GRC Consultant :
We are seeking a skilled and detail-oriented professional to lead or support the implementation, administration, and optimization of the OneTrust GRC platform. This role is critical to configuring modules, enabling workflows, and aligning platform capabilities with enterprise risk management, compliance, audit, and policy management frameworks to ensure organizational governance and regulatory adherence.
Key Responsibilities :
- Administer and configure OneTrust GRC modules such as Risk Management, Audit Management, Compliance, Policy Management, Third Party Risk Management (TPRM), and others.
- Customize templates, workflows, and dashboards to align the platform with organizational processes and objectives.
- Manage user roles, permissions, access control, and enforce data governance standards within the OneTrust environment.
- Support enterprise and operational risk assessments including issue and control tracking and remediation.
- Facilitate the full policy lifecycle management drafting, review, approval, and publication leveraging OneTrust capabilities.
- Enable regulatory compliance tracking and reporting aligned with standards and frameworks including ISO 27001, NIST CSF, GDPR, SOX, etc.
- Coordinate integration efforts between OneTrust and other enterprise systems such as ServiceNow, Azure Active Directory, Jira, CMDB, and others.
- Develop and implement automated reporting, notification systems, and workflows to improve GRC efficiency and effectiveness.
- Collaborate with Information Security, Legal, Internal Audit, and Business Unit leaders to gather requirements and deliver tailored OneTrust solutions.
- Conduct training sessions and develop comprehensive user guides and documentation to support platform users.
- Generate compliance reports, control assurance documentation, and risk dashboards for stakeholders and regulatory purposes.
- Support audit activities by providing timely data and evidence through the OneTrust platform.
Qualifications & Skills :
Proven experience with OneTrust GRC platform administration, configuration, and implementation.Strong understanding of risk management, compliance, audit, and policy management frameworks.Familiarity with regulatory frameworks such as ISO 27001, GDPR, SOX, NIST CSF, or similar.Experience integrating OneTrust with enterprise systems (e.g., ServiceNow, Azure AD).Excellent problem-solving, analytical, and communication skills.Ability to work collaboratively across multiple teams and manage stakeholder expectations.Strong documentation and training skills.(ref : hirist.tech)