fb_pixel
back
Back
Location:
Karachi, Pakistan
Department: Consulting
Job Description
Summary: We are seeking an experienced GRC (Governance, Risk, and Compliance) Consultant with expertise in Information Security Compliance Management, GRC tool,

.

The ideal candidate will play a key role in ensuring regulatory compliance, managing security risks, and enhancing governance within the organization.

Key Responsibilities: Develop, implement, and maintain Information Security and Compliance frameworks aligned with industry standards such as ISO 27001, NIST, PCI DSS, and SOX. Manage (Governance, Risk, and Compliance) tools, including access control, risk analysis, role management, and user provisioning. Oversee SAP GRC Access Management processes, ensuring proper role definitions, segregation of duties (SoD), and user access reviews. Lead SAP Change Management processes to ensure secure and compliant transport of system changes while mitigating risks and maintaining audit readiness. Conduct security assessments, risk evaluations, and compliance audits for SAP environments. Collaborate with IT, security, and business teams to ensure security controls are effectively implemented and maintained. Monitor and respond to compliance issues, providing recommendations and remediation plans. Develop security policies, standards, and guidelines related to SAP security and GRC.

Ensure adherence to global regulatory requirements and internal security policies.

Conduct review and process validation on security and GRC best practices.

Required Qualifications: Min Bachelor’s degree Computer Science, or a related field. 5+ years of experience in Information Security Compliance Management and GRC. Hands-on experience with SAP GRC tools, including Access Control, Process Control, and Risk Management.

Strong knowledge of GRC Access Management, including SoD,

user provisioning,

and access reviews. Familiarity with compliance frameworks such as ISO 27001, NIST, SOX, GDPR, and PCI DSS. Strong analytical and problem-solving skills with the ability to assess security risks and recommend mitigation strategies. Excellent communication and stakeholder management skills. Preferred Qualifications: Relevant certifications such as CISA, CISSP, CISM, SAP GRC certifications. Experience in cloud security and compliance Job Id: eWTEuchHJmxxzvT4GjzZIZrXr1HK31MG8EO0Mp/mtCAJvH9DGQfGQCc11Q0jHj8991hPbJzkodFYLL7dOYximC5OVcp2l74LyyHbRwyhacmb9y0waDgk0GYQI1Lkc+f7JFXvtEXHvtocdmrlWcWlYGbXsL2IA6HLRAr2xc4/AHB8qATTYc/OzNA09kJS0SQWVPOR
companyLogo
Systems Limited
Principal Consultant GRC