Protera Logo

Protera

GRC Analyst

Job Posted 10 Days Ago Posted 10 Days Ago
Be an Early Applicant
India
Mid level
India
Mid level
The GRC Analyst manages vulnerability processes while supporting GRC initiatives, ensuring compliance with frameworks and addressing risks.
The summary above was generated by AI

Description

Summary: We are looking for a highly skilled and detail-oriented professional to fill a dual role as a GRC Analyst with a focus on Vulnerability Management and Governance, Risk, and Compliance (GRC). This position involves overseeing the entire lifecycle of vulnerability management while simultaneously supporting GRC initiatives across the organization. The ideal candidate will be experienced in vulnerability scanning, risk assessment, threat intelligence, and compliance frameworks such as NIST, GDPR, and ISO 27001. Strong communication and organizational skills are essential for preparing reports, conducting client reviews, and ensuring the timely closure of vulnerabilities and risk-related tasks.

Key Responsibilities:

Vulnerability Management:

  • Manage the end-to-end vulnerability management process, including identification, assessment, and remediation.
  • Collaborate with cross-functional teams to ensure timely identification and resolution of vulnerabilities.
  • Conduct regular vulnerability scans, analyze results, and document findings for further action.
  • Generate detailed reports on vulnerability status, severity, risks, and recommendations.
  • Prioritize vulnerabilities based on potential impact and ensure critical issues are addressed first.
  • Prepare and present vulnerability management reports and status updates to stakeholders, including clients and senior leadership.
  • Track and follow up on remediation efforts to ensure vulnerabilities are resolved within established timelines.

Governance, Risk, and Compliance (GRC):

  • Assist in the implementation and maintenance of compliance frameworks such as NIST, GDPR, SOC2, and ISO 27001.
  • Ensure the organization adheres to industry best practices for risk management and regulatory compliance.
  • Work with clients to create customized vulnerability and risk management reports, ensuring specific requirements are met.
  • Analyze security tools to ensure their alignment with security requirements and compliance standards.
  • Conduct user access audits and address any discrepancies with security policies and configurations.
  • Analyze and follow up on penetration testing results, ensuring vulnerabilities are remediated in a timely manner.
  • Identify non-compliance issues and recommend improvements to security and compliance processes.
  • Provide support for GRC-related initiatives, including risk assessments, audits, and regulatory compliance reviews.

Collaboration and Communication:

  • Work closely with legal, compliance, and IT teams to align vulnerability management with regulatory and legal requirements.
  • Present vulnerability management findings, remediation plans, and progress updates in meetings with stakeholders.
  • Respond to ad-hoc requests from internal teams and clients, addressing specific security, risk, or compliance needs.
Requirements

Skills & Experience:

  • 4–5 years of experience in both vulnerability management and GRC.
  • Proficiency with vulnerability management tools such as Qualys, Nessus, and Rapid7.
  • Familiarity with compliance frameworks like NIST, GDPR, and ISO 27001.
  • Strong analytical, communication, and reporting skills.
  • Ability to manage multiple projects and meet deadlines.
  • Relevant certifications (e.g., ISO 27001 LA/LI) are a plus.

Top Skills

Compliance Frameworks
Gdpr
Iso 27001
Nessus
Nist
Qualys
Rapid7
Vulnerability Management Tools

Similar Jobs

15 Hours Ago
Remote
Bengaluru, Karnataka, IND
Junior
Junior
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
The Security GRC Analyst at Atlassian will implement and manage security risk and governance processes, collaborating with various teams and enhancing security operations through automation and technical guidance.
Top Skills: AutomationCybersecurityGoJqlPythonRisk ManagementSQL
9 Days Ago
Bangalore, Bengaluru, Karnataka, IND
Senior level
Senior level
Cloud • Enterprise Web • Information Technology • Productivity • Software
The Senior GRC Analyst leads security compliance programs, conducts audits, communicates risks, and implements improvements to Workato’s security framework. Requires strong cybersecurity experience and cloud knowledge.
Top Skills: AWSAzureSecurity Compliance Technologies
10 Days Ago
Banjara Hills, Punjagutta, Hyderabad, Telangana, IND
Mid level
Mid level
Energy • Renewable Energy
The GRC Analyst is responsible for managing information security strategy, vendor risk, regulatory compliance, and maintaining the organization’s risk frameworks and controls.
Top Skills: Compliance Management SoftwareComplyadvantageGrc PlatformsLogicmanagerMetricstreamRisk Management ToolsRiskwatchRsa Archer

What you need to know about the Bengaluru Tech Scene

Dubbed the "Silicon Valley of India," Bengaluru has emerged as the nation's leading hub for information technology and a go-to destination for startups. Home to tech giants like ISRO, Infosys, Wipro and HAL, the city attracts and cultivates a rich pool of tech talent, supported by numerous educational and research institutions including the Indian Institute of Science, Bangalore Institute of Technology, and the International Institute of Information Technology.
By clicking Apply you agree to share your profile information with the hiring company.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account