Cyber Governance, Risk & Compliance (GRC) – Senior Associate
Core
Design, execute, and deliver cyber Governance, Risk, and Compliance (GRC) engagements to enhance client governance capabilities and strengthen risk management.
Role type
Senior Associate Cyber GRC Consultant
Builds
Cybersecurity governance materials, enterprise security strategies, risk management frameworks, and GRC technology workflows.
Domain
Cybersecurity & Privacy
Deliverable
production ML models | product features | dashboards & analysis | client delivery
Required skills
Cybersecurity governance, risk management, compliance, policy/standard/procedure development, control framework design, readiness assessments, risk identification and scoring, GRC tools (ServiceNow, Archer, OneTrust), regulatory frameworks (NIST CSF, ISO 27001, COBIT, MAS TRM, PDPA)
Preferred skills
CRISC, CISM, CISSP certifications
Technologies
ServiceNow GRC, Archer, OneTrust, Oracle Cloud Infrastructure (OCI), Oracle Identity Manager (OIM)
Responsibilities
Develop cybersecurity governance materials (policies, standards, procedures, RACI models); Design enterprise security strategies and transformation roadmaps; Perform readiness assessments aligned to regulatory requirements; Execute risk management activities (identification, scoring, control testing, KRIs/KPIs); Support GRC technology enablement and dashboard reporting; Facilitate stakeholder workshops and interviews; Collaborate with cross-functional teams on engagement delivery.
Seniority
Senior, hands-on IC