Senior GRC Specialist

2 days ago


Bengaluru, India Locus.sh Full time

Job Title:  Senior GRC Specialist Location:  Bangalore (On-site; full-time) About Locus Battle-tested in 350+ deployments across 30+ countries, Locus is an agentic Transportation Management System for all-mile, all-channel, trusted by enterprises like Unilever, Nestlé, and Siam Makro.  The platform unifies orders, capacity, and carrier networks into one living plan, aligning planning, execution, and settlement so promises become proof. AI co-pilots with guardrails surface risk early and recommend the next best move to protect SLAs and reduce empty miles.  In 2025, Locus joined the Ingka Group (IKEA Retail) family, marking a major milestone in our journey. Backed by the scale and strength of IKEA, we continue to operate independently while accelerating our mission to make global supply chains faster, smarter, and more sustainable. Our Journey and Impact Since 2015, Locus has been on a mission to make logistics decision-making intelligent, sustainable, and real-world ready. Our platform has powered billions of deliveries across 30 + countries for global enterprises, driving measurable impact in cost savings, carbon reduction, and SLA performance. With the strength of the IKEA ecosystem behind us, we’re scaling that impact even further. Our Global Footprint Headquartered in Bangalore, with teams across the U.S., U.K., UAE, and Southeast Asia, Locus brings together 170 + engineers, designers, and problem-solvers united by a single goal: to reinvent how the world moves goods. Traits We Value We look for people who are: Global in mindset : curious about diverse markets and ideas. Unrelenting in drive : energized by complex challenges. Intelligent in approach : analytical, creative, and thoughtful. Dynamic in execution : adaptive and decisive in fast-moving contexts. Exact in craft : detail-oriented and committed to excellence. About the role As a  Senior GRC Specialist at  Locus, you’ll play a pivotal role in safeguarding the company’s data and systems while enabling global logistics innovation. This role involves leading the implementation of robust security and privacy frameworks like ISO27001, ISO 27701, NIST, SOC2 Type II, etc., driving risk assessments, managing audits, and ensuring compliance across jurisdictions. You'll work closely with cross-functional teams to embed security into every layer of the organization—people, processes, and technology. If you're passionate about security, privacy, and scalable compliance in a fast-paced tech environment, this is your opportunity to make a real impact. Key Responsibilities: Design, implement, and maintain  the organization’s  Information Security Management System (ISMS)  and  Privacy Information Management System (PIMS)  in alignment with ISO 27001, ISO 27701, and SOC2 Type II Drive  end-to-end security and privacy compliance  programs independently, ensuring alignment with business objectives and customer/regulatory expectations. Conduct  periodic risk assessments , develop risk treatment plans, and work closely with business and technical stakeholders to ensure timely mitigation. Develop, review, and improve  information security and privacy policies, processes, and controls  based on changes in the business environment, emerging threats, and applicable legal and regulatory requirements. Ensure  client contractual obligations (MSAs)  and  legal requirements  (e.g., GDPR, CCPA) are consistently met. Track and report compliance status and risks through  metrics, dashboards, and management reviews . Lead and coordinate  internal and external audits  (ISO 27001, SOC 2, etc.), including remediation and continual improvement efforts. Assess and onboard  critical third-party vendors  through structured  third-party risk assessments . Coordinate and execute  Business Continuity Planning (BCP)  and  Disaster Recovery (DR)  tests. Set guidelines and review adherence to  secure development practices , including  secure coding standards . Champion and conduct  employee awareness and training programs  for security and privacy during onboarding and ongoing learning cycles. Oversee the  incident response process , ensuring effective triage, containment, root cause analysis, and reporting of security and privacy incidents. Work closely with engineering/product teams to  embed privacy and security-by-design  principles into the product lifecycle. Liaise with vendors and partners to evaluate and deploy relevant  security tools and solutions . Automate  repetitive or redundant GRC tasks using scripting or low-code tools to improve efficiency. Key Requirements: 5–7 years of relevant experience in Governance, Risk & Compliance (GRC)  roles in a  product-based or technology-driven organization . Deep understanding of  compliance frameworks : ISO 27001, SOC 2, CSA STAR, BS 10012, ISO 27701. Solid knowledge of  global privacy regulations : GDPR, CCPA, and others. Proven experience leading  audits and regulatory assessments , including stakeholder management and remediation. Hands-on experience implementing  security/privacy controls  in  cloud environments  (AWS preferred). Ability to  translate compliance requirements into actionable security measures  across tech, product, and operations. Ability to work  independently  and manage compliance responsibilities across multiple functions and geographies. Good to Have Certifications (At least one certification in GRC is mandatory): CISA/CISM (recommended) CISSP  CIPM/CIPP-E   ISO 27001 Lead Auditor (recommended) CRISC ,  CCSK , or other GRC/privacy-focused credentials What We Offer Join Locus and become part of a visionary team that is redefining logistics through innovation and smart distribution. We provide competitive compensation, comprehensive benefits, and a collaborative environment where your expertise will drive both your growth and that of the organization. Locus is an equal opportunity employer dedicated to creating a diverse and inclusive workplace.


  • GRC Specialist

    19 hours ago


    Bengaluru, India Swift Strategic Solutions Inc Full time

    Job Description Our technology services client is seeking multiple GRC Specialist to join their team on a contract basis. These positions offer a strong potential for conversion to full-time employment upon completion of the initial contract period. Below are further details about the role: Role: GRC Specialist Experience: 3- 6 Years Location: PAN India...


  • Bengaluru, Karnataka, India c58ec0f4-3c66-4a7a-91de-d32598097e5e Full time ₹ 12,00,000 - ₹ 24,00,000 per year

    Job Title: Senior GRC SpecialistLocation: Bangalore (On-site; full-time)About LocusBattle-tested in 350+ deployments across 30+ countries, Locus is an agentic Transportation Management System for all-mile, all-channel, trusted by enterprises like Unilever, Nestlé, and Siam Makro.The platform unifies orders, capacity, and carrier networks into one living...


  • Bengaluru, Karnataka, India Locus Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Job Title: Senior GRC SpecialistLocation: Bangalore (On-site; full-time)About LocusBattle-tested in 350+ deployments across 30+ countries, Locus is an agentic Transportation Management System for all-mile, all-channel, trusted by enterprises like Unilever, Nestlé, and Siam Makro. The platform unifies orders, capacity, and carrier networks into one...

  • GRC Specialist

    7 days ago


    Bengaluru, Karnataka, India Atomicwork Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    At Atomicwork, we are redefining IT transformation through AI-driven solutions for ITSM and Employee Service Management in the B2B SaaS space. We are passionate about empowering businesses with tools that deliver operational excellence and customer satisfaction. As a fast-growing startup, we're looking for a GRC Specialist to ensure robust governance, risk...


  • Bengaluru, Karnataka, India -5dcb-4f42-94b8-ca7e422768b7 Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Location: Bangalore (On-site; full-time)About LocusBattle-tested in 350+ deployments across 30+ countries, Locus is an agentic Transportation Management System for all-mile, all-channel, trusted by enterprises like Unilever, Nestlé, and Siam Makro.The platform unifies orders, capacity, and carrier networks into one living plan, aligning planning, execution,...

  • Servicenow Grc

    6 days ago


    Bengaluru, Karnataka, India Cognizant Full time

    ServiceNow GRC Developer Experience: 5 to 18 years **Job Description**: GRC: The role of a ServiceNow GRC includes collaborating with other members of the engagement team to coordinate, plan and deliver ServiceNow GRC projects. developing security strategies, advising stakeholders, providing workshops, and supporting business development of SNOW...

  • Grc Consultantant

    6 days ago


    Bengaluru, Karnataka, India VachiLabs Innovations Pvt Ltd Full time

    Job Title - GRC Consultant 1. Function - Managing GRC Projects - Risk Management Specialist 2. Experience: 6-9 Years (Maximum) 3. Job Location - Bangalore and UAE (should be willing to travel within and outside India) 4. Education - Bachelor’s or Master’s degree in IT, ECE, Computer Science, or related field. Mandatory requirements - Recent...


  • Bengaluru, Karnataka, India Anlage Infotech (I) Pvt. Ltd. Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Role : ServiceNow GRC/IRM Professionals Are you an expert in ServiceNow GRC or IRM modules? We're looking for talented professionals with 5 - 9 years of experience in implementing cutting-edge GRC solutions across platforms like ServiceNow.Role Requirements : - Experience : 5 - 9 years in GRC implementation - Expertise in GRC platform (ServiceNow) ...


  • Bengaluru, Chandigarh, Chennai, India IDESLABS PRIVATE LIMITED Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    8+ years of experience in SAP Security/GRCShould have experience in security of SAP ECC , SRM, FI, CRM, HR, GRC, BW )SAP Security support for all SAP environmentsExperience in GRC access control, RAR (Risk Analysis and Remediation) and SOD (segregation of duty),mitigation and remediationDesign and implement new authorization concepts along with business...


  • Bengaluru, Karnataka, India Digihelic Solutions Private Limited Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Role : Cyber Security ServiceNow GRC Developer Detail Specification : Experience : 6 to 9 Years Location : Bangalore, India (Hybrid Mode) Role Type : Full-time Reporting To GRC Program Manager / Technical Lead Key Summary and Core Requirements : We are looking for a highly skilled and experienced Cyber Security ServiceNow GRC Developer...