Senior Associate - GRC Consultant | Risk Assessment
Kolkata, West Bengal, India · Full Time
Be the first to apply
- Experience
- 3+ yrs
- Salary
- —
- Openings
- 1
- Posted
- 5 days ago
- Work mode
- In office
- Resume
- Required to apply
Where you'll work
Job description
About PwC
PwC aims to foster trust in society and address critical challenges. Operating in 156 countries with over 295,000 professionals, PwC is a premier global network offering Assurance, Tax, and Advisory services. The firm's global strategy, The New Equation, focuses on tackling significant global issues. In India, PwC functions through PwC India and PwC Acceleration Centers situated in Kolkata and Bangalore, serving as global talent hubs delivering comprehensive client support and services.
Role Overview and Responsibilities
- Lead comprehensive risk assessment activities and oversee the execution of remediation strategies ensuring clear task ownership, defined timelines, and accountability.
- Create and sustain KPI and KRI dashboards to enable leadership awareness of risk exposure and compliance status.
- Promote adherence to established policies within business units and assist in developing and refining security policies, standards, and procedures.
- Perform Governance, Risk, and Compliance maturity evaluations utilizing prominent frameworks such as NIST CSF, ISO/IEC 27001, and COBIT, identifying deficiencies and formulating enhancement plans.
- Engage with clients to grasp their regulatory environment and risk tolerance, delivering professional, high-quality consulting services.
- Remain current with evolving regulatory mandates, compliance trends, and emerging GRC technologies to inform client guidance.
- Serve as a Subject Matter Expert offering insights on governance, risk management, and compliance practices across various industries.
Candidate Profile and Requirements
- A minimum of three years' experience executing GRC initiatives, including framework deployment, risk evaluation, and audit preparation.
- Demonstrated success managing complex projects within consulting or professional service settings.
- Comprehensive knowledge of GRC concepts such as control mapping, risk quantification, policy management, and regulatory compliance.
- Familiarity with governance and security frameworks including NIST CSF, ISO/IEC 27001, COBIT, and SOC 2 is highly desirable.
- Experience with prominent GRC software platforms like ServiceNow GRC, Archer, OneTrust, or LogicGate is advantageous.
- Certifications like CRISC, CISA, or ISO 27001 Lead Auditor enhance candidacy.