





Tier-1 global brand, metro Hyderabad location, and mid-level generalist role drive high applicant competition.
NIST, GRC, and privacy skills transfer across industries, but GxP and healthcare-regulatory experience raise domain specificity.
Explicit 3–5 years plus mandatory IT risk, GRC and audit/regulatory knowledge create moderate filtering of candidates.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Review and validate IT risk determinations produced by automated risk assessment frameworks, applying independent judgment to accept, challenge, or override outputs.
Manage exception handling and escalate complex or ambiguous risk cases to appropriate leads or SMEs, ensuring accountability for risk decisions.
Engage with project teams and stakeholders to communicate risk findings clearly, maintain audit-ready documentation, and support continuous improvement of risk assessment processes.
3–5 years of experience in IT risk management, cybersecurity risk, IT audit, privacy compliance, or related field.
Working knowledge of NIST Cyber Risk Management Framework and NIST 800-53 controls library.
Familiarity with major data privacy regulations including GDPR, CCPA, EU AI Act, and GxP.
Experience with GRC platforms such as ServiceNow GRC or equivalent.
Strong analytical and risk judgment skills, comfortable making defensible decisions with incomplete information and willing to challenge automated outputs.
Experience working in automated or tool-assisted risk workflow environments with exposure to cybersecurity and data privacy in digital transformation contexts.
Effective communicator capable of translating technical risk assessments into clear, actionable guidance for diverse stakeholders.