GRC Specialist
2 days ago
PropertyGuru is Southeast Asia's leading PropTech company, and the preferred destination for over 32 million property seekers monthly to connect with over 50,000 agents monthly to find their dream home. PropertyGuru empowers property seekers with more than 2.1 million real estate listings, in-depth insights, and solutions that enable them to make confident property decisions across Singapore, Malaysia, Thailand and Vietnam.
was launched in Singapore in 2007 and since then, PropertyGuru Group has made the property journey a transparent one for property seekers in Southeast Asia. In the last 18 years, PropertyGuru has grown into a high-growth PropTech company with a robust portfolio including leading property marketplaces and award-winning mobile apps across its markets in Singapore, Malaysia, Vietnam, Thailand as well as the region's biggest and most respected industry recognition platform – PropertyGuru Asia Property Awards, events and publications across Asia.
For more information, please visit: ; PropertyGuru Group on LinkedIn.
At PropertyGuru, we strive to "Build Southeast Asia's Trust Platform" and security is at the centre of building that trust with our customers, agents, and partners across Singapore, Vietnam, Malaysia, Thailand & India.
The GRC Specialist plays a critical role in managing Governance, Risk, and Compliance functions across PropertyGuru. The role involves assessing and mitigating technology and third-party risks, embedding risk management practices into business processes, and ensuring alignment with regulatory and industry frameworks. The specialist will collaborate with compliance, data protection, and security stakeholders while leveraging automation and dashboards to provide clear visibility of the organization's risk and compliance posture.
RESPONSIBILITIES
Governance & Policy Management
- Develop, maintain, and publish up-to-date information security policies, standards, and guidelines.
- Ensure alignment with industry best practices and oversee approvals, exceptions, and dissemination of security policies.
- Support audits, regulatory reviews, and certification initiatives (ISO 27001, SOC2, PCI DSS, etc.).
Risk Management (Technology & Third-Party)
- Identify, assess, and prioritize risks to PropertyGuru's information assets, systems, and data.
- Perform Business Impact Analysis (BIA) and Privacy Impact Assessments (PIA) to evaluate risk exposure.
- Collaborate with business units to implement effective mitigation strategies.
- Conduct onboarding diligence and manage ongoing third-party security risks.
- Automate risk lifecycle management (acceptance, follow-ups, closure) and build dashboards to visualize risk posture.
- Evaluate risks associated with emerging technologies such as AI/ML, GenAI, and LLMs, and establish governance frameworks to address AI model risk, bias, and ethical considerations
Compliance & Privacy
- Ensure adherence to common standards and regulations: ISO/IEC 27001, NIST CSF, NIST 800-53, SOC2, PCI DSS, SOX ITGC, GDPR, and Singapore PDPA.
- Perform PIA reviews for data processing activities involving PII and recommend mitigation controls.
- Partner with Data Protection lead and Compliance Leads to strengthen insider threat monitoring, reporting, and automated dashboards.
- Support compliance with emerging AI regulations and standards, ensuring responsible AI governance practices
Incident Response & Awareness
- Respond to security and privacy incidents: containment, investigation, and remediation coordination.
- Build and drive awareness programs, publish training mailers, and automate the tracking of annual training completion.
- Foster a Security First culture across the enterprise.
Automation & Reporting
- Build dashboards (Power BI or via scripting/automation) to provide real-time views of risk, compliance status, and metrics (e.g., risks approved, pending, overdue).
- Automate reporting for insider threat events, regulatory compliance tracking, and risk acceptance workflows.
- Provide concise reporting to management on key risks, compliance posture, and emerging issues.
Collaboration & Stakeholder Engagement
- Work closely with Compliance Lead, Lead Data Protection, Legal, Cyber Defence, and Infrastructure teams.
- Engage business unit leaders to embed risk awareness into processes.
- Support continuous improvement of governance and compliance practices through collaboration and knowledge sharing.
WHO YOU ARE - QUALIFICATIONS
- 6–8 years of hands-on experience in managing Governance, Risk, and Compliance projects.
- Demonstrated knowledge of security, compliance, and privacy frameworks: ISO/IEC 27001, NIST CSF, NIST 800-53, SOX ITGC, SOC2, PCI-DSS, Singapore PDPA, GDPR.
- Strong understanding of data privacy principles and evolving global privacy laws.
- Awareness of AI-related risks, regulatory frameworks, and governance practices (e.g., EU AI Act, NIST AI RMF)
- Practical experience with Business Impact Analysis, Privacy Impact Assessments, and Third-Party Risk Management.
- Hands-on knowledge of cloud-native applications and cloud infrastructure security (AWS, GCP).
- Additional certifications preferred: CISM, CISA, CISSP.
SKILLS & PERSONAL ATTRIBUTES
- Proficiency in automation tools, Power BI, or scripting for dashboards and reporting.
- Knowledge of AI risk management, ethical AI principles, and ability to assess emerging risks from automation, GenAI, and AI-enabled platforms
- Excellent documentation, presentation, and collaboration skills.
- Strong verbal and written communication, able to articulate complex topics clearly and concisely.
- Analytical mindset with strong problem-solving skills and attention to detail.
- Ability to influence stakeholders, drive compliance initiatives, and foster a culture of accountability.
- Proactive, adaptable, and motivated to continuously improve GRC maturity.
Our commitment to you:
Hybrid flexible working that focuses on outcomes over hours.
Holistic rewards package covering your financial, physical & mental health.
Multi-directional career development across all levels.
Inclusive benefits like equal paternity leave, supporting all employees in work-life balance.
-
GRC Specialist
2 weeks ago
Bengaluru, Karnataka, India Atomicwork Full time ₹ 12,00,000 - ₹ 36,00,000 per yearAt Atomicwork, we are redefining IT transformation through AI-driven solutions for ITSM and Employee Service Management in the B2B SaaS space. We are passionate about empowering businesses with tools that deliver operational excellence and customer satisfaction. As a fast-growing startup, we're looking for a GRC Specialist to ensure robust governance, risk...
-
sap grc
1 day ago
Bengaluru, Karnataka, India OSCILLIX Full time ₹ 30,00,000 per yearWe're looking for a hands‑on SAP GRC specialist who can lead end‑to‑end implementations across SAP GRC Access Control and SAP Cloud Identity Access Governance (IAG)—bridging cloud and on‑prem landscapes via IAG Bridge, enabling robust risk analysis, and streamlining provisioning across S/4HANA and connected SaaS applications. You will own design,...
-
Senior GRC Specialist
1 week ago
Bengaluru, Karnataka, India c58ec0f4-3c66-4a7a-91de-d32598097e5e Full time ₹ 12,00,000 - ₹ 24,00,000 per yearJob Title: Senior GRC SpecialistLocation: Bangalore (On-site; full-time)About LocusBattle-tested in 350+ deployments across 30+ countries, Locus is an agentic Transportation Management System for all-mile, all-channel, trusted by enterprises like Unilever, Nestlé, and Siam Makro.The platform unifies orders, capacity, and carrier networks into one living...
-
ServiceNow GRC Developer
3 days ago
Bengaluru, Karnataka, India Akshar Staffing Full time ₹ 1,00,00,000 - ₹ 2,00,00,000 per yearWe are seeking a highly skilled and experienced ServiceNow IRM (Integrated Risk Management) Developer with expertise in Governance, Risk, and Compliance (GRC) and Risk Assessment module implementation. The ideal candidate will have a strong technical background in ServiceNow platform development, coupled with in-depth knowledge of designing and implementing...
-
Senior GRC Specialist
7 days ago
Bengaluru, Karnataka, India Locus Full time ₹ 12,00,000 - ₹ 36,00,000 per yearJob Title: Senior GRC SpecialistLocation: Bangalore (On-site; full-time)About LocusBattle-tested in 350+ deployments across 30+ countries, Locus is an agentic Transportation Management System for all-mile, all-channel, trusted by enterprises like Unilever, Nestlé, and Siam Makro. The platform unifies orders, capacity, and carrier networks into one...
-
Senior GRC Specialist
1 week ago
Bengaluru, Karnataka, India -5dcb-4f42-94b8-ca7e422768b7 Full time ₹ 12,00,000 - ₹ 36,00,000 per yearLocation: Bangalore (On-site; full-time)About LocusBattle-tested in 350+ deployments across 30+ countries, Locus is an agentic Transportation Management System for all-mile, all-channel, trusted by enterprises like Unilever, Nestlé, and Siam Makro.The platform unifies orders, capacity, and carrier networks into one living plan, aligning planning, execution,...
-
Sales Specialist – Cybersecurity
1 week ago
Bengaluru, Karnataka, India CloudHire Full time ₹ 12,00,000 - ₹ 36,00,000 per yearPosition OverviewWe are seeking a motivated, organized, and creative Sales Specialist passionate about selling Cybersecurity and GRC consulting services. The role involves building strong customer relationships, identifying business opportunities, and driving revenue growth through strategic sales initiatives.About ClientSecure Logic is a leading provider...
-
IAM Security speacialist
2 weeks ago
Bengaluru, Karnataka, India Procallisto Solutions Full time ₹ 9,00,000 - ₹ 12,00,000 per yearWe are seeking an experienced IAM Security Specialist to join our team. The ideal candidate will be responsible for managing and enhancing our identity and access management solutions, ensuring secure and efficient access to enterprise systems. The role requires expertise in Okta, IntraID, BeyondTrust, SAP GRC, and User Access Management (UAM) to enforce...
-
ServiceNow ITSM
1 week ago
Bengaluru, Karnataka, India Panzer Technologies Pvt Ltd Full time ₹ 12,00,000 - ₹ 25,00,000 per yearJob Title: Application Developer - ServiceNow ITSM & CMDB - 7B (IT Service Management)Years of experience: 7+Position Overview:We are seeking a skilled and experienced Application Consultant Developer in ServiceNow IT Service Management (ITSM) and CMDB.The ideal candidate will have over 7 years of experience in ServiceNow ITSM implementation, design, and...
-
Servicenow Developer
2 weeks ago
Bengaluru, Karnataka, India EXL Full time ₹ 12,00,000 - ₹ 24,00,000 per yearRole & responsibilitiesWe are looking for a ServiceNow IRM (Integrated Risk Management) Developer to design, configure, and enhance ServiceNows GRC/IRM applications. The candidate should have a strong background in risk, compliance, audit, and regulatory processes with deep ServiceNow development expertise.Key ResponsibilitiesDevelop, configure, and maintain...