Cybersecurity GRC & Third-Party Risk Consultant
Job in
751001, Bhubaneswar, Odisha, India
Listed on 2026-09-24
Listing for:
Covenant HR
Full Time
position Listed on 2026-09-24
Job specializations:
-
IT/Tech
Cybersecurity, Information Security & Data Protection, IT Consultant
Job Description & How to Apply Below
Job Title - Cybersecurity GRC & Third-Party Risk Consultant
Location - Remote — India or Philippines
Role Type - Contract position; length TBD
Must Have
Skills:
Hands-on Third-Party Risk Management (TPRM) experience conducting vendor security risk assessments, including reviewing security questionnaires and supporting documentation.
3–7+ years of cybersecurity GRC experience, with demonstrated ability to identify, document, and track remediation of cybersecurity risks.
Experience with GRC platforms;
One Trust experience is strongly preferred, including administration and/or assessment experience.
Experience with Identity Governance and Access Certification processes; familiarity with Okta Identity Governance is strongly preferred.
Strong technical aptitude with an understanding of application architecture, integrations, and data flows, along with the ability to communicate risks and recommendations to both technical and non-technical stakeholders.
Responsibilities and Job Details:
Conduct third-party/vendor cybersecurity risk assessments and support broader cybersecurity risk management initiatives.
Review vendor security questionnaires and supporting evidence to identify and document potential cybersecurity risks.
Evaluate architecture diagrams, data flow diagrams, compliance documentation, and other technical materials as part of security assessments.
Identify security gaps and risks and track associated remediation activities through completion.
Support Governance, Risk & Compliance (GRC), Third-Party Risk Management (TPRM), and Identity Governance initiatives.
Assist application owners and managers with onboarding applications into Okta Identity Governance access certification campaigns.
Support access certification and identity governance processes across enterprise applications.
Leverage GRC tooling, including One Trust where applicable, to manage assessments and risk-related activities.
Assess application architecture, system integrations, and data flows to understand security implications and communicate actionable recommendations.
Collaborate cross-functionally with Security, IAM, Privacy, Compliance, Architecture, and Business teams.
Clearly communicate cybersecurity risks, findings, and remediation recommendations to both technical and non-technical stakeholders.
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×