Jobs on TAL
All jobsOnsiteEngineeringcybersecurity8-13 yearsiso 27001
OnsiteLeadcybersecurity

ITGC Lead (For a GCC Setup)

Crystal Peakmulti, Karnataka, IndiaPosted 19 May 2026

Crystal Peak is seeking an ITGC Lead to manage security assurance frameworks and control testing in a GCC environment. The role involves building roadmaps for SAF, conducting security testing, and ensuring compliance with ISO 27001/2 standards. Candidates will report on control effectiveness and liaise with leadership to remediate security risks. This position requires 8-13 years of experience and deep expertise in internal control frameworks.

Matched by TAL

50k new jobs listed every day. Install TAL to find more jobs like this.

Install TAL

Experience

8-13 years

Function

Engineering

Work mode

Onsite, India

Company

Tier 2

What you will work on

Crystal Peak is seeking an ITGC Lead to manage security assurance frameworks and control testing in a GCC environment. The role involves building roadmaps for SAF, conducting security testing, and ensuring compliance with ISO 27001/2 standards. Candidates will report on control effectiveness and liaise with leadership to remediate security risks. This position requires 8-13 years of experience and deep expertise in internal control frameworks.

TAL's take

Quality 50/1005/5 clarityTier 2 company

Role has clear domain focus in ITGC and security assurance, though the company brand is unfamiliar.

The JD is highly specific regarding ITGC assurance responsibilities, testing frameworks, and expected security domains.

Must haves

  • 8-13 years of experience
  • Experience with Security Assurance Framework (SAF)
  • In-depth knowledge of ISO 27001/2
  • Experience in Control testing
  • Bachelor's degree

Tools and skills

iso 27001iso 27002it general controls

Nice to have: nist framework, cis benchmarks, cissp, cism, iso 27001 lead implementer, iso 27001 lead auditor.

About the company

unfamiliar company, default mid-tier

Posts mentioning Crystal Peak

Enzo Maresca on Jadon Sancho's Potential Impact for Chelsea

- Enzo Maresca discussed Jadon Sancho's potential role at Chelsea after their draw with Crystal Palace. - Sancho is expected to compete with Pedro Neto for a spot on the left flank. - Maresca hinted that Sancho could become a key player for Chelsea this season. - Eberechi Eze's equaliser denied Maresca his first home Premier League win. - Chelsea faces challenges with right-back injuries, affecting their squad depth.

News Discussion20

A Fair Peer Comparison

A high package looks great on paper, till the reality hits A large part is blocked in the Bonus and the RSUs The monthly in hand salary is taxed at 30%. People throw around packages of 1 Crore, when about half, or even more than that, is blocked in the RSUs. These stock prices go up and down (more down recently) and the promised bonus might never arrive. in-hand.in/peer-compare makes things crystal clear - What package you actually get and how risky or volatile your package is. Do check!

Software Engineers40

How do you make time for life?

Okay so I have a bunch of friends who fall into the below 2 buckets: 1. Doesn't have a very demanding job, therefore can take out time for plenty of other things as well (pay isn't the highest and they're ambitious for more too, but right now they are sitting proportionate to their efforts/skillset/experience) 2. Genius, 10x contributor. Gets shit done in 3-4 hours max. Enjoys the rest of their day. (Pay is bonkers of course and naturally such people are rare too) Now, there's a 3rd bucket that I think I fall into: 3. A very demanding job (~9 to 9) and pay is also proportional to the hours they put in, so it's in between the above 2. These would probably include roles like Product management or any type of people management roles as well where you overlook an above average level of uncertainty. Now, 12 hours of work (with some breaks as well), 7 hours of sleep, 1 hour of commute, 1.5 hours of eating etc, 1 hour of workout (asking for too much here) and that's pretty much the end of the day. Now, I think the distribution of people in these buckets would be as follows: 1. 70% (basically everyone that is 'starting out') 2. 1% (hence, they are 10x) 3. Remaining? How do people in bucket 3 take out time from their lives to do basic things like: 1. Being with their family 2. Socializing 3. Rest (how else can I work for 12 hours without giving out garbage output?) 4. Growth? (I have only been in corporate for a short time, but I am crystal clear on the fact that no company cares about your personal growth. They might even push you towards being utterly dysfunctional elsewhere, so that you don't churn, but never the other way round. If you can, as a side product, get personal growth from meeting their goals, you're lucky. Otherwise, always be prepared for the worst)

Life Beyond Work20