Overslaan en naar de inhoud gaan

GRC Architect

00070266861

Job Summary

We need urgently one GRC person who is good at documentation and is knowledgeable about controls needed for regulations. Perfect match would be someone who knows NIS 2 especially ENISA controls. If not we can consider NIST CSF or 800-53.


Responsibilities

  • Design and maintain an integrated governance risk and compliance framework that aligns PCI DSS GDPR and CCPA obligations with organizational policies and control objectives to support sustainable business growth
  • Develop comprehensive compliance management strategies and roadmaps that translate regulatory requirements into practical control designs tailored to work from home environments and rotational shift operations
  • Conduct detailed assessments of existing processes and systems to identify compliance gaps related to PCI DSS GDPR and CCPA and recommend remediation actions that strengthen organizational resilience
  • Create standardized methodologies for risk identification risk prioritization and risk treatment that embed data protection and payment card security into everyday business activities
  • Coordinate cross functional compliance initiatives by defining clear objectives deliverables and timelines that help teams understand their responsibilities and achieve consistent regulatory adherence
  • Implement monitoring mechanisms and compliance dashboards that provide management with transparent visibility into control effectiveness incident trends and regulatory obligations across geographies
  • Guide project teams on embedding privacy by design and security by design principles into technology solutions ensuring that customer data and payment information remain protected throughout the lifecycle
  • Prepare and refine policies standards and procedures for data handling access management logging and incident response that reflect PCI DSS GDPR and CCPA requirements and support remote work practices
  • Collaborate with audit and assurance functions to plan and support internal and external assessments ensuring evidence is well organized findings are accurately documented and remediation is tracked
  • Provide structured training and awareness content for employees working remotely and in rotational shifts so they understand compliance expectations practical behaviors and the impact of nonconformance
  • Evaluate new tools platforms and automation opportunities that improve compliance management activities such as control testing documentation retention and regulatory reporting while reducing manual overhead
  • Analyze incidents deviations and near misses to determine root causes and recommend targeted improvements that reduce the likelihood of recurrence and improve overall governance maturity
  • Document architecture decisions data flows and control mappings in a clear manner so stakeholders can trace how regulatory requirements are implemented and verify that risk is appropriately managed


Qualifications

  • Possess extensive hands on experience in compliance management frameworks with demonstrated ability to interpret complex regulatory requirements and convert them into actionable control designs
  • Bring deep expertise in PCI DSS domains including network security access control logging vulnerability management and cardholder data protection applied within large scale enterprise environments
  • Demonstrate strong knowledge of GDPR principles such as lawfulness fairness transparency data minimization purpose limitation and data subject rights with proven experience implementing compliant solutions
  • Show practical experience applying CCPA requirements including consumer rights disclosure obligations data sale restrictions and opt out mechanisms within business processes and technical architectures
  • Apply advanced understanding of governance and compliance methodologies to design policies standards and procedures that are pragmatic easy to adopt and aligned with organizational risk appetite
  • Utilize excellent analytical and problem solving skills to assess complex environments balance regulatory expectations with business needs and propose clear prioritized remediation actions
  • Communicate clearly with technical and nontechnical stakeholders to explain regulatory impacts control choices and risk implications in a concise actionable manner that encourages informed decisions

Over Cognizant  
Cognizant (NASDAQ: CTSH) is een bouwer van AI-oplossingen en een leverancier van technologiediensten. Wij slaan de brug tussen AI-investeringen en ondernemingswaarde door het bouwen van full-stack AI-oplossingen voor onze klanten. Onze diepgaande kennis van sectoren, processen en engineering stelt ons in staat om de unieke context van een organisatie te verankeren in technologische systemen. Deze systemen versterken het menselijk potentieel, realiseren tastbare resultaten en geven wereldwijde ondernemingen een voorsprong in een snel veranderende wereld. Ontdek hoe op cognizant.ai of @cognizant.

Aanvullende arbeidsinformatie
De informatie over de beloning is correct op de datum van deze vacature. Cognizant behoudt zich het recht voor om deze informatie op elk moment te wijzigen, met inachtneming van de toepasselijke wetgeving.

Van sollicitanten kan worden verwacht dat zij gesprekken bijwonen, persoonlijk of via een videogesprek. Daarnaast kan van kandidaten worden gevraagd om tijdens elk gesprek een geldig, door de overheid uitgegeven identiteitsbewijs (zoals een identiteitskaart of paspoort) te tonen.

Cognizant is een werkgever die gelijke kansen biedt. Je sollicitatie en kandidatuur worden niet beoordeeld op basis van ras, huidskleur, geslacht, religie, levensovertuiging, seksuele geaardheid, genderidentiteit, nationale afkomst, handicap, genetische informatie, zwangerschap, veteranenstatus of enige andere eigenschap die wordt beschermd door federale, regionale of lokale wetgeving.

Arbeidsvoorwaarden die je helpen floreren en groeien

Ons arbeidsvoorwaardenprogramma is ontwikkeld met jou in gedachten — zodat je kunt genieten van een vervullend, evenwichtig en gezond leven.

a blue line drawing of a plant with leaves

Financiële gezondheid

We beoordelen regelmatig marktgegevens om ervoor te zorgen dat de beloning aansluit bij de waarde die jij toevoegt. Je arbeidsvoorwaarden gaan verder dan alleen salaris en kunnen onder meer pensioenregelingen, financiële educatie en meer omvatten.

Stay Healthy Midnight Blue RGB

Fysieke en mentale gezondheid

Wij stellen je in staat om je welzijn prioriteit te geven via betaald verlof, flexibele werktijden waar mogelijk, zorgverzekeringen, begeleiding, ons Mental Health Allyship‑programma en meer.

Build The Career You Want Midnight Blue RGB

Jouw carrière, jouw manier

Met meer dan 350.000 functies bij Cognizant krijg je de kans om nieuwe technologieën, sectoren en locaties te verkennen — en bouw je de vaardigheden op die je nodig hebt om je carrière verder te ontwikkelen.

Making A Meaningful Impact Midnight Blue RGB

Impact in de echte wereld

Denk aan de grootste merken waarop je vertrouwt. De kans is groot dat zij op ons vertrouwen om hun bedrijf te versterken. Hier zet je gedurfde ideeën om in oplossingen die overal ter wereld levens verbeteren.

Heb je de juiste functie nog niet gevonden?

Ontvang de nieuwste updates over vacatures, wervingsevenementen en bedrijfsnieuws — volledig afgestemd op jou!

Blijf op de hoogte