GRC ( IT Governance, IT RISK, IT COMPLIANCE) Trio Tech Solutions

  • company name Trio Tech Solutions
  • working location Office Location
  • job type Full Time

Experience: 5 - 5 years required

Pay:

Salary Information not included

Type: Full Time

Location: Jaipur

Skills: Policies, Risk management, Mitigation strategies, dlp, SOC, Compliance assessments, GRC frameworks, Risk assessments, Key Risk Indicators KRIs, Audit Engagements, Guidelines, Security Solutions, PAM, EDR

About Trio Tech Solutions

Job Description

Develop and oversee the implementation of GRC frameworks and policies that support company objectives. Ensure organizational compliance with relevant laws, regulations, standards, and best practices. Coordinate governance and risk management committees and prepare relevant reports for executive leadership. Identify, assess, and prioritize risks, developing mitigation strategies to reduce exposure and impact. Collaborate with business units to perform risk assessments and establish risk treatment plans. Monitor the effectiveness of risk mitigation efforts and suggest enhancements as necessary. Oversee and report on key risk indicators (KRIs) to ensure timely response and compliance. Manage internal and external audit engagements, including coordination, follow-up, and remediation efforts. Develop and maintain GRC-related policies, procedures, and guidelines that adhere to legal, regulatory, and contractual requirements. Regularly review and update policies to keep pace with changing regulatory landscapes and business needs. Collaborate with IT, HR, Legal, and other relevant teams to align GRC initiatives with enterprise goals. Should have hands-on experience on security solutions Like DLP ,PAM, EDR and SOC etc. Provide advisory support to business units on GRC matters and support compliance assessments of third-party vendors. Act as a key contact for all GRC inquiries, supporting business activities while balancing risk and compliance requirements. Prepare accurate, comprehensive reports on GRC performance, incidents, and related activities.,