Information Security GRC Manager
6 days ago
Job Description Information Security GRC Manager
Work Location: Navi Mumbai
Key Focus Area: Information Security GRC
Key Responsibilities:
Policy Development and Enforcement: Develop, implement and maintain Information Security policies, procedures, standards, frameworks, and associated plans based on industry best practices such as ISO 27001, ISO 22301, ISO 27701 NIST, ITGC, PCI-DSS, etc.
Lead the organizations tech compliance requirements such as but not limited to DoT requirements, PCIDSS, RBI (System Audit reports), ITGC, ISMS BCMS and Data privacy etc.
Risk Management: Performing security risk assessments, ISMS audits and privacy risk evaluations. Identify, document, and maintain an information security risk register. Regularly report to the security lead and other stakeholders.
Security Project Management (PMO) Prepare Governance and Risk Management presentations for CISO and Leads on monthly/quarterly basis. Collaborate with cross functional team, gather required information and ensure end-to-end delivery.
Compliance Reporting: Prepare compliance reports and remediation plans based on periodic reviews of application, workstation, server, and network device configurations.
Data Loss Prevention (DLP): Monitor and maintain compliance of DLP.
Third-Party Risk Management: Provide responses to Third party due diligence, independent oversight, and facilitate implementation and continuous improvement of Third-party risk management and processes.
Security Control Automation: Influence security control automation efforts to enhance security and compliance at scale.
Audit Representation: Represent Jios security posture in both internal and external audits.
Security Awareness and Training: Drive security awareness initiatives and conduct regular training on organisation security policies and standard requirements through training sessions, communication, and workshops etc.
Qualification and Work Experience
Qualification
B.E./B.Tech/MBA
Professional certifications such as CISM/ CISA or equivalent are highly desirable.
Work Experience: 5-7 Years
Minimum 4-5 years of professional experience in Information Security practices, with at least 2 years specialising in Governance, Risk and Compliance (GRC) domains.
Significant knowledge and experience in Cyber Security domain, ITGC control evaluation, policies and standards, regulatory compliance, in-depth understanding of Industry Standards and Frameworks such as ISO 27001, PCI DSS, COBIT, NIST, ISO
Project management within the realm of information security to include developing/vetting of project plans to ensure compliance to security standards.
Leading cross-functional teams to address vulnerabilities and enhance security measures.
Experience in supporting security controls, compliance and audit activities.
Demonstrated ability to apply IT-related knowledge and experience in solving compliance issues.
Have extensive experience of process building and improvement, strategic development and cross-organizational collaboration and negotiation.
Competencies /Expertise Required (Functional & Behavioral)
Strong knowledge of core information security principles such as least privilege access, defence in depth, preventative vs. detective controls, network security, cloud security, application security, endpoint security, data protection, and incident response.
Excellent analytical and problem-solving skills, with the ability to manage multiple tasks under tight deadlines.
Advanced written and verbal communication and presentation skills, with a focus on team building and collaboration.
High sense of ownership and drive with ability to establish credibility and earn trust with a variety of stakeholders and leadership.
An entrepreneurial spirit with the ability to drive innovation independently.
Maturity, judgment, negotiation/influence skills, analytical skills, and leadership skills
Adaptable to change.
Quick Learner Open learn and work on new technologies and products.
A proactive approach to security, attention to detail, and a commitment to continuous learning and improvement.
-
Information Security GRC Manager
2 days ago
Navi Mumbai, Maharashtra, India Jio Full time ₹ 12,00,000 - ₹ 36,00,000 per yearJob Description – Information Security GRC ManagerWork Location: Navi MumbaiKey Focus Area: Information Security GRCKey Responsibilities: · Policy Development and Enforcement: Develop, implement and maintain Information Security policies, procedures, standards, frameworks, and associated plans based on industry best practices such as ISO...
-
Mumbai, Maharashtra, India Xanika Infotech Full time ₹ 15,00,000 - ₹ 25,00,000 per yearJob Description Information Security GRC Specialist (4year experience) Sector:NBFCWork location: MumbaiExperience:4+YearsJob Description:4+ years of experience in Information Security GRC within the NBFC sector.Strong knowledge of RBI guidelines, ISO 27001, NIST, DPDP frameworks, and submission requirements.Expertise in regulatory compliance, audit...
-
SAP Security/GRC Consultant
2 days ago
Mumbai, Maharashtra, India Hiringhood Full time ₹ 12,00,000 - ₹ 36,00,000 per yearWe are seeking a seasoned SAP Security/GRC Consultant to join our dynamic team and embark on a rewarding career journey.We are seeking a highly skilled SAP Security/GRC Consultant to join our team. The successful candidate will be responsible for providing expertise in designing, implementing, and managing SAP security measures and GRC processes. This role...
-
Sap Security and GRC Architect
3 days ago
Mumbai, Maharashtra, India Skilltasy Full time ₹ 30,00,000 - ₹ 50,00,000 per yearWe are HiringRole: SAP Security & GRC Architect Experience: 8+ years Location: RemoteWe are looking for an experienced SAP Security & GRC Architect to lead and implement SAP Security & GRC solutions, including S/4 HANA, FIORI, ECC, and cloud-based systems like SuccessFactors, Ariba, and SAC.Key Responsibilities:-Lead and deliver SAP Security & GRC...
-
Senior Manager
9 hours ago
Navi Mumbai, Maharashtra, India Reserve Bank Information Technology Full time ₹ 12,00,000 - ₹ 24,00,000 per yearJob Title: Senior Manager GRC & BCMSLocation: Juinagar, MindspaceRole SummaryWe are seeking a seasoned and strategic professional with 12–16 years of progressive experience in Governance, Risk & Compliance (GRC), with demonstrable expertise in Business Continuity Management Systems (BCMS), cybersecurity risk posture assessments and regulatory frameworks....
-
SAP GRC and Security Consultant
3 days ago
Navi Mumbai, Maharashtra, India Hector And Streak Consulting Full time ₹ 20,00,000 - ₹ 25,00,000 per yearKey Activities & Responsibilities:Should have strong knowledge of Authorization management, Role design & Build experience in SAP.Should have strong knowledge in Audit Management.Develop & build roles in line with business requirements, compliance requirementsExperience of troubleshooting authorization issues (SU53/ST01 trace) related to various SAP...
-
Manager - IT GRC
2 weeks ago
Mumbai, Maharashtra, India N53 Tech Full time ₹ 1,04,000 - ₹ 1,30,878 per yearLocation: Head Office – Mumbai | Full-Time | Function: TechnologyOne of our leading financial services clients is seeking a highly motivated Manager – Governance, Risk & Compliance (GRC) to join IT Cyber Security & GRC team. The role will be pivotal in ensuring compliance with SEBI, RBI, and other regulatory frameworks, while driving information...
-
Team Member – IT Security GRC
2 days ago
Navi Mumbai, Maharashtra, India Tata Tele Business Services Full time ₹ 9,00,000 - ₹ 12,00,000 per yearJob DescriptionJob Responsibilities Manage & Support IT / IS auditsManage Third Party Risk Management programManage all planned as well as adhoc Security compliance activities for the yearManage compliance to regulatory, legal & statutory requirements from IS perspectiveImplement and manage industry recognised security certifcations, viz ISO, SOC2, etcManage...
-
GRC Analyst
2 weeks ago
Navi Mumbai, Maharashtra, India Mizuho Global Services Full time ₹ 6,00,000 - ₹ 12,00,000 per yearMizuho Global Services Pvt Ltd (MGS) is a subsidiary company of Mizuho Bank, Ltd, which is one of the largest banks or so called Mega Banks of Japan. MGS was established in the year 2020 as part of Mizuhos long-term strategy of creating a captive global processing center for remotely handling banking and IT related operations of Mizuho Banks domestic and...
-
Junior GRC Consultant
4 days ago
Navi Mumbai, Maharashtra, India Risk Quotient Full time ₹ 6,00,000 - ₹ 12,00,000 per yearAbout Us:Risk Quotient Consultancy Pvt. Ltd. (RQ) is a fast-growing, CERT-IN empanelled cybersecurity consulting firm with extensive experience delivering 100+ information security projects across multiple industries and global clients.ResponsibilitiesAssist in executing information security, cybersecurity, risk management, business continuity, and privacy...