Post Name- Senior Manager/AVP - GRC
Job Type- Permanent
Location- Mumbai
Budget - For Senior Manager-45 LPA (fixed + variable)
For AVP- 65 LPA (fixed + variable)
Educational Qualification/ Certifications:
Mandatory- Graduate / Postgraduate / BE / BTech.
Certifications - At least one of the CIPM/CIPP/ISACA-CDPSE/CDPO/GDPR-CDPO/ISO 27701 LA/LI and/or PMP/CISM/CISSP/CISA/ISO 27001 certifications is mandatory.
Work Experience:
Mandatory -Min 10 years (For General Manager) and 14 years (For AVP) of experience preferred in Security Advisory, Cyber Security and privacy implementation and operations
Responsibilities:
- Develop and execute the GRC strategy and framework to ensure compliance with applicable regulatory requirements and industry standards.
- Lead the assessment and management of security risks across the organization, ensuring effective mitigation strategies are in place
- Establish solid governance processes and policies to promote a culture of compliance and risk awareness among employees.
- Oversee the development, implementation,
and maintenance of information security policies, standards, and procedures.
- Collaborate with executive management to provide regular updates on GRC matters, including risk assessment outcomes and compliance status.
- Manage cross-functional teams to integrate GRC practices across relevant business functions and projects.
- Lead internal and external audit processes, ensuring timely completion and resolution of any findings.
- Develop and oversee training and awareness programs related to GRC and information security for staff at all levels.
- Stay abreast of emerging regulatory requirements, security threats, and industry trends to proactively adjust the GRC program as necessary.
Skills Required:
- Should have relevant experience in Security & Privacy engineering and tools implementation.
- Project Management experience with leading a technical team.
- Knowledge on cyber security, data security, SOC operations and incident ma