Security Compliance & Governance (GRC)
Risk Assurance & Compliance | On-site (Mumbai, Maharashtra)
We are looking for a compliance-focused Analyst to join our Risk Assurance & Compliance team. You will support our security audit and governance programme — gathering and organising audit evidence, tracking compliance activities across SOC 2, SOX, and PCI cycles, and coordinating with internal teams to ensure audit readiness.
ROLE OVERVIEW
Function - Risk Assurance & Compliance, Enterprise Security
Role Level - Analyst
Experience - 3–5 years in GRC, compliance, audit support, or a related field
Work Mode - On-site (Mumbai)
Shift - 7:30 PM – 4:30 AM IST (9:00 AM – 6:00 PM ET)
Work Location - On-site (Mumbai, Maharashtra)
Reports To - Senior Security Governance Analyst
KEY RESPONSIBILITIES
- Collect, organise, and maintain audit evidence across SOC 2, SOX, and PCI compliance cycles.
- Track compliance tasks, policy review schedules, and audit timelines using JIRA.
- Coordinate with internal teams to gather documentation and meet auditor deadlines.
- Support policy governance activities including policy review coordination and documentation upkeep.
- Maintain accurate compliance records to always ensure audit readiness.
- Liaise with external auditors as directed, providing requested evidence clearly and on time.
- Flag potential compliance gaps or delays proactively to senior team members.
REQUIRED SKILLS & EXPERIENCE
- 3–5 years of experience in GRC, compliance, audit support, or a closely related discipline.
- Solid working knowledge of at least one framework: SOC 2, SOX, PCI-DSS, ISO 27001, or NIST.
- Proficiency with JIRA or similar compliance and task tracking tools.
- Experience gathering and managing large volumes of audit documentation.
- Strong attention to detail and ability to handle multiple concurrent compliance workstreams.
- Clear written and verbal communication for coordinating with internal teams and external auditors.
- Ability to work independently and meet tight deadlines with minimal supervision.
GOOD TO HAVE
- Prior experience in a compliance documentation, legal, or audit support role.
- Exposure to security risk assessments or information security governance.
- Experience working with legal teams, compliance counsel, or external auditors.
- Certifications such as CISA, CISM, or CRISC — preferred, not required.
Pay: ₹500,000.00 - ₹600,000.00 per year
Work Location: In person