GRC Analyst

16 hours ago


Mumbai India PINKVILLA Full time

Job Description

Pinkvilla is seeking a dynamic Information Security professional, who will play a key role in driving compliance programs, managing audits, supporting data protection initiatives, and ensuring third-party security risks are effectively identified and mitigated.

Key Responsibilities

Governance, Risk & Compliance (GRC)

- Develop, implement, and maintain information security policies, standards, and procedures.
- Conduct risk assessments and drive risk treatment/mitigation plans.
- Support security audits and ensure timely closure of findings.
- Monitor compliance with frameworks/standards such as ISO 27001, NIST, CIS
- Collaborate with security engineering and SOC teams on remediation of vulnerabilities, incident response, and security enhancements.
- Contribute to cross-functional security initiatives requiring governance, technical, and operational alignment.
- Provide training and awareness on security to drive security aware culture

Data Protection

- Identify and mitigate risks associated with processing of personal and sensitive data.
- Oversee data data classification, retention, and secure disposal practices.
- Lead initiatives around Data Loss Prevention (DLP) including policy finetuning, incident monitoring, and working with stakeholders on data handling improvements.

Third-Party Risk Management (TPRM)

- Conduct security assessments and due diligence for vendors, partners, and service providers.
- Review and evaluate vendor security controls, certifications, and compliance posture.
- Manage the third-party risk lifecycle, including onboarding, periodic reviews, and issue remediation.
- Work with procurement, legal, and business teams to integrate security requirements into contracts and agreements.

Qualifications:

- Bachelors degree in Computer Science or Information Security or related field
- 46 years of experience in Information Security roles with focus on GRC, Data Protection, and TPRM.
- Strong understanding of security standards (ISO 27001, NIST, etc.).
- Experience conducting risk assessments, vendor due diligence, and compliance reviews.
- Good knowledge of data protection principles, privacy laws, and security best practices.
- Excellent documentation, communication, and stakeholder management skills.

Preferred Skills:

- Relevant certifications such as CISM, CISA, ISO 27001, CIPM, or CRISC.
- Experience with GRC tools (e.g., Archer, ServiceNow GRC, OneTrust, or similar).
- Knowledge of cloud security and SaaS vendor risk assessments.


  • GRC Analyst

    3 weeks ago


    Mumbai, Maharashtra, India PINKVILLA Full time

    Pinkvilla is seeking a dynamic Information Security professional, who will play a key role in driving compliance programs, managing audits, supporting data protection initiatives, and ensuring third-party security risks are effectively identified and mitigated.Key ResponsibilitiesGovernance, Risk & Compliance (GRC)- Develop, implement, and maintain...

  • GRC Analyst

    2 weeks ago


    Mumbai, Maharashtra, India PINKVILLA Full time

    Pinkvilla is seeking a dynamic Information Security professional, who will play a key role in driving compliance programs, managing audits, supporting data protection initiatives, and ensuring third-party security risks are effectively identified and mitigated. Key Responsibilities Governance, Risk & Compliance (GRC) Develop, implement, and maintain...

  • GRC Analyst

    6 days ago


    Navi Mumbai, India Mizuho Global Services Full time

    Position: Governance Risk & Compliance - GRC Analyst Job location :- Ghansoli No of vacancy :- 2 Walkin drive date and time :- 11th & 12th Sept at 2pm to 5pm 13th Sept at 9am to 12pm Interview Spoc- Ruchika hr We are seeking a skilled and vigilant L2 for handling Governance Risk and Compliance for MGS. The Ideal candidate will ensure that an organizations...

  • GRC Analyst

    1 week ago


    Mumbai, India PINKVILLA Full time

    Pinkvilla is seeking a dynamic Information Security professional, who will play a key role in driving compliance programs, managing audits, supporting data protection initiatives, and ensuring third-party security risks are effectively identified and mitigated.Key ResponsibilitiesGovernance, Risk & Compliance (GRC)Develop, implement, and maintain information...

  • GRC Analyst

    2 days ago


    Mumbai, India PINKVILLA Full time

    Pinkvilla is seeking a dynamic Information Security professional, who will play a key role in driving compliance programs, managing audits, supporting data protection initiatives, and ensuring third-party security risks are effectively identified and mitigated.Key ResponsibilitiesGovernance, Risk & Compliance (GRC)Develop, implement, and maintain information...

  • Grc analyst

    4 days ago


    Mumbai, India PINKVILLA Full time

    Pinkvilla is seeking a dynamic Information Security professional, who will play a key role in driving compliance programs, managing audits, supporting data protection initiatives, and ensuring third-party security risks are effectively identified and mitigated. Key Responsibilities Governance, Risk & Compliance (GRC) Develop, implement, and maintain...


  • Bengaluru, India Aveva Full time

    Job Description AVEVA is creating software trusted by over 90% of leading industrial companies. Job Title: IT GRC Junior Analyst Location: Hyderabad, India Employment Type: Full-time / Regular The job The IT GRC Junior Analyst supports AVEVA's internal control certification activities under PCAOB/SOX. This role operates within the first line of defence...

  • GRC Analyst

    3 days ago


    Mumbai, India PINKVILLA Full time

    Pinkvilla is seeking a dynamic Information Security professional, who will play a key role in driving compliance programs, managing audits, supporting data protection initiatives, and ensuring third-party security risks are effectively identified and mitigated.Key ResponsibilitiesGovernance, Risk & Compliance (GRC)- Develop, implement, and maintain...

  • GRC Analyst

    1 week ago


    Mumbai, India PINKVILLA Full time

    Pinkvilla is seeking a dynamic Information Security professional, who will play a key role in driving compliance programs, managing audits, supporting data protection initiatives, and ensuring third-party security risks are effectively identified and mitigated. Key Responsibilities Governance, Risk & Compliance (GRC) Develop, implement, and...

  • GRC Analyst

    1 week ago


    Mumbai, India PINKVILLA Full time

    Pinkvilla is seeking a dynamic Information Security professional, who will play a key role in driving compliance programs, managing audits, supporting data protection initiatives, and ensuring third-party security risks are effectively identified and mitigated.Key ResponsibilitiesGovernance, Risk & Compliance (GRC)Develop, implement, and maintain information...