
Information Security GRC Manager
6 days ago
Job Description Information Security GRC Manager
Work Location: Navi Mumbai
Key Focus Area: Information Security GRC
Key Responsibilities:
Policy Development and Enforcement: Develop, implement and maintain Information Security policies, procedures, standards, frameworks, and associated plans based on industry best practices such as ISO 27001, ISO 22301, ISO 27701 NIST, ITGC, PCI-DSS, etc.
Lead the organizations tech compliance requirements such as but not limited to DoT requirements, PCIDSS, RBI (System Audit reports), ITGC, ISMS BCMS and Data privacy etc.
Risk Management: Performing security risk assessments, ISMS audits and privacy risk evaluations. Identify, document, and maintain an information security risk register. Regularly report to the security lead and other stakeholders.
Security Project Management (PMO) Prepare Governance and Risk Management presentations for CISO and Leads on monthly/quarterly basis. Collaborate with cross functional team, gather required information and ensure end-to-end delivery.
Compliance Reporting: Prepare compliance reports and remediation plans based on periodic reviews of application, workstation, server, and network device configurations.
Data Loss Prevention (DLP): Monitor and maintain compliance of DLP.
Third-Party Risk Management: Provide responses to Third party due diligence, independent oversight, and facilitate implementation and continuous improvement of Third-party risk management and processes.
Security Control Automation: Influence security control automation efforts to enhance security and compliance at scale.
Audit Representation: Represent Jios security posture in both internal and external audits.
Security Awareness and Training: Drive security awareness initiatives and conduct regular training on organisation security policies and standard requirements through training sessions, communication, and workshops etc.
Qualification and Work Experience
Qualification
B.E./B.Tech/MBA
Professional certifications such as CISM/ CISA or equivalent are highly desirable.
Work Experience: 5-7 Years
Minimum 4-5 years of professional experience in Information Security practices, with at least 2 years specialising in Governance, Risk and Compliance (GRC) domains.
Significant knowledge and experience in Cyber Security domain, ITGC control evaluation, policies and standards, regulatory compliance, in-depth understanding of Industry Standards and Frameworks such as ISO 27001, PCI DSS, COBIT, NIST, ISO
Project management within the realm of information security to include developing/vetting of project plans to ensure compliance to security standards.
Leading cross-functional teams to address vulnerabilities and enhance security measures.
Experience in supporting security controls, compliance and audit activities.
Demonstrated ability to apply IT-related knowledge and experience in solving compliance issues.
Have extensive experience of process building and improvement, strategic development and cross-organizational collaboration and negotiation.
Competencies /Expertise Required (Functional & Behavioral)
Strong knowledge of core information security principles such as least privilege access, defence in depth, preventative vs. detective controls, network security, cloud security, application security, endpoint security, data protection, and incident response.
Excellent analytical and problem-solving skills, with the ability to manage multiple tasks under tight deadlines.
Advanced written and verbal communication and presentation skills, with a focus on team building and collaboration.
High sense of ownership and drive with ability to establish credibility and earn trust with a variety of stakeholders and leadership.
An entrepreneurial spirit with the ability to drive innovation independently.
Maturity, judgment, negotiation/influence skills, analytical skills, and leadership skills
Adaptable to change.
Quick Learner Open learn and work on new technologies and products.
A proactive approach to security, attention to detail, and a commitment to continuous learning and improvement.
-
Mumbai, Maharashtra, India Xanika Infotech Full time ₹ 15,00,000 - ₹ 25,00,000 per yearJob Description Information Security GRC Specialist (4year experience) Sector:NBFCWork location: MumbaiExperience:4+YearsJob Description:4+ years of experience in Information Security GRC within the NBFC sector.Strong knowledge of RBI guidelines, ISO 27001, NIST, DPDP frameworks, and submission requirements.Expertise in regulatory compliance, audit...
-
Manager - IT GRC
2 weeks ago
Mumbai, Maharashtra, India N53 Tech Full time ₹ 1,04,000 - ₹ 1,30,878 per yearLocation: Head Office – Mumbai | Full-Time | Function: TechnologyOne of our leading financial services clients is seeking a highly motivated Manager – Governance, Risk & Compliance (GRC) to join IT Cyber Security & GRC team. The role will be pivotal in ensuring compliance with SEBI, RBI, and other regulatory frameworks, while driving information...
-
Team Member – IT Security GRC
3 days ago
Navi Mumbai, Maharashtra, India Tata Tele Business Services Full time ₹ 9,00,000 - ₹ 12,00,000 per yearJob DescriptionJob Responsibilities Manage & Support IT / IS auditsManage Third Party Risk Management programManage all planned as well as adhoc Security compliance activities for the yearManage compliance to regulatory, legal & statutory requirements from IS perspectiveImplement and manage industry recognised security certifcations, viz ISO, SOC2, etcManage...
-
GRC Analyst
2 weeks ago
Navi Mumbai, Maharashtra, India Mizuho Global Services Full time ₹ 6,00,000 - ₹ 12,00,000 per yearMizuho Global Services Pvt Ltd (MGS) is a subsidiary company of Mizuho Bank, Ltd, which is one of the largest banks or so called Mega Banks of Japan. MGS was established in the year 2020 as part of Mizuhos long-term strategy of creating a captive global processing center for remotely handling banking and IT related operations of Mizuho Banks domestic and...
-
Junior GRC Consultant
4 days ago
Navi Mumbai, Maharashtra, India Risk Quotient Full time ₹ 6,00,000 - ₹ 12,00,000 per yearAbout Us:Risk Quotient Consultancy Pvt. Ltd. (RQ) is a fast-growing, CERT-IN empanelled cybersecurity consulting firm with extensive experience delivering 100+ information security projects across multiple industries and global clients.ResponsibilitiesAssist in executing information security, cybersecurity, risk management, business continuity, and privacy...
-
Manager - IT GRC (BFSI, FinTech)
3 days ago
Mumbai, Maharashtra, India N53 Tech Full time ₹ 12,00,000 - ₹ 36,00,000 per yearOne of our leading Financial Services clients is looking to strengthen its Governance, Risk, and Compliance (GRC) practice and is looking for talented professionals at two levels:Manager – GRC (L2): 7–9 years of experience, leading GRC initiatives and audits, working with senior stakeholders, and driving regulatory compliance.In this role, you will work...
-
SAO GRC
6 days ago
Mumbai, Maharashtra, India Talent Worx Full time ₹ 15,00,000 - ₹ 25,00,000 per yearWe are looking for a seasoned SAO GRC (System Access and Optimisation Governance, Risk and Compliance) consultant with expertise in S4 HANA to join Talent Worx. In this role, you will be responsible for managing governance frameworks related to system access, ensuring compliance while enhancing operational efficiency in S4 HANA environments.Your primary...
-
Information Security Auditor
1 week ago
Mumbai, Maharashtra, India Cla Global Indus Value Consulting Full time ₹ 6,00,000 - ₹ 18,00,000 per yearWe are seeking a detail-oriented and experienced Information Security Auditor with a minimum of 1-4 years of audit or implementation experience in information security. The ideal candidate will hold an ISO 27001 certification and possess a strong understanding of risk management, compliance, and security controls. This role involves assessing the...
-
GRC Consultant
2 weeks ago
Mumbai, Maharashtra, India Capgemini Full time ₹ 15,00,000 - ₹ 25,00,000 per yearYour Role We are looking for a detail-oriented and experienced GRC Specialist to join our Risk & Compliance team for location . The ideal candidate will have4 to 12 years of experience in Cyber Security Risk, Compliance and Data privacy , with a strong understanding inISO Developing and Implementing GRC Frameworks.Develop and implement security...
-
Information Security Manager
13 hours ago
Navi Mumbai, Maharashtra, India Hipotz Full time ₹ 12,00,000 - ₹ 36,00,000 per yearRequirements:Master's or bachelor's degree in information Technology / Information Security / Computer Science, or a related field.10 years of proven experience in Information Security, specifically in vendor risk assessments, cloud security, compliance and business continuity.Experience with security auditing, policy development and emergency response...