Free cookie consent management tool by TermsFeed Security Consultant - GRC | Antal Tech Jobs
Back to Jobs
2 Days ago

Security Consultant - GRC

decor
Space Exploration & Research, Information Technology
Full-Time
IBM

Overview

Introduction

A career in IBM Consulting is built on long-term client relationships and close collaboration worldwide. You’ll work with leading companies across industries, helping them shape their hybrid cloud and AI journeys. With support from our strategic partners, robust IBM technology, and Red Hat, you’ll have the tools to drive meaningful change and accelerate client impact. At IBM Consulting, curiosity fuels success. You’ll be encouraged to challenge the norm, explore new ideas, and create innovative solutions that deliver real results. Our culture of growth and empathy focuses on your long-term career development while valuing your unique skills and experiences.

Your Role And Responsibilities

You will be responsible for the documentation, control testing, and compliance alignment of our security operations. You will work closely with SOC analysts and engineers to translate technical security controls into audit-ready evidence, manage risks identified during investigations, and ensure that incident response procedures are compliant with regulatory mandates.

Key Responsibilities

  • Control Monitoring & Testing:
  • Assist in the design, implementation, and testing of technical controls within the SOC environment (e.g., alerting rules, access controls, change management).
  • Perform periodic assessments of SOC tools and processes to ensure they meet internal policy and regulatory standards.
  • Gather and validate evidence for internal and external audits (e.g., RBI, ISO 27001, PCI-DSS) related to security monitoring and incident response.
  • Incident Response & Compliance:
  • Review incident response documentation (playbooks, reports, post-mortems) to ensure they comply with legal, regulatory, and contractual obligations (e.g., breach notification timelines).
  • Track and document how incidents are managed from a compliance perspective, ensuring proper chain of custody and evidence handling.
  • Risk Management:
  • Collaborate with the SOC to identify and document risks related to security monitoring gaps, threat intelligence, or vulnerability management.
  • Assist in the risk assessment process for new security tools or changes to the monitoring infrastructure.
  • Track remediation efforts for risks identified during tabletop exercises or real incidents.
  • Policy & Procedure Development:
  • Maintain and update SOC-related policies and procedures (e.g., Incident Response Plan, SOC Standard Operating Procedures).
  • Ensure documentation is kept current with the evolving threat landscape and changes in regulatory requirements.
  • Assist in the creation of training materials to socialize compliance requirements with the technical SOC team.
  • Metrics & Reporting:
  • Develop key risk indicators (KRIs) and key performance indicators (KPIs) for SOC compliance (e.g., time to containment, audit finding closure rates).
  • Prepare compliance dashboards and reports for management and the Chief Information Security Officer (CISO).

Preferred Education

Master's Degree

Required Technical And Professional Expertise

Experience: 3 to 5 years of experience in a combination of GRC (Governance, Risk, Compliance) and Security Operations or IT Audit.

  • Frameworks Knowledge: Solid understanding of common security frameworks and standards, such as NIST Cybersecurity Framework (CSF) , ISO 27001, SOC 2, or PCI-DSS.
  • Incident Response Lifecycle: Familiarity with the phases of incident response (Preparation, Detection, Analysis, Containment, Eradication, Recovery, Post-Incident) and the associated documentation requirements.
  • Technical Aptitude: Ability to understand technical security controls (firewalls, EDR, SIEM) well enough to verify their configuration against compliance requirements. You don't need to be an engineer, but you must be able to "speak the language."
  • Documentation: Exceptional written communication skills with a knack for creating clear, concise, and audit-ready documentation.
  • Analytical Skills: Ability to analyze complex processes and identify gaps in controls or compliance.

Preferred Technical And Professional Experience

Audit Experience: Experience participating in or leading external audits and regulatory examinations.

  • Cloud Security: Understanding of cloud compliance concepts (AWS Config, Azure Policy) and the shared responsibility model.
Share job
Similar Jobs
View All
3 Hours ago
DevSecOps Engineer - WFO
Information Technology
  • 4 - 7 Yrs
  • Mumbai
Job Title: DevSecOps Engineer Experience: 4 to 7 Years Location: Andheri (East), Mumbai Work Mode: Work From Office Shift Timing: 9:30 AM to 6:30 PM About the Role We are looking for a highly skilled DevSecOps Engineer to join our growing t...
decor
3 Hours ago
DevSecOps Engineer – US Shift - WFH
Information Technology
  • 4 - 7 Yrs
  • Anywhere in India/Multiple Locations
Job Title: DevSecOps Engineer Experience: 4 to 7 Years Location: Remote (Work From Home) Shift Timing: 7:00 PM to 3:00 AM (US Shift) About the Role We are seeking a skilled DevSecOps Engineer to support our global infrastructure and applicat...
decor
1 Day ago
Software Engineer (Java Backend)
Fintech
  • 1000000 - 1400000 INR - Yearly
  • 2 - 3 Yrs
  • Telangana, Hyderabad
Job requirement: Our Fintech client is looking to hire individual (s) who have passionate about applying technology to solve complex business challenges. This role will enable innovative development of modular technology solutions delivering ...
decor
1 Day ago
Lead Python Developer
Space Exploration & Research, Information Technology
Experience: 6.00 + yearsSalary: Confidential (based on experience)Expected Notice Period: 15 DaysShift: (GMT+05:30) Asia/Kolkata (IST)Opportunity Type: RemotePlacement Type: Full Time Contract for 12 Months(40 hrs a week/160 hrs a month)(*Note: This ...
decor
1 Day ago
Engineering Advocacy Lead Software Engineer
Space Exploration & Research, Information Technology
Job DescriptionAs a Vice President - Engineering Advocacy Lead at JPMorgan Chase within the Payments Engineering & Architecture team, you're responsible for how 10,000 Payments engineers adopt architecture standards and AI-assisted development practi...
decor
1 Day ago
Manual and Automation Test Engineer
Space Exploration & Research, Information Technology
Manual and Automation Test EngineerExperience - 5-7yrsNotice period: ImmediateLocation : Trivandrum/KochiBudget : 10L-12LKey ResponsibilitiesAnalyze and identify project requirements and translate them into effective testing strategiesDevelop and mai...
decor
1 Day ago
Java Fullstack Developer
Space Exploration & Research, Information Technology
Position OverviewWe are looking for experienced Java Full Stack and Java Backend Developers who can design, develop, and maintain high‑quality applications. The ideal candidate should have solid hands‑on experience in Java, Spring Boot, and Microse...
decor
1 Day ago
Software Engineer III - AL/ML Platform
Space Exploration & Research, Information Technology
Job DescriptionWe have an exciting and rewarding opportunity for you to take your software engineering career to the next level.As a Software Engineer III at JPMorganChase within the Corporate and Investment Bank you serve as a seasoned member of an ...
decor

Talk to us

Feel free to call, email, or hit us up on our social media accounts.
Social media