IN.JobDiagnosis logo

Job Title:

Security GRC 2LoD

Company: Soffit Infrastructure Services (P) Ltd

Location: Bengaluru, Karnataka

Created: 2025-09-24

Job Type: Full Time

Job Description:

Job Overview : TheSecurity GRC(Governance, Risk, and Compliance) 2nd Line of Defense ( 2LoD ) role is crucial in maintaining and enhancing the organization’s security posture by effectively managing risks, ensuring compliance with applicable regulations, and supporting the overall governance framework. The role involves monitoring risk remediation efforts, providing expert guidance, and supporting the first line of defense (1LoD) in achieving security objectives.Key Responsibilities : ● Risk Management: - Monitor risk remediation activities exceeding the risk appetite. - Develop and implement risk mitigation strategies and action plans. - Report to boards and working groups on a regular basis, providing advice and resolving conflicting goals ● Compliance & Assurance Management: - Stay abreast of relevant laws, regulations, and industry standards affecting the organization. - Ensure compliance with regulatory requirements. - Monitor control implementation & effectiveness. Track control attestations and exceptions Evaluating the implementation and effectiveness of a control. - Participate in security incident investigations, documenting findings, and recommending corrective actions. ● Metrics and reporting: - Support Int’l GRC management and entity management reporting needs. - Analyze security metrics data to identify trends, patterns, and anomalies that may indicate areas of concern or opportunities for improvement. ● Resilience - Report to management on overall Resilience status as measured against risk appetite/tolerance. ● Security Outsourcing - Coordinate with 1LOD to assess/monitor SLA performance for outsourced security services, and report back on root cause for non compliance. ● Other responsibilities: - Maintain runbooks/SOPs for2LOD support . - Actively collaborate with1LODto streamline processes. - Participate in team meetings and other project support meetings actively. - Identify and recommend opportunities to improve current processes. - Maintain strict compliance with CB IT and Security policies and proceduresQualifications : ● Bachelor’s degree in Computer Science or a related field. ● Alternatively, candidates with a minimum of 5-10 years of relevant experience inIT and Security Program Management , particularly with a focus on managingenterprise-scale projectsand remote personnel, may be considered. Proficiency inproject management methodologies ,information security best practices , and relevant technical skills is essential. PMP or similar certifications are a plus. ● Other Experience with program lifecycles, scheduling, budgeting, risk management, and conflict resolution techniques. ● 6+ years of experience in Project Management, Program Management or a similar field. ● 3+ years of experience supporting security engineering, regulatory compliance, risk management, audit, or other applicable programs/projects. ● Self-motivated and able to work with minimal supervision across time zones and geographies

Apply Now

➤
Home | Contact Us | Privacy Policy | Terms & Conditions | Unsubscribe | Popular Job Searches
Use of our Website constitutes acceptance of our Terms & Conditions and Privacy Policies.
Copyright © 2005 to 2025 [VHMnetwork LLC] All rights reserved. Design, Develop and Maintained by NextGen TechEdge Solutions Pvt. Ltd.