GRC Resource Consultant – Pune – 2 to 4 Years Experience

6 September 2024
Urgent

Job Overview

  • Date Posted
    6 September 2024
  • Location
  • Expiration date
    9 November 2024
  • Experience
    2 Year
  • Gender
    Any

Job Description

Newton’s Apple is seeking a dedicated and detail-oriented GRC (Governance, Risk, and Compliance) resource to join our Security Team. The selected candidate will play a key role in managing security audits, ensuring compliance, and mitigating risks within the organization. This position requires close coordination with various stakeholders to maintain our security governance framework.

Responsibilities:

  • Facilitate internal and external audits related to IT/Information Security.
  • Act as the primary contact for tracking and closing audit observations.
  • Implement corrective and preventive measures for audit findings.
  • Coordinate VAPT (Vulnerability Assessment and Penetration Testing), Red Team, and third-party audits.
  • Perform monthly security checks in line with RBI and ISO27001 standards.
  • Ensure enforcement of security policies and continuous monitoring.
  • Drive Segregation of Duties (SoD) audits and facilitate relevant meetings.
  • Coordinate and track security metrics and governance reports.
  • Lead Change Advisory Board (CAB) meetings and document minutes.
  • Review IT project management artifacts for security compliance.
  • Maintain comprehensive documentation of the security portfolio.
Job Requirements

• 2-4 years of experience in Information Security Audits, Compliance, Risk Management, and Governance.
• Familiarity with ISO 27001 and RBI guidelines.
• Strong analytical, interpersonal, and communication skills.
• Ability to collaborate effectively and work as part of a team.

Preferred Qualifications

• Experience with User Access Management and SoD audits.
• Previous experience in a fast-paced, audit-intensive environment.

About the Company

Newton's Apple is a fast-growing organization committed to driving business success through innovative technology solutions. We prioritize security and compliance to ensure the highest standards of data protection. Our team values collaboration, integrity, and continuous improvement.