Your browser does not support javascript! Please enable it, otherwise web will not work for you.

Principal GRC Analyst @ Deltek

Home > IT Security

 Principal GRC Analyst

Job Description


Job Title: Principal GRC Analyst

Location: Remote, India

Working Hours: 6pm to 3am IST


Position Responsibilities :

Information security risk management and compliance are critical parts of Delteks business and product strategy. The Principal Governance, Risk, & Compliance (GRC) Analyst is an Individual contributor (IC) role that reports to the Manager of GRC. This role is within the team responsible for implementing and maintaining compliance framework controls and assessing controls within multi-cloud environments. This role supports comprehensive assessments of the management, operational, and technical security controls deployed within Deltek cloud environments. Determines the effectiveness of the controls - the extent to which the controls are implemented correctly, operating as intended, and producing the desired outcome with respect to meeting the security requirements.

As a Principal GRC Analyst you will be part of the team responsible for audits of cloud environments, information systems, risk management and security tools to ensure adherence to applicable frameworks, laws, and regulations. You will assist with review, interpretation and documentation of control objectives and procedures for areas such as cloud security, cloud governance and compliance, DevOps, cloud data protection, cloud monitoring, incident response, enterprise security architecture, cyber security, and technology risk management. As part of a team of cloud security and compliance experts within GRC team you will drive compliance for all Deltek products with focus on cloud environments.


  • Provide subject matter expertise related to NIST 800-53, FedRAMP, CMMC, ISO27001, PCI DSS, SOC 1, SOC 2, SOX and other information security regulations.
  • Must have experience and knowledge of audit engagements as a principal auditor, understand requirements for completing internal and external audit engagements.
  • Lead the gathering, reviewing, assembling, maintaining, and presenting of internal and external audit evidence and related documentation. Draft and maintain compliance documents such as policies, standards, procedures. Prepare metrics and reporting.
  • Experience and exposure with software development in a cloud environment desired.
  • Effectively communicate with Deltek technical and business stakeholders through written and verbal communication during the process of evidence collection, validation, testing and presentation of results.
  • Maintain proficiency with applicable laws, regulations, and standards.
  • Identify and communicate risk management, control gaps and process inefficiencies to key stakeholders.
  • Actively participate in initiatives aimed at enhancing Cloud Security Compliance team processes and procedures.
  • Support internal risk and compliance meetings as a subject matter expert.
  • Draft and maintain, and mature GRC services as a primary or backup service owner (e.g., Policy Management, Risk Management, Customer Security Due Diligence, Business Continuity Planning, etc.)
  • Some experience in GRC customer support requests. Handling and managing customer security and compliance questionnaires such as Consensus Assessment Initiative Questionnaire (CAIQ) forms.

Qualifications :

  • Minimum 5 years of combined experience implementing and/or assessing: Information technology audit, Information Technology General Controls (ITGC), Information security operations, cloud security and compliance, internal audit function, IT risk management, public accounting firm, or a related field.
  • B.S. degree (Information Security, Computer Science, MIS, or equivalent program preferred) from an accredited college/university.
  • Must have experience with assessments within technological environments.
  • Possess, or working toward, baseline security certifications such as CCAK/CCSK, CISA/CompTIA/CISSP cloud certification for Microsoft Azure/AWS/Google Cloud Platform.
  • Experience with ITAR regulations is a plus. 

Core Competencies

  • Excellent self-management and work with minimal direction.  
  • Excellent time management skills for handling multiple competing priorities and simultaneous projects.
  • Excellent business and technical aptitude and problem-solving skills.
  • Excellent critical thinking, analytical, communication (written and verbal) and interpersonal skills.
  • Ability to work in a team environment and to collaborate across different business units.
  • Enthusiasm to learn through a combination of structured, on-the-job, and self-directed training.

Job Categories: GRC / Security / Compliance / Technology audit / Cloud Operations

Job Classification

Industry: IT Services & Consulting
Functional Area / Department: IT & Information Security
Role Category: IT Security
Role: Security Engineer / Analyst
Employement Type: Full time

Contact Details:

Company: Deltek
Location(s): Bengaluru

+ View Contactajax loader


Keyskills:   GRC IT Audit Itgc SOC SOX

 Fraud Alert to job seekers!

₹ 12-22 Lacs P.A

Similar positions

Senior Information Security Engineer Analyst

  • Optum
  • 4 - 9 years
  • Bengaluru
  • 2 days ago
₹ Not Disclosed

Senior Soc Analyst (L3)

  • job Booster
  • 8 - 10 years
  • Chennai
  • 2 days ago
₹ 10-20 Lacs P.A.

Senior Soc Analyst (L3)

  • job Booster
  • 8 - 10 years
  • Chennai
  • 2 days ago
₹ 10-20 Lacs P.A.

Senior Soc Analyst (L3)

  • job Booster
  • 8 - 10 years
  • Chennai
  • 2 days ago
₹ 10-20 Lacs P.A.

Deltek

Company DetailsDeltek, Inc.