04 Oct
|
INFOCUS IT CONSULTING
|
Faridabad
04 Oct
INFOCUS IT CONSULTING
Faridabad
Job Title: GRC Analys
Location: Faridabad, Delhi NCR
Experience: 5+ Years
Employment Type: Full-Time
About the Role
INFOCUS IT Solutions is looking for a skilled and detail-oriented Governance, Risk & Compliance (GRC) Analyst to support and strengthen our information security, risk management, and compliance initiatives. The ideal candidate should have hands-on experience in conducting security assessments, compliance audits, risk analysis, policy development, and regulatory compliance management.
Key Responsibilities
Conduct IT, Information Security, and Cybersecurity risk assessments.
Perform compliance assessments against standards such as ISO 27001, NIST, RBI, CERT-In, PCI DSS, GDPR, and other regulatory frameworks.
Assist in developing, reviewing, and maintaining information security policies, procedures, and controls.
Identify, analyze, and report security risks, vulnerabilities, and compliance gaps.
Support internal and external audits and coordinate remediation activities.
Track compliance requirements and ensure adherence to industry regulations and organizational policies.
Monitor risk mitigation plans and recommend security improvements.
Prepare audit reports, compliance dashboards, risk registers, and management presentations.
Collaborate with business, IT, and security teams to implement governance and risk management initiatives.
Support vendor risk assessments and third-party security reviews.
Required Qualifications
Bachelor's degree in Information Technology, Computer Science, Cyber Security, or a related field.
Minimum 5 years of experience in Governance, Risk & Compliance (GRC), Information Security, Risk Management, or IT Audits.
Strong understanding of information security frameworks and standards.
Experience in conducting risk assessments, gap assessments, and compliance audits.
Excellent analytical, documentation, and reporting skills.
Solid communication and stakeholder management abilities.
Ability to work independently and manage multiple assignments simultaneously.
Preferred Skills & Certifications:
Knowledge of ISO 27001, NIST CSF, CERT-In Guidelines, PCI DSS, SOC 2, GDPR, and RBI/NABARD Security Frameworks.
Experience with VAPT remediation tracking and security governance activities.
Relevant certifications preferred
ISO 27001 Lead Auditor/Lead Implementer
CISA
CRISC
CISSP
CISM
What We Offer
Competitive salary package.
Prospect to work on diverse cybersecurity and compliance projects.
Professional growth and certification support.
Team-oriented and dynamic work environment.
Exposure to government, banking, fintech, and enterprise security engagements.
Pay: ₹700,000.00 - ₹800,000.00 per year
Work Location: In person
📌 GRC Analyst (Faridabad)
🏢 INFOCUS IT CONSULTING
📍 Faridabad