Grc Expert

1 month ago


Gurgaon, India NOKIA Full time

**Come create the technology that helps the world act together**

Nokia is committed to innovation and technology leadership across mobile, fixed and cloud networks. Your career here will have a positive impact on people’s lives and will help us build the capabilities needed for a more productive, sustainable, and inclusive world.

We challenge ourselves to create an inclusive way of working where we are open to new ideas, empowered to take risks and fearless to bring our authentic selves to work.

**The team you’ll be part of**

As Nokia's growth engine, we create value for communication service providers and enterprise customers by leading the transition to cloud-native software and as-a-service delivery models. Our inclusive team of dreamers, doers and disruptors push the limits from impossible to possible.
- You’ll join the fast-growing organization Managed Security Services, leading the Security Services delivered by Nokia and dedicated to secure critical infrastructure against modern day security threats, including disruptive technologies such as Cloud, IoT, virtualization, 5G, etc.
- The Product Line is thus responsible for many activities, such as conceptualization of products, identification of target addressable market, planning & budgeting, business case development, writing customer value proposition and go-to-market strategy, development of sales/pre-sales capability, pushing marketing initiatives, organising delivery models & readiness including program for capability development, incubation of products, market launch, sustenance & growth management as well as P&L governance.
- As part of Managed Security Services Product Line, you’ll be able to get involved in these tasks and contribute to the success of this business.

**What you will learn and contribute to**

**Job summary**:
Nokia is looking for a technically sound Governance, Risk & Compliance (GRC) expert to lead, coordinates, communicates, integrates, and be accountable for the overall success of the Security GRC Management Services, with focus on security processes and architecture security design, ensuring alignment with stakeholders. Security process lifecycle, audit, compliance & risk management, resiliency management, third party security governance, data protection & privacy governance activities are effectively delivered and enhanced for future.

**Main Responsibility Areas**:
**Subject matter expertise (20%)**:

- Ensure a technological watch and competitive analysis on existing commercial and open-source GRC solutions and products.
- Experience of implementation and auditing security controls and its effectiveness based on cybersecurity principles and tenets. (e.g. NIST CSF, ISO27001, ITU-T x.805, NIST SP 800-53 etc.)
- Develop and review policy standards and strategies to ensure procedures and guidelines comply with cybersecurity frameworks, standards & industry benchmark for critical information infrastructures (CII)
- Determine the information security approach and operating model in consultation with stakeholders and aligned with the risk management approach and compliance monitoring.

**Pre-sales support (40%)**:

- Provide a support to pre-sales’ technical inquiries, assess the customers’ requirements, design technical and business-sound solutions, and attend customers’ meetings to provide technical clarifications and presentations (possibly requiring travelling).

**Products development (40%)**:

- Develop practice and service blueprint around GRC as a service.
- Work closely with product vendors and partners to select and assess new security products, follow-up on their features’ roadmaps and provide a support to product management’s technical inquiries.
- Design, build, implement and test GRC solutions for complex IT and Telecom infrastructures.
- Create technical documentations, presentations and deliver competence development materials and trainings to relevant key stakeholders.

**Your skills and experience**

**Technical Competencies**:

- Masters or bachelor’s degree in computer science or related field such as cyber security or with Minimum 7 years of relevant experience in GRC role
- Knowledge of information security management frameworks, such as ISO/IEC 27001, ITIL, COBIT as well as those from NIST, including 800-53 and Cybersecurity Framework
- Strong project management skills, with the ability to lead and manage GRC projects.
- Experience of performing risk analysis (e.g., threat, vulnerability, and the probability of occurrence)
- Knowledge and understanding of relevant legal and regulatory requirements i.e., Country specific telecom security conditions, CII (Critical Information Infrastructure) regulations etc.
- Excellent written and verbal communication, interpersonal and collaborative skills, and the ability to communicate security and risk-related concepts to technical and nontechnical audiences at various hierarchical levels

**Soft Skills**:

- High level of personal integrity, a



  • Gurgaon, India IBM Full time

    **Introduction** A career in IBM Consulting is rooted by long-term relationships and close collaboration with clients across the globe. You'll work with visionaries across multiple industries to improve the hybrid cloud and Al journey for the most innovative and valuable companies in the world. Your ability to accelerate impact and make meaningful change...

  • Assistant Manager

    5 days ago


    Gurgaon, India UnitedLex Full time

    ABOUT THE COMPANY : UnitedLex(erstwhile iRunway India Pvt Ltd) is a data and professional services company delivering outcomes that create value and competitive advantage for legal and the business. Our business is anchored by a passion for innovation brought to life by a global community of diverse individuals determined to deliver on the promise of...

  • Assistant Manager

    5 days ago


    gurgaon, India UnitedLex Full time

    ABOUT THE COMPANY : UnitedLex(erstwhile iRunway India Pvt Ltd) is a data and professional services company delivering outcomes that create value and competitive advantage for legal and the business. Our business is anchored by a passion for innovation brought to life by a global community of diverse individuals determined to deliver on the promise of...