Grc Consultant

5 days ago


Hyderabad, India Nopal Support Services Full time

Job Statement:

NopalCyber makes cybersecurity manageable, affordable, reliable, and powerful for companies that need to be resilient and compliant. Managed extended detection and response (MXDR), attack surface management (ASM), breach and attack simulation (BAS), and advisory services fortify your cybersecurity across both offense and defense. AI-driven intelligence in our Nopal360 platform, our NopalGo mobile app, and our proprietary Cyber Intelligence Quotient (CIQ) lets anyone quantify, track, and visualize their cybersecurity posture in real-time. Our service packages, which are each tailored to a clients needs and budget, and external threat analysis, which provides critical intelligence at no-cost, help to democratize cybersecurity by making enterprise-grade defenses and security operations available to organizations of all sizes. NopalCyber lowers the barrier to entry while raising the bar for security and service.

We are looking for a detail-oriented and proactive GRC professional with hands-on experience in SOC 2 Type 1 and Type 2, NIST CSF, NIST SP and ISO 27001 controls.

Job Responsibilities:

  • Lead and support the implementation, maintenance, and continuous improvement of information security compliance programs, specifically focusing on SOC 2 Type 1 and Type 2, NIST Cybersecurity Framework (CSF), NIST Special Publications (SP , and ISO 27001.
  • Develop, review, and update security policies, procedures, and guidelines to align with relevant compliance frameworks and regulatory requirements.
  • Conduct risk assessments and gap analyses against SOC 2, NIST, and ISO 27001 controls to identify areas for improvement and ensure audit readiness.
  • Prepare and compile documentation, evidence, and responses for audit requests efficiently and accurately.
  • Support the identification, assessment, and mitigation of information security risks in accordance with established risk management frameworks (e.g., NIST RMF).
  • Contribute to risk assessments and business impact analysis.
  • Maintain comprehensive documentation of security controls, compliance activities, and remediation plans.
  • Prepare regular reports on compliance status, key metrics, and areas of concern for management and stakeholders.
  • Perform comprehensive third-party risk assessments to evaluate vendor compliance with information security policies.
  • Develop and maintain TPRM processes to monitor and mitigate risks associated with external vendors.
  • Ensure effective communication and documentation of third-party risk assessments.
  • Assist in drafting and updating organizational policies and procedures for governance and compliance.

Job Specifications:

  1. Qualification:

  2. Bachelors degree in Engineering or closely related coursework in technology development disciplines

  3. Certifications Security+, CEH, ISO 27001 Lead Implementer/Lead Auditor, CISA, CISM (good to have, but not mandatory)

  4. Experience:

  5. Total Experience (2): 2-4 years

  6. Seniors: 5 to 8 years

Knowledge and Experience:

  • Demonstrable experience with the implementation and/or auditing of SOC 2 Type 1 and Type 2.
  • Solid understanding and practical experience with NIST Cybersecurity Framework (CSF) and NIST Special Publications (e.g., SP
  • Knowledge of various security domains such as network security, application security, data privacy, and vulnerability management.
  • Strong understanding of information security principles and related compliance controls. Ability to articulate the relevance of the security controls
  • Experience in delivery of Information Security risk and compliance advisory services
  • Experience in management consulting and information security audits
  • Experience around technology risk assessments
  • Hands-on experience in GRC projects
  • Proficient in preparation of reports, dashboards and documentation
  • Ability to research and develop new risk-based security offerings
  • Comfortable working in a project based / client serving model

Personal Attributes

  • Self-starter and quick learner requiring minimal ramp-up
  • Excellent written, oral, and interpersonal communication skills
  • Highly self-motivated, self-directed, and attentive to detail
  • Ability to effectively prioritize and execute tasks in a high-pressure environment

  • SAP GRC Consultant

    10 hours ago


    Hyderabad, Telangana, India IDESLABS PRIVATE LIMITED Full time US$ 90,000 - US$ 1,20,000 per year

    Minimum of 5+ years of experience in SAP GRC consulting. Proficient in SAP GRC Access Control, Process Control, and Risk Management modules. Strong understanding of business processes and risk management principles. Excellent analytical, problem-solving, and communication skills. Minimum of 5 years practical SAP GRC Implementation and support.Atleast 1...


  • Hyderabad, Telangana, India Evnek Full time US$ 90,000 - US$ 1,20,000 per year

    We are seeking a skilled Cybersecurity GRC Consultant with 6+ years of experience, preferably immediate joiners for our Hyderabad location.The ideal candidate will have expertise in governance, risk, and compliance (GRC), conducting internal audits, performing risk assessments, and ensuring compliance with global data protection regulations.Responsibilities...

  • Sap Grc Consultant

    5 days ago


    Bengaluru, Hyderabad, Pune, India Tata Consultancy Services Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    Greetings from TCSTCS is hiring for SAP GRC for Bangalore locationJob Title: SAP GRC ConsultantLocation: BangaloreExperience Range: 8-11 YearsTCS has always been in the spotlight for being adept in the next big technologies. What we can offer you is a space to explore varied technologies and quench your techie soul.JOB DESCRIPTION:SAP User ProvisioningSAP...


  • Hyderabad, India People Prime World Wide Full time

    About Company : They balance innovation with an open, friendly culture and the backing of a long-established parent company, known for its ethical reputation.We guide customers from whats now to whats next by unlocking the value of their data and applications to solve their digital challenges, achieving outcomes that benefit both business and society.Job...

  • SAP Security

    4 hours ago


    Hyderabad, India ToggleNow Full time

    We are seeking an experienced SAP Security & GRC Consultant to join our dynamic team in Hyderabad. This role demands deep expertise in SAP Security and Governance, Risk & Compliance (GRC) across implementation, support, and upgrade projects. The ideal candidate should possess strong functional and technical understanding of security concepts, SoD risks, role...

  • SAP Security

    5 hours ago


    Hyderabad, India ToggleNow Full time

    We are seeking an experienced SAP Security & GRC Consultant to join our dynamic team in Hyderabad. This role demands deep expertise in SAP Security and Governance, Risk & Compliance (GRC) across implementation, support, and upgrade projects. The ideal candidate should possess strong functional and technical understanding of security concepts, SoD risks, role...


  • Hyderabad, Telangana, India Genpact Full time

    Job DescriptionReady to build the future with AIAt Genpact, we don't just keep up with technology-we set the pace. AI and digital innovation are redefining industries, and we're leading the charge. Genpact's AI Gigafactory, our industry-first accelerator, is an example of how we're scaling advanced technology solutions to help global enterprises work...


  • Hyderabad, Telangana, India ADV TECHMINDS Full time

    Project Short Description SAP GRC PC consultantIntegrate PC with service now and automate controlRole SAP GRC Process Controljob description 8-10 years experience in SAP GRC AC and SAP Security Candidate must have experience in GRC PC Process Control most important requirement Deep knowledge of SAP GRC 12 0 implementation and Support Experience in...


  • Hyderabad, Telangana, India Viraaj HR Solutions Private Limited Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    About The OpportunityA fast-growing IT services and enterprise software solutions provider focused on secure digital workflows and governance, risk & compliance (GRC) automation for large enterprises. We deliver ServiceNow-driven programs that streamline policy, risk, audit, and vendor-risk processes to improve control posture and regulatory readiness.We are...


  • Hyderabad, Telangana, India Mindlinks Informatics Private Limited Full time

    Job DescriptionWe MiNdLiNkS IT Consulting are looking for Any IT or NON IT or any Domain experienced resources having 3+ years of experience and willing work from home (WFH) in a reputed MNC in a permanent position and by Upskilling with SERVICENOW GRC(Governance, Risk & Compliance) Module. This is a WORKBENCH Hiring Program, where we train you and let you...