Senior Security Governance, Risk, Compliance

1 month ago


bangalore, India Nutanix Full time

The Opportunity

Reporting to the Director Information Security, Governance, Risk, and Compliance, the Senior GRC Lead will contribute to the development and operational execution of the program, including risk management and compliance with standards and regulations such as ISO27001 and EU GDPR.Information Technology at NutanixYour Role· Support the GRC operating model and the service-oriented customer engagement model.· Provide Cybersecurity Risk Management leadership and operational delivery of the program.· Support GRC capabilities, such as compliance and audit management, policy management, security awareness training, third party risk management, and metrics and reporting.· Assist to manage security compliance programs and activities that support various compliance regulations.· Perform risk assessments to address security threats, changes to systems and/or applications, process improvement initiatives, supplier assessments (including downstream outsourcers) and other requests from the business.· Collaborate with various operational and business teams to complete assessments, develop treatment plans, and drive remediation items to closure. Maintain accurate reporting of remediation activities to bring appropriate visibility to stakeholders and leadership.· Monitor the security risk profiles and events of our suppliers to objectively determine high risk suppliers that require additional review and treatment plans.. Establish and maintain security metrics and reporting.·Respond to customer security/compliance questionnaires.· Act as security risk management “ambassador” to internal customers.What You Will Bring· Candidates must have at least 7 years working in governance, risk and compliance and/or information security and risk management, and at least 5 in risk management.· Functional knowledge of the CISSP security domains and information security industry standard and best practices.· Functional knowledge of applicable security regulatory and compliance requirements (SOX, GDPR). Functional knowledge of ISMS governance models and analysis of certification reports (. ISO 27001, SOC, CAIQ), information security roles, security controls.· Ability to communicate risk methodologies and concepts to business units and IT teams.· Demonstrated experience with controls definition, development, implementation and assessment.· Strong interpersonal skills and ability to work effectively with diverse and globally distributed teams.· Strong attention to detail, project management and organizational skills.· Self-starter with the ability to effectively manage independent workloads asynchronously with stakeholders across multiple time zones.· Ability to independently lead program areas and cross-functional teams to deliver high quality results according to well-defined planning.· Define and communicate program and activity plans and roadmaps, and effectively collaborate with all business and IT groups to achieve goals.· The use of defined risk methodologies and best practices to perform IT/Security assessments. Responsible for the planning, scoping, tracking, and execution of these assessments.· Driving remediation activities from identification, treatment plan, remediation, and closure. Hold owners accountable to delivery of remediation solution within the agreed upon/reasonable SLA.· Operations and improvements of security audit and compliance programs to support various compliance regulations.· Operationalization of a metrics and reporting function to continually report on meaningful security, risk and compliance metrics for operational and executive management. Support the automation of KRIs and KPI reporting that align with operational/business risk areas and corporate risk.About the Team Meet the Hiring Manager Daniel Pekol- Director, Information Security, Governance, Risk & Compliance Previous professional role highlights Systems and Security Engineering Information Security Officer GRC Director Looking for Hoping to find a seasoned and senior security risk lead, who can work independently and communicate well. Must be able to determine necessary direction, align stakeholders, communicate to keep everyone informed. Adapt to the changing business environment and adjust to keep everything on track You can see my memberships on LinkedIn. --

  • bangalore, India Hudson's Bay Company Full time

    Job Description Role Summary : Saks Cloud Services is looking for a Senior Analyst GRC to be a key member of the SCS Information Security organization. We seek a dynamic Senior GRC Analyst that enjoys working on security challenges in a collaborative fashion. This person will be responsible for establishing an Information Security governance...


  • bangalore, India Global Pharma Tek Full time

    Project Role : Security Architect Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations. Must have Skills : ServiceNow Governance Risk and Compliance (GRC)...

  • Cyber/Cloud Security

    2 weeks ago


    Bangalore/Chennai, India WEN Full time

    Role : Cyber Security Consultant - Lead CSRO (Only Female : The Cyber/Cloud Security and Risk Officer (CSRO) aims to contribute to the steering of strategy in terms of public cloud security, technical standards, processes, tools and risk management.Experience : 10 yrs + - Defines, publishes and maintains processes for Security Governances, Risk and...


  • Bangalore, India HeadPro Consulting LLP Full time

    Job Title : Senior InfoSec Quality & Compliance Analyst Location : BangaloreExperience : 3 - 7 YearsBudget : 17 - 22 LPAMandatory skills :1. Require someone who have good experience in Third Party Risk management2. Need someone who have good knowledge with Cloud infrastructure & general IT Clouds is Preferred 3. Candidate having good Knowledge on One Trust...


  • bangalore, India HeadPro Consulting LLP Full time

    Job Title : Senior InfoSec Quality & Compliance Analyst Location : BangaloreExperience : 3 - 7 YearsBudget : 17 - 22 LPAMandatory skills :1. Require someone who have good experience in Third Party Risk management2. Need someone who have good knowledge with Cloud infrastructure & general IT Clouds is Preferred 3. Candidate having good Knowledge on One Trust...


  • bangalore, India Paradise Placement Consultancy Full time

    Job Description: Job Title: Infosec Lead Department: IT Level/Designation Manager/Sr. Manager Position Type: Full Time Job Overview This role is responsible for implementing processes such as GRC to automate and continuously monitor the information security controls, risks, etc. Evaluates the firm to ensure compliance with security...

  • Risk Assessments

    1 week ago


    bangalore, India CrossRoad Solution Full time

    As a part of the Operational Risk Governance Group (ORGG) Process Risk Self-Assessment (PRSA) Program within Global Risk & Compliance, you will contribute to developing and maintaining a global  internal control framework and governing standards,  capabilities, and risk assessment methodologies. Within the second line of defense, you provide effective...


  • bangalore, India Goldman Sachs Full time

    CONTROLLERS Controllers ensure that the firm meets all the financial control and reporting obligations of a global, regulated, and public financial institution. Our professionals measure the profitability of, and risks associated with, every aspect of the firm's business. Controllers also ensure that the firm's activities are conducted in compliance with...


  • bangalore, India Rubrik Full time

    Job Summary Information Security - Who We Are The Information Security (InfoSec) organization advances the overall state of security at Rubrik through critical initiatives and coordination of large security projects. Information Security builds technologies, tools, and processes to better enable teams at Rubrik to develop secure software and...

  • Risk Assessments

    1 week ago


    bangalore, India CrossRoad Solution Full time

    As a part of the Operational Risk Governance Group (ORGG) Process Risk Self-Assessment (PRSA) Program within Global Risk & Compliance, you will contribute to developing and maintaining a global internal control framework and governing standards, capabilities, and risk assessment methodologies. Within the second line of defense, you provide effective...


  • bangalore, India KreditBee Full time

    Roles and Responsibilities: Ensure Compliance with the Regulatory requirements w.r.t the Information and Cyber Security requirements - RBI, UIDAI, CIC, etc. Identify and develop the InfoSec Policy, Processes, and Procedures to incorporate the industry benchmarks / best practices and the latest trends. To identify, track, monitor & ensure compliance with...


  • bangalore, India Goldman Sachs Full time

    CONTROLLERS Controllers ensure that the firm meets all the financial control and reporting obligations of a global, regulated, and public financial institution. Our professionals measure the profitability of, and risks associated with, every aspect of the firm's business. Controllers also ensure that the firm's activities are conducted in compliance with the...

  • GRC Consultant

    2 weeks ago


    Bangalore/Hyderabad/Pune/Kerala/Karnataka/Dubai, India LEGPRO CONSULTANT PVT LTD Full time

    Job Description : HIRING FOR GRC Consultant to collaborate closely with our clients in the UAE. In this role, you will be responsible for consulting, designing, and reviewing formal documentation and business requirements to ensure alignment with key frameworks and standards such as ISO 27001and NIST. As a front-facing role, you will engage with internal...


  • Bangalore/Hyderabad/Mumbai/Chennai, India Randstad India Full time

    Role : Information Security Officer. Location : Work Type : Hybrid. Exp : 15 years experience in Information security. Information Security Officer. Job Description : As an Information Security Officer you'll be responsible for information security, making sure that Randstad standards are in place, reporting business risks, and aligning security...


  • Bangalore/Hyderabad/Mumbai/Chennai, IN Randstad India Full time

    Role : Information Security Officer. Location : Work Type : Hybrid. Exp : 15 years experience in Information security. Information Security Officer. Job Description : As an Information Security Officer you'll be responsible for information security, making sure that Randstad standards are in place, reporting business risks, and aligning security...

  • Compliance Lead

    1 month ago


    bangalore, India Garrett - Advancing Motion Full time

    The primary objective of this role is to implement a comprehensive customer assurance strategy and action plans. The focus is on enhancing and driving the Cyber Security Compliance program to meet requirements across various frameworks, including Data Privacy, ISO 27001, ISO 22301, Cloud Security Alliance, and TISAX/VDA. Analyze information security...


  • bangalore, India Virtusa Full time

    Information Security Analyst - CREQ188067 Description P1-C3-STSInformation Security Managers know security is a top priority for our business, our partners, and customers. As cyber-attacks increase and compliance is rigorously implemented, they strive to stay ahead of what is next to protect our brand and future. The IT Risk Assessment Operational Risk Event...


  • bangalore, India RocketPay Full time

    Company DescriptionRocketPay is India's First automatic credit collection app based in Bengaluru. We empower business owners to efficiently manage their credit collection process and improve cash flow. Our vision is to revolutionize the credit collection industry with a safe and secure digital product, providing a one-stop solution for businesses' day-to-day...


  • bangalore, India IntraEdge Full time

    Amex: Event Manager - Information Security - Bengaluru (Upendra)Information Security Managers know security is a top priority for our business, our partners, and customers. As cyber-attacks increase and compliance is rigorously implemented, they strive to stay ahead of what’s next to protect our brand and future. The IT Risk Assessment & Operational Risk...


  • bangalore, India Caterpillar Full time

    Job Description: Your Work Shapes the World at Caterpillar Inc. When you join Caterpillar, you're joining a global team who cares not just about the work we do – but also about each other. We are the makers, problem solvers, and future world builders who are creating stronger, more sustainable communities. We don't just talk about progress...