We are seeking a Junior Governance, Risk, and Compliance (GRC) Analyst to support the organizationâs security and compliance programs, specifically focusing on SOC 2 Type II and ISO 27001 compliance initiatives. The candidate will assist in maintaining compliance documentation, monitoring security controls, supporting audits, and performing risk assessments to ensure alignment with industry standards and regulatory requirements.
This role works closely with security, IT, and business teams to ensure controls are implemented and maintained effectively. Frameworks involved include: 1.SOC 2 Type II 2.ISO/IEC 27001
Key Responsibilities:
Compliance & Governance:
Assist in maintaining and updating policies, procedures, and standards aligned with SOC 2 Type II and ISO 27001 requirements.
Support implementation and monitoring of security controls defined under the compliance frameworks.
Track control effectiveness and remediation activities.
Audit Support:
Assist in preparing documentation and evidence for internal and external audits.
Coordinate with internal teams to collect compliance evidence.
Support SOC 2 and ISO 27001 audit preparation activities.
Risk Management:
Participate in security risk assessments and maintain the organizational risk register.
Help identify control gaps and support remediation planning.
Compliance Monitoring:
Monitor compliance status and track action items related to SOC 2 and ISO 27001 controls.
Assist with control testing and documentation.
Documentation & Reporting:
Maintain compliance documentation and audit artifacts.
Prepare reports on compliance posture, risk status, and audit findings.
Required Skills:
Basic understanding of information security governance and risk management.
Familiarity with information security frameworks and standards.
Understanding of risk assessment and control implementation concepts.
Knowledge of security policies, controls, and compliance processes.
Robust analytical, documentation, and organizational skills.
Positive communication and stakeholder coordination skills.
Preferred Knowledge:
Experience or knowledge of:
SOC 2 trust service criteria
ISO/IEC 27001 controls and ISMS concepts
Risk management concepts such as risk identification, assessment, and mitigation
Familiarity with GRC tools such as: Vanta, ServiceNow GRC
📌 Jr Grc Analyst 0 1yrs Hyderabad
🏢 Leading
📍 Hyderabad
Reply to this offer
Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.