Grc Analyst (Bengaluru)

Grc Analyst (Bengaluru)

29 Aug
|
Credit Saison India
|
Bengaluru

29 Aug

Credit Saison India

Bengaluru

GRC Analyst

Department: CISO Office - Pillar 2: Cyber Governance, Risk & Compliance

Reports To: Head of Cyber GRC

Level & Type: Mid (2-4 Years) | Full Time

Location: Bengaluru (Bangalore), India

About Credit Saison India

Credit Saison India is a premier technology-led NBFC and one of India's fastest-growing financial institutions. As the Indian arm of Tokyo Stock Exchange-listed Credit Saison Co., Ltd., we blend 70+ years of Japanese financial expertise with cutting-edge proprietary technology to deliver wholesale, MSME, and consumer lending solutions. With an AAA credit rating and landmark international backing, we're driving financial inclusion through digital-first credit delivery.

The Role

Join the CISO Office's Cyber GRC Pillar ("The Compass") as a GRC Analyst and own regulatory compliance across a high-velocity fintech operation. You'll be the operational backbone of our compliance mandate translating RBI Master Directions and DPDP Act requirements into actionable controls, coordinating security audits, managing fintech partner and vendor risks, and keeping our regulatory and cyber risk posture visible to leadership and the board. This is hands-on work: policy development, audit evidence collection, risk quantization and board reporting, third-party assessments, and partnering with engineering and operations teams to close security gaps and maintain airtight compliance.

What You'll Do

- Coordinate Internal & External Audits: Own the audit lifecycle from planning through evidence collection and remediation tracking with third-party firms.
- Ensure Regulatory Compliance:



Cover IT Act 2000, DPDP Act, CERT-In, and RBI Master Directions; map requirements in GRC platforms (Vanta, Drata, Sprinto, OneTrust, ServiceNow) and train teams on obligations.
- Third-Party & Vendor Risk Management: Manage fintech partner and vendor risks (cloud providers, co-lenders, DSAs, data processors); assess security posture, negotiate contracts, monitor compliance, and escalate findings.
- Policy Development & Maintenance: Develop and maintain security policies (incident response, data privacy, access control, vendor management) aligned to regulatory mandates and audit findings.
- Quantify Cyber Risk: Translate technical findings into business impact for the board; deliver quarterly compliance dashboards and risk summaries to executive leadership.
- Audit Evidence Ownership: Maintain audit evidence repository to ensure 100% completeness and accessibility for external auditors and regulatory inspections.
- Champion Compliance Culture: Lead cross-functional working groups, mentor team members, and build organizational understanding of regulatory requirements.

You'll Need

- 2 -4 years hands-on experience in GRC, compliance, audit, or risk management.




- Deep knowledge of Indian cybersecurity law and how it shapes daily operational work.
- Analytical mindset comfortable building frameworks, tracking metrics, and spotting compliance gaps.
- Technical fluency working comfortably with data, dashboarding tools, and cloud platforms (AWS, Azure, GCP).
- Clear communicator capable of translating regulatory jargon for engineers and executives alike.
- Ownership mentality for driving tasks to completion rather than just flagging issues.

Nice-to-Haves

- CISA, ISO 27001 Lead Auditor, or DISA certification.
- Fintech, NBFC, or banking sector experience.
- Incident response planning background.

What You'll Get

- Direct Impact: Shape our security and compliance posture; enable safe financial services for millions.
- Growth opportunities: Work closely with CISO and executive leadership on strategic initiatives.
- Learning Culture: Certifications, training, and mentorship from experienced security leaders.
- Fast-Paced Environment: High-velocity fintech where you'll see your work deployed quickly.
- Inclusive Team: Diverse, collaborative workplace that values innovation and continuous improvement.

Interested?

Send us

- Your resume (highlighting GRC/compliance/audit work).
- A short note on why you're excited about this role.
- References or portfolio showing GRC platform or compliance framework experience (optional).

Equal Opportunity: Credit Saison India is an equal opportunity employer committed to building a diverse and inclusive workplace.

📌 Grc Analyst (Bengaluru)
🏢 Credit Saison India
📍 Bengaluru

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: grc analyst (bengaluru) / bengaluru

Subscribe to this job alert:

Get the latest job offers by email for: grc analyst (bengaluru) / bengaluru