What if you could use your skills to develop a solution that impacts the way communities' hospitals, homes, sports stadiums, and schools across the world are built? Construction impacts the lives of nearly everyone in the world, and yet it's also one of the world's least digitized industries, not to mention one of the most dangerous.
That's why we're looking for a talented
GRC
Analyst
2
to join Procore's journey to revolutionize a historically under-served industry. As a GRC Analyst you'll be a key member of the Governance, Risk & Compliance team within our Security Team. You'll partner cross-functionally with our Platform, Applications, Infrastructure, Product Security, Product, Legal, and Internal Audit teams to develop and maintain compliance with existing control standards, as well as pursue new ones.
This position will report into the
Manager of GRC
and has the opportunity to be based in our
Bangalore office (Hybrid)
in India. We're looking for someone to join us immediately.
What you'll do:
Maintain a risk and control matrix for Product and Technology
Facilitate audits across various IT and Security compliance and industry standard frameworks, including managing evidence requests with control owners and regularly reporting on audit status.
Execute walkthroughs and testing of IT General Controls (Access, Change Management, Operations, Backup, etc.) across key systems (e.g., AWS, Okta, GitHub, Workday, NetSuite, etc.)
Perform periodic user access reviews, password policy checks, and change management validations
Maintain audit-ready documentation with a focus on completeness, accuracy, and timeliness.
Understand the control stack, including mitigating & finding ways to improve controls
Keep data in the GRC platform current and relevant
Work closely with Internal Audit, Legal, IT Compliance, and Product through day-to-day compliance operations
What we're looking for:
Bachelor's degree in engineering, Information Systems, Business or related disciplines; Masters preferred
3-5 years of total experience including 2+ years of experience in consulting at a Big 4 audit firm / 2+ years as a governance, risk & compliance specialist, preferably at a Enterprise / Late Stage SaaS Startup.
Strong collaboration skills
Ability to apply a risk-based approach to IT compliance
Demonstrated strong analytical thinking, documentation skills, attention to detail, stakeholder communication and ability to manage multiple projects and priorities.
Experience with GRC tools such as Drata and AuditBoard is preferred.
Understanding of Security and Compliance standards such as ISO 27001, SOC1/2, NIST CSF, NIS2, Cyber Essentials etc.
Industry Certifications such as ISO Lead Implementer, Lead Auditor, CISA, CRISC or pursuing similar preferred.
About Us
Procore Technologies is building the software that builds the world. We provide cloud-based construction management software that helps clients more efficiently build skyscrapers, hospitals, retail centers, airports, housing complexes and more. At Procore, we have worked hard to create and maintain a culture where you can own your work and are encouraged and given resources to try new ideas. Check us out on Glassdoor to see what others are saying about working at Procore.
We are an equal opportunity employer and welcome builders of all backgrounds. We thrive in a diverse, dynamic and inclusive environment. We do not tolerate discrimination against employees on the basis of age, color, disability, gender, gender identity or expression, marital status, national origin, political affiliation, race, religion, sexual orientation, veteran status, or any other classification protected by law.
Perks & Benefits
You are a person with dreams, goals, and ambitions--both personally and professionally. That's why we believe in providing benefits that not only match our Procore values (Openness, Optimism, and Ownership) but enhance the lives of our team members. Here are just a few of our benefit offerings: competitive health care plans, paid vacation, stock options, employee enrichment and development programs, and friends & family events.
Beware of fraud agents! do not pay money to get a job
MNCJobsIndia.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.