Senior Manager - Digital, Cybersecurity (GRC)

Date: 14 Aug 2026

Location: IN

Company: Tata Consumer Products Limited

Tata Consumer Products Ltd.

 

 

 

 

About the Job: Senior Manager – Digital, Cyber Security (GRC)

 

Function: Digital – Cyber Security

Location: Bangalore

Reporting To: Director – Cybersecurity

 

At Tata Consumer Products Ltd, we stand #Forbetter – Planet, Sourcing, Nutrition, Communities. And #ForBetter Opportunities …. Here’s an exciting one!

 

How does this Job align to our Strategy?

This role aligns with TCPL’s strategic pillar of Drive Digital and Innovation and Create Future Ready Organization by supporting cybersecurity governance, risk assessments, compliance tracking and control assurance activities. The role helps improve security maturity, strengthen compliance posture and ensure cybersecurity requirements are consistently embedded across business and technology processes.

This role operates as a cybersecurity GRC (Governance, Risk & Compliance) execution role responsible for supporting governance activities, conducting risk and control assessments, coordinating audits, tracking remediation actions and maintaining cybersecurity reporting across the enterprise.

Top dimensions:

Geography: India / Enterprise-wide

Direct reports: NA

Complexity of the role (Optional):Medium - High

 

Will this job require travel (Y/N): As per business requirements

 

Matrix Reports: NA

Type of Role: Individual Contributor

Primary Stakeholders (Optional):  Cyber Security Team, IT, Digital, Risk, Privacy, Internal Audit, Business Functions, Vendors and Service Providers

What are the Key Deliverables in this role?

Financial Outcomes

  • Support cost-effective cybersecurity governance by tracking risks, control gaps and remediation actions.
  • Help reduce business exposure from cyber risks, audit observations, non-compliance and third-party control weaknesses.
  • Support prioritization of remediation activities based on risk severity, business impact and compliance requirements.

Customer Service

  • Support business and technology teams by providing timely cybersecurity governance inputs for projects and initiatives.
  • Coordinate with stakeholders for risk assessments, audit evidence, compliance reviews and remediation updates.
  • Enable consistent cybersecurity practices across functions by supporting awareness, governance reporting and control reviews.

Internal Processes

  • Support implementation and maintenance of cybersecurity policies, standards, procedures and governance documentation.
  • Conduct cyber risk assessments, maintain risk registers and track remediation plans.
  • Support risk treatment, risk acceptance documentation and periodic risk reporting.
  • Perform control assessments and gap assessments against ISO 27001, NIST CSF and internal security requirements.
  • Support cybersecurity maturity assessments and monitor closure of improvement actions.
  • Develop and maintain cybersecurity KPI/KRI dashboards, trackers and management reports.
  • Coordinate evidence collection for internal audits, external audits, compliance reviews and regulatory assessments.
  • Track audit observations, action plans and closure status.
  • Support third-party cybersecurity assessments and follow up on vendor remediation actions.
  • Support governance reviews across IAM, vulnerability management, endpoint security, cloud security, application security, data protection and security operations.
  • Assist in incident governance activities, post-incident reviews and corrective action tracking.
  • Support privacy, business continuity, disaster recovery, cyber resilience

 

Innovation and Learning

  • Contribute to continuous improvement of cybersecurity governance processes, dashboards and reporting templates.
  • Support automation and standardization of GRC trackers, evidence repositories and compliance reporting.
  • Stay updated on cybersecurity frameworks, regulatory expectations and emerging risk areas.
  • Support awareness campaigns, training initiatives and security culture-building activities

What are the Critical success factors for the Role?

  • Hands-on experience in cybersecurity governance, risk assessment, compliance coordination and audit support.
  • Working knowledge of ISO 27001, NIST CSF, cyber risk management and enterprise security controls.
  • Ability to maintain trackers, dashboards, risk registers and audit action plans with accuracy.
  • Strong coordination skills across IT, cyber, business, audit, privacy and third-party stakeholders.
  • Good analytical skills to identify control gaps, risk themes and remediation priorities.
  • Strong documentation and reporting skills.
  • Ability to follow up effectively and drive closure of actions with multiple stakeholders.

Mandatory Language Requirements (spoken), if any: English

What are the Desirable success factors for the Role?

  • Experience in third-party risk assessments, privacy compliance, business continuity, cyber resilience or AI Governance support.
  • Exposure to GRC tools, security dashboards, audit management platforms or compliance automation.
  • Certifications such as ISO 27001 Foundation / Internal Auditor, Security+, CISA, CRISC Foundation or equivalent preferred.
  • Experience in a multi-function enterprise environment would be an advantage.