GRC Lead - India
ion designDeveloper Tools company
IndiaLead
Y Combinator
Founders, Inc
Lobster Capital
PL Capital (United States)
Tango VC
Legal & ComplianceNew
About the role
TL;DR
Lead GRC initiatives, manage ISMS, and ensure compliance for ION Group.
- •Lead and mature ION Group's governance, risk management, and compliance capabilities.
- •This role oversees the Information Security Management System (ISMS), ensures regulatory and certification compliance, drives risk governance, and manages customer assurance programs.
- •Key Responsibilities Own the lifecycle management of Information Security policies, standards, frameworks, and procedures.
- •Lead the ongoing maintenance and improvement of the Information Security Management System (ISMS) and ISO 27001 certification.
- •Improve the enterprise information security risk management framework and maintain the Group Security Risk Register.
- •Lead responses to client security questionnaires, regulatory inquiries, and customer assessments.
- •Conduct and oversee security assessments for vendors, suppliers, and strategic partners.
- •Requirements 8-10 years of experience in Governance, Risk & Compliance, Information Security, Audit, or Risk Management.
- •Demonstrable experience leading ISO 27001 certification and recertification programs.
- •Proven experience designing, implementing, and maintaining enterprise risk management frameworks.
- •Significant experience managing customer assurance activities and Right-to-Audit engagements.
- •Strong knowledge of ISO 27001, ISO 31000, NIST Cybersecurity Framework, SOC 2, GDPR, DORA, and NIS2.
Required skills
SOC 2GDPRContract ManagementVendor Management
Domain expertise
cybersecurityfintech
Tech stack
SOC 2GDPR