Talent.com
IT GRC Lead

IT GRC Lead

ENGIE IndiaPune, Republic Of India, IN
5 days ago
Job description

The Deputy Manager - IT GRC (Governance, Risk, and Compliance) role at ENGIE India is crucial in ensuring the organization's Digital & IT landscape is secure, compliant, and aligned with business objectives. This role involves developing, implementing, and managing IT GRC, risk management, and ensuring compliance with regulations and internal controls. This is an individual contributor role based in Pune, India, with occasional onsite travel to support Digital & IT audits.

Main Objectives

The primary objective is to ensure the IT landscape is secure, compliant, and aligned with business goals. This involves :

  • Implementing comprehensive IT GRC strategies.
  • Implementing INCOME framework for D&IT function
  • Implement and Manage - Risk management processes.
  • Ensuring adherence to regulations and standards.
  • Maintain Digital &IT internal control requirements
  • Lead the Digital & IT Internal Control and Compliance

Key Responsibilities

  • Audit Preparation and Management : Prepare processes, teams, and documents for internal and external audits. Track and remediate audit observations with corrective and preventive actions.
  • Risk Management : Manage and track all technology-related risks for timely closure. Oversee formal risk analysis and self-assessment programs for various systems and processes.
  • Compliance : Ensure compliance with privilege access management processes and relevant IT regulations and standards, such as ISO 27001 and NIST CSF.
  • Documentation and Communication : Maintain strong documentation and communication skills. Ensure clear communication with stakeholders and effective conflict resolution.
  • Implementing Initiatives : Coordinate with various departments to ensure smooth execution and monitor progress.
  • Continuous Improvement : Foster a culture of continuous improvement within the IT GRC team.
  • Stakeholder Engagement : Engage with key stakeholders, including management and department heads, to ensure IT GRC strategies are well-supported and integrated.
  • Conducting Risk Assessments : Oversee comprehensive risk assessments to identify potential risks.
  • Developing Mitigation Strategies : Implement controls and safeguards to reduce the likelihood and impact of risks.
  • Monitoring and Reporting : Establish effective monitoring mechanisms and regularly report on risk status to management.
  • Collaboration with Departments : Work closely with various departments to ensure effective implementation of risk management strategies.
  • Adhering to Regulations : Ensure compliance with all relevant IT regulations and standards.
  • Implementing Best Practices : Promote the adoption of industry best practices within the organization.
  • Internal and External Audits : Conduct regular internal audits and manage relationships with external auditors and regulatory bodies.
  • Policy Development : Develop and maintain comprehensive IT GRC policies.
  • Coordination and Collaboration

  • Cross-Departmental Collaboration : Collaborate with various departments to ensure effective implementation of GRC initiatives.
  • Stakeholder Communication : Ensure stakeholders are informed about the progress and impact of GRC activities.
  • Conflict Resolution : Resolve conflicts that arise during the implementation of GRC initiatives.
  • Internal Audits : Conduct internal audits to assess the effectiveness of IT GRC controls and processes.
  • Managing External Audits : Ensure the organization is well-prepared for external audits and address any findings promptly.
  • Audit Preparation : lead the preparation for audits to ensure a smooth process.
  • Addressing Audit Findings : Develop and implement action plans to resolve audit findings and prevent recurrence.
  • Continuous Improvement : Use audit insights to drive continuous improvement in GRC practices.
  • Regular Reporting : Provide regular reports on IT GRC activities to management and the board.
  • Clear Communication : Ensure GRC-related information is communicated clearly and consistently.
  • Training and Awareness : Promote awareness of GRC policies and practices within the organization through training sessions and resources.
  • Technical Knowledge and Skills

  • Understanding IT Systems : Strong understanding of IT systems, including Cloud services, IT-OT convergence, hardware, software, networks, and data management practices.
  • Security Principles : Deep understanding of security principles, including encryption and access control.
  • Risk Management Frameworks : Familiarity with frameworks such as ISO 31000 and NIST RMF.
  • Emerging Technologies : Stay updated on emerging technologies and their impact on IT GRC practices.
  • Technical Certifications : Relevant certifications such as CRISC are valuable.
  • Compliance Knowledge
  • Regulatory Requirements : Deep knowledge of relevant regulatory requirements, such as CEA guidelines, Internal Controls (ITGC), IT Act, Indian and global Energy sector compliance, GDPR, HIPAA, and SOX.
  • Industry Standards : Familiarity with industry standards like ISO 27001 and NIST CSF.
  • Compliance Assessment : Conduct regular compliance assessments and develop comprehensive compliance policies.
  • Training and Awareness : Promote awareness of compliance requirements within the organization.
  • Analytical and Problem-Solving

  • Risk Analysis : Conduct formal risk analysis to identify potential vulnerabilities.
  • Problem-Solving : Develop and implement effective solutions to mitigate risks.
  • Data Analysis : Analyze data to identify trends, assess risks, and make informed decisions.
  • Decision-Making : Make informed decisions based on risk and compliance analysis.
  • Continuous Improvement : Promote a culture of continuous improvement in GRC practices.
  • Qualifications and Experience

  • Strong background in Information Technology, Cybersecurity, or a related discipline.
  • Knowledge of frameworks like ISO 27001, NIST, GDPR, and HIPAA.
  • 5-8 years in IT GRC, preferably in the Energy sector.
  • Hands-On Experience : Identifying, assessing, and mitigating risks.
  • Practical Application : Applying GRC principles in energy sector
  • Work Environment & Physical Requirements : -

  • Location : Pune, India, with intermittent travel to sites.
  • Team Size : Individual Contributor role.
  • Physical Activity : Extended periods of concentration, technical hands-on work, and physical activity during site visits.
  • Reports to : Cyber Security & IT Infrastructure Manager
  • Why Join ENGIE?

    As a Deputy Manager IT-GRC at ENGIE, you will play a pivotal role in safeguarding and improving the Digital & IT landscape of a global leader in energy and sustainability. Drive ENGIE’s mission to achieve a carbon-neutral world through innovative technology solutions. Join us to contribute to a sustainable future and be part of a transformative journey towards a more efficient and eco-friendlier world.

    Visit us at www.Engie.Com and www.Engieindia.Com

    Create a job alert for this search

    It Lead • Pune, Republic Of India, IN

    Related jobs
    • Promoted
    SAP GRC Security Lead Consultant - Australia (Onsite)

    SAP GRC Security Lead Consultant - Australia (Onsite)

    Avensys ConsultingNagpur, IN
    Avensys is a reputed global IT professional services company headquartered in Singapore.Our service spectrum includes enterprise solution consulting, business intelligence, business process automat...Show moreLast updated: 13 days ago
    • Promoted
    • New!
    Technical Lead

    Technical Lead

    MphasisNagpur, IN
    Looking for Senior Ingenium Developer with 10+ years' experience and following skills.Experience in Mainframe O / S and Development using COBOL programming language & JCL. Experience in development an...Show moreLast updated: 12 hours ago
    • Promoted
    IT Service Management

    IT Service Management

    ISG (Information Services Group)Nagpur, IN
    Wanted : dynamic and creative individuals ready to connect with a like-minded team.You’ll enjoy all the autonomy you need to help our clients make their digital infrastructure faster and more effect...Show moreLast updated: 6 days ago
    • Promoted
    Senior Technical Recruiter – Engineering & Non-IT

    Senior Technical Recruiter – Engineering & Non-IT

    ITCO Solutions, Inc.Nagpur, IN
    US Senior Technical Recruiter – Engineering & Non-IT.Long Term (Years) Contract / Commission / Spread.We are currently seeking experienced Recruiting Professionals with expertise in.Engineering and...Show moreLast updated: 30+ days ago
    • Promoted
    Senior GRC Analyst

    Senior GRC Analyst

    ConfidentialIndia
    Demandbase is the Smarter GTM™ company for B2B brands.We help marketing and sales teams overcome the disruptive data and technology fragmentation that inhibits insight and forces them to spam their...Show moreLast updated: 9 days ago
    • Promoted
    Cyble - GRC Lead

    Cyble - GRC Lead

    CybleIndia
    Description : About Cyble : Cyble is revolutionizing the landscape of cybersecurity intell...Show moreLast updated: 20 days ago
    • Promoted
    Grc Consultant

    Grc Consultant

    Solytics PartnersPune, Republic Of India, IN
    Solytics Partners is a Global Analytics firm, recognized with multiple industry awards for innovation and excellence.Our team comprises experts with deep knowledge in risk, analytics, AI / ML, AML / FC...Show moreLast updated: 15 days ago
    • Promoted
    Global IT Projects Sourcing Partner

    Global IT Projects Sourcing Partner

    im24x7 Delta Solutions FZCONagpur, IN
    Global IT Projects Sourcing Partner.IT projects, clients, and technology opportunities to IM24x7 Delta Solutions.This role is ideal for professionals who have strong connections in the IT industry,...Show moreLast updated: 6 days ago
    • Promoted
    Senior Recruitment Specialist - Non - IT (Recruitment & Staffing)

    Senior Recruitment Specialist - Non - IT (Recruitment & Staffing)

    Selections HR Services Private LimitedNagpur, IN
    We are looking for a motivated.You will be responsible for end-to-end recruitment across multiple industries, including sourcing, screening, coordinating interviews, and closing roles efficiently.U...Show moreLast updated: 28 days ago
    • Promoted
    Technology Lead

    Technology Lead

    WPPNagpur, IN
    WPP OPEN is WPP's proprietary, AI-powered operating system designed to connect our people, data, and technology to deliver integrated, creative, and effective solutions for our clients.It is a stra...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Oracle Cloud ERP Technical Lead

    Oracle Cloud ERP Technical Lead

    Hiresquad ResourcesNagpur, IN
    Oracle Fusion ERP Technical Consultant.Require min 4 years experience in Cloud / Fusion.Immediate Joiner or max 15 Days notice is preferred. We are seeking an experienced Oracle Cloud ERP Technical Co...Show moreLast updated: 12 hours ago
    • Promoted
    GRC & Infosec Lead

    GRC & Infosec Lead

    NPCI Bharat BillPay LimitedRepublic Of India, IN
    Job Description – GRC (Infosec).The selected candidate will lead the development, implementation, and continuous improvement of the organization's governance, risk management, and compliance framew...Show moreLast updated: 8 days ago
    • Promoted
    SAP IDM and GRC Consultant

    SAP IDM and GRC Consultant

    Tata Consultancy ServicesNagpur, IN
    TCS PAN INDIA hiring for SAP S4 / HANA SAP IDM and GRC Consultant on 20th Nov(Thursday) through Virtual Mode of Interview !!!!!. SAP S4 / HANA SAP IDM and GRC Consultant.SAP GRC Implementation : Design, ...Show moreLast updated: 2 days ago
    • Promoted
    Senior Technical Lead - Microsoft Dynamics 365 CRM / CE (Remote)

    Senior Technical Lead - Microsoft Dynamics 365 CRM / CE (Remote)

    VeriParkNagpur, IN
    Remote
    We enable financial institutions to become digital leaders.As a professional team of global scale, we work with best clients for great and exciting projects, in an environment where we learn amazin...Show moreLast updated: 30+ days ago
    • Promoted
    IT Project Bidder

    IT Project Bidder

    im24x7 Delta Solutions FZCONagpur, IN
    Location : Remote | Flexible Engagement.We’re looking for a proactive IT Project Bidder to join our growing team — someone who can identify new project opportunities, communicate with clients, and h...Show moreLast updated: 30+ days ago
    • Promoted
    Global Lead for Microsoft Partner

    Global Lead for Microsoft Partner

    ALIANDONagpur, IN
    Job Title : Global Lead for Microsoft Partner.ALIANDO is an award-winning Azure Expert Managed Service solutions company focused on selling and deploying Microsoft technologies for U.For over 20 yea...Show moreLast updated: 30+ days ago
    • Promoted
    RTL Design Lead – SoC Integration (HBM / PCIe Gen6)

    RTL Design Lead – SoC Integration (HBM / PCIe Gen6)

    eInfochips (An Arrow Company)Nagpur, IN
    Job Title : RTL Design Lead – SoC Integration (HBM / PCIe Gen6).Bangalore, Hyderabad, Chennai, Pune, Noida, Ahmedabad, Indore. The ideal candidate will be responsible for leading RTL design, driving ...Show moreLast updated: 5 days ago
    • Promoted
    HRSS and People Analytics Director

    HRSS and People Analytics Director

    ProductLife GroupNagpur, IN
    ProductLife Group (PLG) is a dedicated life sciences outsourcing and consulting company.The group is having HQ in Paris and affiliates around the globe with teams in all key regions : North America,...Show moreLast updated: 2 days ago