Search Jobs

Search by job, company or skills

GRC Analyst

GRC Analyst

Exxat

This job is no longer accepting applications

Job Description

We are looking for a detail-oriented and proactive GRC Analyst to join our growing security

and compliance team. In this role, you will be responsible for maintaining and advancing our

compliance posture across multiple regulatory frameworks, including SOC 2, HIPAA, FERPA,

ISO 27001/27701/42001, TX-RAMP, and GDPR. You will work closely with our security,

engineering and other teams to ensure our platform and operations meet the compliance

regulations - critical to our position as a trusted leader in educational and healthcare

organizations.

Location: Bangalore, Pune, Vadodara

Key Responsibilities

• Evaluate compliance alignment for SOC 2, HIPAA, ISO 27001, ISO 27701, ISO 42001, TX

RAMP, and GDPR, ensuring continuous audit readiness.

• Perform internal gap assessments and readiness evaluation against applicable

frameworks and standards, track remediation plans.

• Monitor the Information Security Management System (ISMS) and Artificial Intelligence

Management System (AIMS) KPIs and objectives in alignment with ISO 27001 and ISO

42001 requirements.

• Coordinate internal and external compliance audits - prepare evidence packages,

manage auditor requests, and drive timely closure of audit findings.

• Monitor control documentation for internal and external audits.

• Collaborate with engineering, product, and DevOps teams to embed compliance

requirements into the SDLC and cloud infrastructure.

• Track, measure, and report key compliance metrics and KPIs on a regular basis.

• Support client-facing compliance activities, including responding to questionnaires,

RFPs, and Third Party Risk Management (TPRM) inquiries from clients and prospects.

Required Skills & Qualifications

• Bachelor's degree in Information Security, Computer Science, Information Systems, or a

related field.

• 3 - 5 years of experience in information security compliance, GRC, or a closely related

role.• Hands-on, demonstrable experience with two or more of the following frameworks:

SOC 2, HIPAA, ISO 27001, ISO 27701, ISO 42001, TX-RAMP, GDPR.

• Experience coordinating or supporting audit readiness, evidence collection, and

external auditor engagements.

• Appropriate analytical, documentation, and communication skills - translate technical

compliance requirements into clear guidance for both technical and non-technical

audiences.

• Ability to work cross-functionally and support concurrent compliance initiatives.

More Info

Job Type:
Industry:
Employment Type:

Key Skills

ISO 42001

TX-RAMP

SOC 2

ISO 27701

About Company

Similar Jobs

1-3 yrs
Bengaluru, India
Skills:
control testing GdprIso 27001AWSevidence collectionongoing monitoringNIST CSFsecurity questionnairesDPDP ActCloud fundamentalsrisk scoringThird-party risk managementVendor Risk ManagementNIST SP 800-53IT audit managementSaaS modelsmodern infrastructureTPRM
3-5 yrs
Bengaluru, India
Skills:
Pci DssIso 27001Internal AuditRisk MitigationVendor AssessmentThird-Party Risk Management
2-4 yrs
Bengaluru, India
Skills:
GdprHipaaJiraMicrosoft 365Iso 27001ConfluenceSalesforceNIST CSFAI-assisted response toolingCisaSOC 2GCP security conceptsISO 27001 Foundation or Lead ImplementerCompTIA Security+DORA
7-12 yrs
Bengaluru, India
Skills:
GdprData ProtectionIncident ResponseISO IEC 42001AI GovernanceCCPAISO IEC 27001CMMCSecurity ArchitectureCPRA
2-4 yrs
Bengaluru, India
Skills:
Iso 27001RBI Master DirectionnistSOC 2