Kaplan

InformationSecurityGRCAnalyst

₹12–20L ~AI est. Bangalore, Karnataka, India FULL TIME Remote Friendly
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Mid+ candidates.

The Brief

“Information Security GRC Analyst at Kaplan. Skills: Information Security, GRC, Risk assessment, Compliance. Support IT governance frameworks development. Oversee IT policies and standards lifecycle”

Industry & Context.

Problems you'll solve

Problem-solving; Analytical

What They're Looking For.

Must Have

Bachelor's degree in IS or Cybersecurity, 2+ years audit, technical compliance, or information security experience, Understanding of IT governance, risk management, and compliance frameworks, Proven experience in risk assessments, audits, and compliance initiatives, Demonstrated ability to lead security projects

Nice to Have

Relevant certifications (CISA, CISM, CRISC, CISSP), Understanding of networking protocols, Understanding of encryption algorithms, Understanding of Cloud security concepts, Familiarity with security technologies, Foundational understanding of Gen AI concepts, Understanding of AI-specific risks, Experience automating security tasks

What You'll Do.

Support IT governance frameworks development

Oversee IT policies and standards lifecycle

Manage third party vendor risk

Conduct vendor due diligence

Conduct security and compliance assessments

Review vendor contracts and controls

Monitor vendor performance and risk

Support IT risk management

Identify and assess technology risks

Track technology risks

Maintain risk registers

Coordinate mitigation activities

Perform internal audits

Assist in evidence collection for audits

Conduct phishing simulation campaigns

Analyze phishing simulation results

Manage security awareness program

Provide expert support for technical controls

Design technical controls

Implement technical controls

Enhance technical controls

Review IT systems for controls

Collaborate with control owners

Collaborate with system administrators

Remediate IT control gaps

Drive control improvements

Lead completion of client security questionnaires

Lead completion of RFPs

How You'll Work.

Team & Collaboration

Control owners; System administrators

Process & Methodology

Security projects

Full Job Description

**Job Title ** Information Security GRC Analyst I (Hybrid) **Job Description** For more than 80 years, Kaplan has been a trailblazer in education and professional advancement. We are a global company at the intersection of education and technology, focused on collaboration, innovation, and creativity to deliver a best in class educational experience and make Kaplan a great place to work. Our offices in India opened in Bengaluru in 2018. Since then, our team has fueled growth and innovation across the organization, impacting students worldwide. We are eager to grow and expand with skilled professionals like you who use their talent to build solutions, enable effective learning, and improve students’ lives. The future of education is here and we are eager to work alongside those who want to make a positive impact and inspire change in the world around them. The Information Security GRC Analyst I role will support and enhance IT governance, risk assessment, and compliance functions for the KNA organization. This position will be heavily involved in monitoring, maintaining, and improving elements of overall IT governance, enterprise risk management, and compliance with regulations and control frameworks such as ISO 27001, NIST, and COBIT. The Information Security GRC analyst I will focus on facilitating the review, development, implementation, and documentation supporting the ISMS policies, processes, procedures, and practices, while also identifying areas for improvement and efficiency. **_Primary/Key Responsibilities_** * Support the development, implementation, and maintenance of IT governance frameworks (e.g., COBIT, ITIL), ensuring alignment with organizational and regulatory requirements. * Oversee the lifecycle of IT policies and standards, including creation, review, approval, communication, and monitoring for compliance. * Manage third party vendor risk, including AI and cloud service providers, by conducting due diligence, security and compliance assessments,

Free ATS check

Applying for this Information Security GRC Analyst role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Workday

  • Workday has a multi-step form — save your progress after every section.
  • "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
  • Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
  • Job requisition numbers are useful when following up with HR by email.

ANONYMOUS · UNFILTERED

What do employees actually say about Kaplan?

Real rants from real employees. Read before you apply.

Read Company Rants →