Job Description
Post Name- Senior Manager/AVP - GRC
nJob Type- Permanent
nLocation- Mumbai
nBudget- For Senior Manager-45 LPA (fixed + variable)
nFor AVP- 65 LPA (fixed + variable)
nEducational Qualification/ Certifications:
nMandatory- Graduate / Postgraduate / BE / BTech.
nCertifications- At least one of the CIPM/CIPP/ISACA-CDPSE/CDPO/GDPR-CDPO/ISO 27701 LA/LI and/or PMP/CISM/CISSP/CISA/ISO 27001 certifications is mandatory.
n
nWork Experience:
nMandatory-Min 10 years (For General Manager) and 14 years (For AVP) of experience preferred in Security Advisory, Cyber Security and privacy implementation and operations
nResponsibilities:
n
- n
- Develop and execute the GRC strategy and framework to ensure compliance with applicable regulatory requirements and industry standards.n
- Lead the assessment and management of security risks across the organization, ensuring effective mitigation strategies are in placen
- Establish solid governance processes and policies to promote a culture of compliance and risk awareness among employees.n
- Oversee the development,
implementation, and maintenance of information security policies, standards, and procedures.n
- Collaborate with executive management to provide regular updates on GRC matters, including risk assessment outcomes and compliance status.n
- Manage cross-functional teams to integrate GRC practices across relevant business functions and projects.n
- Lead internal and external audit processes, ensuring timely completion and resolution of any findings.n
- Develop and oversee training and awareness programs related to GRC and information security for staff at all levels.n
- Stay abreast of emerging regulatory requirements, security threats, and industry trends to proactively adjust the GRC program as necessary.n
n
nSkills Required:
n
n
- n
- Should have relevant experience in Security & Privacy engineering and tools implementation.n
- Project Management experience with leading a technical