Sr. Analyst (Governance, Risk, And Compliance)

Department Icon Risk Management & Compliance
93+ Applicants
Posted: 6 days ago
7-10 years
Pune, Maharashtra
work from office

Posted: 6 days ago
|
Applicants: 93+
Job Description
About Company
Similar Jobs
Please verify your account first! Send OTP

Job Description

We believe real value is powered by the unique skills and experiences of our professionals. The interchange of ideas from a diverse group of people gives our teams an expanded perspective and the ability to find better solutions for our clients.

Visa Sponsorship Available:No

Job Summary

The Sr. Analyst, Governance, Risk, and Compliance (GRC) plays an important role in the GRC delivery framework, ensuring Black & Veatchs compliance with contractual and regulatory requirements, assessing control design and operation against common standards and frameworks, and assisting with third-party/supply chain risk management. The candidate will also promote a culture of risk awareness across the enterprise among other responsibilities. With an emphasis on cyber, contract and regulatory compliance risk management, the ideal candidate should be able to contribute to measuring success and identifying improvement opportunities and capabilities development in these areas.

This role is ideal for a detail-oriented professional with a passion for cyber and compliance risk management who is comfortable operating independently and not strictly by run books and procedures. Independent and critical thinking is absolutely necessary to be successful in this role as is a desire to drive efficiencies in function delivery and day-to-day tasks.

Key Responsibilities

Contract Risk Management

  • Proven experience assessing client contract provisions related to data security, breach reporting, right to audit, security practice, and certification requirements
  • Understanding of cyber resilience requirements across geographies and market sectors and industries

Regulatory Compliance Risk Management

  • Request and review documentation and evidence from control owners to certify and validate compliance to regulatory requirements and best practice
  • Monitor regulatory and legal landscape at a global scale and maintain awareness of compliance requirements
  • Support independent certification and audit by working with D&IT peer groups and lines of business to collect documentation and evidence

IT Governance

  • Act as an informed voice in development of policy and ensure alignment with regulatory, legal, and contractual requirements
  • Assist establishment and enforcement of standards of practice documentation to be referenced by architecture and operations teams
  • Contribute process and subject matter expertise in governance forums and cross-functional committees

Supplier/Third Party Risk Management

  • Contribute subject matter expertise through third party risk assessment process
  • Identify and communicate risk of vendor engagements and mitigation actions to business owners and D&IT stakeholders
  • Assist review of client security requirements in contracts and aggregate relevant clauses to inform contractual risk

Cyber Risk Management

  • Support establishment, collection, and ongoing improvement of metrics to measure effectiveness of cyber risk management and provide data-driven insight to decision makers and control owners
  • Collaborate with peer D&IT groups to collect KPIs, KRIs and drive efficiency through automation and other means

Miscellaneous:

  • Assist development of user training aligned with cyber threat landscape, establish and implement metrics, and propose enhancements
  • Support internal audit
  • Assist with security certification/attestations/audits to demonstrate control effectiveness to independent service auditors/assessors and C3PAOs
  • Assist in development of mitigation plans and monitoring progress of actions.
  • Collaborate with members of the GRC team to ensure timely and quality deliverables to internal and external customers
  • Contribute subject matter expertise in review and response to internal and external sourced GRC related requests
Management Responsibilities
Preferred Qualifications
  • Bachelors degree in information systems, Information Security, or a related field
  • 7-10 years of experience in GRC executing or auditing against standards, frameworks, and industry regulations
  • Demonstrated experience supporting GRC functions for US-based global companies
  • Strong desire to create task and functional efficiencies through use of technology and tools, especially GenAI
  • Proven ability to assess alignment of internal policy, process, control design and operations, and cyber risk management with regulatory standards and frameworks
  • Strong collaboration with IT teams
  • Familiarity with industry standards and frameworks (e.g., NIST CSF, ISO 27001, AICPA SOC)
  • Solid understanding of information security principles and concepts

Preferred Qualifications

  • Strong analytical, organizational, and communication skills
  • Professional certifications such as CRISC, CISSP or others
  • Working knowledge of cyber and privacy laws and regulations
  • Experience with GRC platforms and risk management methodologies
  • Looking to get Placed? Try our Placement Guarantee Plan

  • Ability to work independently and collaboratively as required
Minimum Qualifications
Contact Compensation All applicants must be able to complete pre-employment onboarding requirements (if selected) which may include any/all of the following: criminal/civil background check, drug screen, and motor vehicle records search, in compliance with any applicable laws and regulations.
Certifications
Contact Compensation
Work Environment/Physical Demands
Contact Compensation
Competencies
Salary Plan
ITS: Information Technology Service
Job Grade
016

BVH, Inc., its subsidiaries and its affiliated companies, complies with all Equal Employment Opportunity (EEO) affirmative action laws and regulations. Black & Veatch does not discriminate on the basis of age, race, religion, color, sex, national origin, marital status, genetic information, sexual orientation, gender Identity and expression, disability, veteran status, pregnancy status or other status protected by law.

Black & Veatch is committed to being an employer of choice by creating a valuable work experience that keeps our people engaged, productive, safe and healthy. We offer professionals an array of health and welfare benefits that vary based on their geographic region and employment status. This may include health, life accident and disability insurances, paid time off, financial programs and more. Professionals may also be eligible for a performance-based bonus program.

By valuing diverse voices and perspectives, we cultivate an authentically inclusive environment for professionals and are able to provide innovative and effective solutions for clients.

Skills

Information Security

If an employer asks you to pay any kind of fee, please notify us immediately. Jobaaj does not charge any fee from the applicants and we do not allow other companies also to do so.

About Company

Throughout the years, we’ve defined what it means to be committed to customers. Black & Veatch has stood by you, aligning our goals with yours, to build long-lasting relationships. Just as we did 25, 50, even 80 years ago, let’s continue to work together to improve the lives of people in the communities you serve. Our story began in 1915 when two former University of Kansas graduates, Ernest Bateman (E.B.) Black and Nathan Thomas (N.T.) Veatch, formed a partnership with 12 employees in one office. Over the next 100 years, Black & Veatch would grow to become one of the world’s most successful engineering, procurement, consulting and construction (EPC) companies.

Read More

Important dates & deadlines?

Application Deadline

28 Jun 26, 05:44 PM IST

Similar Jobs

View All
Loading...
Bag Logo
Jobaaj
Don't Miss out any Updates

Subscribe now for the latest job alerts
and never miss an update

Job Alert
Google hiring for Specific Roles Apply Now!
1 min ago
New Opportunity
Amazon is hiring freshers Apply Now!
5 min ago
Featured Jobs
Microsoft opening 50+ positions Apply Now!
10 min ago

Sr. Analyst (Governance, Risk, And Compliance)

Share with