Sushmita Banik
@sushmitabanik
GRC Lead Business Analyst driving governance, risk, compliance and cybersecurity transformations.
What I'm looking for
I am a results-driven GRC Lead Business Analyst with over 17 years of global experience in Governance, Risk & Compliance, cybersecurity, and business analysis.
I have led large-scale MetricStream implementations and multi-million dollar portfolios, partnering with stakeholders to convert requirements into technical specifications and designing end-to-end data models that underpin solutions.
My work has delivered measurable impact — including $180K in cost savings through reporting efficiency at Shell, a 60% reduction in observation creation time via NLP/chatbot integration, and SLA improvements after cybersecurity interventions.
I hold PRINCE2 Practitioner and OneTrust privacy and GRC certifications, and I bring strong stakeholder management, vendor coordination, UAT leadership, and data-analytics experience to ensure reliable, audit-ready GRC programs.
Experience
Work history, roles, and key accomplishments
Led centralization of Risk, Compliance, and Audit by implementing MetricStream GRC integrated with ServiceNow and Azure Data Lake, authored end-to-end data models and business logic, and delivered $180K in cost savings by eliminating redundant reporting activities.
Manager & GRC
KPMG Assurance & Consulting Services LLP
May 2021 - Sep 2022 (1 year 4 months)
Led a MetricStream-driven risk and compliance transformation for a Fortune 500 client, created requirement traceability matrices for business-IT alignment, and managed project planning, vendor coordination, and UAT to ensure continuity across Risk, Audit, SOX, and Data Analytics.
Product Manager – GRC
SmarTek21
Apr 2020 - May 2021 (1 year 1 month)
Led development of a chatbot and NLP integration for MetricStream GRC using SmartBotHub and IntelliTek, reducing observation creation time by 60% and improving user engagement and triage efficiency.
Directed cybersecurity and GRC operations for a UK retail client post-ransomware, managed 40+ resources across data centers, led vulnerability management, SOC monitoring (Splunk), endpoint security and PAM, improving SLAs by 15%.
Sr. GRC Business Analyst
MetricStream
Nov 2014 - Mar 2018 (3 years 4 months)
Designed, demoed, and deployed MetricStream GRC solutions for mid-market clients, leading workshops, RFIs, UAT and POCs to automate risk and compliance operations and proactively surface alerts.
Improved user onboarding and sales process efficiency via Salesforce-driven enhancements through requirement gathering, solution design and workflow management.
Business Analyst
Iflowsoft
Feb 2012 - May 2012 (3 months)
Streamlined student onboarding by designing a Salesforce solution that reduced manual effort by 60%, leading stakeholder discussions and managing a small development team to delivery.
Managed application support and team activities for an e-commerce bidding platform (Emptoris), delivering streamlined bidding processes and robust platform support.
Led quality assurance initiatives that improved Net Promoter Scores, process quality, and customer satisfaction across business processes.
Education
Degrees, certifications, and relevant coursework
Sushmita hasn't added their education
Don't worry, there are 90k+ talented remote workers on Himalayas
Tech stack
Software and tools used professionally
Availability
Location
Authorized to work in
Job categories
Skills
Interested in hiring Sushmita?
You can contact Sushmita and 90k+ other talented remote workers on Himalayas.
Message SushmitaFind your dream job
Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!
