GRC & Data Privacy Analyst

Posted 3 Days Ago
Be an Early Applicant
Hyderabad, Telangana, IND
In-Office
Mid level
Artificial Intelligence • HR Tech • Professional Services • Software
The Role
Manage and improve the organizations GRC framework and data privacy program. Conduct risk assessments, maintain the risk register, run vendor TPRM, perform PIAs/DPIAs and data mapping, manage DSARs, conduct internal control testing, liaise with external auditors, and deliver security/privacy awareness training. Ensure compliance with GDPR, PDPA, ISO 27001, SOC 2, and Singapore MAS while translating regulatory requirements into actionable technical and procedural controls.
Summary Generated by Built In

This role is for one of the Weekday's clients
Min Experience: 4 years

Location: Telangana

JobType: full-time

We are looking for a detail-focused GRC & Data Privacy Analyst to become a member of our security team. In this position, you will oversee the upkeep of our integrated risk management framework and play a key role in executing and auditing our data privacy program. You will ensure that our operations comply with international regulations (such as GDPR, PDPA, etc.) while identifying and addressing risks throughout the organization.


RequirementsKey ResponsibilitiesGovernance & Risk Management
  • Framework Alignment: Oversee and enhance the organization’s security framework, including standards such as ISO 27001, SOC 2, and Singapore MAS.
  • Risk Assessments: Perform annual and project-specific risk assessments; maintain the Corporate Risk Register and monitor remediation activities.
  • Policy Management: Create, review, and update internal security policies and standards to ensure they accurately represent current business practices.
  • Third-Party Risk Management (TPRM): Assess the security posture of vendors and partners through thorough assessments and due diligence processes.
Data Privacy Implementation
  • Privacy Impact Assessments (PIAs/DPIAs): Lead evaluations of new products or processes to ensure "Privacy by Design" is embedded within the development lifecycle.
  • Data Mapping: Maintain detailed records of processing activities (ROPA) and create data flow diagrams.
  • Privacy Operations: Oversee the Data Subject Access Request (DSAR) process and manage responses to privacy-related inquiries.
  • Compliance Monitoring: Keep track of global privacy law changes and translate these into actionable technical or procedural requirements for IT and Product teams.
Compliance & Auditing
  • Internal Audits: Conduct regular control testing to confirm ongoing adherence to internal policies and external regulations.
  • External Audit Liaison: Act as the main contact for external auditors throughout certification cycles.
  • Awareness Training: Design and deliver training programs on security best practices and data handling protocols for all employees.

Required Qualifications
  • Experience: 4 to 6 years in GRC, Information Security, or IT Audit, with a minimum of 1 to 2 years focused specifically on Data Privacy.
  • Certifications (Preferred): CISA, CRISC, or CISM.
  • Technical Skills: Proficiency with GRC tools like Sprinto and a strong understanding of cloud security platforms such as AWS.
  • Regulatory Knowledge: Comprehensive knowledge of GDPR, PDPA, and standards including ISO 27001, SOC 2, and Singapore MAS.

Soft Skills for Success
  • The "Translator" Ability: Skilled at interpreting complex legal requirements for developers and conveying technical risks to executives.
  • Analytical Rigor: Detail-oriented with a passion for documentation and a "trust but verify" approach.
  • Adaptability: Comfortable operating within the uncertainties of evolving privacy legislation.
Must-have skills

ISO 27001

GRC

Good-to-have skills

Information Security

General Data Protection Regulation - GDPR

Skills Required

  • 4 to 6 years in GRC, Information Security, or IT Audit with 1 to 2 years focused on Data Privacy
  • Proficiency with GRC tools such as Sprinto
  • Strong understanding of cloud security platforms (AWS)
  • Experience conducting Privacy Impact Assessments (PIAs/DPIAs), maintaining ROPA/data mapping, and managing DSAR processes
  • Knowledge of GDPR, PDPA, ISO 27001, SOC 2, and Singapore MAS
  • Experience in policy management, corporate risk register maintenance, and third-party risk management (TPRM)
  • Certifications: CISA, CRISC, or CISM
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
0 Employees
Year Founded: 2021

What We Do

Weekday is an AI-powered recruitment platform that helps startups hire top-tier engineering and product talent. By leveraging a massive database of white-collar professionals and advanced outreach tools, the company streamlines the hiring process through automated sourcing, AI-driven resume screening, and white-glove contingency services. Their mission is to modernize recruitment by enabling companies to discover and engage passive candidates efficiently, ensuring high-quality hires for critical roles.

Similar Jobs

Optum Logo Optum

Senior Software Engineer

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
In-Office
Hyderabad, Telangana, IND
160000 Employees

Optum Logo Optum

Senior Software Engineering Lead- DevOps

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
In-Office
Hyderabad, Telangana, IND
160000 Employees

Optum Logo Optum

Data Engineer

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
In-Office
Hyderabad, Telangana, IND
160000 Employees

Optum Logo Optum

Full-stack Engineer

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
In-Office
Hyderabad, Telangana, IND
160000 Employees

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
31 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account