20 Sep
|
Infosec Train
|
Maharashtra
20 Sep
Infosec Train
Maharashtra
GRC Consultant - Information SecurityLocation:Preferably Trivandrum / Kochi (Hybrid) OR Willing to RelocateExperience:2–3 YearsSalary:Up to ₹40,000 per monthEmployment Type:Full-TimeJob DescriptionWe are looking for aGRC Consultantwith 2–3 years of experience in Information Security, Governance, Risk, and Compliance. The candidate will be responsible for supporting client consulting engagements, security assessments, compliance activities, documentation, and implementation of information security processes.Key Responsibilities:Support consulting engagements related toInformation Security, Business Continuity, Data Privacy, IT Governance, and Risk Management .ConductAS-IS assessments, gap assessments, risk assessments, and compliance assessments .Assist in developing and implementinginformation security policies, processes, procedures, guidelines, and templates .Conduct compliance assessments against frameworks and standards such asISO 27001, ISO 27002, ISO 22301, ISO 31000, NIST, and CIS .Identify and document security gaps, risks, and non-conformities and support corrective action closure.Preparetechnical reports, presentations, assessment reports, and client documentation .Develop and trackKPIs, metrics, and compliance reports .Work with clients and internal stakeholders to understand business requirements and translate them into appropriate security and GRC deliverables.Provide guidance on applicable security standards, controls, processes, and best practices.Support implementation and institutionalization of security and compliance processes within client environments.Travel occasionally toclient locations,
including international locations, based on project requirements.Required Skills & Qualifications:2–3 years of relevant experience inInformation Security, GRC, Risk, Compliance, IT Governance, or related areas .Strong understanding ofISO 27001 and ISO 27002 .Experience insecurity risk assessments and compliance assessments .Knowledge ofISO 22301, ISO 31000, NIST, CIS, or similar frameworks.Understanding of information security controls, policies, processes, and risk mitigation.Familiarity withapplication security, network security, endpoint security, server security, and SIEM/security monitoringconcepts.Valuable technical documentation and report-writing skills.Strongwritten and verbal communication skills .Ability to interact effectively with technical and non-technical stakeholders.Bachelor's degree inComputer Science, Engineering, Information Technology, or a related field .Additional Requirements:Willingness to travel occasionallyto client locations as required by projects.Valid passportand eligibility to undertake international travel when required.Candidate should have apersonal laptopfor work-related activities.Preferred Certifications:Certifications such asISO 27001 LA/LI, ISO 22301 LA/LI, CISA, CISSP, CRISC, CCSK, CompTIA CASP, or PMPwill be an added advantage.Key Competencies:Client-facing skillsRisk assessment and analysisInformation Security & GRCCompliance and auditDocumentation and reportingStakeholder managementProject coordinationBusiness and technical understandingHow to Apply?Interested candidates can share their updated CV at:Email:Contact:(phone hidden)
📌 Grc Consultant – Information Security (Maharashtra)
🏢 Infosec Train
📍 Maharashtra