GRC Consultant
1 week ago
Key Responsibilities:
1. ISO27001 Implementation and Management
- Develop and implement an Information Security Management System (ISMS) as per ISO27001:2022 standards.
- Conduct regular gap assessments, risk mapping and evaluations, and maintain ISMS documentation.
- Drive the ISO27001 certification process and manage ongoing compliance.
2. Internal Audits and Risk Assessments
- Plan, execute, and document internal security audits to ensure adherence to organisational policies and regulatory standards.
- Identify gaps, recommend corrective actions, and monitor their implementation.
- Conduct periodic risk assessments to mitigate emerging threats.
3. Regulatory Compliance
- Ensure full compliance with RBI and SEBI cybersecurity guidelines, including IT governance, resilience, and data protection requirements.
- Stay updated on regulatory changes and advise the organization on necessary adjustments.
- Oversee the preparation and submission of compliance reports to regulatory bodies.
4. Cybersecurity and Resilience
- Develop and implement strategies to enhance the organization's cybersecurity posture and operational resilience.
- Monitor and enforce security controls such as access management, data encryption, and incident response readiness.
- Collaborate with IT teams to ensure secure infrastructure and application development practices.
5. Policy Development and Awareness
- Draft and update cybersecurity and IT compliance policies to align with ISO27001, RBI, SEBI, and other standards.
- Conduct training and awareness programs for employees to foster a security first culture.
6. Incident Management
- Lead the development and testing of incident response plans, ensuring quick and effective handling of security events.
- Provide insights and corrective measures post-incident, enhancing future resilience.
7. Vendor and Third-Party Risk Management
- Evaluate third-party vendors and service providers for compliance with security and regulatory standards.
- Develop frameworks for monitoring vendor performance and adherence to contracts.
8. Continuous Improvement
- Identify opportunities for improving IT governance, data protection, and compliance
- frameworks.
- Leverage technology and automation to streamline security and compliance processes.
Requirements
- Strong understanding of RBI, SEBI, and other Indian regulatory frameworks.
- Expertise in internal audits and risk management.
- Excellent communication and presentation skills, stakeholder management, and problem solving skills.
- Familiarity with tools and frameworks related to vulnerability management, SIEM, and compliance monitoring.
Qualifications
- Education: Bachelor's degree in IT, Computer Science, or a related field.
- Certifications: ISO27001 Lead Auditor Preferred
- Experience: Proven experience in information security, regulatory compliance, and implementing ISO27001 standards.
Job Type: Full-time
Pay: ₹60, ₹70,000.00 per month
Benefits:
- Health insurance
- Provident Fund
Application Question(s):
- How many years of experience do you have in implementing or managing ISO27001 standards?
- Have you conducted or participated in internal audits or risk assessments?
- Are you familiar with Indian regulatory frameworks such as RBI, SEBI, or CERT-In cybersecurity guidelines?
- Do you hold any relevant certifications (e.g., ISO27001 Lead Auditor / Lead Implementer)?
- What is your current CTC ?
- What is your expected CTC ?
- What is your current notice period?
- Are you open to working from the office (Mumbai location)?
Work Location: In person
-
SAP Security/GRC Consultant
1 week ago
Mumbai, Maharashtra, India Hiringhood Full time ₹ 12,00,000 - ₹ 36,00,000 per yearWe are seeking a seasoned SAP Security/GRC Consultant to join our dynamic team and embark on a rewarding career journey.We are seeking a highly skilled SAP Security/GRC Consultant to join our team. The successful candidate will be responsible for providing expertise in designing, implementing, and managing SAP security measures and GRC processes. This role...
-
GRC Consultant
3 days ago
Mumbai, Maharashtra, India UST Full time ₹ 20,00,000 - ₹ 25,00,000 per yearYears1 OpeningMumbaiRole descriptionExperience Required:Proven experience in Information Security GRC within the NBFC sector.Strong knowledge of RBI guidelines, ISO 27001, NIST, DPDP frameworks, and submission requirements.Expertise in regulatory compliance, audit management, risk tracking, and process improvement.Proficiency in preparing detailed reports,...
-
SAP GRC Consultant- Mumbai
1 week ago
Mumbai, Maharashtra, India Hudson Manpower Full time ₹ 12,00,000 - ₹ 24,00,000 per yearJob description Location: Andheri MumbaiPosition OverviewWe are seeking a highly skilled SAP S/4HANA Security & GRC Consultant with 6–8 years of experience, preferably in the utility business sector. The role is critical in ensuring the confidentiality, integrity, and availability of SAP S/4HANA systems, protecting sensitive business data, and maintaining...
-
It Grc Consultant
24 hours ago
Navi Mumbai, Maharashtra, India Bloom Systems Full time ₹ 15,00,000 - ₹ 25,00,000 per yearJob Description-Compliance Oversight: IT GRC Manager - Ensure that all IT operations, systems, and processes adhere to relevant regulatory requirements, including RBI/SEBI guidelines, and cybersecurity standards.Regulatory Reporting: Strong knowledge in KRI Returns, Public Facing Applications & Data Base, Tranche reporting.End to end management of Regulatory...
-
Junior GRC Consultant
1 week ago
Navi Mumbai, Maharashtra, India Risk Quotient Full time ₹ 6,00,000 - ₹ 12,00,000 per yearAbout Us:Risk Quotient Consultancy Pvt. Ltd. (RQ) is a fast-growing, CERT-IN empanelled cybersecurity consulting firm with extensive experience delivering 100+ information security projects across multiple industries and global clients.ResponsibilitiesAssist in executing information security, cybersecurity, risk management, business continuity, and privacy...
-
SAP GRC and Security Consultant
1 week ago
Navi Mumbai, Maharashtra, India Hector And Streak Consulting Full time ₹ 20,00,000 - ₹ 25,00,000 per yearKey Activities & Responsibilities:Should have strong knowledge of Authorization management, Role design & Build experience in SAP.Should have strong knowledge in Audit Management.Develop & build roles in line with business requirements, compliance requirementsExperience of troubleshooting authorization issues (SU53/ST01 trace) related to various SAP...
-
Team Member – IT Security GRC
1 week ago
Navi Mumbai, Maharashtra, India Tata Tele Business Services Full time ₹ 9,00,000 - ₹ 12,00,000 per yearJob DescriptionJob Responsibilities Manage & Support IT / IS auditsManage Third Party Risk Management programManage all planned as well as adhoc Security compliance activities for the yearManage compliance to regulatory, legal & statutory requirements from IS perspectiveImplement and manage industry recognised security certifcations, viz ISO, SOC2, etcManage...
-
Principal/Project Director
1 week ago
Mumbai, Maharashtra, India Acies Consulting Full time ₹ 15,00,000 - ₹ 25,00,000 per yearConsultingMumbai| IndiaFull timeOverviewWe are looking for experienced professionals to work with our consulting team. For more details, please click on Apply now.SkillsExposure to GRC tools such as MetricStream, SAP GRC.
-
Senior Lead
1 week ago
Mumbai, Maharashtra, India Crisil Full time ₹ 20,00,000 - ₹ 25,00,000 per yearRole Summary:The Senior Lead – IS GRC will be responsible for strengthening Crisil's Information Security Governance, Risk, and Compliance (GRC) function through execution of internal audits, risk assessments, compliance reviews, and control effectiveness testing. The role includes managing ISO 27001 certification activities, SOC 2 readiness, NIST CSF...
-
Assistant Manager
3 days ago
Mumbai, Maharashtra, India Deloitte Full time ₹ 12,00,000 - ₹ 24,00,000 per yearJob requisition ID :: 92208Date: Nov 13, 2025Location: MumbaiDesignation: Assistant ManagerEntity: Deloitte Touche Tohmatsu India LLPAbout the roleAs a Cybersecurity GRC Consultant / Assistant Manager, this position plays an vital role to support the implementation and management of governance, risk, and compliance initiatives that safeguard the...