control evidence
  • Contribute to corporate information risk management strategy, policies, standards, and tactical plans
  • Contributes to a comprehensive internal security audit program that validates existing security controls
  • Contribute to the company-wide security awareness program and compliance training
  • Coordinate annual enterprise risk assessment and PCI-self assessment activities
  • Ensure all systems, processes, and changes are formally documented
  • Works closely with internal and external auditors, regulators, and examiners, including coordination and compilation of technology documentation requests, reports, and assurance letters to ensure security compliance
  • Maintains the Risk Register and support processes to define and measure risks, then plan risk responses with company leadership
  • Ability to work collaboratively with internal and external departments, vendors, and other key stakeholders

Skills / Requirements

Required Knowledge, Skills and Experience :

  • Bachelor's degree in a technology or business-related field (BSc or BBA preferred)
  • 8 years overall experience in Information Security, Risk Management, or IT audit
  • 5 years of hands-on experience supporting one or more of the following programs :
  • Risk Management
  • Vendor Risk Management
  • Security Audits and Compliance (especially SOC2)
  • Vulnerability Management
  • Understanding of controls and risks sufficient to identify and evaluate control effectiveness and identify gaps between risks and controls
  • Working knowledge of business and risk assessment methodologies / mitigation strategies using industry standards (e.g., COBIT, ITIL, ISO 27001 : 2013, NIST, OWASP, etc.)
  • Very high attention to detail, with strong skills in managing / presenting data and information
  • Very strong skills in documentation, including policies, standards, processes and procedures
  • Ability to work independently and productively without constant supervision
  • Critical thinking and analytical ability
  • Excellent verbal and written communication skills
  • Preferred Knowledge, Skills and Experience :

  • Certification such as SANS GIAC, CISA, or CISSP preferred
  • Previous experience in a software development company is preferred
  • Experience using a GRC management platform (e.g. Archer, ZenGRC, etc.)
  • Skills Required

    Risk Management, It Audit, Iso 27001, SOC2, nist

    Create a job alert for this search

    Grc Analyst • Bengaluru / Bangalore

    Related jobs
    Analyst - GRC (Governance, Risk & Compliance)

    Analyst - GRC (Governance, Risk & Compliance)

    Amagi • Bangalore Urban, Karnataka, India
    This role has been established to support the business in building sustainable governance andcompliance practices at Amagi. The basic factor required to be successful in this role warrants a good un...Show more
    Last updated: 28 days ago • Promoted
    Digitap - GRC Analyst - PCI-DSS

    Digitap - GRC Analyst - PCI-DSS

    Digitap • Bangalore
    Job description : We are seeking a motivated and skilled GRC professional to join our team.As a GRC Analyst, you will be responsible for m...Show more
    Last updated: 30+ days ago • Promoted
    Regulatory Control Analyst, NCT

    Regulatory Control Analyst, NCT

    Deutsche Bank • Bangalore, India
    Job Title : Regulatory Control Analyst, NCT.The candidate for the AFC Centre of Excellence for KYC is supporting CB and IB KYC escalations to AFC, collaborating with the relevant Business stakeholde...Show more
    Last updated: 30+ days ago • Promoted
    Analyst - GRC (Governance, Risk & Compliance)

    Analyst - GRC (Governance, Risk & Compliance)

    Confidential • Bengaluru / Bangalore, India
    This role has been established to support the business in building sustainable governance andcompliance practices at Amagi. The basic factor required to be successful in this role warrants a good un...Show more
    Last updated: 23 days ago • Promoted
    GRC Analyst II, Tech. Governance Risk & Compliance

    GRC Analyst II, Tech. Governance Risk & Compliance

    Confidential • Bengaluru / Bangalore, India
    The Risk Analyst II investigates and analyzes potential areas of risk to Technology (and Herbalife Nutrition), highlighting and quantifying the risks to help drive business decisions.This role must...Show more
    Last updated: 23 days ago • Promoted
    SAP GRC Analyst

    SAP GRC Analyst

    EliteRecruitments • Bengaluru, Republic Of India, IN
    GGN | Bangalore | Pune | Hyderabad.Individual Contributor / Supervisory.Deliver IT Risk & Controls Assessments, IT Audits, and Compliance reviews. Coordinate with global teams on engagements.Ensure ...Show more
    Last updated: 1 day ago • Promoted
    Senior Grc Analyst

    Senior Grc Analyst

    Dezerv • Bengaluru, Republic Of India, IN
    Dezerv is a house of investing solutions for high-net-worth and affluent Indians.Dezerv is co-founded by Sandeep Jethwani, Vaibhav Porwal, and Sahil Contractor. They have led successful wealth manag...Show more
    Last updated: 30+ days ago • Promoted
    Senior SAP GRC / IAG Consultant

    Senior SAP GRC / IAG Consultant

    Thompsons HR Consulting LLP. • Bangalore
    We are seeking an experienced and highly skilled Senior SAP GRC and IAG Consultant to join our enterprise technology team. The ideal candidate will have a strong background in implementing and manag...Show more
    Last updated: 30+ days ago • Promoted
    Sap GRC Consultant

    Sap GRC Consultant

    Tata Consultancy Services • Greater Bengaluru Area, India
    Should be an expert in performing SAP Security related activities like User Management, Role Management.Must have a strong understanding of the GRC 10. AC components Access Risk Analysis, Access Req...Show more
    Last updated: 1 day ago • Promoted
    GRC Access Control Specialist

    GRC Access Control Specialist

    Tata Consultancy Services • Bengaluru, Republic Of India, IN
    Should be an expert in performing SAP Security related activities like User Management, Role Management.Must have a strong understanding of the GRC 10. AC components Access Risk Analysis, Access Req...Show more
    Last updated: 1 day ago • Promoted
    Senior GRC Analyst

    Senior GRC Analyst

    Confidential • India, Bengaluru / Bangalore
    Dezerv is a house of investing solutions for high-net-worth and affluent Indians.Dezerv is co-founded by Sandeep Jethwani, Vaibhav Porwal, and Sahil Contractor. They have led successful wealth manag...Show more
    Last updated: 17 hours ago • Promoted • New!
    Senior GRC Analyst

    Senior GRC Analyst

    Dezerv • Bengaluru, Karnataka, India
    Dezerv is a house of investing solutions for high-net-worth and affluent Indians.Dezerv is co-founded by Sandeep Jethwani, Vaibhav Porwal, and Sahil Contractor. They have led successful wealth manag...Show more
    Last updated: 30+ days ago • Promoted
    GRC Executive / GRC Manager

    GRC Executive / GRC Manager

    ShieldByte Infosec Pvt. Ltd. • bangalore district, karnataka, in
    Cybersecurity, IT Security, IT Audit.We are seeking Governance, Risk, and Compliance (GRC) professionals to join our team as GRC Executive / GRC Manager. The role involves risk assessment, regulator...Show more
    Last updated: 19 hours ago • Promoted • New!
    SAP IDM & GRC

    SAP IDM & GRC

    Tata Consultancy Services • bangalore, India
    TCS has been a great pioneer in feeding the fire of Young Techies like you.We are a global leader in the technology arena and there's nothing that can stop us from growing together.Job Locations : ...Show more
    Last updated: 7 hours ago • Promoted • New!
    GRC Analyst

    GRC Analyst

    J.B. Poindexter & Co • Bangalore Urban, Karnataka, India
    Analyst, Governance, Risk and Compliance.As the GRC Analyst, you will play a critical role in developing and implementing comprehensive governance, risk, and compliance strategies, policies, and co...Show more
    Last updated: 20 days ago • Promoted
    SAP GRC Consultant

    SAP GRC Consultant

    EliteRecruitments • Greater Bengaluru Area, India
    GGN | Bangalore | Pune | Hyderabad.Individual Contributor / Supervisory.Deliver IT Risk & Controls Assessments, IT Audits, and Compliance reviews. Coordinate with global teams on engagements.Ensure ...Show more
    Last updated: 30+ days ago • Promoted
    Cyble - GRC Lead

    Cyble - GRC Lead

    Cyble • Bangalore
    Description : About Cyble : Cyble is revolutionizing the landscape of cybersecurity intell...Show more
    Last updated: 25 days ago • Promoted
    GRC Expert - HIPAA / PCI-DSS

    GRC Expert - HIPAA / PCI-DSS

    Visionet Systems Private Limited. • Bangalore
    Position Overview : We are seeking a seasoned Policies and Standards Authoring Expert to lead the creation, revision, and governance of enterprise-wide Information Se...Show more
    Last updated: 25 days ago • Promoted