Security GRC 2LoD

2 weeks ago


Bengaluru, Karnataka, India Soffit Infrastructure Services (P) Ltd Full time

Job Overview:

The Security GRC (Governance, Risk, and Compliance) 2nd Line of Defense (2LoD) role is crucial in maintaining and enhancing the organization's security posture by effectively managing risks, ensuring compliance with applicable regulations, and supporting the overall governance framework. The role involves monitoring risk remediation efforts, providing expert guidance, and supporting the first line of defense (1LoD) in achieving security objectives.

Key Responsibilities:

● Risk Management:

- Monitor risk remediation activities exceeding the risk appetite.

- Develop and implement risk mitigation strategies and action plans.

- Report to boards and working groups on a regular basis, providing advice and resolving conflicting goals

● Compliance & Assurance Management:

- Stay abreast of relevant laws, regulations, and industry standards affecting the organization. - Ensure compliance with regulatory requirements.

- Monitor control implementation & effectiveness. Track control attestations and exceptions Evaluating the implementation and effectiveness of a control.

- Participate in security incident investigations, documenting findings, and recommending corrective actions.

● Metrics and reporting:

- Support Int'l GRC management and entity management reporting needs.

- Analyze security metrics data to identify trends, patterns, and anomalies that may indicate areas of concern or opportunities for improvement.

● Resilience

- Report to management on overall Resilience status as measured against risk appetite/tolerance.

● Security Outsourcing

- Coordinate with 1LOD to assess/monitor SLA performance for outsourced security services, and report back on root cause for non compliance.

● Other responsibilities:

- Maintain runbooks/SOPs for 2LOD support.

- Actively collaborate with 1LOD to streamline processes.

- Participate in team meetings and other project support meetings actively.

- Identify and recommend opportunities to improve current processes.

- Maintain strict compliance with CB IT and Security policies and procedures

Qualifications:

● Bachelor's degree in Computer Science or a related field.

● Alternatively, candidates with a minimum of 5-10 years of relevant experience in IT and Security Program Management, particularly with a focus on managing enterprise-scale projects and remote personnel, may be considered. Proficiency in project management methodologies, information security best practices, and relevant technical skills is essential. PMP or similar certifications are a plus.

● Other Experience with program lifecycles, scheduling, budgeting, risk management, and conflict resolution techniques.

● 6+ years of experience in Project Management, Program Management or a similar field.

● 3+ years of experience supporting security engineering, regulatory compliance, risk management, audit, or other applicable programs/projects.

● Self-motivated and able to work with minimal supervision across time zones and geographies


  • Security GRC 2LoD

    1 week ago


    Bengaluru, Karnataka, India Soffit Infrastructure Services (P) Ltd Full time

    Job Overview:The Security GRC (Governance, Risk, and Compliance) 2nd Line of Defense (2LoD) role is crucial in maintaining and enhancing the organization's security posture by effectively managing risks, ensuring compliance with applicable regulations, and supporting the overall governance framework. The role involves monitoring risk remediation efforts,...

  • GRC Consultant

    2 weeks ago


    Bengaluru, Karnataka, India Soffit Infrastructure Services (P) Ltd. Full time ₹ 50,00,000 per year

    Responsibilities:Risk Management:-Monitor risk remediation activities exceeding the risk appetite.-Develop and implement risk mitigation strategies and action plans.-Report to boards and working groups on a regular basis, providing advice and resolving conflicting goalsCompliance & Assurance Management:-Stay abreast of relevant laws, regulations, and...

  • SAP Security GRC

    2 weeks ago


    Bengaluru, Karnataka, India UST Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    Greetings from UST We have an urgent opening for Skill :- SAP Security GRC - Bangalore,Trivandrum,Chennai. Minimum 5 year of experience in SAP Security. We are looking for immediate to 1 week. SAP GRC :SAP GRC Access control : The ability to customize and configure SAP GRC solutions to meet the specific needs of the organization. Hands on experience in SAP...

  • SAP GRC Security

    2 weeks ago


    Bengaluru, Karnataka, India Tata Consultancy Services Full time ₹ 15,00,000 - ₹ 20,00,000 per year

    Role : SAP GRC SecurityExp Range : 4+YearsLocation : Pan IndiaJob Description :5-10 years of SAP security experience in ECC/BW/CRM/PI/PO/NetWeaver Portal landscapes. Experience in handling SOX audits, and working on internal and external IT SOX audit controls, gather evidences and submit to auditors. Experience in GRC 10.1/GRC 12.0 in ARM/EAM/ARA modules....


  • Bengaluru, Karnataka, India Intverse It Solutions Full time US$ 90,000 - US$ 1,20,000 per year

    Job Title: SAP GRC Security Consultant Location: Bengaluru (Immediate) Client- LocationJob Type: Full-Time, PermanentWork Mode: On-siteAbout the RoleWe are looking for an experienced SAP GRC Security Consultant to manage security architecture, role design, and compliance across SAP systems. If you have expertise in SAP GRC, security configurations, and risk...

  • SAP GRC Security

    2 weeks ago


    Bengaluru, Karnataka, India People Prime Worldwide Full time ₹ 15,00,000 - ₹ 20,00,000 per year

    About Company: They balance innovation with an open, friendly culture and the backing of a long-established parent company, known for its ethical reputation. We guide customers from what's now to what's next by unlocking the value of their data and applications to solve their digital challenges, achieving outcomes that benefit both business and society. Job...

  • - SAP GRC

    1 week ago


    Bengaluru, Karnataka, India INTVERSE IT SOLUTIONS PRIVATE LIMITED Full time

    Job Title : SAP ECC, GRC, and S/4 HANA Security Consultant Experience : Minimum 6 Years (Support & Rollouts)Payroll Company : Intverse IT Solutions Pvt Ltd (Only Immediate Joiner)Job Type : Full-time Permanent Location: Hebbal, Bangalore (On-site - Client Location)Job Overview :We are looking for an experienced SAP Security Consultant with strong expertise...


  • Bengaluru, Karnataka, India beBeeSecurity Full time ₹ 15,00,000 - ₹ 20,00,000

    Job Opportunity: Security SpecialistKey Responsibilities:Implement and configure SAP GRC Process Control and Access Control modules.Develop control frameworks aligned with business processes and regulatory requirements.Perform risk assessments, identify control gaps, and support remediation activities.Collaborate with cross-functional teams to translate...


  • Bengaluru, Karnataka, India TalentOla Full time

    SAP Security Consultant with strong hands-on expertise in SAP GRC Governance Risk and Compliance and core SAP Security ECC S 4HANA Fiori etc The ideal candidate will be responsible for designing implementing and maintaining security roles access controls and compliance frameworks across SAP systems to ensure secure and compliant enterprise...


  • Bengaluru, Karnataka, India Acesoft Labs Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    Job Title: SAP Security and GRC Consultant.Project OverviewThis role is part of the Mozart GP6A/B Rollouts within the SAP security domain. The consultant will focus on SAP S/4HANA, GRC, and Cloud Security, working across implementation, security architecture, and ongoing operations support for SAP and integrated systems like VIM, BTP, and Power AppsRoles &...