×
Register Here to Apply for Jobs or Post Jobs. X

GRC Security Analyst

Job in 400001, Mumbai, Maharashtra, India
Listing for: Trantor
Full Time position
Listed on 2026-09-11
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection, Security Management & Operations
Job Description & How to Apply Below
As a GRC Security Analyst within the Group Security team, you will support the organisation's information security governance, risk, and compliance functions. The role bridges security policy, application access governance, vulnerability reporting, and executive-level security reporting, ensuring that security controls are well documented, consistently applied, and clearly communicated across the business.
You will work closely with the Security Team, Cybersecurity Engineering, Infrastructure, and other IT
groups to maintain policy alignment with recognised security frameworks, support external audit activity, track vulnerability remediation, and produce reporting that gives leadership clear visibility into the organisation's security and risk posture.

Key Responsibilities
Information Security Governance and Compliance

● Maintain and update security policies in line with recognised security frameworks.

● Work with the organisation's sponsored external auditors to support audit activities and evidence
requests.

● Support data protection and privacy practices across the organisation.
Application Security Governance

● Audit application account access on a regular basis to ensure appropriate access levels.

● Maintain application access documentation, ensuring records remain accurate and current.

● Support onboarding documentation and provisioning processes for new applications and users.
Vulnerability Reporting and Management

● Maintain systems reporting and tracking of IT security compliance.

● Filter vulnerability scan reports to identify findings by risk level and device.

● Create vulnerability reports segmented by application.

● Meet with system and application owner groups to guide and track remediation progress.
Security Reporting

● Gather security reports from multiple sources and extract critical statistics.

● Combine key statistics across reports into executive summary reporting.

● Identify security and risk trends from reporting data and escalate as appropriate.
Security Awareness

● Support security awareness training initiatives and related reporting.
Schedule & Meetings



Schedule:

Monday to Friday, hours to be determined (TBD).

● Weekly meetings with the Security Team and management to provide status updates.

● Frequent meetings with the Cybersecurity Engineer and Infrastructure team.

● Ad hoc meetings with other IT groups as needed.

Required Experience & Skills

● Excellent communication skills, able to engage effectively with managers and peers.

● Strong background in policy development and documentation.

● Demonstrated process improvement skills.

● Strong problem-solving ability.

Preferred Experience & Skills

● Experience developing policy documentation aligned to security frameworks such as NIST, ISO
27001, and Cyber Essentials.

● Experience with vulnerability tracking using Qualys.

Organisation-Specific Training

● Clarity Security

● Qualys

● Know Be4

● Crowd Strike

● Bit Defender

● Intune

● JAMF
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary