Skip to Main Content

Job Title


Cybersecurity GRC & Compliance


Company : Apni Sec


Location : Vapi, Gujarat


Created : 2026-03-19


Job Type : Full Time


Job Description

Experience Bachelor’s or Postgraduate degree in a relevant fieldOne or more certifications preferred: ISO 27001, ISO42001, CBCP, CISA, CISM, CRISC, CISSP 2–4 years of hands-on experience in cybersecurity programs, audits, risk management, compliance, or remediationQualificationsKnowledge and experience in Application Security and Cybersecurity.Proficiency in Network Security and Information Security practices.Understanding of governance, risk, and compliance in cybersecurity contexts.Familiarity with standards like ISO 27001, NIST, or GDPR is a plus.Strong analytical and problem-solving skills.Experience with threat assessment, mitigation strategies, and incident response processes.Ability to effectively communicate and collaborate with cross-functional teams.A relevant degree in Information Technology, Cybersecurity, or equivalent experience.Professional certifications such as CISSP, CISM, or CISA are advantageous but not mandatory.Key responsibilitiesImplement and manage security controls and risk assessment frameworks (ISO 31000, NIST) aligned with regulatory and business requirementsIdentify, evaluate, and mitigate risks through well-defined security policies, procedures, and controlsEnhance security posture through process improvements, automation, and continuous capability developmentDesign and implement GRC processes to automate and monitor controls, risks, exceptions, and testing activitiesEnhance dashboards, metrics, and reporting artifacts for effective risk and compliance trackingConduct periodic assessments to evaluate the effectiveness and efficiency of security controlsEnsure compliance with standards and regulations such as PCI DSS, SOX, SOC 2, HIPAA, RBI guidelines, ISO standards, and DPDPA (Digital Personal Data Protection Act, India)Perform risk assessments across incidents, vulnerabilities, patching, penetration testing, phishing, and social engineering scenariosIdentify control gaps, document findings, and provide actionable remediation guidanceTrack and report remediation progress to stakeholders and leadershipCollaborate with cross-functional teams to support and strengthen the security programProvide training and guidance on security assessments and compliance requirementsStay updated with industry best practices and emerging cybersecurity trendsWhy Join UsComprehensive salary package with competitive compensationComplete project ownership - almost too much responsibility and ownership of projectsStartup culture - fast-paced, innovative, and collaborative environmentBrewery parties and fun team outings to celebrate winsCompany Onsite / Fun Events and team building activitiesWork with skilled security researchers and certified white hat hackersContinuous learning and professional development opportunitiesWork on diverse and challenging security projectsOpportunity to make real impact in cybersecurity industryFlexible work environment with focus on work-life balance