Technical side here - what do GRC fish do? What's the work like?

likesmart
Posting as :
works at
You are currently posting as works at

Fun. Easy. Interesting. Currently, in data privacy, shifting towards privacy engineering.

Working on infrastructure and gearing up for assessments related to new data protection enforcements coming in March.

like

A ton of risk assessments, designing/implementing/assessing controls, critical assets, developing/ maintaining governance documents etc. overall fun but can be hectic depending on where you work.

like

GRC can be technical as well. Just depends on the type of control and process frameworks used, service methodology and the company you work for. Just from experience GRC can require strong familiarity with NIST 800-53, NIST 800-171, HITRUST, CIS version 8 and ISO 27001.
Type of services range from control assessments, readiness assessments, process maturity assessments risk assessments and framework control audits. Each of these services offers a certain methodology and metrics to measure security governance.
Elements of Privacy acts/ laws and regulations can further be mapped to standard frameworks to conduct privacy assessments specific to laws such as GDPR and CCPA/CPRA.

likehelpful

Important work due to the fact that they police us. Keeping us inline. One job which will last for a while.

Just boring for me though. I prefer the technical side

like

It’s the least interesting part of what I do but it generates a backlog of work. I enjoy the remediation work more on the technical side.

Related Posts

Joining BNP Paribas for role of Senior BA in bangalore, is the Bangalore office new? How many employees are there? How is company culture? Management etc, I had other offers from societe generale and hsbc similar offer but in hsbc the role was of a manager in compliance risk analytics domain, bnp is in trade and investment banking domain, I choose bnp, was it a good choice?

like

Can someone tell me about BNP Paribas CIB work culture!? I am having 7.8YOE as in full stack developer

Any any insight on Greenberg Traurig?

like
like

Hi! anyone comfortable sharing their salary as a supervisor and/or manager at Mediacom? Just so I’m not low balled if and when this promo ever come around. Thanks so much in advance

Hi All ,

Anyone know's the notice period in the Novo Nordisk GBS India ?

like

Anyone joining Deloitte india in the month of October?

like

I have got an offer from S&P Global I want to know about following things

How much of Variable Pay is Paid ?? I got 15% of Base salary but how much will be paid like the usual norm i want to know

And what are the deductions from Base salary apart from PF ?
There are lot of allowances like internet reimbursement etc etc
Are they mandatorily credited or you need to claim ?

like

Hi all, I got an interview for Product Support Lead role at YouTube.
What is the TC I can expect? How’s this role different from a Product Manager? Any input is much appreciated. Thanks 🙏🏻

like

Anyone attended Microsoft Communications round ? Please share tips . Also plz tell me what CTC can I ask for 4 yrs exp for the role of Technical support for Azure Synapse tech.
CCTC- 5.3

Microsoft

like
like

Anyone from North Highland People and Change here? Do you do strategy/actual consulting or just staff aug work (like I’ve heard from most general posters)? Satisfying work or no?

like

Hi Sharks,

Can you please suggest which would be better in terms of WLB, flexibility, growth, job security.

YOE: 4.4 years
Tech stack: Azure data factory, data lake, Azure databricks, Logic App, SQL, Pyspark (basic)


Offer:

KPMG India:16 fixed + 10 to 20% variable

Optum - 16 Fixed + 15% variable + pf (offer letter is not received yet)

LTIMindtree: 11 LPA Fixed only(can revise the offer based on the latest offer)

like

I cracked my interview in Accenture 2 weeks back and submitted all the documents. But it seems my candidature is on hold. Tried calling HR but they are not picking the phone. Any idea if this is rejection? Or when I will get office letter? Accenture

like

i got offer from tcs of 20 LPA .
can anyone suggest how much monthly take home salary is given by tcs

like

YOE : 7.8 i have an offer from IBM and HCL.
IBM : 18 fixed + 1 JB HCL : 21 ( 18 fixed + 1lakh approx (monthly variable) + 2 lakh Annual variable ) . Now i have a discussion pending with Robert Bosch , What should i quote ! Which will be better for job security and work life and overall career growth .

like

Hey! How long does it take to get promoted from Associate to Consultant in KGS?

like

More Posts

What are the leaves policies in Accenture we have ? Can anyone share the leave calendar for this year in Accenture

I have an offer from NTT DATA and joining is in December. what is the appraisal cycle here? Also, what is the leave policy? Employee benefits?

like

How supportive are your companies when it comes to taking PTO for mental health days?

likesmart

Hi everyone,
I'm looking for team lead role (content moderation) for google client.

Can anyone please give the referral..

like

Looking for 2bhk/3bhk near marathahalli or Brooke field and a flatmate(preferably Telugu)as we are 3 pre decided and rent range is 20000-30000

like

Chocking down a way too dirty martini, reached in bag to grab headphones & felt this. Inbound me coming in clutch for outbound me.

Post Photo
likefunnyupliftingsmart
like

Any M&A tax practices out there that will allow remote/mostly remote work in the future? Where?

like

Looking for referal for below tech stack. Ping for more details:
Tech: Unix,Azure,Mainframe, Splunk,AppDynamics,Snow,Sql Developer and JIRA.
YOE: 6yrs
Availability : 44 days

What types of questions do you like to ask candidates during your first initial conversation with them?

like

Alteryx stock - thoughts on the company as a longterm investment?

like

Newly promoted M1. Transaction advisory services (FDD). Seattle.


Am I off base to expect $115-120k? Given how crazy M&A market is and demand for staff

like

How is the work life balance in cognizant ?

like

It's my birthday. Can I leave at 5?

likefunny

Ey work life balance

funnylike
like

Credit suisse or Barclays? Both offering same amount.

like

I have 2 offers in hand - Global Logic - 23 LPA fixed , Tech Mahindra - 26.5 (including variable).
Which one is good for job security , work life balance and hike and all.

Need your inputs pls

In 2015 different governments in the US collected $5,175,829,952,000 to service 321,230,000 people. That’s over $16,000 per person. Anyone else find this shocking?

like

Additional Posts in Cyber Security Bowl

New to the U.S., is the Healthcare Industry (via HIPAA), the only industry in the U.S. that legally mandates having a designated Privacy Officer? So for example, although GLBA has obvious privacy requirements, unlike with healthcare, financial institutions in the U.S. are not mandated by law to have a designated Privacy Officer?

like

Anyone at Protiviti in their Cybersecurity consulting practice willing to chat? Looking to inquire about pay, culture, etc. Thanks!

like

Can anyone recommend a good book/materials to prep for the CIPP/CIPM? 🙏🏽

Would you expense a speeding ticket on your way to an IR?

funnylike

Any recommended study material for CIPP and/or CIPM (still debating the two)?

Any company is hiring EU citizens and helping with visa? interested in moving to USA. I'm lawyer, cissp, cisa, cipp/e and specialized n data privacy, cybersec ops and risk management with 8+ years exp

Has anyone left cyber for another technical field (I.e. software engineer) ?

like

For those who have passed the CIPM exam, what is it like (and how does it compare to the CIPP/US exam)?

Anyone ever heard of or worked for Sygnia?

like

AWS Cloud question- what the difference between an SCP and IAM? Thanks in advance

like

Thinking about getting the AWS Cloud Practitioner certification. Does EY have any amazon resources or training materials that they provide? Any advise from people who have taken it before? Thanks!

like

Any tips or tricks for CSX certification?

like
like

Anyone familiar with Istari-Global and their collective of cyber risk companies? What’s their perception in the market? Opportunity to join US team. Thanks!

like

Curious how MBB's cybercapabilities are viewed within the cyber world. Experiences, thoughts?

like

I have interviews coming up with BCG. Any BCG Platinion folks willing to discuss example case interview questions?

like

Currently stuck in risk but interested in Cyber. Have done one related engagement from a regulatory perspective. But a lot of posts here making me think it’s harder to break into than I expected (non-technical background). If you had a six sigma green belt / supply chain degree/exp., would you still go through the effort of going into Cyber or take easy risk money being offered / easier transition back to supply chain? 2-3 YOE and trying to decide career course, any advice highly appreciated

like

Deloitte Cyber, how long did it take you to receive an offer after final interview?

like

CohnReznick hiring for cyber/tech risk/privacy team. Looking for seniors and managers. Anyone interested?

funnylike

How much does Deloitte pay for cybersecurity or devops senior Deloitte roles

like

New to Fishbowl?

Download the Fishbowl app to
unlock all discussions on Fishbowl.
That was just a preview…
Sign Up to see all discussions
  • Discover what it’s like to work at companies from real professionals
  • Get candid advice from people in your field in a safe space
  • Chat and network with other professionals in your field
Sign up in seconds to unlock all discussions on Fishbowl.

Already a user?
Login here

Share

Embed this post

Copy and paste embed code on your site

Preview

Download the
Fishbowl app

See what’s happening in your industry
from the palm of your hand.

A phone with Fishbowl app

Scan your QR code to download
Fishbowl app on your mobile

Download app

Sign up for free to view this conversation on Fishbowl

By continuing you agree to Terms of Use and Privacy Policy

Already have an account? Log in

Sign up for free to continue using Fishbowl

By continuing you agree to Terms of Use(New) and Privacy Policy(New)
Messaging rates may apply

Already have an account? Log in

For account settings, visit Fishbowl on Desktop Browser or

General

Legal