Cyber Security GRC Consultant

3 weeks ago


Surat, India DigiHelic Solutions Pvt. Ltd. Full time

As a Cybersecurity GRC , this position plays an vital role to support the implementation and management of governance, risk, and compliance initiatives that safeguard the organization's information assets. This role involves assisting in the execution of cybersecurity policies, conducting risk assessments, participating in audits, and evaluating third-party risk. You will contribute to aligning business objectives with security best practices and regulatory standards such as ISO 27001, NIST, and ITGC. The position requires a foundational understanding of security frameworks and a collaborative approach to strengthening the organization’s cyber risk posture.

Key Responsibilities

  • Assist in the design, implementation, and maintenance of cybersecurity GRC frameworks (ISO 27001, NIST, COBIT, etc.)
  • Support the implementation of GRC frameworks (ISO 27001, NIST, COBIT) across various functions.
  • Assist in drafting and updating cybersecurity policies, procedures, and control documentation.
  • Conduct and document basic IT/cybersecurity risk assessments and internal control reviews.
  • Maintain portions of the risk register and support the tracking of mitigation plans and KRIs.
  • Assist in internal/external audit activities, including control testing and evidence collection.
  • Perform initial third-party risk reviews and support due diligence documentation.
  • Track audit findings and help monitor remediation efforts to closure.
  • Contribute to compliance with global cybersecurity regulations (SOX, GDPR, DPDP, PCI-DSS).
  • Help prepare GRC dashboards and reports for internal stakeholders.
  • Collaborate with IT, legal, privacy, and compliance teams to support GRC initiatives.
  • Stay current on regulatory changes and industry standards impacting cybersecurity.
  • Support security awareness campaigns and participate in user training initiatives.
  • Work with GRC tools (e.g., Archer, ServiceNow GRC, or Excel-based trackers) to manage workflows and data.

Primary Skills:

  • Governance, Risk & Compliance (GRC)
  • Information Security Policies & Standards
  • IT Risk Assessment
  • ISO 27001 / NIST / SOC 2
  • Regulatory Compliance (SOX, GDPR, PCI-DSS, DPDP)
  • ITGC & Control Testing
  • Internal Audit Support
  • Risk Register Maintenance
  • Documentation & Reporting
  • Third-Party Risk Support
  • Cybersecurity Awareness Support

Secondary Skills

  • Audit Remediation Tracking
  • Vendor Due Diligence Support
  • Data Privacy & Protection Awareness
  • SLA / Contract Review (Basic Level)
  • KPI/KRI Reporting (Support Role)
  • Change Risk Assessment Participation
  • Business Continuity (BCP/DR) Awareness
  • Familiarity with emerging regulations (DORA, DPDP, etc.)
  • GRC Tools (e.g., Archer, ServiceNow GRC, Excel Trackers)

Desired Qualifications

  • Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, or a related field
  • 1–5 years of experience in GRC, IT audit, risk management, cybersecurity, or compliance roles.
  • Foundational knowledge of IT control and compliance frameworks (ISO 27001, NIST, SOC 2, COBIT).
  • Understanding of regulatory environments and compliance needs (e.g., GDPR, SOX, PCI-DSS, DPDP).
  • Strong analytical, documentation, and communication skills.
  • Willingness to learn and adapt in a fast-paced cybersecurity environment.
  • Certifications like ISO 27001 Foundation, CISA (beginner level), or CompTIA Security+ are a plus.



  • Surat, India Seven Consultancy Full time

    JOB DETAILS Monitor computer networks for security issuesInvestigate security breaches and other cybersecurity incidents Install security measures and operate software to protect systems and information infrastructure, including firewalls and data encryption programs Document security breaches and assess the damage they cause Work with the security team to...


  • Surat, Gujarat, India Blackroot technologies Full time

    **Job Title: Cybersecurity Intern** **Location**: Surat, Gujarat **Duration**: 3-6 Month **Company Overview**: Established in 2014, Blackroot Technologies is a trusted leader in cybersecurity, digital forensics, cyber range simulations, training, and IT consulting. With over a decade of experience, we bring unparalleled expertise to protect your digital...


  • Surat, India KMM Infotech Solutions Private Limited Full time

    Job Title: Security / IT AnalystLocation: Remote (India)About the RoleWe are seeking a proactive, detail-oriented Security Analyst to work closely with our Security Consultant in driving key security initiatives across the organization. This role is ideal for someone with a foundational understanding of cybersecurity or a strong interest in the field,...

  • Cyber Law

    1 week ago


    Surat, Gujarat, India Vitasta Consulting Full time

    Job Profile Cyber Law Compliance Research Specialist Key Responsibilities Apply knowledge of IT Act 2000 DPDP Act 2023 and industry regulations RBI SEBI IRDAI etc to assess cyber incidents and compliance needs Set up and manage a Cyber Research Desk to track global threats breaches and trends Stay updated on laws and regulations related...

  • IT Security

    1 week ago


    Surat, Gujarat, India Larsen & Toubro Ltd Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    IT Security & Infra Management A. Information Security Operations Vulnerability Management Conduct regular vulnerability assessments of all application servers. Ensure timely patching and remediation of identified vulnerabilities. Endpoint Security Maintain compliance of all endpoints with Falcon CrowdStrike...

  • IT Security

    2 weeks ago


    Surat, Gujarat, India L&T Technology Services Ltd. Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    IT Security & Infra ManagementLNT/IS-IM/1427412LTPO- L&T Energy-CarbonLite SolutionsSuratPosted On19 Aug 2025End Date15 Feb 2026Required Experience5 - 8 YearsSkillsKnowledge & Posting LocationINFORMATION SECURITYVULNERABILITY ASSESSMENTANTIVIRUSNETWORK SECURITYCLOUD SECURITYSIEM - SECURITY INFORMATION EVENT MANAGEMENTIT SECURITY POLICIES & PROCEDURESISO...


  • Surat, Gujarat, India Cybermatricks Group Of Companies Full time ₹ 2,00,000 - ₹ 6,00,000 per year

    We are hiring a Cybersecurity Trainer (1-2 yrs, Surat) to conduct interactive training on network security, ethical hacking, and tools & technique with practicals.Strong communication required.Apply at or call

  • IT Security

    1 week ago


    Hazira, Surat, India Larsen & Toubro (L&T) Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    A. Information Security OperationsVulnerability ManagementConduct regular vulnerability assessments of all application servers.Ensure timely patching and remediation of identified vulnerabilities.Endpoint SecurityMaintain compliance of all endpoints with Falcon CrowdStrike antivirus and EDR.Ensure consistent endpoint protection coverage across the...


  • Surat, Gujarat, India Casepoint Full time

    Surat, Gujarat Work Type: Full Time **About Company**: Casepoint provides full eDiscovery capabilities through a powerful, secure, cloud-based platform. We are repeatedly chosen by leading law firms and multinational corporations for their largest matters. On an upward trajectory for almost a decade, Casepoint is looking to expand its team globally. Team...

  • Lead Engineer

    3 weeks ago


    Surat, India REA Cyber City Full time

    About REA Group:In 1995, in a garage in Melbourne, Australia, REA Group was born from a simple question: “Can we change the way the world experiences property?” Could we? Yes. Are we done? Never. Fast forward 30 years, REA Group is a market leader in online real estate in three continents and continuing to grow rapidly across the globe. The secret to our...