Lead-Governance Risk and Compliance

1 week ago


Mumbai, Maharashtra, India Nayara Energy Full time ₹ 15,00,000 - ₹ 45,00,000 per year
Description

About Nayara Energy: Nayara Energy is a new-age downstream energy and petrochemicals company with a formidable presence spanning across the entire hydrocarbon value chain, from Refining to Retail. Nayara Energy operates in India for India driven by a relentless commitment to fuel the nation's energy aspirations. At the heart of our operations lies the Vadinar refinery, India's second-largest single-site refinery with a capacity of 20MMTPA.With over 6,300 Retail Outlets, we cater to the need for reliable and safe mobility across the length and breadth of the country. We have adopted a phase wise asset development strategy to enter the petrochemicals sector which will be a significant step in our crude to chemicals journey. Through sustainable development projects in Health and Nutrition, Education and Skill Development, and Sustainable Livelihoods, Nayara Energy enhances the quality of life in the communities it operates in. Delivering value for all our stakeholders is at the very core of our beliefs and we are committed to providing the energy that fuels the dreams of our employees, customers, partners, and communities.

Job Purpose - The Information Security - Governance, Risk, and Compliance Lead is the people manager and responsible for the assessing and documenting of the Nayara's compliance and risk posture as they relate to its information assets. 

The purpose of this position is to provide highly skilled technical and information security expertise for development and implementation of the information security risk management program. Responsibilities require leadership and project management experience, as well as expertise to ensure effective system-wide security analysis; intrusion detection; standards and testing; risk assessment; awareness and education; and development of policies, standards and guidelines.

Responsibilities

Key Responsibilities

Leadership & Program Oversight:

  • Operate independently across GRC initiatives, providing strategic and technical inputs to strengthen cybersecurity posture.
  • Lead project planning and resource estimation for GRC-related programs and investigations
  • Support the Head – Information Security in designing and maintaining Nayara's cybersecurity governance framework.

Governance & Metrics Management:

  • Develop and share periodic reports on the status of Nayara's Information Security Program
  • Maintain the Information Security Online Dashboard and metrics program for control effectiveness.
  • Coordinate with internal functions to collect data and support governance activities.

Risk Assessment & Threat Intelligence:

  • Identify and document vulnerabilities, threats, and business impacts across IT systems.
  • Conduct risk assessments and recommend mitigation strategies aligned with industry standards.
  • Benchmark Nayara's security practices against frameworks like NIST CSF, ISO/IEC 27001, COBIT, and ITIL

Supply Chain Risk Management:

  • Develop and implement cybersecurity supply chain risk management frameworks.
  • Assess supplier compliance through audits and evaluations, ensuring contractual obligations are met.
  • providers.

Awareness & Training:

  • Create content for refresher training and new joiner induction programs.
  • Ensure all users, including executives and third-party stakeholders, understand their security responsibilities.

Policy Compliance & Audit Readiness:

  • Lead the enterprise-wide information security compliance program.
  • Develop policies to protect sensitive data and ensure alignment with legal and regulatory requirements.
  • Manage audit and assessment processes for internal and external stakeholders.

Incident Management & Forensics:

  • Record and track security incidents including compromised accounts and abuse reports.
  • Support forensic investigations and fact gathering for incident resolution.

Miscellaneous Responsibilities:

  • Perform additional duties as assigned to support departmental operations and continuous improvement.
Qualifications

Knowledge

Educational Qualifications & Allied Skills:

  • Bachelor's or master's degree in computer science, information systems, or equivalent work experience. An M.B.A. or M.S. in information security is preferred.

Relevant Experience

  • Minimum of 9-13 years of experience in a combination of risk management, information security and IT jobs.

Skills

Functional Competencies

  • Develops and implements robust information security policies and programs.
  • Demonstrates expertise in legal, regulatory, and industry frameworks (e.g., IT Act, PCI DSS, NIST CSF)
  • Manages complex projects with proficiency in budgeting, scheduling, and resource planning.
  • Conducts audits of financial systems and SAP environments for security compliance
  • Holds or pursues professional certifications such as CISSP, CISM, CISA, or CEH

Behavioural Competencies

  • Communicates security concepts clearly across technical and non-technical audiences.
  • Collaborates effectively with cross-functional teams in high-pressure environments.
  • Applies strong analytical skills to solve problems and meet strategic objectives.
  • Adapts to dynamic conditions while maintaining focus on excellence and delivery.
  • Demonstrates integrity, accountability, and a commitment to continuous improvement


  • Mumbai, Maharashtra, India Talent Worx Full time ₹ 32,00,000 - ₹ 54,40,000 per year

    Job Description for Governance, Risk, and Compliance (GRC) ResourceOverviewThe Governance, Risk, and Compliance (GRC) resource plays a crucial role in ensuring that an organization adheres to regulatory requirements, manages risks effectively, and upholds governance standards. This position involves a blend of strategic planning, risk assessment, policy...


  • Mumbai, Maharashtra, India Nayara Energy Full time ₹ 5,00,000 - ₹ 12,00,000 per year

    Job DescriptionAbout Nayara Energy: Nayara Energy is a new-age downstream energy and petrochemicals company with a formidable presence spanning across the entire hydrocarbon value chain, from Refining to Retail. Nayara Energy operates in India for India driven by a relentless commitment to fuel the nation's energy aspirations. At the heart of our operations...


  • Mumbai, Maharashtra, India Nayara Career Site Full time ₹ 2,16,000 - ₹ 6,48,000 per year

    About Nayara Energy: Nayara Energy is a new-age downstream energy and petrochemicals company with a formidable presence spanning across the entire hydrocarbon value chain, from Refining to Retail. Nayara Energy operates in India for India driven by a relentless commitment to fuel the nation's energy aspirations. At the heart of our operations lies the...


  • Mumbai, Maharashtra, India Bytewise Techlabs Full time

    Looking for a Manager – Governance, Risk & Compliance (GRC) with 7–9 yrs experience in BFSI. Must have hands-on exposure to SEBI/RBI regulations, ISO 27001, ITGC, audits, and cybersecurity governance. Certifications like CISA/CISM preferred.


  • Mumbai, Maharashtra, India Bytewise Techlabs Full time

    Hiring Assistant Manager – Governance, Risk & Compliance (GRC) with 4–6 yrs experience in BFSI/NBFC. Must have hands-on exposure to SEBI/RBI/IRDAI compliance, ISO 27001, ITGC, audits, and cybersecurity risk management. CISA/CISM preferred.


  • Mumbai, Maharashtra, India, Maharashtra LTIMindtree Full time

    Primary Skills: IT, Compliance, Risk management and AI/MLLocation: Mumbai or BangaloreExperience Required: 12 to 18 yearsDriving Responsible AI, Compliance & Ethical InnovationSummary:As AI Governance Director at LTIMindtree, you will lead the enterprise-wide Responsible AI and Compliance Program, ensuring ethical, secure, and regulatory-aligned AI adoption....


  • Mumbai, Maharashtra, India JioHotstar Full time ₹ 1,00,00,000 - ₹ 2,00,00,000 per year

    Role Summary:We are seeking a strategic and execution-focused Senior Manager/Associate Director – GRC to lead the design, implementation, and continuous improvement of Jiostar's governance, risk, and compliance function. You will play a pivotal role in securing business operations, ensuring regulatory readiness, and building a culture of accountability...


  • Mumbai, Maharashtra, India Jobuss Resources Full time

    Establish AI governance policies, ensure compliance with GDPR, DPDP Act and ISO 27001, manage audits, collaborate on privacy, and conduct risk assessments. Required Candidate profileExperienced in IT governance and compliance focused on AI, skilled in GDPR, DPDP, audits, legal-tech translation, detail-oriented.


  • Mumbai, Maharashtra, India JPMorganChase Full time ₹ 8,00,000 - ₹ 12,00,000 per year

    JOB DESCRIPTIONJoin our dynamic team to navigate complex risk landscapes and fortify technology governance, making a pivotal impact in our firm's robust risk strategy. As a Compliance and Operations Risk Test Lead in the Testing Center of Excellence, you will play a pivotal role in enhancing our compliance and operational risk management. Your expertise in...


  • Mumbai, Maharashtra, India JPMorganChase Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    DescriptionExciting opportunity to be the Compliance Officer and Principal Officer for the JPMIPL entity.Job summary:As the Compliance Risk Management Lead in the Compliance team, you will be responsible for regulatory Compliance Coverage for JP Morgan India Pvt. Ltd.Job responsibilities:Responsible for implementation of compliance framework for JPMIPL.Act...