About the Company:
Our client is a product-focused organization founded by experienced technocrats
with over 14 years of collaboration and a combined industry experience of 100+
years. With robust domain expertise in the Infrastructure & Operations space, it
has built a robust presence across India and international markets. The company
offers a comprehensive portfolio of integrated IT solutions designed to simplify
and automate complex IT environments. Its solutions empower enterprises to
improve operational efficiency and deliver superior services to end users.
Role Overview:
We are looking for a hands-on Cyber Security & GRC Specialist who will
independently build and manage the organization’s security governance, risk, and
compliance (GRC) framework from scratch.This is a high-ownership role where the
selected candidate will be responsible for establishing security policies,
driving compliance initiatives (ISO 27001, SOC 2), implementing technical
security controls,
and managing end-to-end security operations without an
existing team.
Key Responsibilities:
1. GRC & Compliance (Primary Focus)
* Build the organization’s GRC framework from ground up.
* Design and implement ISMS aligned with ISO 27001.
* Lead ISO 27001 / SOC 2 readiness and certification process.
* Develop and document security policies, SOPs, and procedures.
* Conduct risk assessments, maintain risk register, and perform gap analysis.
* Drive internal and external audits independently.
* Ensure ongoing compliance monitoring and evidence management.
2. Cloud & Network Security
* Implement and manage AWS security best practices.
* Configure and manage: IAM,KMS,GuardDuty,CloudTrail,WAF (Mandatory)
* Secure VPC configurations and encryption standards.
* Oversee secure architecture review with DevOps teams.