Cyber Security GRC Consultant

1 day ago


India DigiHelic Solutions Pvt. Ltd. Full time

As a Cybersecurity GRC , this position plays an vital role to support the implementation and management of governance, risk, and compliance initiatives that safeguard the organization's information assets. This role involves assisting in the execution of cybersecurity policies, conducting risk assessments, participating in audits, and evaluating third-party risk. You will contribute to aligning business objectives with security best practices and regulatory standards such as ISO 27001, NIST, and ITGC. The position requires a foundational understanding of security frameworks and a collaborative approach to strengthening the organization’s cyber risk posture.

Key Responsibilities

  • Assist in the design, implementation, and maintenance of cybersecurity GRC frameworks (ISO 27001, NIST, COBIT, etc.)
  • Support the implementation of GRC frameworks (ISO 27001, NIST, COBIT) across various functions.
  • Assist in drafting and updating cybersecurity policies, procedures, and control documentation.
  • Conduct and document basic IT/cybersecurity risk assessments and internal control reviews.
  • Maintain portions of the risk register and support the tracking of mitigation plans and KRIs.
  • Assist in internal/external audit activities, including control testing and evidence collection.
  • Perform initial third-party risk reviews and support due diligence documentation.
  • Track audit findings and help monitor remediation efforts to closure.
  • Contribute to compliance with global cybersecurity regulations (SOX, GDPR, DPDP, PCI-DSS).
  • Help prepare GRC dashboards and reports for internal stakeholders.
  • Collaborate with IT, legal, privacy, and compliance teams to support GRC initiatives.
  • Stay current on regulatory changes and industry standards impacting cybersecurity.
  • Support security awareness campaigns and participate in user training initiatives.
  • Work with GRC tools (e.g., Archer, ServiceNow GRC, or Excel-based trackers) to manage workflows and data.

Primary Skills:

  • Governance, Risk & Compliance (GRC)
  • Information Security Policies & Standards
  • IT Risk Assessment
  • ISO 27001 / NIST / SOC 2
  • Regulatory Compliance (SOX, GDPR, PCI-DSS, DPDP)
  • ITGC & Control Testing
  • Internal Audit Support
  • Risk Register Maintenance
  • Documentation & Reporting
  • Third-Party Risk Support
  • Cybersecurity Awareness Support

Secondary Skills

  • Audit Remediation Tracking
  • Vendor Due Diligence Support
  • Data Privacy & Protection Awareness
  • SLA / Contract Review (Basic Level)
  • KPI/KRI Reporting (Support Role)
  • Change Risk Assessment Participation
  • Business Continuity (BCP/DR) Awareness
  • Familiarity with emerging regulations (DORA, DPDP, etc.)
  • GRC Tools (e.g., Archer, ServiceNow GRC, Excel Trackers)

Desired Qualifications

  • Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, or a related field
  • 1–5 years of experience in GRC, IT audit, risk management, cybersecurity, or compliance roles.
  • Foundational knowledge of IT control and compliance frameworks (ISO 27001, NIST, SOC 2, COBIT).
  • Understanding of regulatory environments and compliance needs (e.g., GDPR, SOX, PCI-DSS, DPDP).
  • Strong analytical, documentation, and communication skills.
  • Willingness to learn and adapt in a fast-paced cybersecurity environment.
  • Certifications like ISO 27001 Foundation, CISA (beginner level), or CompTIA Security+ are a plus.


  • India DigiHelic Solutions Pvt. Ltd. Full time

    As a Cybersecurity GRC , this position plays an vital role to support the implementation and management of governance, risk, and compliance initiatives that safeguard the organization's information assets. This role involves assisting in the execution of cybersecurity policies, conducting risk assessments, participating in audits, and evaluating...


  • India Jobman by Shunya Tattva Full time

    We are currently hiring for the role of a GRC Consultant with a Leading firm based in Mumbai. Designation: GRC Consultant 2-5 yrs Salary will be up to 10 LPA (based on current CTC and interview performance)Loc: Mumbai (Mandatory: Comfortable with traveling to multiple client locations across the city)Graduation Immediate Joiners Day shift 9 am to 6 pm/Sat &...


  • India DigiHelic Solutions Pvt. Ltd. Full time

    As a Cybersecurity GRC , this position plays an vital role to support the implementation and management of governance, risk, and compliance initiatives that safeguard the organization's information assets. This role involves assisting in the execution of cybersecurity policies, conducting risk assessments, participating in audits, and evaluating third-party...


  • India DigiHelic Solutions Pvt. Ltd. Full time

    As a Cybersecurity GRC , this position plays an vital role to support the implementation and management of governance, risk, and compliance initiatives that safeguard the organization's information assets. This role involves assisting in the execution of cybersecurity policies, conducting risk assessments, participating in audits, and evaluating third-party...


  • India DigiHelic Solutions Pvt. Ltd. Full time

    As a Cybersecurity GRC , this position plays an vital role to support the implementation and management of governance, risk, and compliance initiatives that safeguard the organization's information assets. This role involves assisting in the execution of cybersecurity policies, conducting risk assessments, participating in audits, and evaluating third-party...


  • Mumbai, India Jobman by Shunya Tattva Full time

    Job Description Hi folks, We are currently hiring for the role of a GRC Consultant with a Leading firm based in Mumbai. Designation: GRC Consultant 2-5 yrs Salary will be up to 10 LPA (based on current CTC and interview performance) Loc: Mumbai (Mandatory: Comfortable with traveling to multiple client locations across the city) Qualification:...

  • GRC Consultant

    3 weeks ago


    India Beinex Full time

    Aurex Inc, is looking for a GRC consultant role. As an integral member of the GRC Implementation team, the responsibility of the GRC Consultant is to carry out the implementation of GRC system for our customers related to policy compliance, security requirements governance, as well as risk management. The ideal candidate will have knowledge of risk...

  • GRC Consultant

    2 weeks ago


    India Beinex Full time

    Aurex Inc, is looking for a GRC consultant role. As an integral member of the GRC Implementation team, the responsibility of the GRC Consultant is to carry out the implementation of GRC system for our customers related to policy compliance, security requirements governance, as well as risk management. The ideal candidate will have knowledge of risk...

  • SAP Security

    7 days ago


    india LTIMindtree Full time

    LTIMindtree Hiring!! SAP Security & GRC Consultant Experience - 5+ Location - Pan India E-Mail Id - Archana.AnilJha@ltimindtree.comJob descriptionSAP Security Job Description Senior Level We are seeking experienced professionals for the role of SAP Security Specialist. Only candidates with a minimum of 5 years’ experience in SAP S/4HANA Security will be...

  • IT GRC – AVP

    7 days ago


    india Talent500 Full time

    Job Profile: Job Title: IT GRC ManagerCorporate Title: AVPExperience: 10+ yearsLocation: BangaloreNo. of Positions: 1Job Responsibilities: Responsible for managing Cyber Security Risk, Compliance, and Assurance activities. Drive the global cyber security certifications as per MGS Management Strategy. Evaluating control effectiveness and review evidence of...