Lead Goverance, Risk & Compliance
UltraTech Cement · Mumbai City, Maharashtra, India
Full-time · Senior · Posted 18 days ago
We are hiring a B.Tech/BE graduate with 4+ years of experience in IT Governance, Risk & Compliance (GRC). The role requires expertise in ISO 27001 implementation/audits, security tools (IAM, PAM, EDR, WAF, DLP), compliance monitoring, risk management, and emerging technologies like GenAI and cloud security. Candidates with experience in data security, privacy regulations, awareness programs, and core IT concepts (AD, networking, backup, DR) are preferred.
Information Security Governance & GRC Enhancement
Monitor & drive robust IS governance frameworks, ensuring implementation of policies, procedures, and continuous improvements in GRC processes.
Risk Management & Mitigation
Facilitate enterprise risk management by identifying, assessing, prioritizing risks, maintaining the risk register, and ensuring timely closure of mitigation actions.
Compliance & Audit Management (ISO 27001)
Oversee & enable adherence to regulatory and ISO 27001 requirements through effective compliance programs, audit coordination, and timely closure of audit observations.
Security Monitoring & Incident Oversight
Track monitoring of security events, ensure RCA completion, and drive implementation of corrective and preventive actions.
Security Awareness & Capability Building
Deliver organization-wide cybersecurity awareness through structured training programs, communication campaigns, and stakeholder engagement initiatives.
Technology Evaluation & Cyber Strategy Support
Evaluate emerging security technologies, lead vendor engagements/POCs, and support the CISO in strengthening the organization’s cybersecurity posture.