Security GRC 2LoD

4 weeks ago


Bengaluru, India Soffit Infrastructure Services (P) Ltd Full time

Job Overview :

The Security GRC (Governance, Risk, and Compliance) 2nd Line of Defense (2LoD ) role is crucial in maintaining and enhancing the organization’s security posture by effectively managing risks, ensuring compliance with applicable regulations, and supporting the overall governance framework. The role involves monitoring risk remediation efforts, providing expert guidance, and supporting the first line of defense (1LoD) in achieving security objectives.


Key Responsibilities :

● Risk Management:

- Monitor risk remediation activities exceeding the risk appetite.

- Develop and implement risk mitigation strategies and action plans.

- Report to boards and working groups on a regular basis, providing advice and resolving conflicting goals

● Compliance & Assurance Management:

- Stay abreast of relevant laws, regulations, and industry standards affecting the organization. - Ensure compliance with regulatory requirements.

- Monitor control implementation & effectiveness. Track control attestations and exceptions Evaluating the implementation and effectiveness of a control.

- Participate in security incident investigations, documenting findings, and recommending corrective actions.

● Metrics and reporting:

- Support Int’l GRC management and entity management reporting needs.

- Analyze security metrics data to identify trends, patterns, and anomalies that may indicate areas of concern or opportunities for improvement.

● Resilience

- Report to management on overall Resilience status as measured against risk appetite/tolerance.

● Security Outsourcing

- Coordinate with 1LOD to assess/monitor SLA performance for outsourced security services, and report back on root cause for non compliance.

● Other responsibilities:

- Maintain runbooks/SOPs for 2LOD support .

- Actively collaborate with 1LOD to streamline processes.

- Participate in team meetings and other project support meetings actively.

- Identify and recommend opportunities to improve current processes.

- Maintain strict compliance with CB IT and Security policies and procedures


Qualifications :

● Bachelor’s degree in Computer Science or a related field.

● Alternatively, candidates with a minimum of 5-10 years of relevant experience in IT and Security Program Management , particularly with a focus on managing enterprise-scale projects and remote personnel, may be considered. Proficiency in project management methodologies , information security best practices , and relevant technical skills is essential. PMP or similar certifications are a plus.

● Other Experience with program lifecycles, scheduling, budgeting, risk management, and conflict resolution techniques.

● 6+ years of experience in Project Management, Program Management or a similar field.

● 3+ years of experience supporting security engineering, regulatory compliance, risk management, audit, or other applicable programs/projects.

● Self-motivated and able to work with minimal supervision across time zones and geographies


  • Security GRC 2LoD

    1 week ago


    Bengaluru, Karnataka, India Soffit Infrastructure Services (P) Ltd Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Job Overview:TheSecurity GRC(Governance, Risk, and Compliance) 2nd Line of Defense (2LoD) role is crucial in maintaining and enhancing the organization's security posture by effectively managing risks, ensuring compliance with applicable regulations, and supporting the overall governance framework. The role involves monitoring risk remediation efforts,...

  • Security grc 2lod

    3 weeks ago


    Bengaluru, India Soffit Infrastructure Services Full time

    Job Overview :The Security GRC (Governance, Risk, and Compliance) 2nd Line of Defense ( 2 Lo D ) role is crucial in maintaining and enhancing the organization’s security posture by effectively managing risks, ensuring compliance with applicable regulations, and supporting the overall governance framework. The role involves monitoring risk remediation...

  • GRC Consultant

    5 days ago


    Bengaluru, Karnataka, India Soffit Infrastructure Services (P) Ltd. Full time ₹ 25,00,000 - ₹ 50,00,000 per year

    Responsibilities:Risk Management:-Monitor risk remediation activities exceeding the risk appetite.-Develop and implement risk mitigation strategies and action plans.-Report to boards and working groups on a regular basis, providing advice and resolving conflicting goalsCompliance & Assurance Management:-Stay abreast of relevant laws, regulations, and...


  • Bengaluru, Chennai, Kochi, India Contactx Resource Management Full time ₹ 30,00,000 - ₹ 40,00,000 per year

    We are hiring for one of the Big 4 Immediate -60 Days joiners Technical Skills : • Functional Knowledge: Significant Know How of various domains under Governance & Management of Enterprise IT, Financial Statements - IT Audit Process & Integrated Audits, Leading IT Risk Management Frameworks & Standards (such as COBIT, COSO, ITIL, ISO 27001, NIST...


  • Bengaluru, India Aviin Jobs Services Full time

    Job Description Job description Primary Skill: SAP GRC/Security Consultant Project : Support Project SAP SAP GRC/Security Consultant with 4+y of relevant exp 4+ years of experience of working in SAP security and GRC Access control Application Management Services Role:Technical Consultant Industry Type:IT Services &...

  • SAP GRC Security

    2 weeks ago


    Bengaluru, Karnataka, India Growel Softech Pvt. Ltd. Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    GRC Access Control Experience: - 4.5 Yrs. to 6 yrs. Should have hands on experience on Implementation and configuration of GRC 10.1/12 with at least one end to end project experience. Configured to integrate SAP Enterprise Portal with GRC 12 Implemented/support GRC AC, Configured GRC AC Access Risk Analysis (ARA) and Emergency Access Management (EAM)...


  • Bengaluru, Karnataka, India Talent Worx Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    SAP GRC (Governance, Risk, and Compliance)/ Security Consultant to join our team. In this role, you will be responsible for implementing and managing security protocols and compliance measures within our SAP environment to safeguard sensitive data and ensure adherence to regulations.As a Senior Consultant, you will lead projects focused on SAP GRC solutions,...


  • Bengaluru, India Teamware Solutions Full time

    Job Description Job Summary: The SAP GRC and Security Consultant is responsible for implementing and managing SAP security roles and authorizations while ensuring compliance through SAP Governance, Risk, and Compliance (GRC) tools. This role ensures secure access across SAP systems, supports audits, and helps maintain internal controls aligned with business...


  • Bengaluru, Karnataka, India Growel Softech Pvt. Ltd. Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Should have hands on experience on Implementation and configuration of GRC 10.1/12 with at least one end to end project experience. Configured to integrate SAP Enterprise Portal with GRC 12 Implemented/support GRC AC, Configured GRC AC Access Risk Analysis (ARA) and Emergency Access Management (EAM) components.Successfully implemented various MSMP workflows...


  • Bengaluru, India INTVERSE IT SOLUTIONS PRIVATE LIMITED Full time

    Job Title : SAP ECC, GRC, and S/4 HANA Security Consultant Experience : Minimum 6 Years (Support & Rollouts)Payroll Company : Intverse IT Solutions Pvt Ltd (Only Immediate Joiner)Job Type : Full-time Permanent Location: Hebbal, Bangalore (On-site - Client Location)Job Overview :We are looking for an experienced SAP Security Consultant with strong expertise...