This website uses cookies to ensure you get the best experience on our website. By continuing to use this site, you agree to our cookie  & privacy policy.Accept

checked This is a sample alert

Senior Governance, Risk & Compliance Consultant

  • Full Time
  •  Hybrid - Mumbai / Navi Mumbai
  • 3 months
  • Project posted on: 1/02/2022

Senior Governance, Risk & Compliance Consultant

  • Information Technology
  • Information Security

Hybrid - Mumbai / Navi Mumbai, Bangalore

Full Time

3 months

 1/02/2022

Assignment Details

Our client is a pure-play information security consulting firm that started in 2006 with global offices & presence in India, UAE, Oman, KSA & USA. It specializes in Risk Assessment, GRC Consulting, Information Security Training and on-demand information security consulting. They are looking for a Senior GRC consultant to help them manage their projects.

Job role: This role includes 50% audit & 50% implementation & development work, experience to any one of the below will qualify the candidate for M1 level (Preference is Audit)
- Leading and developing a practice line along with team
- Should have Practice development & services design experience
- Should have Leadership, ownership, team management, engaging business skills

1. Setting up Governance (aligned to standards)
- Gap Assessment
- Risk Assessment
- Documents Strategy/Framework/Policy/Procedure/Standards/Guidelines/Templates/Checklists/Forms Implementation Roadmap/Process/Technology/People environment within an organization

2. Implementing/Managing the setup (Governance)
- Assisting or consulting/advising on implementation or performing the implementation
- Managed services for running the GRC/ISMS program
- Running Awareness Campaigns
- periodic review/improvement of GRC documentation
- periodic Risk assessments, etc

3. Assessing/Auditing/Reviewing Compliances of the setup Governance/ ISMS
- Developing Audit/Assessment frameworks as per need, develop audit programs
- Conducting Compliance Reviews against known/agreed frameworks
- Engagement with stakeholders to get data
- Conducting Control effectiveness review
- GRC assessment (Documentation review, implementation review along with asking evidence review)
- Preparation of reports
- Preparing and delivering audit outcomes Presentation to stakeholders

Skills Required

Skills Required:
1) Anyone Relevant certification is mandatory: CISSP, CISA, CISM, CRISC, CGEIT, GRCP, GRCA

2) Good to have Certification: ISO 27001 Lead Auditor, ISO 27001 Lead Implementer, IAPP Certified, CDPSE, ISO 27701 privacy, ISO 20000, CCSK, CCSP, CCAK, PCIQSA, ISO22301,
- GRC Standards/ Framework Knowledge: (ISO27001 mandatory)
ISO9001, PCIDSS, NIST Cyber security framework, COBIT, ITIL, NCA ECC, NESA (UAE), RBI CSF, SAMA CSF, HIPPA, SOC 2 (Audit framework), ISO22301 framework, CMMi – good to have

1) Positive attitude, problem solving skills and attention to details
2) Should be results-oriented and able to deliver within preset deadlines.
3) Should value quality and client-satisfaction
4) Should possess very good communication skills (written/spoken English & presentation skill)
5) Ability to be analytical and strategic.
6) Able to work with minimal supervision.
7) Presentation & Internal Customer Facing skills.
8) Ability to communicate complex ideas concisely and in a business context.

About the Client

Information Security Consulting Firm

Industry

IT Services & Consulting

Minimum Experience:

7+ years

Additional Skills:

  • CGEIT
  • CISA
  • ISO27001
  • CISM
  • GRCA
  • CISSP
  • GRCP
  • PCIDSS
  • NIST Cyber security framework
  • CRISC

No of open positions:

1

How it works

  • 1

    Build your
    skill profile

  • 2

    Strengthen it
    with feedback

  • 3

    Determine your
    optimal fee level

  • 4

    Apply for matching
    projects

  • 5

    Get finalized

  • 6

    Stay Engaged

Build your skill prodile

Project
step1
shape_step

Request feedback from prior projects and/or work stints

shape_step

Determine your optimal fee level

  • starFeeBee helps consultants understand how to price their services.
  • starEnter your skill & location to get ranges for what similar professionals have charged on projects.
  • starUnlock more details e.g., best paying sub-skills, ranges by projects durations, by simply adding a benchmark from a orior projects.
graph_step2
shape_step

Apply for matching projects

shape_step

Get finalized!

Project
step5
shape_step

Stay Engaged!

Project
step6
shape_step

Similar Freelance Projects you can apply to.

View More Projects btn btn

More than 3000 clients rely on Flexing It today

Frequently asked questions.

We host both full-time & part-time projects from top clients for 100+ skill categories. We also help connect experts like you with clients for short consultation calls called Flexperts

You just need to create a ‘boutique firm’ account during the registration process. The rest of the application process remains the same.

Our freelancers fee benchmarking tool, FeeBee helps our freelancers and consultants find out what their peers charged for similar projects. Built on 600K+ verified benchmarks, registered users get unlimited access to it.

As a freelancing platform, we do not provide permanent positions or full-time job to our consultant network.

Flexing It will be involved end to end right from contracts to invoicing. Once you are finalized, your payment details are transparently laid out in your contract terms with your client and our team actively liaises with the client finance team to ensure timely payments.

We do not charge any fee or commission from you. Your fee quote will be paid out to you in full as per your project contract.