Grc Consultant-Bangalore location

2 - 6 years

6 - 16 Lacs

Posted:3 weeks ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description

Job Summary:

GRC Specialist

Key Responsibilities:

  • Governance & Compliance:

    • Develop, implement, and maintain the organizations

      Information Security Management System (ISMS)

      in accordance with

      ISO 27001

      standards.
    • Monitor compliance with internal security policies and regulatory requirements.
    • Coordinate and conduct periodic internal audits, risk assessments, and compliance reviews.
  • Risk Management:

    • Identify, assess, and mitigate information security risks across the enterprise.
    • Support development and execution of

      risk treatment plans

      and continuous monitoring processes.
    • Manage and enhance the

      Third-Party Risk Management (TPRM)

      program, including onboarding, due diligence, and periodic assessments of vendors.
  • Business Continuity:

    • Implement and maintain the

      Business Continuity Management System (BCMS)

      in line with ISO 22301 standards.
    • Support business units in developing and testing Business Continuity Plans (BCPs) and Disaster Recovery Plans (DRPs).
    • Conduct Business Impact Analysis (BIA) and ensure recovery strategies are up-to-date.
  • Policy & Documentation:

    • Develop and maintain security and compliance policies, procedures, and guidelines.
    • Ensure proper documentation of controls, findings, and remediation efforts.
  • Training & Awareness:

    • Conduct GRC training sessions and awareness programs across the organization.
    • Promote a culture of compliance and risk-aware behavior.

Required Skills & Qualifications:

  • Bachelor’s degree in Information Security, Computer Science, Risk Management, or related field.
  • 3–7 years of experience in GRC, information security, or risk management roles.
  • Strong knowledge and hands-on experience with:
    • ISMS (Information Security Management System)

    • ISO 27001 implementation and audits

    • BCMS (Business Continuity Management System) / ISO 22301

    • TPRM (Third-Party Risk Management)

  • Familiarity with data protection regulations (e.g., GDPR, HIPAA, etc.)
  • Certifications preferred:

    ISO 27001 Lead Implementer/Auditor

    ,

    CRISC

    ,

    CISA

    ,

    CBCP

    , or similar.
  • Excellent communication, documentation, and stakeholder management skills.
  • Ability to work independently and manage multiple priorities.

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now
Shell Infotech logo
Shell Infotech

IT Services and IT Consulting

Dallas Texas

RecommendedJobs for You