Security Consultant - GRC

Posted 22 Days Ago
Be an Early Applicant
Bangalore, Bengaluru Urban, Karnataka, IND
In-Office
Entry level
Information Technology • Software • Consulting • Cybersecurity
The Role
Support information security compliance programs focused on ISO 27001, SOC 1, and SOC 2. Develop and maintain security policies, conduct risk assessments and gap analyses using ISO 27001 and NIST CSF controls, prepare audit and customer RFI documentation, track remediation, report compliance metrics, and perform third-party vendor risk assessments.
Summary Generated by Built In
Job Description:
  • Support the implementation, maintenance, and continuous improvement of information security compliance programs, specifically focusing on ISO 27001, SOC 1 and SOC 2.
  • Develop, review, and update security policies, procedures, and guidelines to align with relevant compliance frameworks and regulatory requirements.
  • Conduct risk assessments and gap analyses against ISO 27001 and NIST CSF controls to identify areas for improvement and ensure audit readiness.
  • Prepare and compile documentation, evidence, and responses for customer RFIs and audit requests efficiently and accurately.
  • Contribute in identification, assessment, and mitigation of information security risks in accordance with established risk management frameworks.
  • Maintain comprehensive documentation of security controls, compliance activities, and remediation plans.
  • Prepare regular reports on compliance status, key metrics, and areas of concern for management and stakeholders.
  • Perform comprehensive third-party risk assessments to evaluate vendor compliance with information security policies. 
  • Ensure effective communication and documentation of third-party risk assessments. 

Skills Required

  • Knowledge of ISO 27001 information security compliance requirements
  • Knowledge of SOC 1 and SOC 2 compliance frameworks
  • Knowledge of NIST Cybersecurity Framework controls
  • Experience conducting information security risk assessments and gap analyses
  • Experience performing third-party information security risk assessments
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
99 Employees
Year Founded: 2022

What We Do

NopalCyber provides integrated offensive and defensive cybersecurity solutions for organizations seeking resilience and compliance. Its offerings include managed extended detection and response, attack surface management, breach and attack simulation, advisory services, and 24/7 security operations. AI-driven products such as Nopal360°, NopalGo, and Cyber Intelligence Quotient help clients quantify, visualize, and reduce cyber risk across their IT environments while tailored service packages broaden access to enterprise-grade protection.

Similar Jobs

Hybrid
Bengaluru, Bengaluru Urban, Karnataka, IND
289097 Employees
Hybrid
Bengaluru, Bengaluru Urban, Karnataka, IND
289097 Employees
Hybrid
2 Locations
289097 Employees

Cargill Logo Cargill

Data & AI Solutions Specialist

Food • Greentech • Logistics • Sharing Economy • Transportation • Agriculture • Industrial
In-Office
Bengaluru, Bengaluru Urban, Karnataka, IND
155000 Employees

Similar Companies Hiring

Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel.io Thumbnail
Aerospace • Hardware • Robotics • Software
US
50 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software • Productivity
US
15 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account