About the role

  • IT Governance, Risk and Compliance Analyst managing compliance initiatives like NIST and ISO standards in technology and security operations.

Responsibilities

  • Manage IT Compliance programs and support IT/ Security initiatives, including NIST CSF 2.0, ISO 27001:2022, GDPR, DPDP Act and other similar standards and frameworks.
  • Manage internal and external audits, including coordination with auditors, evidence collection, and remediation of findings.
  • Drive IT risk assessments, vendor risk management, and corrective action plans.
  • Collaborate with IT, security, and product teams to ensure operational practices meet compliance requirements.

Requirements

  • 5+ years of experience in IT Audit, IT Risk, GRC, or Information Security.
  • Strong understanding of IT general controls, security operations, and data protection requirements.
  • Experience with IT audit management, evidence collection, and control testing.
  • Experience with end to end Third-party risk management including tiered vendor reviews, security questionnaires, risk scoring, and ongoing monitoring.
  • Hands-on knowledge of NIST CSF, NIST SP 800-53 and ISO 27001.
  • Knowledge of Cloud fundamentals (AWS), SaaS models, and modern infrastructure.
  • Excellent communication, documentation, and stakeholder management skills.
  • Strong analytical and problem-solving abilities.
  • B.E / B.Tech - IT /CS
  • Professional certifications such as CISM, CISSP.
  • Good to Have Prior security engineering or application security background before moving into GRC.
  • Experience in a regulated sector (Banking, Fintech, Insurance) or Big 4 Audit (IT Risk advisory) is highly preferred.

Benefits

  • N/A

Job title

Senior GRC Analyst

Job type

Experience level

Senior

Salary

Not specified

Degree requirement

Bachelor's Degree

Tech skills

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job