Security GRC Senior Analyst
On-site · Hyderabad, Telangana, India
Job Summary
Senior Security GRC Analyst to partner with Security, Engineering, Product, Risk, Audit, and Compliance to drive technology transformation, governance, and compliance across frameworks (SOC 1/2, ISO 27001, PCI DSS, NIST, FedRAMP). Lead audit engagements, implement IAM controls, and advise on security implications of emerging technologies and AI/agentic workflows. Focus on aligning regulatory and organizational requirements with technology strategy and enterprise security programs.
Required Qualifications
- 5+ years of experience in GRC, Information Security, Cybersecurity, Risk Advisory, Compliance Consulting, or related security and compliance functions
- Experience with Agentic frameworks, workflow automation and LLMs including Claude
- Strong understanding of security governance, control frameworks, risk management principles, Identity and Access Management (IAM), and compliance requirements
- Strong knowledge of security and compliance frameworks including SOC 1, SOC 2, ISO 27001, PCI DSS, NIST, and cloud security standards
- Experience working with cloud platforms such as AWS and GCP, including an understanding of cloud security, governance, compliance requirements, and shared responsibility models
- Strong analytical and problem-solving skills with the ability to navigate complex security, compliance, and technology challenges
- Ability to influence cross-functional teams and drive initiatives across large organizations
- Experience working with security, engineering, and business stakeholders
- Preferred Qualifications: experience with enterprise GRC platforms (ServiceNow GRC, Archer, AuditBoard, Vanta), IAM programs, CI concepts, AI technologies, LLMs, CISSP/CISA/CCSP
Desired Qualifications
- 5+ years of experience in GRC, Information Security, Cybersecurity, Risk Advisory, Compliance Consulting, or related security and compliance functions
- Experience with Agentic frameworks, workflow automation and LLMs including Claude
- Strong understanding of security governance, control frameworks, risk management principles, IAM, and compliance requirements
- Knowledge of SOC 1, SOC 2, ISO 27001, PCI DSS, NIST, FedRAMP, and cloud security standards
- Experience with cloud platforms such as AWS and GCP, including shared responsibility models
- Analytical and problem-solving skills for complex security, compliance, and technology challenges
- Ability to influence cross-functional teams
- Experience with security, engineering, and business stakeholders
- Preferred: Enterprise GRC tools (ServiceNow GRC, Archer, AuditBoard, Vanta) or similar
- Certifications such as CISSP, CISA, CCSP or equivalent is a plus
- Experience with AI technologies, agentic workflows, workflow automation, and LLMs
Apply with one swipe on Sorce. We auto-fill applications and apply on your behalf — no cover letters, no 40-minute forms.
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.