Track Manager - IT security
India
Job Description
Track Manager - IT security
Nagpur, Maharashtra

Job Summary

GRC & BCP/DR (L3) Job Description Role Summary The L3 GRC & BCP/DR Specialist leads Governance, Risk, and Compliance (GRC) initiatives along with Business Continuity Planning (BCP) and Disaster Recovery (DR) strategy, design, and governance. The role ensures regulatory compliance, risk management, audit readiness, and resilient IT operations through robust continuity frameworks. Key Responsibilities Lead design and implementation of GRC frameworks including risk management, compliance controls, and governance policies Define and maintain Business Continuity Plans (BCP) and Disaster Recovery (DRP) strategies aligned to business requirements including RTO and RPO Conduct risk assessments, threat analysis, and Business Impact Analysis (BIA) Ensure tracking and monitoring of risks, compliance gaps, and remediation actions Drive DR planning, test execution, reporting, and continuous improvement Ensure audit readiness and support internal/external audits Define control frameworks and ensure enforcement through periodic reviews Lead disaster recovery exercises, simulations, and post-test reviews Develop governance standards, SOPs, and compliance documentation Mentor L1/L2 teams and provide leadership in GRC and DR initiatives Required Skills Strong understanding of Governance, Risk & Compliance (GRC) frameworks Experience in BCP/DR lifecycle management Knowledge of risk assessment, threat analysis, and compliance standards Understanding of ITIL processes Strong analytical, audit, and documentation skills Stakeholder and regulatory management experience Preferred Qualifications Bachelor’s/Master’s degree in IT, Cybersecurity, or related field Certifications: ISO 27001, CISA, CISM, CRISC Experience in large-scale enterprise GRC environments Exposure to regulatory standards (NIST, ISO, GDPR) Key KPIs Audit compliance score Risk mitigation closure rate DR readiness and test success rate RTO/RPO adherence Reduction in risk exposure Regulatory compliance adherence Tools & Technologies GRC Platforms: Archer, ServiceNow GRC BCP/DR Tools: Fusion Risk Management, Castellan Audit & Compliance: ISO/NIST frameworks Collaboration: SharePoint, Teams

Key Responsibilities

GRC & BCP/DR (L3) Job Description Role Summary The L3 GRC & BCP/DR Specialist leads Governance, Risk, and Compliance (GRC) initiatives along with Business Continuity Planning (BCP) and Disaster Recovery (DR) strategy, design, and governance. The role ensures regulatory compliance, risk management, audit readiness, and resilient IT operations through robust continuity frameworks. Key Responsibilities Lead design and implementation of GRC frameworks including risk management, compliance controls, and governance policies Define and maintain Business Continuity Plans (BCP) and Disaster Recovery (DRP) strategies aligned to business requirements including RTO and RPO Conduct risk assessments, threat analysis, and Business Impact Analysis (BIA) Ensure tracking and monitoring of risks, compliance gaps, and remediation actions Drive DR planning, test execution, reporting, and continuous improvement Ensure audit readiness and support internal/external audits Define control frameworks and ensure enforcement through periodic reviews Lead disaster recovery exercises, simulations, and post-test reviews Develop governance standards, SOPs, and compliance documentation Mentor L1/L2 teams and provide leadership in GRC and DR initiatives Required Skills Strong understanding of Governance, Risk & Compliance (GRC) frameworks Experience in BCP/DR lifecycle management Knowledge of risk assessment, threat analysis, and compliance standards Understanding of ITIL processes Strong analytical, audit, and documentation skills Stakeholder and regulatory management experience Preferred Qualifications Bachelor’s/Master’s degree in IT, Cybersecurity, or related field Certifications: ISO 27001, CISA, CISM, CRISC Experience in large-scale enterprise GRC environments Exposure to regulatory standards (NIST, ISO, GDPR) Key KPIs Audit compliance score Risk mitigation closure rate DR readiness and test success rate RTO/RPO adherence Reduction in risk exposure Regulatory compliance adherence Tools & Technologies GRC Platforms: Archer, ServiceNow GRC BCP/DR Tools: Fusion Risk Management, Castellan Audit & Compliance: ISO/NIST frameworks Collaboration: SharePoint, Teams

Skill Requirements

GRC & BCP/DR (L3) Job Description Role Summary The L3 GRC & BCP/DR Specialist leads Governance, Risk, and Compliance (GRC) initiatives along with Business Continuity Planning (BCP) and Disaster Recovery (DR) strategy, design, and governance. The role ensures regulatory compliance, risk management, audit readiness, and resilient IT operations through robust continuity frameworks. Key Responsibilities Lead design and implementation of GRC frameworks including risk management, compliance controls, and governance policies Define and maintain Business Continuity Plans (BCP) and Disaster Recovery (DRP) strategies aligned to business requirements including RTO and RPO Conduct risk assessments, threat analysis, and Business Impact Analysis (BIA) Ensure tracking and monitoring of risks, compliance gaps, and remediation actions Drive DR planning, test execution, reporting, and continuous improvement Ensure audit readiness and support internal/external audits Define control frameworks and ensure enforcement through periodic reviews Lead disaster recovery exercises, simulations, and post-test reviews Develop governance standards, SOPs, and compliance documentation Mentor L1/L2 teams and provide leadership in GRC and DR initiatives Required Skills Strong understanding of Governance, Risk & Compliance (GRC) frameworks Experience in BCP/DR lifecycle management Knowledge of risk assessment, threat analysis, and compliance standards Understanding of ITIL processes Strong analytical, audit, and documentation skills Stakeholder and regulatory management experience Preferred Qualifications Bachelor’s/Master’s degree in IT, Cybersecurity, or related field Certifications: ISO 27001, CISA, CISM, CRISC Experience in large-scale enterprise GRC environments Exposure to regulatory standards (NIST, ISO, GDPR) Key KPIs Audit compliance score Risk mitigation closure rate DR readiness and test success rate RTO/RPO adherence Reduction in risk exposure Regulatory compliance adherence Tools & Technologies GRC Platforms: Archer, ServiceNow GRC BCP/DR Tools: Fusion Risk Management, Castellan Audit & Compliance: ISO/NIST frameworks Collaboration: SharePoint, Teams

Other Requirements

GRC & BCP/DR (L3) Job Description Role Summary The L3 GRC & BCP/DR Specialist leads Governance, Risk, and Compliance (GRC) initiatives along with Business Continuity Planning (BCP) and Disaster Recovery (DR) strategy, design, and governance. The role ensures regulatory compliance, risk management, audit readiness, and resilient IT operations through robust continuity frameworks. Key Responsibilities Lead design and implementation of GRC frameworks including risk management, compliance controls, and governance policies Define and maintain Business Continuity Plans (BCP) and Disaster Recovery (DRP) strategies aligned to business requirements including RTO and RPO Conduct risk assessments, threat analysis, and Business Impact Analysis (BIA) Ensure tracking and monitoring of risks, compliance gaps, and remediation actions Drive DR planning, test execution, reporting, and continuous improvement Ensure audit readiness and support internal/external audits Define control frameworks and ensure enforcement through periodic reviews Lead disaster recovery exercises, simulations, and post-test reviews Develop governance standards, SOPs, and compliance documentation Mentor L1/L2 teams and provide leadership in GRC and DR initiatives Required Skills Strong understanding of Governance, Risk & Compliance (GRC) frameworks Experience in BCP/DR lifecycle management Knowledge of risk assessment, threat analysis, and compliance standards Understanding of ITIL processes Strong analytical, audit, and documentation skills Stakeholder and regulatory management experience Preferred Qualifications Bachelor’s/Master’s degree in IT, Cybersecurity, or related field Certifications: ISO 27001, CISA, CISM, CRISC Experience in large-scale enterprise GRC environments Exposure to regulatory standards (NIST, ISO, GDPR) Key KPIs Audit compliance score Risk mitigation closure rate DR readiness and test success rate RTO/RPO adherence Reduction in risk exposure Regulatory compliance adherence Tools & Technologies GRC Platforms: Archer, ServiceNow GRC BCP/DR Tools: Fusion Risk Management, Castellan Audit & Compliance: ISO/NIST frameworks Collaboration: SharePoint, Teams

Information at a Glance

Why HCLTech?

At HCLTech, you'll supercharge your potential. You'll find your career. And you'll find your spark. All at a place that knows that helping its customers stay on top starts by putting its people first.

HCLTech is a global technology company, home to more than 226,300 people across 60 countries, delivering industry-leading capabilities centered around digital, engineering, cloud and AI, powered by a broad portfolio of technology services and products. We work with clients across all major verticals, providing industry solutions for Financial Services, Manufacturing, Life Sciences and Healthcare, Technology and Services, Telecom and Media, Retail and CPG, and Public Services. Consolidated revenues as of 12 months ending December 2025 totaled $14.5 billion.

23 Benefits At HCLTech, we believe in empowering our employees with comprehensive benefits that support their professional growth and enhance their well-being. When you sign up for a career with us, you gain access to: https://rmkcdn.successfactors.com/147eb21f/a701dca9-f32d-4fc9-9447-6.svg Industry-benchmarked compensation https://rmkcdn.successfactors.com/147eb21f/b0c54381-ddcc-4a33-9b35-9.svg Best-in-class healthcare benefits https://rmkcdn.successfactors.com/147eb21f/b73027be-7aae-4d36-a090-4.svg Personal time off https://rmkcdn.successfactors.com/147eb21f/d5b4fdfd-2e99-4e26-9878-9.svg Maternity and paternity benefits https://rmkcdn.successfactors.com/147eb21f/3d42b0fc-4652-435a-9ece-c.svg Access to skills / higher education programs/resources https://rmkcdn.successfactors.com/147eb21f/aeddeaf2-9e25-4584-ad11-d.svg Discounts on products and services via Benefit Box https://rmkcdn.successfactors.com/147eb21f/a9609a3b-2700-4b3c-9d90-a.svg Participate in CSR programs and live life with a purpose https://rmkcdn.successfactors.com/147eb21f/c6e33851-710f-4634-bd69-f.svg Opportunities to grow and advance your career Note: The benefits listed above vary depending on the nature of your employment and the country where you work. Some benefits may be available in some countries but not in all.