Job Summary
GRC & BCP/DR (L3) Job Description Role Summary The L3 GRC & BCP/DR Specialist leads Governance, Risk, and Compliance (GRC) initiatives along with Business Continuity Planning (BCP) and Disaster Recovery (DR) strategy, design, and governance. The role ensures regulatory compliance, risk management, audit readiness, and resilient IT operations through robust continuity frameworks. Key Responsibilities Lead design and implementation of GRC frameworks including risk management, compliance controls, and governance policies Define and maintain Business Continuity Plans (BCP) and Disaster Recovery (DRP) strategies aligned to business requirements including RTO and RPO Conduct risk assessments, threat analysis, and Business Impact Analysis (BIA) Ensure tracking and monitoring of risks, compliance gaps, and remediation actions Drive DR planning, test execution, reporting, and continuous improvement Ensure audit readiness and support internal/external audits Define control frameworks and ensure enforcement through periodic reviews Lead disaster recovery exercises, simulations, and post-test reviews Develop governance standards, SOPs, and compliance documentation Mentor L1/L2 teams and provide leadership in GRC and DR initiatives Required Skills Strong understanding of Governance, Risk & Compliance (GRC) frameworks Experience in BCP/DR lifecycle management Knowledge of risk assessment, threat analysis, and compliance standards Understanding of ITIL processes Strong analytical, audit, and documentation skills Stakeholder and regulatory management experience Preferred Qualifications Bachelor’s/Master’s degree in IT, Cybersecurity, or related field Certifications: ISO 27001, CISA, CISM, CRISC Experience in large-scale enterprise GRC environments Exposure to regulatory standards (NIST, ISO, GDPR) Key KPIs Audit compliance score Risk mitigation closure rate DR readiness and test success rate RTO/RPO adherence Reduction in risk exposure Regulatory compliance adherence Tools & Technologies GRC Platforms: Archer, ServiceNow GRC BCP/DR Tools: Fusion Risk Management, Castellan Audit & Compliance: ISO/NIST frameworks Collaboration: SharePoint, Teams
Key Responsibilities
GRC & BCP/DR (L3) Job Description Role Summary The L3 GRC & BCP/DR Specialist leads Governance, Risk, and Compliance (GRC) initiatives along with Business Continuity Planning (BCP) and Disaster Recovery (DR) strategy, design, and governance. The role ensures regulatory compliance, risk management, audit readiness, and resilient IT operations through robust continuity frameworks. Key Responsibilities Lead design and implementation of GRC frameworks including risk management, compliance controls, and governance policies Define and maintain Business Continuity Plans (BCP) and Disaster Recovery (DRP) strategies aligned to business requirements including RTO and RPO Conduct risk assessments, threat analysis, and Business Impact Analysis (BIA) Ensure tracking and monitoring of risks, compliance gaps, and remediation actions Drive DR planning, test execution, reporting, and continuous improvement Ensure audit readiness and support internal/external audits Define control frameworks and ensure enforcement through periodic reviews Lead disaster recovery exercises, simulations, and post-test reviews Develop governance standards, SOPs, and compliance documentation Mentor L1/L2 teams and provide leadership in GRC and DR initiatives Required Skills Strong understanding of Governance, Risk & Compliance (GRC) frameworks Experience in BCP/DR lifecycle management Knowledge of risk assessment, threat analysis, and compliance standards Understanding of ITIL processes Strong analytical, audit, and documentation skills Stakeholder and regulatory management experience Preferred Qualifications Bachelor’s/Master’s degree in IT, Cybersecurity, or related field Certifications: ISO 27001, CISA, CISM, CRISC Experience in large-scale enterprise GRC environments Exposure to regulatory standards (NIST, ISO, GDPR) Key KPIs Audit compliance score Risk mitigation closure rate DR readiness and test success rate RTO/RPO adherence Reduction in risk exposure Regulatory compliance adherence Tools & Technologies GRC Platforms: Archer, ServiceNow GRC BCP/DR Tools: Fusion Risk Management, Castellan Audit & Compliance: ISO/NIST frameworks Collaboration: SharePoint, Teams
Skill Requirements
GRC & BCP/DR (L3) Job Description Role Summary The L3 GRC & BCP/DR Specialist leads Governance, Risk, and Compliance (GRC) initiatives along with Business Continuity Planning (BCP) and Disaster Recovery (DR) strategy, design, and governance. The role ensures regulatory compliance, risk management, audit readiness, and resilient IT operations through robust continuity frameworks. Key Responsibilities Lead design and implementation of GRC frameworks including risk management, compliance controls, and governance policies Define and maintain Business Continuity Plans (BCP) and Disaster Recovery (DRP) strategies aligned to business requirements including RTO and RPO Conduct risk assessments, threat analysis, and Business Impact Analysis (BIA) Ensure tracking and monitoring of risks, compliance gaps, and remediation actions Drive DR planning, test execution, reporting, and continuous improvement Ensure audit readiness and support internal/external audits Define control frameworks and ensure enforcement through periodic reviews Lead disaster recovery exercises, simulations, and post-test reviews Develop governance standards, SOPs, and compliance documentation Mentor L1/L2 teams and provide leadership in GRC and DR initiatives Required Skills Strong understanding of Governance, Risk & Compliance (GRC) frameworks Experience in BCP/DR lifecycle management Knowledge of risk assessment, threat analysis, and compliance standards Understanding of ITIL processes Strong analytical, audit, and documentation skills Stakeholder and regulatory management experience Preferred Qualifications Bachelor’s/Master’s degree in IT, Cybersecurity, or related field Certifications: ISO 27001, CISA, CISM, CRISC Experience in large-scale enterprise GRC environments Exposure to regulatory standards (NIST, ISO, GDPR) Key KPIs Audit compliance score Risk mitigation closure rate DR readiness and test success rate RTO/RPO adherence Reduction in risk exposure Regulatory compliance adherence Tools & Technologies GRC Platforms: Archer, ServiceNow GRC BCP/DR Tools: Fusion Risk Management, Castellan Audit & Compliance: ISO/NIST frameworks Collaboration: SharePoint, Teams
Other Requirements
GRC & BCP/DR (L3) Job Description Role Summary The L3 GRC & BCP/DR Specialist leads Governance, Risk, and Compliance (GRC) initiatives along with Business Continuity Planning (BCP) and Disaster Recovery (DR) strategy, design, and governance. The role ensures regulatory compliance, risk management, audit readiness, and resilient IT operations through robust continuity frameworks. Key Responsibilities Lead design and implementation of GRC frameworks including risk management, compliance controls, and governance policies Define and maintain Business Continuity Plans (BCP) and Disaster Recovery (DRP) strategies aligned to business requirements including RTO and RPO Conduct risk assessments, threat analysis, and Business Impact Analysis (BIA) Ensure tracking and monitoring of risks, compliance gaps, and remediation actions Drive DR planning, test execution, reporting, and continuous improvement Ensure audit readiness and support internal/external audits Define control frameworks and ensure enforcement through periodic reviews Lead disaster recovery exercises, simulations, and post-test reviews Develop governance standards, SOPs, and compliance documentation Mentor L1/L2 teams and provide leadership in GRC and DR initiatives Required Skills Strong understanding of Governance, Risk & Compliance (GRC) frameworks Experience in BCP/DR lifecycle management Knowledge of risk assessment, threat analysis, and compliance standards Understanding of ITIL processes Strong analytical, audit, and documentation skills Stakeholder and regulatory management experience Preferred Qualifications Bachelor’s/Master’s degree in IT, Cybersecurity, or related field Certifications: ISO 27001, CISA, CISM, CRISC Experience in large-scale enterprise GRC environments Exposure to regulatory standards (NIST, ISO, GDPR) Key KPIs Audit compliance score Risk mitigation closure rate DR readiness and test success rate RTO/RPO adherence Reduction in risk exposure Regulatory compliance adherence Tools & Technologies GRC Platforms: Archer, ServiceNow GRC BCP/DR Tools: Fusion Risk Management, Castellan Audit & Compliance: ISO/NIST frameworks Collaboration: SharePoint, Teams