CrawlJobs Logo

GRC Lead

https://www.hpe.com/ Logo

Hewlett Packard Enterprise

Location Icon

Location:
India, Bangalore

Category Icon
Category:
IT - Administration

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

HPE Operations is our innovative IT services organization. It provides the expertise to advise, integrate, and accelerate our customers’ outcomes from their digital transformation. Our teams collaborate to transform insight into innovation. In today’s fast paced, hybrid IT world, being at business speed means overcoming IT complexity to match the speed of actions to the speed of opportunities. Deploy the right technology to respond quickly to market possibilities. Join us and redefine what’s next for you.

Job Responsibility:

  • Definition, design, implementation of end to end ITSM processes
  • Understand the Services, Services Providers, and the Services metrics- SLAs, KPI associated with various process associated from Service management point of view
  • Ensure various process standards and designs are created, updated on periodic basis working closely with the respective Process Owners
  • Analysis of the IT Metrics and draw inferences and come up with Service Improvement plans to improve the performance of IT
  • Drive meetings, interactions with the Process and Services teams and to improve the quality of services, quality of metrics data and the quality of reporting
  • Customize the process documents to suit the customer requirements and landscape
  • Develop/enhance an audit framework which would help auditing to the Core ITSM process to fix gaps and improve Maturity
  • Participate in audits, Services reviews and provide inputs on improving effectiveness of ITSM process
  • Develop SOPs, reporting standards and reporting templates as needed from time to time
  • Work as backup if any support is needed for Incident, Problem, Change, Service Level Management Process
  • Come up with ideas to Optimize, automate tasks/activities to bring in efficiency
  • Independently lead/manage various drives/Activities pertaining to Service Improvements and Operational stability
  • Establish a good working relationship with all the supporting teams and stakeholders

Requirements:

  • Excellent understanding and 8+ relevance Years experience of working with/implementing ITIL framework- Service Level Management, Incident Management, Problem Management, Change Management, Configuration Management, Continual Service Improvement
  • Knowledge of international standards like ISO20000 / ISO20K
  • At least ITIL 4 Practice Manager certified or above
  • Strong Background of Process Design-IT and Business, Optimization, Audits and documentation
  • Thorough understanding of the IT Metrics and ability to identify/develop KPI which can be effectively used to track IT performance
  • Understanding of Service Design principles
  • Good understanding of IT Applications and Infrastructure domain
  • Ability to Objectively Analyze, Assess, Communicate, and report metrics and Analyze them to draw logical inferences and identify improvements
  • Excellent communications skills – Written, Verbal and Presentation and Process documentation
  • Proficiency of developing process flows using Vision, PowerPoint and reports using excel, Word and tools like SNOW
  • Influencing, negotiation, conflict resolution
  • Candidate should be self-driven and should be able to Lead/manage activities with minimal guidance

Nice to have:

Accountability, Accountability, Action Planning, Active Learning (Inactive), Active Listening, Bias, Business Growth, Business Planning, Coaching, Commercial Acumen, Creativity, Critical Thinking, Cross-Functional Teamwork, Customer Experience Strategy, Customer Solutions, Data Analysis Management, Data Collection Management (Inactive), Data Controls, Design Thinking, Empathy, Follow-Through, Growth Mindset, Intellectual Curiosity (Inactive), Long Term Planning, Managing Ambiguity

What we offer:
  • Health & Wellbeing
  • Personal & Professional Development
  • Unconditional Inclusion

Additional Information:

Job Posted:
July 05, 2025

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for GRC Lead

GRC Lead (ITSM)

HPE Operations is our innovative IT services organization. It provides the exper...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Excellent understanding and 8+ relevance Years experience of working with/implementing ITIL framework- Service Level Management, Incident Management, Problem Management, Change Management, Configuration Management, Continual Service Improvement
  • Knowledge of international standards like ISO20000 / ISO20K
  • At least ITIL 4 Practice Manager certified or above
  • Strong Background of Process Design-IT and Business, Optimization, Audits and documentation
  • Thorough understanding of the IT Metrics and ability to identify/develop KPI which can be effectively used to track IT performance
  • Understanding of Service Design principles
  • Good understanding of IT Applications and Infrastructure domain
  • Ability to Objectively Analyze, Assess, Communicate, and report metrics and Analyze them to draw logical inferences and identify improvements
  • Excellent communications skills – Written, Verbal and Presentation and Process documentation
  • Proficiency of developing process flows using Vision, PowerPoint and reports using excel, Word and tools like SNOW
Job Responsibility
Job Responsibility
  • Definition, design, implementation of end to end ITSM processes
  • Understand the Services, Services Providers, and the Services metrics- SLAs, KPI associated with various process associated from Service management point of view
  • Ensure various process standards and designs are created, updated on periodic basis working closely with the respective Process Owners
  • Analysis of the IT Metrics and draw inferences and come up with Service Improvement plans to improve the performance of IT
  • Drive meetings, interactions with the Process and Services teams and to improve the quality of services, quality of metrics data and the quality of reporting
  • Customize the process documents to suit the customer requirements and landscape
  • Develop/enhance an audit framework which would help auditing to the Core ITSM process to fix gaps and improve Maturity
  • Participate in audits, Services reviews and provide inputs on improving effectiveness of ITSM process
  • Develop SOPs, reporting standards and reporting templates as needed from time to time
  • Work as backup if any support is needed for Incident, Problem, Change, Service Level Management Process
What we offer
What we offer
  • Health & Wellbeing
  • Personal & Professional Development
  • Unconditional Inclusion
  • Fulltime
Read More
Arrow Right

Cyber Manager's Control Assessment (MCA) Lead Analyst

This role will report to the Cybersecurity MCA Group Manager, responsible for pr...
Location
Location
Hungary , Budapest
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Have at least 8+ years of relevant experience
  • Experience in Manager’s Control Assessment (MCA), Operational Risk, Information Security, Cybersecurity, Risk Management, and/or Governance, Risk and Control (GRC)
  • Risk Management, Cybersecurity, and/or Project Management certifications are a plus (e.g. CRISC, CISA, CISM, CISSP, PMP)
  • Proven experience in implementing sustainable solutions and improving processes
  • Bring creative approaches to help us drive value for clients
  • Ability to influence decisions with senior leadership and business partners when confronted with differing opinions on information security risks
  • Proficiency with Microsoft Office, advanced Excel skills (e.g. macros, pivots, complex formulas)
  • Knowledge of data visualization/analytics business applications such as Tableau, QlikView, and Microsoft Power BI
  • Familiarity with Machine Learning and Artificial Intelligence (AI) is a plus
  • Fluent in English (ability to read, write, and speak)
Job Responsibility
Job Responsibility
  • Manage the planning, coordination, and execution of MCA Transformation program for CISO
  • Drive MCA best practices, transformation, and execution consistency across business/functions
  • Lead efforts in Global Process MCA Profiles (GPMPs) and Continuous Risk Management (CRM) for CISO
  • Gain expert-level knowledge of MCA Standard, Procedure, and tools to support future-state MCA
  • Support CISO Business Processes, Control Owners, and Global Assessment Unit (GAU) Owners in their responsibilities related to MCA execution
  • Identify and document key controls necessary for mitigation of cybersecurity risk
  • Be a hands-on Subject Matter Expert (SME) with the ability to drive problem solving and root cause analyses, simplify complex messages and summarize key points
  • Partner with CISO’s Enterprise Architecture Methodology (EAM) Lead team by which taxonomies and processes interlink with each other, establishing a multifaceted matrix to inform decision-making and simplification
  • Foster constructive dialogue and facilitate open discussion, sharing of knowledge and experience with customers and stakeholders
  • Actively manage relationships with CISO business partners and risk management teams to achieve sustained success
What we offer
What we offer
  • Cafeteria Program
  • Home Office Allowance (for colleagues working in hybrid work models)
  • Paid Parental Leave Program (maternity and paternity leave)
  • Private Medical Care Program and onsite medical rooms at our offices
  • Pension Plan Contribution to voluntary pension fund
  • Group Life Insurance
  • Employee Assistance Program
  • Access to a wide variety of learning and development programs, online course libraries and upskilling platforms, such as Udemy and Degreed
  • Flexible work arrangements to support you in managing work - life balance
  • Career progression opportunities across geographies and business lines
  • Fulltime
Read More
Arrow Right

Director, GRC, Privacy, & Trust

We’re looking for an experienced security leader to grow and mature the Governan...
Location
Location
United States; Canada
Salary
Salary:
258000.00 - 350000.00 USD / Year
https://www.1password.com Logo
1Password
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8+ years leading GRC and privacy programs, including experience with international audits, risk management frameworks, and privacy regulations
  • 5+ years experience managing individual contributors as well as experience managing other managers
  • Proven expertise in policy development, risk assessment, compliance monitoring, and privacy program management
  • Passion for fostering psychological safety and stability in complex compliance environments
  • Hands-on experience with various information security and privacy compliance frameworks such as SOC 2 Type II, ISO 27001, FedRAMP, CMMC, GDPR, and CPRA
  • Experience with security and privacy automation tools for compliance monitoring and knowledge management
  • Experience leading company-wide compliance initiatives, securing buy-in for security and privacy policies, and leading cross functional programs
  • Experience partnering on customer contracts, including security addendums and compliance terms, balancing customer expectations and business needs
  • Exceptional written and verbal communication skills with ability to communicate effectively with executives, legal counsel, and stakeholders
  • Experience managing third-party risk, vendor assessments, and external auditors
Job Responsibility
Job Responsibility
  • Lead and mentor the GRC and Privacy Engineering team, fostering career growth and high performance
  • Drive the organization's risk management strategy and oversee the implementation of risk assessment frameworks
  • Develop and maintain information security and privacy policies, ensuring regular reviews and updates
  • Establish strong partnerships across departments to align on security and compliance initiatives
  • Engaging with customers, in partnership with Sales and Legal, to represent security in RFPs, due diligence, and security assessments
  • Oversee 1Password’s various information security and privacy certification processes ensuring compliance with relevant frameworks and regulations
  • Monitor and report on compliance metrics and program effectiveness
  • Partner with legal and security teams to assess and mitigate business, technical, and regulatory risks
  • Oversee relationships with external auditors and consultants
What we offer
What we offer
  • Maternity and parental leave top-up programs
  • Generous PTO policy
  • Four company-wide wellness days
  • Company equity for all full-time employees
  • Retirement matching program
  • Free 1Password account
  • Paid volunteer days
  • Employee-led inclusion and belonging programs and ERGs
  • Peer-to-peer recognition through Bonusly
  • Fulltime
Read More
Arrow Right

Lead Cyber Security Consultant

As a Lead Cyber Security Consultant at Actica Consulting, you will have the oppo...
Location
Location
United Kingdom , London; Guildford; Bristol; M4 corridor
Salary
Salary:
Not provided
actica.co.uk Logo
Actica Consulting
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience of complex ICT systems security in a technical delivery or consulting capacity in the UK Defence sector or Public Sector
  • The ability to present and justify conclusions to project teams and business stakeholders
  • Proven abilities in delivering to client expectations and requirements
  • Strong verbal and written communications skills
  • Must be eligible and willing to obtain UK Government Security Clearance
Job Responsibility
Job Responsibility
  • Leading one or more Actica teams to undertake varying consultancy assignments
  • Providing security expertise for major system procurements and Agile programmes to ensure secure delivery
  • Identifying, analysing and evaluating information risks across a range of programmes, projects and systems
  • Explaining to risk owners the causes, likelihood and potential business impacts of information risks
  • Identifying and presenting options for treating or transferring information risks
  • Authoring and/or supporting the development of security assurance documentation
  • Developing or reviewing new security architectures
  • Scoping security testing activities, and explaining the results and required remediation
  • Managing the delivery of security services by Actica teams across several live projects
  • Working with our client-side customers to manage contract delivery
What we offer
What we offer
  • 25 days of paid leave per annum plus 8 UK bank holidays
  • Discretionary, Performance-Based Bonus Scheme
  • Enrolment in Stakeholder Pension Scheme
  • Cycle To Work Scheme
  • Employee Assistance Programme
  • Electric Vehicle Leasing Scheme
  • Private Medical Insurance
  • Substantial training leading to nationally recognised certifications
  • Mentor support and guidance
  • Performance and Development Manager for regular reviews and career progression planning
  • Fulltime
Read More
Arrow Right

Sr. Director, Cybersecurity

We specifically seek a hands-on, technical security leader. You bring experience...
Location
Location
United Kingdom
Salary
Salary:
Not provided
bugcrowd.com Logo
Bugcrowd
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven work experience leading Cyber Security (penetration testing, red teaming, GRC, IR, secure development, and security architecture) in a startup and growing with the organization
  • Excellent knowledge of technical security controls, including cloud, web application, infrastructure, IT, and compliance
  • Experience in data governance, data architecture, data flow and system architecture to optimize the same
  • Hands-on experience with penetration testing, red teaming, and security patch bypass testing
  • Ability to work independently and must have strong organizational and communication skills
  • Systems / Software (detailed knowledge of the following stack): Mac OS, Python, JavaScript, Ruby, Golang, Java, Kotlin, Postgres, GSuite, Cisco Umbrella, Netskope, Crowdstrike, GitHub, AWS, Heroku, Cloudflare, DataDog, JAMF, etc
  • Experience related to and assistance with ISO27001, ISO27018, NIST 800-53v4, and SOC2 audits is compulsory
  • Degree in Computer Science, cyber security, MIS or equivalent experience desirable but not required
  • Experience in cyber security with demonstrations of responsibility and technical excellence
  • Must be eager to work hard, to learn many new skills, solve problems, and integrate tightly with the rest of the team
Job Responsibility
Job Responsibility
  • Define the Cyber Security Strategy for Bugcrowd and identify areas of improvements to the threat landscape, internal risk tolerance objectives, and/or compliance objectives
  • Ensure the technical aspects of vendor acquisitions and tools are safe for Bugcrowd’s use, in unison with the IT and compliance teams
  • Assess corporate technology systems, determine strategy for changes, enhancement and improvements
  • recommend and implement the same, from the perspective of cyber security
  • Carry out and fulfill the cyber security strategy of bugcrowd, proactively improving the security posture with time
  • Work with GRC to assist in designing, develop, implement and coordinate areas of policies and procedures for compliance with SOC-2, NIST 800-53v4, ISO27001,ISO27018, and FedRAMP
  • Represent Bugcrowd in the internal and external audits for SOC-2, ISO27001, and ISO27018
  • Manage Bugcrowd’s bug bounty program, ensuring that clients have a standard to aspire to, when running their own bounty programs
  • Analyze new features prior to development or launch, to ensure the security measures in place are sufficient for the project. (security architecture and security testing)
  • Manage the access controls for Bugcrowd’s production codebase (GitHub)
Read More
Arrow Right
New

Integrated Risk Management Head of Department

The Integrated Risk Management (IRM) Head of Department is a senior leadership r...
Location
Location
United States , Irvine
Salary
Salary:
181240.00 - 259160.00 USD / Year
haeaus.com Logo
Hyundai AutoEver America
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 15–20 years of progressive experience in Information Security and GRC
  • Proven track record managing global risk and compliance programs in complex, multinational organizations
  • Familiarity with ISO 27001, NIST CSF, SOC2 Type II or similar security and risk management frameworks
  • Experience leading audits, certifications, and regulatory assessments
  • Strong stakeholder management and communication skills, with the ability to influence across all organizational levels and business units
  • Bachelor’s degree in Information Security, Risk Management, or related field
Job Responsibility
Job Responsibility
  • Oversee the enterprise-wide risk management lifecycle, including risk assessments, risk issue management, and risk exception management processes
  • Develop, update and maintain frameworks for identifying, assessing, mitigating, and monitoring security and operational risks
  • Ensure that risk posture and metrics are accurately reported to executive leadership, governance committees, business units and fellow heads of department
  • Lead the Information Security compliance program, ensuring alignment with regulatory and industry frameworks (e.g., ISO 27001, SOC 2, NIST, etc)
  • Coordinate and manage internal and external audits, assessments, and attestations
  • Partner with Legal, Privacy, and other control functions to ensure consistent and effective control implementation and testing
  • Lead the Third-Party Risk Management (TPRM) program, utilizing a risk-based due diligence, ongoing monitoring, and remediation process
  • Collaborate with Procurement, Legal, and business stakeholders to ensure integration of vendor risk management into the enterprise risk framework
  • Oversee the maintenance and governance of information security policies, standards, and procedures
  • Ensure policies reflect best practices, regulatory expectations, and evolving threat landscapes
  • Fulltime
Read More
Arrow Right

Cybersecurity GRC Tool Analyst

Cybersecurity GRC Tool Analyst to analyse the technology requirements of the var...
Location
Location
Canada
Salary
Salary:
97600.00 - 181000.00 CAD / Year
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Information Security, Information Technology, Risk Management or a related field, or equivalent experience
  • CISSP, ISO 27001 Lead Implementer, or similar certification
  • GRC platform certifications (e.g., Archer Certified Professional, ServiceNow GRC, Drata Admin, OneTrust Certified)
  • ITIL Foundation (a plus)
  • 5-7 years of experience in Information Security, IT Governance, or Risk Management
  • 5+ years of experience working with GRC platforms (e.g., Archer, ServiceNow GRC, AuditBoard, Drata, OneTrust, or similar)
  • Expert at working with Governance Risk & Compliance platforms
  • Strong understanding of cybersecurity and compliance frameworks (e.g., NIST CSF, ISO 27001)
  • Experience with basic integrations and workflow configurations
  • Strong organizational skills and attention to detail
Job Responsibility
Job Responsibility
  • Administer and maintain the GRC platform, including configurations, workflows, and reporting dashboards
  • Support the integration of the GRC tool with key enterprise systems (e.g., asset inventory, ticketing systems, vulnerability management tools)
  • Collaborate with cybersecurity, policy, risk, compliance, and IT teams to capture business requirements and translate them into functional tool capabilities
  • Assist in onboarding and managing control frameworks (e.g., ISO 27001, SOC 2, NIST CSF, FedRAMP) within the platform
  • Monitor data quality, ensure accurate reporting, and maintain platform integrity
  • Support control owners and stakeholders in using the GRC platform for assessments, evidence collection, and tracking remediation activities
  • Maintain user roles and permissions, ensuring proper access management
  • Document processes, workflows, and platform configurations
  • Provide training and guidance to end users on tool functionality and best practices
  • Coordinate with tool vendors for issue resolution, upgrades, and enhancements
What we offer
What we offer
  • Health & Wellbeing benefits
  • Personal & Professional Development programs
  • Unconditional Inclusion environment
  • Comprehensive benefits suite supporting physical, financial and emotional wellbeing
  • Fulltime
Read More
Arrow Right

Sr. Director, Cybersecurity

We specifically seek a hands-on, technical security leader. You bring experience...
Location
Location
Canada
Salary
Salary:
Not provided
bugcrowd.com Logo
Bugcrowd
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven work experience leading Cyber Security (penetration testing, red teaming, GRC, IR, secure development, and security architecture) in a startup and growing with the organization
  • Excellent knowledge of technical security controls, including cloud, web application, infrastructure, IT, and compliance
  • Experience in data governance, data architecture, data flow and system architecture to optimize the same
  • Hands-on experience with penetration testing, red teaming, and security patch bypass testing
  • Ability to work independently and must have strong organizational and communication skills
  • Systems / Software (detailed knowledge of the following stack): Mac OS, Python, JavaScript, Ruby, Golang, Java, Kotlin, Postgres, GSuite, Cisco Umbrella, Netskope, Crowdstrike, GitHub, AWS, Heroku, Cloudflare, DataDog, JAMF, etc
  • Experience related to and assistance with ISO27001, ISO27018, NIST 800-53v4, and SOC2 audits is compulsory
  • Degree in Computer Science, cyber security, MIS or equivalent experience desirable but not required
  • Experience in cyber security with demonstrations of responsibility and technical excellence
  • Must be eager to work hard, to learn many new skills, solve problems, and integrate tightly with the rest of the team
Job Responsibility
Job Responsibility
  • Define the Cyber Security Strategy for Bugcrowd and identify areas of improvements to the threat landscape, internal risk tolerance objectives, and/or compliance objectives
  • Ensure the technical aspects of vendor acquisitions and tools are safe for Bugcrowd’s use, in unison with the IT and compliance teams
  • Assess corporate technology systems, determine strategy for changes, enhancement and improvements
  • recommend and implement the same, from the perspective of cyber security
  • Carry out and fulfill the cyber security strategy of bugcrowd, proactively improving the security posture with time
  • Work with GRC to assist in designing, develop, implement and coordinate areas of policies and procedures for compliance with SOC-2, NIST 800-53v4, ISO27001,ISO27018, and FedRAMP
  • Represent Bugcrowd in the internal and external audits for SOC-2, ISO27001, and ISO27018
  • Manage Bugcrowd’s bug bounty program, ensuring that clients have a standard to aspire to, when running their own bounty programs
  • Analyze new features prior to development or launch, to ensure the security measures in place are sufficient for the project. (security architecture and security testing)
  • Manage the access controls for Bugcrowd’s production codebase (GitHub)
Read More
Arrow Right
Welcome to CrawlJobs.com
Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.