Protera Logo

Protera

GRC Analyst

Posted 8 Days Ago
Be an Early Applicant
India
Mid level
India
Mid level
The GRC Analyst manages vulnerability processes while supporting GRC initiatives, ensuring compliance with frameworks and addressing risks.
The summary above was generated by AI

Description

Summary: We are looking for a highly skilled and detail-oriented professional to fill a dual role as a GRC Analyst with a focus on Vulnerability Management and Governance, Risk, and Compliance (GRC). This position involves overseeing the entire lifecycle of vulnerability management while simultaneously supporting GRC initiatives across the organization. The ideal candidate will be experienced in vulnerability scanning, risk assessment, threat intelligence, and compliance frameworks such as NIST, GDPR, and ISO 27001. Strong communication and organizational skills are essential for preparing reports, conducting client reviews, and ensuring the timely closure of vulnerabilities and risk-related tasks.

Key Responsibilities:

Vulnerability Management:

  • Manage the end-to-end vulnerability management process, including identification, assessment, and remediation.
  • Collaborate with cross-functional teams to ensure timely identification and resolution of vulnerabilities.
  • Conduct regular vulnerability scans, analyze results, and document findings for further action.
  • Generate detailed reports on vulnerability status, severity, risks, and recommendations.
  • Prioritize vulnerabilities based on potential impact and ensure critical issues are addressed first.
  • Prepare and present vulnerability management reports and status updates to stakeholders, including clients and senior leadership.
  • Track and follow up on remediation efforts to ensure vulnerabilities are resolved within established timelines.

Governance, Risk, and Compliance (GRC):

  • Assist in the implementation and maintenance of compliance frameworks such as NIST, GDPR, SOC2, and ISO 27001.
  • Ensure the organization adheres to industry best practices for risk management and regulatory compliance.
  • Work with clients to create customized vulnerability and risk management reports, ensuring specific requirements are met.
  • Analyze security tools to ensure their alignment with security requirements and compliance standards.
  • Conduct user access audits and address any discrepancies with security policies and configurations.
  • Analyze and follow up on penetration testing results, ensuring vulnerabilities are remediated in a timely manner.
  • Identify non-compliance issues and recommend improvements to security and compliance processes.
  • Provide support for GRC-related initiatives, including risk assessments, audits, and regulatory compliance reviews.

Collaboration and Communication:

  • Work closely with legal, compliance, and IT teams to align vulnerability management with regulatory and legal requirements.
  • Present vulnerability management findings, remediation plans, and progress updates in meetings with stakeholders.
  • Respond to ad-hoc requests from internal teams and clients, addressing specific security, risk, or compliance needs.
Requirements

Skills & Experience:

  • 4–5 years of experience in both vulnerability management and GRC.
  • Proficiency with vulnerability management tools such as Qualys, Nessus, and Rapid7.
  • Familiarity with compliance frameworks like NIST, GDPR, and ISO 27001.
  • Strong analytical, communication, and reporting skills.
  • Ability to manage multiple projects and meet deadlines.
  • Relevant certifications (e.g., ISO 27001 LA/LI) are a plus.

Top Skills

Compliance Frameworks
Gdpr
Iso 27001
Nessus
Nist
Qualys
Rapid7
Vulnerability Management Tools

Similar Jobs

13 Days Ago
Remote
Bengaluru, Karnataka, IND
Junior
Junior
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
The Security GRC Analyst at Atlassian will implement and manage security risk and governance processes, collaborating with various teams and enhancing security operations through automation and technical guidance.
Top Skills: AutomationCybersecurityGoJqlPythonRisk ManagementSQL
8 Days Ago
Bangalore, Bengaluru, Karnataka, IND
Senior level
Senior level
Cloud • Enterprise Web • Information Technology • Productivity • Software
The Senior GRC Analyst leads security compliance programs, conducts audits, communicates risks, and implements improvements to Workato’s security framework. Requires strong cybersecurity experience and cloud knowledge.
Top Skills: AWSAzureSecurity Compliance Technologies
8 Days Ago
Banjara Hills, Punjagutta, Hyderabad, Telangana, IND
Mid level
Mid level
Energy • Renewable Energy
The GRC Analyst is responsible for managing information security strategy, vendor risk, regulatory compliance, and maintaining the organization’s risk frameworks and controls.
Top Skills: Compliance Management SoftwareComplyadvantageGrc PlatformsLogicmanagerMetricstreamRisk Management ToolsRiskwatchRsa Archer

What you need to know about the Mumbai Tech Scene

From haggling for the best price at Chor Bazaar to the bustle of Crawford Market, the energy of Mumbai's traditional markets is a key part of the city's charm. And while these markets will always have their place, the city also boasts a thriving e-commerce scene, ranking among the largest in the region. Driven by online sales in everything from snacks to licensed sports merchandise to children's apparel, the local industry is worth billions, with companies actively recruiting to meet the demands of continued growth.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account