Senior Engineer - Governance, Risk and Compliance (Bengaluru)

Senior Engineer - Governance, Risk and Compliance (Bengaluru)

04 Aug
|
NextGen Healthcare India
|
Bengaluru

04 Aug

NextGen Healthcare India

Bengaluru

Sr Engineer, Governance, Risk u0026 Compliance Job Description: The Sr. Security Engineer develops solutions leveraging Governance, Risk u0026 Compliance (GRC) platforms, security technologies, and automation to support Information Security and GRC operations. The ideal candidate has experience administering enterprise GRC platforms, configuring workflows, automating business processes, integrating technologies, and developing operational reporting, dashboards and workflow automation to support Audit, Compliance, Enterprise Risk, Third-Party Risk Management (TPRM), Identity Governance, Privacy, Business Continuity, Security Awareness, and AI Governance. Develop solutions using GRC platforms, security technologies, and automation to support Information Security and Governance, Risk u0026 Compliance (GRC) initiatives Serve as system administrator for enterprise GRC platforms and supporting technologies including Third-Party Risk Management (TPRM), Risk Register, Privacy Management, Security Awareness, Identity Governance, Business Continuity, AI Governance, and related GRC solutions. Configure and maintain GRC workflows, forms, questionnaires, dashboards, control libraries, evidence management, and reporting capabilities. Perform platform administration, upgrades, testing, user provisioning, troubleshooting, release validation, and technical support. Provide technical and operational support for the TPRM platform, including platform configuration, user support, workflow enhancements, issue resolution, testing, and release validation. Configure and administer Identity Governance workflows including user access certification campaigns, periodic access reviews, remediation tracking, and governance reporting. Administer Phishing tool and related security awareness technologies, including phishing simulations,



mandatory training campaigns, completion tracking, and awareness reporting. Collect operational metrics from Information Security, IT, Engineering, Privacy, Compliance, Risk, and other business teams; automate data collection where feasible; and develop CISO dashboards, executive reporting, KPI/KRI metrics, and recurring operational reports. Configure workflow automation across GRC platforms to streamline business processes, improve operational efficiency, and reduce manual effort. Support integration of GRC platforms with ServiceNow, IAM, CMDB, ITSM, HR systems, vulnerability management, security tools, and API-based integrations. Provide technical support for audit and compliance platforms, including platform configuration, workflow enhancements, reporting, issue resolution, testing, and release validation. Configure and administer Privacy Impact Assessment (PIA), Data Protection Impact Assessment (DPIA), privacy workflows, dashboards, and operational reporting. Configure and support Business Continuity and Disaster Recovery (BC/DR) technologies, including Business Impact Analysis (BIA) workflows, testing schedules, resilience dashboards, remediation tracking, and evidence management. Configure and support AI Governance technologies, including AI risk assessment workflows, dashboards, automation, and platform enhancements supporting responsible AI adoption. Collaborate with Information Security, Enterprise Applications,



Engineering, Infrastructure, Privacy, Internal Audit, Enterprise Risk, Compliance, and business stakeholders to support GRC platform operations and technology enablement. Support customer security assessments, HITRUST, SOC 2, ISO 27001, HIPAA, PCI DSS, and other compliance initiatives through platform administration, reporting, workflow automation, and evidence management. Create and maintain technical documentation, standard operating procedures (SOPs), platform configuration guides, and knowledge articles. Identify opportunities to optimize GRC technologies, enhance automation, improve platform utilization, and recommend operational improvements. Stay current with GRC technologies, cybersecurity regulations, industry frameworks, and emerging best practices, including AI governance, and apply them to existing GRC platforms and operational processes. Education Required: Bachelor's Degree in Computer Science or related discipline or advanced degree. Or, any combination of education and experience which would provide the required qualifications for the position. Experience Required: 4-6 years of relevant experience or advanced Degree. Experience administering, configuring, and supporting Governance, Risk u0026 Compliance (GRC) platforms, security technologies, and workflow automation solutions. Experience working with GRC platforms, security technologies, tools, or processes such as phishing campaigns, Identity Governance, IAM, PAM, MFA, RBAC, SSO, Third-Party Risk Management (TPRM), Risk Register, Privacy Management, workflow automation, dashboards, reporting, vulnerability management, and related GRC technologies. Experience with one or more of the following frameworks: COSO, NIST CSF, RMF, ISO, COBIT .

📌 Senior Engineer - Governance, Risk and Compliance (Bengaluru)
🏢 NextGen Healthcare India
📍 Bengaluru

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: senior engineer - governance, risk and compliance (bengaluru) / bengaluru

Subscribe to this job alert:

Get the latest job offers by email for: senior engineer - governance, risk and compliance (bengaluru) / bengaluru