Weekday AI
GRC&DataPrivacyAnalyst
Neural analysis suggests this role is
optimal for Mid candidates.
“GRC & Data Privacy Analyst at Weekday AI. Skills: GRC, Data Privacy, Information Security, IT Audit. Oversee the upkeep of our integrated risk management framework. Play a key role in executing and auditing our data privacy program”
Industry & Context.
Identifying and addressing risks throughout the organization; Analytical Rigor
What They're Looking For.
Must Have
4 to 6 years in GRC, Information Security, or IT Audit, minimum of 1 to 2 years focused specifically on Data Privacy, ISO 27001, GRC
Nice to Have
CISA, CRISC, CISM
What You'll Do.
Oversee the upkeep of our integrated risk management framework
Play a key role in executing and auditing our data privacy program
Ensure that our operations comply with international regulations
Identifying and addressing risks throughout the organization
Oversee and enhance the organization’s security framework
Perform annual and project-specific risk assessments
Maintain the Corporate Risk Register and monitor remediation activities
and update internal security policies and standards
Assess the security posture of vendors and partners
Lead evaluations of new products or processes
Maintain detailed records of processing activities (ROPA) and create data flow diagrams
Oversee the Data Subject Access Request (DSAR) process and manage responses to privacy-related inquiries
Keep track of global privacy law changes and translate these into actionable technical or procedural requirements
Conduct regular control testing to confirm ongoing adherence to internal policies and external regulations
Act as the main contact for external auditors throughout certification cycles
Design and deliver training programs on security best practices and data handling protocols
How You'll Work.
Team & Collaboration
Conveying technical risks to executives; Translating legal requirements for developers; Translating technical or procedural requirements for IT and Product teams
Communication Scope
Translating complex legal requirements for developers; Conveying technical risks to executives
Process & Methodology
Project-specific risk assessments
Full Job Description
**This role is for one of the Weekday's clients ** Min Experience: 4 years Location: Telangana JobType: full-time We are looking for a detail-focused **GRC & Data Privacy Analyst** to become a member of our security team. In this position, you will oversee the upkeep of our integrated risk management framework and play a key role in executing and auditing our data privacy program. You will ensure that our operations comply with international regulations (such as GDPR, PDPA, etc.) while identifying and addressing risks throughout the organization. **Requirements** ### **Key Responsibilities** ### **Governance & Risk Management** * **Framework Alignment:** Oversee and enhance the organization’s security framework, including standards such as ISO 27001, SOC 2, and Singapore MAS. * **Risk Assessments:** Perform annual and project-specific risk assessments; maintain the Corporate Risk Register and monitor remediation activities. * **Policy Management:** Create, review, and update internal security policies and standards to ensure they accurately represent current business practices. * **Third-Party Risk Management (TPRM):** Assess the security posture of vendors and partners through thorough assessments and due diligence processes. ### **Data Privacy Implementation** * **Privacy Impact Assessments (PIAs/DPIAs):** Lead evaluations of new products or processes to ensure "Privacy by Design" is embedded within the development lifecycle. * **Data Mapping:** Maintain detailed records of processing activities (ROPA) and create data flow diagrams. * **Privacy Operations:** Oversee the Data Subject Access Request (DSAR) process and manage responses to privacy-related inquiries. * **Compliance Monitoring:** Keep track of global privacy law changes and translate these into actionable technical or procedural requirements for IT and Product teams. ### **Compliance & Auditing** * **Internal Audits:** Conduct regular control testing to confirm ongoing adherence to internal policies and
Applying for this GRC & Data Privacy Analyst role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
ANONYMOUS · UNFILTERED
What do employees actually say about Weekday AI?
Real rants from real employees. Read before you apply.