Talent.com
Deputy Manager - IT GRC (Governance, Risk, and Compliance)
Deputy Manager - IT GRC (Governance, Risk, and Compliance)ENGIE India • Delhi, India
Deputy Manager - IT GRC (Governance, Risk, and Compliance)

Deputy Manager - IT GRC (Governance, Risk, and Compliance)

ENGIE India • Delhi, India
13 days ago
Job description

The

Deputy Manager - IT GRC (Governance, Risk, and Compliance) role

at ENGIE India is crucial in ensuring the organization's Digital & IT landscape is secure, compliant, and aligned with business objectives. This role involves developing, implementing, and managing IT GRC, risk management, and ensuring compliance with regulations and internal controls. This is an individual contributor role based in Pune, India, with occasional onsite travel to support Digital & IT audits.

Main Objectives

The primary objective is to ensure the IT landscape is secure, compliant, and aligned with business goals. This involves :

Implementing comprehensive IT GRC strategies.

Implementing INCOME framework for D&IT function

Implement and Manage - Risk management processes.

Ensuring adherence to regulations and standards.

Maintain Digital &IT internal control requirements

Lead the Digital & IT Internal Control and Compliance

Key Responsibilities

Audit Preparation and Management : Prepare processes, teams, and documents for internal and external audits. Track and remediate audit observations with corrective and preventive actions.

Risk Management : Manage and track all technology-related risks for timely closure. Oversee formal risk analysis and self-assessment programs for various systems and processes.

Compliance : Ensure compliance with privilege access management processes and relevant IT regulations and standards, such as ISO 27001 and NIST CSF.

Documentation and Communication : Maintain strong documentation and communication skills. Ensure clear communication with stakeholders and effective conflict resolution.

Implementing Initiatives : Coordinate with various departments to ensure smooth execution and monitor progress.

Continuous Improvement : Foster a culture of continuous improvement within the IT GRC team.

Stakeholder Engagement : Engage with key stakeholders, including management and department heads, to ensure IT GRC strategies are well-supported and integrated.

Conducting Risk Assessments : Oversee comprehensive risk assessments to identify potential risks.

Developing Mitigation Strategies : Implement controls and safeguards to reduce the likelihood and impact of risks.

Monitoring and Reporting : Establish effective monitoring mechanisms and regularly report on risk status to management.

Collaboration with Departments : Work closely with various departments to ensure effective implementation of risk management strategies.

Adhering to Regulations : Ensure compliance with all relevant IT regulations and standards.

Implementing Best Practices : Promote the adoption of industry best practices within the organization.

Internal and External Audits : Conduct regular internal audits and manage relationships with external auditors and regulatory bodies.

Policy Development : Develop and maintain comprehensive IT GRC policies.

Coordination and Collaboration

Cross-Departmental Collaboration : Collaborate with various departments to ensure effective implementation of GRC initiatives.

Stakeholder Communication : Ensure stakeholders are informed about the progress and impact of GRC activities.

Conflict Resolution : Resolve conflicts that arise during the implementation of GRC initiatives.

Internal Audits : Conduct internal audits to assess the effectiveness of IT GRC controls and processes.

Managing External Audits : Ensure the organization is well-prepared for external audits and address any findings promptly.

Audit Preparation : lead the preparation for audits to ensure a smooth process.

Addressing Audit Findings : Develop and implement action plans to resolve audit findings and prevent recurrence.

Continuous Improvement : Use audit insights to drive continuous improvement in GRC practices.

Regular Reporting : Provide regular reports on IT GRC activities to management and the board.

Clear Communication : Ensure GRC-related information is communicated clearly and consistently.

Training and Awareness : Promote awareness of GRC policies and practices within the organization through training sessions and resources.

Technical Knowledge and Skills

Understanding IT Systems : Strong understanding of IT systems, including Cloud services, IT-OT convergence, hardware, software, networks, and data management practices.

Security Principles : Deep understanding of security principles, including encryption and access control.

Risk Management Frameworks : Familiarity with frameworks such as ISO 31000 and NIST RMF.

Emerging Technologies : Stay updated on emerging technologies and their impact on IT GRC practices.

Technical Certifications : Relevant certifications such as CRISC are valuable.

Compliance Knowledge

Regulatory Requirements : Deep knowledge of relevant regulatory requirements, such as CEA guidelines, Internal Controls (ITGC), IT Act, Indian and global Energy sector compliance, GDPR, HIPAA, and SOX.

Industry Standards : Familiarity with industry standards like ISO 27001 and NIST CSF.

Compliance Assessment : Conduct regular compliance assessments and develop comprehensive compliance policies.

Training and Awareness : Promote awareness of compliance requirements within the organization.

Analytical and Problem-Solving

Risk Analysis : Conduct formal risk analysis to identify potential vulnerabilities.

Problem-Solving : Develop and implement effective solutions to mitigate risks.

Data Analysis : Analyze data to identify trends, assess risks, and make informed decisions.

Decision-Making : Make informed decisions based on risk and compliance analysis.

Continuous Improvement : Promote a culture of continuous improvement in GRC practices.

Qualifications and Experience

Strong background in Information Technology, Cybersecurity, or a related discipline.

Knowledge of frameworks like ISO 27001, NIST, GDPR, and HIPAA.

5-8 years in IT GRC, preferably in the Energy sector.

Hands-On Experience : Identifying, assessing, and mitigating risks.

Practical Application : Applying GRC principles in energy sector

Work Environment & Physical Requirements : -

Location : Pune, India, with intermittent travel to sites.

Team Size : Individual Contributor role.

Physical Activity : Extended periods of concentration, technical hands-on work, and physical activity during site visits.

Reports to : Cyber Security & IT Infrastructure Manager

Why Join ENGIE?

As a Deputy Manager IT-GRC at ENGIE, you will play a pivotal role in safeguarding and improving the Digital & IT landscape of a global leader in energy and sustainability. Drive ENGIE’s mission to achieve a carbon-neutral world through innovative technology solutions. Join us to contribute to a sustainable future and be part of a transformative journey towards a more efficient and eco-friendlier world.

Visit us at www.engie.com and www.engieindia.com

Create a job alert for this search

Deputy Manager • Delhi, India

Related jobs
Problem Manager

Problem Manager

Mphasis • Ghaziabad, IN
Problem Manager & Major Incident Manager.The Problem Manager, following ITIL V4 best practices, is responsible for the efficient and effective management of IT problems and incidents to minimize th...Show more
Last updated: 2 days ago • Promoted
Governance, Risk, and Compliance (GRC) Manager

Governance, Risk, and Compliance (GRC) Manager

Digile • Delhi, India
We are seeking a highly experienced.Governance, Risk, and Compliance (GRC) Manager.The ideal candidate will have deep expertise in. HITRUST CSF, ISO 27001 : 2022, SOC 2 Type II, NIST 800-53 , and othe...Show more
Last updated: 23 days ago • Promoted
Deputy Manager - Internal Audit

Deputy Manager - Internal Audit

GEDU Services • Noida, Uttar Pradesh, India
Deputy Manager – Internal Audit.Noida team and assist in global internal audits.The position would report directly to.Group Director – Internal Audit. The suitable candidate will have strong experie...Show more
Last updated: 21 days ago • Promoted
Manager

Manager

EXL • Delhi, India
We are seeking a highly motivated and experienced individual to lead our Network Change and Compliance Management function. This role is pivotal in ensuring all aspects of network change management,...Show more
Last updated: 30+ days ago • Promoted
Manager - IT Risk

Manager - IT Risk

Grant Thornton INDUS • Delhi, India
Summary : The Controls Advisory delivers all project and engagement management phases for multiple clients in various industries. Responsibilities include executing business processes, IT control rev...Show more
Last updated: 23 days ago • Promoted
Manager- Risk & Vigilance

Manager- Risk & Vigilance

Innovatiview • Noida, Uttar Pradesh, India
Position : Manager – Risk and Vigilance.Reporting to : AVP (Head) – Risk and Vigilance.To support the organization in safeguarding its assets, reputation, and operations by. Conduct process / stock audi...Show more
Last updated: 13 hours ago • Promoted • New!
Deputy Manager Risk Management

Deputy Manager Risk Management

WNS • Delhi, India
Execute and manage the audit assignments including performing fieldwork following the planned audit approach while delivering quality work in line Group standards Evaluate internal processes and co...Show more
Last updated: 23 days ago • Promoted
Team Lead / Assistant Manager / Deputy Manager - IT / Tech Recruitment (Permanent Hiring)

Team Lead / Assistant Manager / Deputy Manager - IT / Tech Recruitment (Permanent Hiring)

Talent Toppers • Noida, Uttar Pradesh, India
Ideal incumbent will have at least.IT & Software Product Development firms.Should have atleast 2 years of Client Account Management experience and. Excellent team management & mentoring skills are a...Show more
Last updated: 30+ days ago • Promoted
ITGC Risk Manager

ITGC Risk Manager

Confidential • Noida, India
Under the guidance of senior management, the IT Risk Manager will be responsible for overseeing the planning and execution of IT General Controls (ITGC) testing. This includes the collection and rev...Show more
Last updated: 17 days ago • Promoted
ITSM (Senior Consultant / Deputy Manager / Manager)

ITSM (Senior Consultant / Deputy Manager / Manager)

Cubical Operations LLP • Delhi, India
Job Description – ITSM (Senior Consultant / Deputy Manager / Manager) Location : .Senior Consultant / Deputy Manager / Manager Notice Period : . Immediate joiners preferred Role Overview We are seeking ...Show more
Last updated: 5 hours ago • Promoted • New!
Senior Manger - IT Infrastructure and Digital Initiatives

Senior Manger - IT Infrastructure and Digital Initiatives

Adani Airport Holdings Ltd • Delhi, India
The position is responsible to ensure seamless IT operation at Asset.The incumbent for the role will ensure System security, Network performance and availability, Budgeting & Procurement and Servic...Show more
Last updated: 20 days ago • Promoted
Information Technology Risk Manager

Information Technology Risk Manager

CSC • Delhi, India
The IT Audit and Risk Manager is an essential role to assist our business with making risk informed decisions.The position is responsible for supporting the security direction of the business and e...Show more
Last updated: 3 days ago • Promoted
Senior Role - GRC & Infosec

Senior Role - GRC & Infosec

NPCI Bharat BillPay Limited • Delhi, India
Job Description – GRC (Infosec).Job Summary : The selected candidate will lead the development, implementation, and continuous improvement of the organization's governance, risk management, and com...Show more
Last updated: 16 days ago • Promoted
IT Compliance and Process Manager

IT Compliance and Process Manager

BDx Data Centers • Delhi, India
IT Compliance and Process Manager.COMPANY OVERVIEW BDx is Asia’s fastest-growing data center platform, delivering colocation, build-to-suit, managed services, and interconnection solutions for hype...Show more
Last updated: 5 hours ago • Promoted • New!
IT Audit

IT Audit

Best Infosystems Ltd. • Delhi, India, India
Client interface for understanding the SOX IT General Controls as applicable to Application & Infrastructure operations.Conducting assessment of existing processes and align them to COBIT 2018 stan...Show more
Last updated: 30+ days ago • Promoted
Deputy Manager - Compliance

Deputy Manager - Compliance

Canara HSBC Life Insurance • Delhi, India
Impact on the Business / Function Disseminate new regulations / exposure drafts to the respective functions and have meetings with them and ensure timely implementation of the new regulations via Com...Show more
Last updated: 23 days ago • Promoted
Manager / Senior Manager - EdTech Systems & CRM

Manager / Senior Manager - EdTech Systems & CRM

Birla Institute of Technology and Science, Pilani • Delhi, India
This role will manage and optimize CRM, LMS, ERP, and SIS platforms to support institutional operations and student success. The role ensures customization of SaaS products, secure authentication vi...Show more
Last updated: 30+ days ago • Promoted
Information Technology Risk Manager

Information Technology Risk Manager

National Payments Corporation Of India (NPCI) • Delhi, India
We are looking for Operational IT Risk professional who have good experience into IT Risk.Location : Goregaon Mode of Operation : work from office. Education : Engineering Background (BE / BTech into com...Show more
Last updated: 9 days ago • Promoted