Information Security GRC Engineer

5 days ago


Mumbai, India ECL Finance Full time

Position: Information Security GRC Engineer

Job Description: We are seeking a dedicated and talented Security GRC Engineer to join our Information Security Team. He / She will be responsible for ensuring that our organization adheres to relevant regulations, standards and internal policies related to information security and data privacy. The ideal candidate will have a strong understanding of regulatory requirements, excellent communication skills and the ability to collaborate effectively with cross-functional teams.

Responsibilities:
• Develop, implement and maintain organizations governance, risk and compliance program to ensure adherence to relevant regulations, standards and internal policies. Should be well versed with RBI, IRDAI and Cert-IN cyber security guidelines and regulations.
• Conduct regular reviews and audits of security policies, procedures and controls to evaluate compliance status, identifying areas for improvement and implementing corrective measures as necessary.
• Conduct periodic risk assessments to identify risks and vulnerabilities, implementing controls and measures to mitigate risks effectively.
• Lead and coordinate internal and external audits, assessments, and certifications. Prepare and submit regulatory filings and reports as mandated by relevant regulatory agencies, ensuring accurate and timely submission to maintain compliance obligations.
• Develop and implement a robust third-party risk management program to assess and mitigate security risks associated with vendors and other external partners.
• Coordinate with various internal stakeholders for closure of all open IS issues / audit findings.
• Plan and participate in Business Continuity and Disaster Recovery Drills.
• Participate and conduct periodic security awareness training and education programs for employees.

Qualifications:
• Bachelor's degree in Computer Science, Information Security or related field.
• 3+ years of experience in information security with a strong understanding of security controls, threats, vulnerabilities, and compliance frameworks.
• Strong understanding of relevant regulations, standards, and frameworks, such as ISO 27001, NIST Cybersecurity Framework etc.
• Strong communication and interpersonal skills with the ability to effectively collaborate with cross-functional teams.
• Strong analytical and problem-solving skills with the ability to conduct compliance assessments and audits independently.
• Relevant certifications such as CISA, CISM, ISO 27001 LI/LA are preferred.


  • GRC Analyst

    1 week ago


    Mumbai, India PINKVILLA Full time

    Pinkvilla is seeking a dynamic Information Security professional, who will play a key role in driving compliance programs, managing audits, supporting data protection initiatives, and ensuring third-party security risks are effectively identified and mitigated.Key ResponsibilitiesGovernance, Risk & Compliance (GRC)Develop, implement, and maintain information...

  • GRC Analyst

    20 hours ago


    Mumbai, India PINKVILLA Full time

    Pinkvilla is seeking a dynamic Information Security professional, who will play a key role in driving compliance programs, managing audits, supporting data protection initiatives, and ensuring third-party security risks are effectively identified and mitigated.Key ResponsibilitiesGovernance, Risk & Compliance (GRC)Develop, implement, and maintain information...

  • Grc analyst

    3 days ago


    Mumbai, India PINKVILLA Full time

    Pinkvilla is seeking a dynamic Information Security professional, who will play a key role in driving compliance programs, managing audits, supporting data protection initiatives, and ensuring third-party security risks are effectively identified and mitigated. Key Responsibilities Governance, Risk & Compliance (GRC) Develop, implement, and maintain...

  • GRC Analyst

    21 hours ago


    Mumbai, India PINKVILLA Full time

    Pinkvilla is seeking a dynamic Information Security professional, who will play a key role in driving compliance programs, managing audits, supporting data protection initiatives, and ensuring third-party security risks are effectively identified and mitigated.Key ResponsibilitiesGovernance, Risk & Compliance (GRC)- Develop, implement, and maintain...

  • GRC Analyst

    1 week ago


    Mumbai, India PINKVILLA Full time

    Pinkvilla is seeking a dynamic Information Security professional, who will play a key role in driving compliance programs, managing audits, supporting data protection initiatives, and ensuring third-party security risks are effectively identified and mitigated. Key Responsibilities Governance, Risk & Compliance (GRC) Develop, implement, and...


  • Mumbai, India Flywings Hr Services Full time

    Looking for a smart GRC specialist in Information security, with strong experience in ISO27001 Lead Auditor, RBI Compliance. Immediate Joiner - Ready to join in 10 days. Budget - 8LPA - 10 LPA. Location:- Kurla West, Mumbai.

  • GRC Analyst

    1 week ago


    Mumbai, India PINKVILLA Full time

    Pinkvilla is seeking a dynamic Information Security professional, who will play a key role in driving compliance programs, managing audits, supporting data protection initiatives, and ensuring third-party security risks are effectively identified and mitigated.Key ResponsibilitiesGovernance, Risk & Compliance (GRC)Develop, implement, and maintain information...

  • GRC Analyst

    7 days ago


    mumbai, India PINKVILLA Full time

    Pinkvilla is seeking a dynamic Information Security professional, who will play a key role in driving compliance programs, managing audits, supporting data protection initiatives, and ensuring third-party security risks are effectively identified and mitigated.Key ResponsibilitiesGovernance, Risk & Compliance (GRC)Develop, implement, and maintain information...

  • GRC Analyst

    7 days ago


    Mumbai, India PINKVILLA Full time

    Pinkvilla is seeking a dynamic Information Security professional, who will play a key role in driving compliance programs, managing audits, supporting data protection initiatives, and ensuring third-party security risks are effectively identified and mitigated.Key ResponsibilitiesGovernance, Risk & Compliance (GRC)Develop, implement, and maintain information...

  • GRC Analyst

    7 days ago


    Mumbai, India PINKVILLA Full time

    Pinkvilla is seeking a dynamic Information Security professional, who will play a key role in driving compliance programs, managing audits, supporting data protection initiatives, and ensuring third-party security risks are effectively identified and mitigated. Key Responsibilities Governance, Risk & Compliance (GRC) Develop, implement, and maintain...