GRC Analyst/Security Analyst
Bengaluru, India
Applications have closed
Digitap.ai
AI driven solutions for analysing financial data of customers to enable credit underwriting and powering digital customer onboarding journeys for enterprises in the Banking sector.DIGITAP.AI provides high tech advanced AI / ML solutions to new age internet driven businesses for reliable, fast and 100% compliant Customer Onboarding, Automated Risk Management along with Big Data enabled services like Risk Analytics and Customised Scorecards. Our proprietary Machine Learning Algorithms and Modules provide one of the best success rates in the market. Working with 200+ clients spread across banks, big NBFCs, Life Insurance Players, Fintechs, Digitap.ai provides the high quality solutions while maintaining the required infosec compliance. The team brings together deep and vibrant experience in Fintech Product & Risk Management, Fraud Detection and BIG DATA Analytics.
Job Description-
We are seeking a motivated and skilled GRC professional to join our team. As a GRC
Analyst, you will be responsible for managing cybersecurity risks, conducting
compliance assessments, and implementing security policies based on industry’s best
practices, including ISO 27001 and RBI/SEBI guidelines. This role offers an excellent
opportunity to build and enhance your skills in the rapidly evolving field of cybersecurity
governance, risk management, and compliance
Key Responsibilities-
- Compliance & Regulatory Oversight: Ensure compliance with applicable laws and
regulations, such as RBI/SEBI cybersecurity guidelines, GDPR, and other - local and
international frameworks.
- Risk Management: Assist in conducting risk assessments to identify, evaluate, and
prioritize risks related to information security and business operations.
- Audit Support: Support internal and external audits by preparing documentation,
coordinating audit activities, and ensuring compliance with cybersecurity policies and
standards.
- Cybersecurity Program Management: Work closely with IT, legal, and other
stakeholders to integrate cybersecurity risk management into business processes,
ensuring alignment with organizational goals.
- Policy Development & Training: Contribute to the development of information security
policies, procedures, and guidelines, and assist in delivering training programs to raise
awareness of security best practices across the organization.
- Continuous Improvement: Collaborate with various teams to assess the effectiveness
of existing controls and propose improvements to enhance the organization's
cybersecurity posture.
- Reporting & Documentation: Maintain clear and comprehensive documentation of risk
assessments, compliance activities, audits, and incident reports to provide transparency
to senior leadership and regulatory bodies.
Qualifications-
- 2-5 years of hands-on experience in Governance, Risk, and Compliance (GRC) roles.
- Good understanding of information security principles, controls, and risk management
methodologies, compliance and audits
- Hands on experience of implementing two or more standards such as ISO 27001/2,
ISO27701, SOC2, PCI DSS, NIST standards on Cyber Security, HITRUST, HIPAA,
GDPR etc.
- Strong analytical skills and attention to detail in identifying security vulnerabilities and
assessing compliance gaps.
- Excellent written and verbal communication skills to prepare reports and deliver
presentations.
- Cloud Expertise (AWS/Azure/GCP)
- Security Certifications are preferred.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
16
2
0
Categories:
Analyst Jobs
Compliance Jobs
Tags: Analytics Audits AWS Azure Big Data Cloud Compliance Data Analytics FinTech GCP GDPR Governance HIPAA HITRUST ISO 27001 Machine Learning NIST PCI DSS Risk assessment Risk management SOC 2 Vulnerabilities
Perks/benefits: Career development
Region:
Asia/Pacific
Country:
India
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Product Security Engineer jobsInformation Security Specialist jobsSenior Security Analyst jobsSenior Cloud Security Engineer jobsSystems Engineer jobsSenior Cybersecurity Engineer jobsSystems Administrator jobsSenior Information Security Analyst jobsInformation Security Manager jobsCyber Security Specialist jobsSenior Network Security Engineer jobsIT Security Analyst jobsChief Information Security Officer jobsIT Security Engineer jobsSecurity Consultant jobsInformation System Security Officer (ISSO) jobsSecurity Specialist jobsInformation Systems Security Engineer jobsSenior Cyber Security Engineer jobsSenior Information Security Engineer jobsSenior Product Security Engineer jobsCyber Threat Intelligence Analyst jobsCyber Security Architect jobsSecurity Operations Analyst jobsCybersecurity Specialist jobs
SaaS jobsEncryption jobsEDR jobsJava jobsBash jobsThreat detection jobsTop Secret jobsSplunk jobsRMF jobsTerraform jobsIDS jobsSDLC jobsIPS jobsMalware jobsSOC 2 jobsSQL jobsFinance jobsForensics jobsDocker jobsCompTIA jobsActive Directory jobsGIAC jobsIntrusion detection jobsDoDD 8570 jobsITIL jobs
VPN jobsOWASP jobsIT infrastructure jobsCRISC jobsTCP/IP jobsHIPAA jobsAnsible jobsOSCP jobsBanking jobsClearance Required jobsData Analytics jobsMITRE ATT&CK jobsCCSP jobsNIST 800-53 jobsZero Trust jobsIndustrial jobsDNS jobsUNIX jobsEndpoint security jobsSAP jobsCISO jobsPolygraph jobsSOAR jobsJira jobsSOX jobs