× Success! Job has been saved successfully.

Consultant - IT Governance, Risk and Compliance

Colombo, Western Province, Sri Lanka
Posted on: 14-03-2025
Job description
Role Description
We are seeking a skilled and experienced professional with expertise in the IT GRC domain to join our team as part of Virtusas Enterprise Applications Group. The ideal candidate will play a key role in maintaining, improving, and ensuring the continued effectiveness of internal controls, managing IT risk, and supporting ongoing compliance efforts across the organization. You will collaborate closely with multiple Virtusa teams, as well as internal/external auditors, to safeguard company assets, ensure adherence to established IT GRC standards, and continuously improve the IT General Controls and Cybersecurity frameworks, including data privacy.

Key Responsibilities
Ensure timely execution of internal controls, as well as the completion of IT risk and data privacy assessments.
Identify corrective actions and monitor remediation efforts to resolve internal control issues and open risks promptly.
Collaborate with internal and external auditors to ensure compliance with audit and cybersecurity requirements.
Contribute to the development of IT GRC standards, with a focus on data privacy and cybersecurity.
Recommend improvements to existing processes and internal controls to safeguard company assets.

Qualifications and Skills:
Bachelors degree in Information Technology, Cybersecurity, or a related field.
Minimum 5 years of professional experience in IT GRC, Cybersecurity, or IT Audit.
Professional certifications such as CISA, CISM, and/or CISSP will be an added advantage.
Experience with Sarbanes-Oxley compliance (SOX) and/or Information Technology General Controls (ITGC), including control execution, testing, documentation, and remediation.
Excellent working knowledge of NIST Risk Management Framework (RMF), NIST Cybersecurity Framework (CSF), ISO/IEC 27001, and GDPR compliance.
Broad, high-level understanding of IT systems and infrastructure, including networking, servers, hardware, databases, and cloud applications (SaaS/PaaS/IaaS).
Exceptional attention to detail with a commitment to excellence.
Ability to manage multiple tasks/projects and prioritize effectively.
Excellent verbal and written communication skills, with the ability to engage effectively with management.
Collaborative team player with a proven ability to work effectively with others.
Qualification

Key Responsibilities
Ensure timely execution of internal controls, as well as the completion of IT risk and data privacy assessments.
Identify corrective actions and monitor remediation efforts to resolve internal control issues and open risks promptly.
Collaborate with internal and external auditors to ensure compliance with audit and cybersecurity requirements.
Contribute to the development of IT GRC standards, with a focus on data privacy and cybersecurity.
Recommend improvements to existing processes and internal controls to safeguard company assets.

Qualifications and Skills:
Bachelors degree in Information Technology, Cybersecurity, or a related field.
Minimum 5 years of professional experience in IT GRC, Cybersecurity, or IT Audit.
Professional certifications such as CISA, CISM, and/or CISSP will be an added advantage.
Experience with Sarbanes-Oxley compliance (SOX) and/or Information Technology General Controls (ITGC), including control execution, testing, documentation, and remediation.
Excellent working knowledge of NIST Risk Management Framework (RMF), NIST Cybersecurity Framework (CSF), ISO/IEC 27001, and GDPR compliance.
Broad, high-level understanding of IT systems and infrastructure, including networking, servers, hardware, databases, and cloud applications (SaaS/PaaS/IaaS).
Exceptional attention to detail with a commitment to excellence.
Ability to manage multiple tasks/projects and prioritize effectively.
Excellent verbal and written communication skills, with the ability to engage effectively with management.
Collaborative team player with a proven ability to work effectively with others

 Key job details

Primary Location
Colombo, Western Province, Sri Lanka
Job Type
Experienced
Primary Skills
CS-BA-Skills., Business Data Analysis
Years of Experience
0
Travel
No
Job Posting
14/03/2025

Join Virtusa

 

Please enter a valid email address to begin your application.

Thank you for verifying your email. Please proceed with the steps below to apply.

We only accept the following file extensions: .pdf, .docx or .doc
Maximum file size: 1 MB
File name must not include special characters or spaces (e.g. “name_resume.pdf”)

Please attach your CV/Resume, ensure it is in the correct format and smaller than 1MB.
We only accept the following file extensions:

Thank you. You already have an active account with Virtusa's hiring system. Please login to our portal to proceed with your application or apply for more opportunities.

LoginClick to Login

About Virtusa

Teamwork, quality of life, professional and personal development: values that Virtusa is proud to embody. When you join us, you join a team of 27,000 people globally that cares about your growth — one that seeks to provide you with exciting projects, opportunities and work with state of the art technologies throughout your career with us.

Great minds, great potential: it all comes together at Virtusa. We value collaboration and the team environment of our company, and seek to provide great minds with a dynamic place to nurture new ideas and foster excellence.

Virtusa is an Equal Opportunity Employer. All applicants will receive fair and impartial treatment without regard to race, color, religion, sex, national origin, ancestry, age, legally protected physical or mental disability, protected veteran status, status in the U.S. uniformed services, sexual orientation, gender identity or expression, marital status, genetic information or on any other basis which is protected under applicable federal, state or local law.

Applicants may be required to attend interviews in person or by video conference. In addition, candidates may be required to present their current state or government-issued ID during each interview. All candidates must be authorized to work in the USA.

Learn more

Awards and recognition

Find us on Glassdoor.

Have any questions?

What is the best way to find and apply for positions at Virtusa?

To join our bright team of professionals, you can apply directly to our website under the Careers tab and search all open jobs. https://www.virtusa.com/careers

Can I apply for more than one position at the same time?

Yes, you can. Virtusa gives you the flexibility to apply for multiple open positions that excite you about your future and align to your experience and career goals.

Can I apply for a position across multiple geographical locations?

Yes, you can. Virtusa is a global Company, and we serve our clients through our global delivery model.

What happens after I’ve submitted my resume?

Our dedicated recruitment team will review your online application and match it to all our open jobs. We update our open jobs on a daily basis and encourage you to check back often.

How will I be evaluated for a career opportunity with Virtusa?

Our team of recruiters will review your application, relevant job experience, and skills to appropriately align it to our open jobs. From there, the recruitment team will contact the qualified candidate to start the interview process.

Career insights

Want to explore the ways you can engineer your career in technology? Our thought leaders share key career insights for candidates from entry-level job seekers to senior technologists.