Talent.com
GRC Manager(Governance,Risk & Compliance)
GRC Manager(Governance,Risk & Compliance)Exotel Techcom • Bengaluru, Karnataka, India
GRC Manager(Governance,Risk & Compliance)

GRC Manager(Governance,Risk & Compliance)

Exotel Techcom • Bengaluru, Karnataka, India
6 days ago
Job description

About Us

Exotel is the emerging markets leading full-stack customer engagement platform and business-focused virtual telecom operator. Incorporated in 2011 Exotels cloud-based product suite powers 50 million daily engagements across voice video and messaging channels. Exotel powers unified customer engagement to over 6000 companies in 60 countries including India Southeast Asia the Middle East and Africa. Today some of the fastest-growing companies in the emerging markets (Ola Swiggy Flipkart GoJek Byjus Urban Company HDFC Bank Zomato Oyo etc.) manage their customer engagement with Exotels suite of communication APIs Ameyos omnichannel contact centre (merger) and Cogno AIs conversational AI platform (acquisition) over the cloud. Theyre a $100 million Series D-funded company with $60 million in ARR.

Job overview :

Exotel GRC team drives risk management and compliance within the organisation supporting Exotel and its product portfolio.

We are looking for a GRC Manager with experience in compliance and security to help protect and enable Exotel products and services. The GRC works as a line of defence by periodic audits against all the control owners the platform team the Security team and the Engineering stakeholders.

Key responsibilities :

Customer Trust Assurance Leadership :

Develop and execute the strategy for Customer Trust Assurance ensuring our security and compliance posture consistently meets and exceeds the expectations of a sophisticated client base especially BFSI institutions.

Serve as the primary customer-facing security and compliance expert engaging directly with clients security audit and procurement teams to present our controls address concerns and foster long-term trust.

Maintain and continuously update a comprehensive Trust Portal or similar resource containing all relevant compliance documentation certifications and security white papers for client consumption.

Client Audit Management & Facilitation :

Lead coordinate and manage all client-initiated audits reviews and due diligence activities specifically focusing on BFSI clients stringent regulatory requirements.

Own the end-to-end audit lifecycle including scoping internal readiness reviews direct client communication on-site / virtual facilitation artifact gathering and managing post-audit remediation plans.

Translate complex client-specific audit requirements (e.g. related to GDPR CCPA ISO 27001 SOC 2 and BFSI regulations) into actionable tasks for internal security and engineering teams.

Risk Management :

Conduct risk assessments and identify analyse and evaluate potential risks across all areas of the business.

Develop and maintain a comprehensive risk register including risk assessments mitigation plans and key risk indicators (KRIs).

Monitor and report on key risks and emerging threats.

Assist in the development and implementation of risk mitigation strategies and controls.

Coordinate with teams on the Implementation of risk management strategies aligned with stakeholders.

Compliance :

Ensure compliance with all applicable laws and regulations (e.g. data privacy laws industry-specific regulations cybersecurity frameworks like NIST CSF 2.0 ISO 27001 : 2022).

Conduct internal audits and compliance reviews to identify and address any gaps.

Manage regulatory reporting requirements and ensure timely submission of all necessary filings.

Advise on and implement best practices for compliance with relevant standards (e.g. ISO 27001 SOC 2 Data Privacy).

Governance :

Assist in the development and implementation of internal policies and procedures related to governance risk and compliance.

Contribute to the development and maintenance of a strong control environment.

Support the development and implementation of a robust ethics and compliance program.

Stakeholder Management :

Collaborate with business units IT legal and other stakeholders to identify and address risk and compliance issues.

Communicate effectively with all levels of management on risk and compliance matters.

Build and maintain strong relationships with internal and external auditors.

Work under CISO and facilitate Audits like ISO 27001 audits and findings closure by follow-up with respective teams.

Identify stakeholders and their roles keep them informed of project progress address their concerns and implement their feedback.

Work with team members and stakeholders to understand and identify work challenges and program goals obtain prioritized deliverables and discuss program impacts.

Continuous Improvement :

Stay abreast of evolving regulatory requirements industry best practices and emerging threats.

Continuously evaluate and improve the organisations GRC framework and processes.

Proactively identify and implement new GRC initiatives.

Qualifications & skills required :

  • 10 years of experience in a GRC role with a strong understanding of risk management frameworks methodologies and tools
  • Experience : Proven track record in a GRC Information Security or Audit role with at least 3 years in a leadership or client-facing capacity. Extensive experience managing security audits from major BFSI clients is mandatory.
  • Knowledge : Deep understanding of BFSI compliance frameworks (e.g. FFIEC GLBA PCI DSS) and international standards (e.g. ISO 27001 SOC 2 HIPAA NIST).
  • Experience with one or more of the NIST CSF 2.0 framework SOC2 Type2 ISO27001 : 2022
  • Strong communication and interpersonal skills with the ability to effectively communicate complex information to both technical and non-technical audiences.
  • Experience working in a fast-paced and dynamic environment.
  • 3 years of experience in technology risk including one or more domains (e.g. access management vulnerability management change management business continuity application security asset management).
  • 2 years of experience in effectively analysing data and programs for security risk compliance and maturity.
  • 2 years of program management experience in a corporate environment.
  • Experience with Certifications for SOC2 Type 2 ISO27001 : 2022

Good to have :

  • CISSP CISA CISM and CRISC certifications are desirable.
  • Advanced degree and / or certification.
  • Advanced program management skills including planning organising pre-empting risks / blockers and communicating with stakeholders to deliver successful programs or projects while operating with minimal guidance.
  • Required Experience :

    Manager

    Key Skills

    Arm,Risk Management,Financial Services,Cybersecurity,COSO,PCI,Root cause Analysis,COBIT,NIST Standards,SOX,Information Security,RMF

    Employment Type : Full-Time

    Experience : years

    Vacancy : 1

    Create a job alert for this search

    Compliance • Bengaluru, Karnataka, India

    Related jobs
    Analyst - GRC (Governance, Risk & Compliance)

    Analyst - GRC (Governance, Risk & Compliance)

    Amagi • Bangalore Urban, Karnataka, India
    This role has been established to support the business in building sustainable governance andcompliance practices at Amagi. The basic factor required to be successful in this role warrants a good un...Show more
    Last updated: 30+ days ago • Promoted
    Head of Compliance (Sr. Director)

    Head of Compliance (Sr. Director)

    Jupiter • Bengaluru, Karnataka, India
    Jupiter is seeking a high-calibre Head of Compliance (Senior Director, Compliance) to lead and own the end-to-end compliance function across all its regulated businesses including Banking, NBFC, Cr...Show more
    Last updated: 9 days ago • Promoted
    AVP - Third Party Risk Management

    AVP - Third Party Risk Management

    Mashreq • Bangalore, IN
    The incumbent supports the VP – Operational Risk, Head of TPRM in directing and leading the Group-wide (including subsidiaries and international branches) strategic development and implementation o...Show more
    Last updated: 1 day ago • Promoted
    Director, Compliance

    Director, Compliance

    Capital One • Bangalore Urban, Karnataka, India
    The Compliance Advisor Director performs a key risk management role (second line of defense), to help ensure corporate initiatives and lines of business processes comply with applicable laws and re...Show more
    Last updated: 21 days ago • Promoted
    Senior Consultant / Principal – Business Consulting (Financial Services- Governance, Risk & Compliance)

    Senior Consultant / Principal – Business Consulting (Financial Services- Governance, Risk & Compliance)

    Infosys Consulting • Bangalore Urban, Karnataka, India
    Infosys (NYSE : INFY) is a global leader in consulting, technology and outsourcing solutions with annual revenues of $18. We enable clients, in more than 56 countries, to stay a step ahead of emergin...Show more
    Last updated: 30+ days ago • Promoted
    General Manager - Enterprise Risk Management (ERM)

    General Manager - Enterprise Risk Management (ERM)

    Swiggy • Bengaluru, Karnataka, India
    Employees will come to the office twice or thrice a week at their base location and work remotely for the remaining days. Must have - 3+ years of ERM experience, Non - FS.CA / IRM with 10+ years exp...Show more
    Last updated: 30+ days ago • Promoted
    Senior Manager -Risk & Compliance

    Senior Manager -Risk & Compliance

    Flipkart • Bengaluru, Karnataka, India
    Stakeholder Management, Business Excellence, Risk Management.A Bachelor's degree in Business Administration, Finance, Information Technology, or a related field is required.We are seeking a highly ...Show more
    Last updated: 23 days ago • Promoted
    GM / AVP / VP-Approvals & Compliance

    GM / AVP / VP-Approvals & Compliance

    Client of Bradford Consultants • Bangalore, IN
    We are looking for a Vice President (AVP / VP) – Approvals & Compliance will oversee and manage the coordination of all internal and external stakeholders, ensuring the timely execution of approvals,...Show more
    Last updated: 23 days ago • Promoted
    Senior Manager – IT Risk, Audit & Compliance (ITGC / SOX / ERP Controls)

    Senior Manager – IT Risk, Audit & Compliance (ITGC / SOX / ERP Controls)

    RGP • Bengaluru, IN
    RGP is seeking a highly experienced.Senior IT Risk & Assurance Consultant.SOX 404 / ICOFR Assessments, IT General Controls, ERP Security & Controls, Cybersecurity, Data Privacy, and Risk Advisory s...Show more
    Last updated: 1 day ago • Promoted
    Manager - Credit Risk

    Manager - Credit Risk

    Navi • Bengaluru, Karnataka, India
    The Risk team at Navi is responsible for identifying, assessing, and mitigating potential risks across the organization.The Credit Risk team, part of the Risk function at Navi, reviews and monitors...Show more
    Last updated: 23 days ago • Promoted
    Manager_GRCS

    Manager_GRCS

    Orcapod • Bengaluru, Karnataka, India
    Looking for qualified CA candidates with.Indian Practice with FS industry experience is must.Following are some of our key service offerings : . Model Business Process Development.Sarbanes – Oxley 404...Show more
    Last updated: 2 days ago • Promoted
    Manager - Governance, Risks and controls

    Manager - Governance, Risks and controls

    DIAGEO India • Bengaluru, Karnataka, India
    Role - : Manager - Governance, Risks and controls.Financial Governance & Risk Management.Drive compliant, efficient, and effective management of financial assets and resources in alignment with busi...Show more
    Last updated: 17 days ago • Promoted
    SAP IDM & GRC Consultant

    SAP IDM & GRC Consultant

    Tata Consultancy Services • Bengaluru, Karnataka, India
    SAP GRC Implementation : Design, configure, and implement SAP GRC modules like Access Control, Process Control, and Risk Management. SAP IDM Implementation : Automate user provisioning and de-provisio...Show more
    Last updated: 15 days ago • Promoted
    SAP IDM & GRC

    SAP IDM & GRC

    Tata Consultancy Services • Bengaluru, Karnataka, India
    Experience Range : 08 To 10 years (mandatory).SAP GRC Implementation : Design, configure, and implement SAP GRC modules like Access Control, Process Control, and Risk Management.SAP IDM Implementati...Show more
    Last updated: 11 days ago • Promoted
    SAP IDM and GRC Consultant

    SAP IDM and GRC Consultant

    Tata Consultancy Services • Bengaluru, Karnataka, India
    Experience : 7 years to 11years.Interview Date : 27th Nov 2025 (Thursday).Interview Time : 10 : 00 AM to 4 : 00 PM.SAP GRC Implementation : Design, configure, and implement SAP GRC modules like Access Co...Show more
    Last updated: 10 days ago • Promoted
    Senior Manager, Enterprise & Operational Risk

    Senior Manager, Enterprise & Operational Risk

    Visa • Bengaluru, Karnataka, India
    Enterprise & Operational Risk Framework Implementation.Partner closely with the Head of Corporate Risk CEMEA to implement and embed the Enterprise Risk Management framework across the region.Drive ...Show more
    Last updated: 9 days ago • Promoted
    Vice President-Operational Risk

    Vice President-Operational Risk

    Mashreq • Bangalore, IN
    The incumbent will provide strategic leadership and oversight for the implementation and enhancement of the bank’s operational risk and resilience framework. This role is critical in ensuring the or...Show more
    Last updated: 1 day ago • Promoted
    Global Open Source Compliance Manager

    Global Open Source Compliance Manager

    Leading GCC • Bengaluru, Karnataka, India
    Operationalize and maintain OSS compliance framework, including policies, directives, and procedures.Manage and improve tooling for OSS scanning, license analysis, and Software Bill of Materials (S...Show more
    Last updated: 24 days ago • Promoted