Security Analyst, GRC

11 hours ago


Hyderabad, Telangana, India CDK Global Full time ₹ 15,00,000 - ₹ 25,00,000 per year

Security Analyst - GRC

At CDK, the Security Analyst provides comprehensive information security risk management services across the organization. The analyst is responsible for operating the current program, identifying opportunities to uplevel the program and implement identified improvements. This role involves close coordination with business stakeholders, information security governance, and other security functions to ensure robust security practices and risk management across the whole CDK Enterprise.

Key Responsibilities
Leadership & Strategy:

  • Exemplify security principles and culture
  • Effectively partner across security, technology, and business teams
  • Be a thought leader on matters of security risk to business and technology partners

Third Party

  • Support the full lifecycle of Third Party Risk Management from onboarding to offboarding
  • Conduct initial and ongoing risk assessments of third-party vendors to identify potential privacy and security risks
  • Request, track, and analyze vendor due diligence documentation (e.g., SIG questionnaires, SOC reports, security policies)
  • Coordinate with internal stakeholders and vendors to identify, document, and monitor risk remediation efforts
  • Evaluate vendor cybersecurity controls and align with the organizations risk management framework
  • Collaborate with Contracts/Procurement teams on reviews related to vendor engagements

Business Continuity And Disaster Recovery

  • Works with stakeholders (e.g., department managers, project managers, and systems administrators) at different levels in the organization to understand their respective resilience needs and assists with implementing practices and procedures consistent with CDK policies and standards.
  • Conducts business impact analysis, facilitates creation Business Continuity & Disaster Recovery Plans, and conducts tabletop exercises.
  • Develops dependency mapping models representing capabilities and relationship with the respective applications in preparation for failover projects and the creation of runbooks and DR plans.
  • Partners with other IT groups to conduct service resilience and continuity risk assessments on new solutions and systems, ensuring they align with our resilience standards and reference architecture requirements.
  • Helps support and maintain all disaster recovery related workstreams end to end.

Required Qualifications

  • Bachelor's degree or higher in cybersecurity or a related field, or an equivalent experience.
  • Minimum of 4 years of experience in security, with at least 2 years in risk assessments, BCDR, or TPRM.
  • Relevant certifications such as CISM, CRISC, CISSP, and cloud certifications are highly desirable.
  • Strong logical, critical thinking, and problem-solving skills.
  • Extensive knowledge of Cyber Security and Risk in the context of application security (AppSec), cloud security, and IT infrastructure.

At CDK, we believe inclusion and diversity are essential in inspiring meaningful connections to our people, customers and communities. We are open, curious and encourage different views, so that everyone can be their best selves and make an impact.

CDK is an Equal Opportunity Employer committed to creating an inclusive workforce where everyone is valued. Qualified applicants will receive consideration for employment without regard to race, color, creed, ancestry, national origin, gender, sexual orientation, gender identity, gender expression, marital status, creed or religion, age, disability (including pregnancy), results of genetic testing, service in the military, veteran status or any other category protected by law.

Applicants for employment in the US must be authorized to work in the US. CDK may offer employer visa sponsorship to applicants.



  • Hyderabad, Telangana, India MosChip Full time ₹ 5,00,000 - ₹ 8,00,000 per year

    Job Overview:A GRC Analyst assists in managing and ensuring compliance with regulatory requirements and internal policies. Work closely with analysts and other stakeholders to support risk management and compliance activities.Key Responsibilities:Risk AssessmentsConduct risk assessments and validation testing to identify potential security threats.Compliance...


  • Hyderabad, Telangana, India IDESLABS PRIVATE LIMITED Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    We are looking for a skilled SAP Security and GRC Consultant with 8 to 12 years of experience. The position is based in Pan India.Roles and ResponsibilityImplement and maintain SAP security measures to ensure data integrity and confidentiality.Conduct risk assessments and audits to identify vulnerabilities and provide recommendations.Develop and implement...


  • Hyderabad, Telangana, India Argano Software Private Limited Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    DEPARTMENT : SAP Delivery DESLocation Hyderabad/ Pune (Willing to work in EST/ CST shift timings)Key Responsibilities : - Must have 6 years of SAP Security and/or GRC support and implementation experience. - Hands-on experience on SAP Security and Authorizations for ECC, S4HANA, BW4HANA, Fiori, BOBJ and SAP GRC AC 10.1 & 12 administration,...


  • Hyderabad, Telangana, India Neuroversea Full time ₹ 3,50,000 - ₹ 7,00,000 per year

    prior training and knowledge in SAP Sec and SAP GRC. The selected candidate will be involved in real-time project activities and gain experience in SAP Sec operations and GRC compliance management. Candidates who have passed out in 2021 or earlier.

  • GRC Analyst

    2 days ago


    Hyderabad, Telangana, India Payswiff Solutions Full time ₹ 6,00,000 - ₹ 18,00,000 per year

    Role & responsibilities :Plan, coordinate, and execute internal and external audits related to ISO 27001, ISO 9001, PCI DSS, SOC 2 Type II, and SARCollaborate with external auditors, regulatory bodies, and third-party vendors to facilitate audit readiness and ensure timely closure of findingsMaintain and enhance the Information Security Management System...


  • Hyderabad, Telangana, India ICE Data Services Full time ₹ 1,04,000 - ₹ 1,30,878 per year

    Job Purpose The Engineer, Information Security GRC is part of a team responsible for the global Information Security program. The role would gain exposure to the full suite of businesses and products which underpin the Parent ICE company.Information Security (IS) is charged with:Preventing impactful cybersecurity and physical security incidents,maintaining a...


  • Hyderabad, Telangana, India ICE Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    OverviewJob PurposeThe Engineer, Information Security GRC is part of a team responsible for the global Information Security program. The role would gain exposure to the full suite of businesses and products which underpin the Parent ICE company.Information Security ("IS") Is Charged WithPreventing impactful cybersecurity and physical security...

  • IT Security Analyst

    2 weeks ago


    Hyderabad, Telangana, India iNetFrame Technologies Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    Job Description:Responsibilities:Information Security GRC or relevant Audit, Risk and Compliance• Collaborate with partners and work with departmental team members to perform risk assessments• Develop, documents, and help to implement security controls designed to prevent internal or external attacks or attempts to infiltrate company information...


  • Hyderabad, Telangana, India AVEVA Full time ₹ 4,00,000 - ₹ 12,00,000 per year

    IT GRC Junior Analyst AVEVA is creating software trusted by over 90% of leading industrial companies. Job Title: IT GRC Junior Analyst Location: Hyderabad, India Employment Type: Full-time / Regular The job The IT GRC Junior Analyst supports AVEVA's internal control certification activities under PCAOB/SOX. This role operates within the first...


  • Hyderabad, Telangana, India Cigna Healthcare Full time ₹ 8,00,000 - ₹ 16,00,000 per year

    Cyber Security Lead Analyst - HIH - EvernorthPosition Summary:We are seeking a hands-on Software Developer with experience in integrating enterprise applications and building solutions around Governance, Risk, and Compliance (GRC) platforms—primarily Onspring. The ideal candidate will be responsible for designing and developing custom integrations...