
GRC Advisor
at Capgemini
Posted 6 days ago
No clicks
- Compensation
- Not specified
- City
- Not specified
- Country
- Not specified
Currency: Not specified
The GRC Advisor will develop and support a continuous improvement framework for governance, risk, and compliance aligned with NIST CSF, ISO 27001:2022, and SOC-CMM. They will plan, conduct, and support internal audits, assist teams in implementing remediation actions, and create tools and documentation to ensure audit readiness. The role also covers cyber crisis management, including leading lessons-learned sessions, contributing to the plan-do-check-act cycle, developing crisis tabletop exercises, and supporting real-time crisis response as part of the cyber crisis cell. Ideal candidates have 3-5+ years in cybersecurity, GRC, or related fields, with practical experience in ISO 27001 and NIST CSF, audits, and crisis simulations, plus strong stakeholder engagement and communication skills.
About Capgemini
Capgemini is a global leader in partnering with companies to transform and manage their business by harnessing the power of technology. The Group is guided everyday by its purpose of unleashing human energy through technology for an inclusive and sustainable future. It is a responsible and diverse organization of 350,000 team members in more than 50 countries. With its strong 55-year heritage and deep industry expertise, Capgemini is trusted by its clients to address the entire breadth of their business needs, from strategy and design to operations, fueled by the fast evolving and innovative world of cloud, data, AI, connectivity, software, digital engineering and platforms. The Group reported in 2022 global revenues of €22 billion.
Job Description
Responsibilities:
Governance, Risk & Compliance
- Develop and support a continuous improvement (UCI) framework aligned with NIST CSF, ISO 27001:2022, and SOC‑CMM.
- Plan, conduct, and support internal audits.
- Assist teams in implementing improvement and remediation actions.
- Create tools, materials, and documentation to ensure audit readiness.
Cyber Crisis Management
- Support and execute the Lessons Learned process for cyber incidents and exercises.
- Lead Lessons Learned sessions and guide teams in applying recommendations.
- Contribute to the plan‑do‑check‑act cycle for crisis management and business continuity.
- Develop crisis tabletop exercises, scenarios, and related documentation.
- Participate in the cyber crisis cell to support real-time crisis response.
Experience:
- 3–5+ years in cybersecurity, GRC, incident response, or cyber crisis management.
- Practical experience with cybersecurity frameworks (ISO 27001, NIST CSF).
- Experience conducting or supporting audits and maturity assessments.
- Exposure to cyber crisis exercises, simulations, or business continuity activities.
- Experience supporting cross‑functional teams through improvement initiatives.
Qualifications:
- Bachelor’s degree in Cybersecurity, IT, Risk Management, or equivalent experience.
- Strong understanding of ISO 27001 and other cybersecurity frameworks.
- Certifications related to cybersecurity or GRC are an advantage.
- Strong presentation and communication skills in English.
- Ability to engage and influence stakeholders at all organizational levels.
- Leadership mindset with the ability to motivate teams around continuous improvement.
- Collaborative team player with strong interpersonal and cross‑disciplinary skills.
Choosing Capgemini means choosing a company where you will be empowered to shape your career in the way you’d like, where you’ll be supported and inspired by a collaborative community of colleagues around the world, and where you’ll be able to reimagine what’s possible. Join us and help the world’s leading organizations unlock the value of technology and build a more sustainable, more inclusive world.
Get the future you want | www.capgemini.com

