GRC Officer – Mumbai – 5 to 9 Years Experience

Urgent
Apply Now

Job Description

Fynd is seeking a highly skilled GRC Officer to ensure compliance with global security and data protection regulations. The ideal candidate will develop and oversee governance, risk, and compliance (GRC) programs, implement security frameworks, and safeguard sensitive data across the organization.

Responsibilities:

1. Governance, Risk, and Compliance (GRC):

  • Develop, implement, and maintain GRC frameworks to align with regulatory and industry standards.
  • Establish risk assessment methodologies and ensure mitigation strategies are in place.
  • Conduct IT General Controls (ITGC) assessments to ensure effective security controls.
  • Oversee third-party risk assessments, ensuring vendors comply with security policies.

2. Information Security Compliance & Certifications:

  • Lead and maintain compliance with ISO 27001, ensuring policies meet certification requirements.
  • Manage SOC 2 compliance, covering security, availability, confidentiality, and privacy principles.
  • Oversee PCI-DSS compliance for secure handling of cardholder data.
  • Align with NIST security frameworks for risk management and cybersecurity resilience.

3. Business Continuity & Incident Management:

  • Develop and maintain a Business Continuity Management (BCM) program, including disaster recovery plans.
  • Lead security incident response and investigations to mitigate cybersecurity threats.
  • Conduct regular audits and tabletop exercises to assess security resilience.
Job Requirements

• 5+ years of experience in Compliance, GRC, or Cybersecurity roles.
• Strong knowledge of SOC 2, ISO 27001, GDPR, DPDP, PCI-DSS, NIST, ITGC, and Third-Party Risk Management.
• Experience in implementing GRC tools and automating compliance processes.
• Excellent stakeholder management skills with cross-functional collaboration experience.
• Strong analytical, problem-solving, and decision-making skills.

Preferred Qualifications

• Bachelor’s/Master’s degree in Information Security, Cybersecurity, Compliance, or a related field.
• Professional certifications such as CIPP/E, CIPM, CISSP, CISM, CISA, ISO 27001 Lead Auditor, or CRISC are highly preferred.
• Interested candidates? Send your resume.
• 📢 Share this opportunity with your network!

About the Company

Fynd is a technology-driven company that prioritizes data security, compliance, and risk management. Join us and be part of a dynamic team ensuring top-tier security and governance standards.