Junior GRC Consultant – DPDP & Compliance
Cybernara · Maharashtra, India
Apply & track with Apply EdgeLocationHybrid – Work from home and office/client site, based on project and customer requirementPreferred LocationMaharashtra-based candidates preferred. Candidates from other locations can also apply, but should be open to travel when required for evidence collection, audit support, or customer meetings.JoiningImmediate joiners preferredExperience0.6 to 3 years of basic GRC / compliance / audit / information security experienceAbout the RoleWe are looking for a Junior GRC Consultant to support DPDP / DPDPA assessment and implementation projects.The role will mainly involve supporting data protection assessments, collecting information from client teams, preparing trackers, reviewing evidence, supporting documentation, and helping senior consultants during implementation.Apart from DPDP, the candidate may also get exposure to other compliance and audit areas such as ISO 27001, SOC 2, ISO 42001 / AI Management System, risk assessment, audit readiness, policy review, and evidence collection.This role is suitable for someone who has basic GRC knowledge and wants to build a career in privacy, compliance, audit, and information security governance.Key ResponsibilitiesSupport DPDP / DPDPA gap assessment and implementation activities.Assist in collecting inputs from client teams such as IT, HR, Legal, Finance, Operations, Marketing, and Business teams.Help prepare and update personal data inventory, data flow inputs, process trackers, and evidence trackers.Support review of data collection, storage, access, sharing, retention, deletion, and vendor involvement.Assist in identifying gaps related to consent, privacy notice, data retention, grievance handling, Data Principal rights, vendor sharing, and audit evidence.Prepare action trackers, risk trackers, MoMs, status reports, and follow-up notes.Coordinate with client teams for pending documents, evidence, approvals, and closure updates.Support senior consultants in ISO 27001, SOC 2, ISO 42001 / AIMS, DPDP, privacy, and GRC projects.Help maintain policies, SOPs, compliance documents, audit evidence, and project repositories.Support internal audits, readiness assessments, evidence collection, and control validation activities.Travel to client office or audit location when required for evidence collection, meetings, or audit support.Required SkillsBasic understanding of GRC, compliance, audit, risk, privacy, or information security.Basic knowledge of DPDP / DPDPA or willingness to learn quickly.Good documentation and follow-up skills.Ability to prepare trackers, reports, meeting notes, and compliance documents.Good written and verbal communication skills.Basic understanding of personal data, consent, privacy notice, vendor sharing, audit evidence, and risk tracking.Good working knowledge of Excel, Word, PowerPoint, Teams, SharePoint, Google Workspace, or similar tools.Ability to work with senior consultants and follow project instructions.Ownership, discipline, and attention to detail.Willingness to travel based on project and customer need.Good to HaveExposure to DPDP / DPDPA, ISO 27001, SOC 2, ISO 42001, GDPR, risk management, internal audit, or vendor risk.Experience in evidence collection, compliance documentation, policy review, or audit support.Basic knowledge of information security controls.Any certification or training in GRC, ISO 27001, DPDP, SOC 2, privacy, audit, or cybersecurity.Prior internship or project experience in GRC, compliance, audit, or information security.Ideal Candidate ProfileThe ideal candidate should be sincere, organized, and willing to learn.The person should be comfortable with documentation, follow-ups, evidence collection, tracker management, and client coordination. They should be able to support senior consultants and gradually take ownership of smaller workstreams.Application NotePlease apply if you have basic GRC, compliance, audit, privacy, or information security experience and are serious about building a career in this field.Immediate joiners are preferred. Maharashtra-based candidates will be given preference, but candidates from other locations can also apply if they are open to travel when required.