11 Sep
|
ShieldByte Infosec
|
Mumbai
11 Sep
ShieldByte Infosec
Mumbai
Position: Senior GRC Executive / GRC Manager
Department: Governance, Risk & Compliance (GRC)
Location: Mumbai
Employment Type: Full-Time
Role Overview
Shieldbyte Infosec is looking for an experienced Senior GRC Executive / GRC Manager to manage and deliver Governance, Risk and Compliance engagements for clients across multiple industries.
The candidate will be responsible for independently handling client engagements covering information security, privacy, regulatory compliance, risk management, audits and implementation projects. The role requires strong knowledge of security frameworks and regulatory requirements, excellent documentation capabilities, client-facing skills and the ability to manage multiple projects simultaneously.
Responsibilities
- Lead and execute GRC consulting, implementation, gap assessment and audit-readiness engagements.
- Perform gap assessments against applicable standards, regulations and contractual requirements.
- Develop and review policies, procedures, standards, guidelines and governance frameworks.
- Conduct enterprise and information security risk assessments and maintain risk registers.
- Identify compliance gaps, assess associated risks and recommend practical remediation measures.
- Develop compliance roadmaps and track corrective actions through closure.
- Establish and monitor Key Risk Indicators (KRIs), Key Performance Indicators (KPIs) and compliance metrics.
- Independently manage assigned client engagements from kickoff through final delivery.
- Conduct client meetings, stakeholder interviews, workshops and management presentations.
- Understand client business processes, technology environments and applicable compliance obligations.
- Review evidence and determine adequacy against applicable controls.
- Maintain project trackers and ensure milestones and deliverables are completed within agreed timelines.
- Maintain professional communication with client stakeholders, including senior management and CISOs.
Qualifications
- Bachelor's/Master's degree in IT, Computer Science, Cybersecurity, Information Security or related discipline.
- Approximately 3–5 years of relevant GRC / Information Security / Compliance experience.
- Ability to independently execute compliance and risk-assessment activities.
- Approximately 5–8+ years of relevant GRC / Information Security / Audit experience.
- Demonstrated experience independently managing multiple client engagements.
- Prior team-management or project-leadership experience preferred.
- Strong understanding of Governance, Risk and Compliance concepts
- Strong analytical and problem-solving abilities
- Excellent report-writing and documentation skills
- Solid verbal and written communication
- Client-facing and presentation capabilities
- Ability to manage multiple engagements and deadlines
- Advanced working knowledge of MS Excel, Word and PowerPoint
📌 Senior GRC Executive / GRC Manager (Mumbai)
🏢 ShieldByte Infosec
📍 Mumbai