Talent.com
Senior Manager - Information Security (Governance, Risk and Compliance)

Senior Manager - Information Security (Governance, Risk and Compliance)

NaviKarnataka, India
1 day ago
Job description

About the Team

At Navi, the InfoSec team safeguards our digital ecosystem - ensuring the confidentiality, integrity, and availability of critical systems and data. We lead the charge on cyber risk management, regulatory compliance, and data protection, while championing a security-first culture across all teams.

Our mission : Protect what powers Navi - securely, compliantly, and confidently.

About the Role

Navi is looking for an Associate Manager II – Information Security to pilot key aspects of its group-wide information security and regulatory compliance program. This role involves interpreting and implementing information security and technology risks mandates from regulators such as RBI, IRDAI, SEBI, and NPCI, ensuring continuous tech compliance across all business units. You will collaborate closely with engineering, infrastructure, legal, and IT teams to establish and maintain robust security policies, frameworks, and controls. Additionally, the role includes conducting risk assessments, enabling audit readiness, managing third-party / vendor security audits, and driving awareness initiatives across the organization, while also representing Navi in internal and external forums when needed.

What We Expect From You

  • As Navi operates in the regulatory space, this role requires interpreting and helping implement regulations related to cyber security by Reserve Bank of India (RBI), IRDAI and SEBI, as well as any other applicable regulatory guidance related to the service offerings issued by relevant institutions.
  • Further to the point above, ensure on-going monitoring and tech-compliance with existing regulatory expectations across these dimensions
  • Lead the Information security - GRC practice for Navi group level.
  • Ensuring that information security principles, policies, frameworks, standards and controls are defined, implemented and managed effectively.
  • Partner and collaborate extensively with cross-functional teams, such as Engineering, Infrastructure, IT, Legal, and help minimize information security risks
  • Architect and deliberate on the solutions that are compliant with relevant regulatory cybersecurity requirements
  • Conduct and review results of Technology Risk Assessment, recommending mitigation strategies to bring the Risk to appropriate levels Nav is looking for a Senior Manager Information Security (GRC) to be part of the information security
  • Ensure readiness of the organization for internal and external audits by keeping all documents, evidences, ready
  • If required, represent Navi in Board and Board Committee meetings, as well as in discussions with regulators
  • Conduct Security awareness programs, train personnel on data security & privacy related processes and responsibilities
  • Review / conduct Third Party Risk Assessments & Vendor assessments before onboarding
  • Review security solutions / controls implemented by Tech / Engineering teams, controls at data center,
  • cyber / information security incidents, IT BCP and DR drills, cloud security controls
  • Identify and define Security KPIs including weekly, monthly reports and update Security Dashboards

Must Haves

  • Minimum 7 + years of experience working in information security GRC
  • Prior experience in the Fintech / Startup industry and knowledge of one of the regulatory compliances like PCI DSS, RBI Master Directives, IRDA, SEBI cyber security guideline is preferred.
  • Hands-on approach in solving complex security problems
  • Experience with Information Security & Risk Management frameworks like ISO27001, NIST SP 800-37, etc Cyber Kill Chain, MITRE ATT&CK, or other relevant frameworks
  • Working knowledge of Cloud environments like AWS, GCP, Oracle cloud is beneficial
  • Exposure to Agile methodologies, DevOps, Cloud technologies is beneficial
  • Soft Skills

  • Ability to multitask and meet deadlines, and to prioritize in a highly dynamic work environment
  • Ability to balance risk, potential impact, resourcing, business drivers, and timelines
  • Excellent verbal and written communication skills
  • Strong Product Thinking
  • Strong problem solving
  • Business acumen
  • Technology grounding
  • Strategic thinking
  • Strong written and verbal communication skills with a talent for articulating.
  • Inside Navi

    We are shaping the future of financial services for a billion Indians through products that are simple, accessible, and affordable. From Personal & Home Loans to UPI, Insurance, Mutual Funds, and Gold - we’re building tech-first solutions that work at scale, with a strong customer-first approach.

    Founded by Sachin Bansal & Ankit Agarwal in 2018, we are one of India’s fastest-growing financial services organisations. But we’re just getting started!

    Our Culture

    The Navi DNA

    Ambition. Perseverance. Self-awareness. Ownership. Integrity.

    We’re looking for people who dream big when it comes to innovation. At Navi, you’ll be empowered with the right mechanisms to work in a dynamic team that builds and improves innovative solutions. If you’re driven to deliver real value to customers, no matter the challenge, this is the place for you.

    We chase excellence by uplifting each other and that starts with every one of us.

    Why You'll Thrive at Navi

    At Navi, it’s about how you think, build, and grow. You’ll thrive here if :

  • You’re impact-driven : You take ownership, build boldly, and care about making a real difference.
  • You strive for excellence : Good isn’t good enough. You bring focus, precision, and a passion for quality.
  • You embrace change : You adapt quickly, move fast, and always put the customer first.
  • Create a job alert for this search

    Manager Information Security • Karnataka, India

    Related jobs
    • Promoted
    SOC Lead

    SOC Lead

    ITC InfotechKarnataka, India
    Lead and manage day-to-day SOC operations to ensure proactive detection and response to cyber threats.Drive operational excellence, process maturity, and automation across SOC functions.Coordinate ...Show moreLast updated: 1 day ago
    • Promoted
    Executive - Technology Risk (1LOD)

    Executive - Technology Risk (1LOD)

    Mancer Consulting ServicesKarnataka, India
    Risk Identification & Assessment.Control Design & Implementation.Policy & Regulatory Compliance.Show moreLast updated: 1 day ago
    • Promoted
    Senior Information Security Platform Engineer, ITC

    Senior Information Security Platform Engineer, ITC

    NIKEKarnataka, Karnataka, India
    You’ll be a key member of the SecureCode team within the Application Security Consulting group, collaborating with Corporate Information Security and cross-functional teams across Nike.In this posi...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Manager

    Senior Manager

    PwC Acceleration Center IndiaKarnataka, India
    A career in our Cyber Data Tech Risk – Enterprise Tech Solutions practice will provide you with the opportunity to help our clients build trust and confidence in their digital and technology-enable...Show moreLast updated: 1 day ago
    • Promoted
    Security & Compliance Specialist

    Security & Compliance Specialist

    [24]7.aiKarnataka, India
    Position : Security & Compliance Specialist.Reports to : Manager InfoSec, GRC.Department : Information Security (InfoSec). This role oversee the development, evaluation and implementation of governanc...Show moreLast updated: 1 day ago
    • Promoted
    Cyber Security Senior Analyst - Cloud security

    Cyber Security Senior Analyst - Cloud security

    Societe Generale Global Solution CentreKarnataka, India
    We are seeking a skilled Cloud Security Senior Analyst to join our team.The ideal candidate will have extensive experience in cloud security, particularly with AWS. This role involves ensuring the s...Show moreLast updated: 23 hours ago
    • Promoted
    Senior Account Manager

    Senior Account Manager

    VR PATIL VIVIDH VIDYUTH NIRMAN PRIVATE LIMITEDKoppal, Karnataka, India
    VR Patil Vividh Vidyuth Nirman Pvt.Electrical EPC | Power Infrastructure | Substations | Transmission Lines.Founded in 1985, VR Patil Vividh Vidyuth Nirman Pvt. Electrical EPC and Civil contracting ...Show moreLast updated: 2 days ago
    • Promoted
    Governance, Risk, and Compliance (GRC) Manager

    Governance, Risk, and Compliance (GRC) Manager

    DigileKarnataka, India
    We are seeking a highly experienced.Governance, Risk, and Compliance (GRC) Manager.The ideal candidate will have deep expertise in. HITRUST CSF, ISO 27001 : 2022, SOC 2 Type II, NIST 800-53.Financial ...Show moreLast updated: 1 day ago
    • Promoted
    Senior Project Manager - IT Divestiture Projects

    Senior Project Manager - IT Divestiture Projects

    MakonisKarnataka, India
    We are seeking a highly skilled Senior Project Manager to lead complex IT divestiture initiatives, ensuring seamless separation of technology systems, infrastructure, and data while maintaining sec...Show moreLast updated: 1 day ago
    • Promoted
    Senior Information Security Engineer, Insider Threat,ITC

    Senior Information Security Engineer, Insider Threat,ITC

    NIKEKarnataka, Karnataka, India
    You will be part of Corporate Information Security (CIS), reporting into the Data Protection Engineering team under Insider Threat. You will work closely with other CIS, Technical Operations, and De...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Compliance Manager

    Senior Compliance Manager

    Kristal.AIKarnataka, India
    Provide subject matter compliance advisory across global businesses on cross-border and region-specific requirements and restrictions. Conduct AML due diligence and respond to AML / KYC inquiries from...Show moreLast updated: 1 day ago
    • Promoted
    Director-Platform Product Management (Security and Operations)

    Director-Platform Product Management (Security and Operations)

    FICOKarnataka, India
    As the Director of Engineering Product Management – Security and Operations, you will lead the development and execution of product roadmaps for FICO’s horizontal platform capabilities.This role is...Show moreLast updated: 1 day ago
    • Promoted
    Senior Information Security Engineer, ITC

    Senior Information Security Engineer, ITC

    NIKEKarnataka, Karnataka, India
    Understands and is experienced in our realm of capabilities and toolsets that we leverage including Endpoint Protection, Web proxy security, email security, IDS / IPS, WAF, PKI and Advanced Threat Pr...Show moreLast updated: 30+ days ago
    • Promoted
    Lead Information Security Platform Engineer, ITC

    Lead Information Security Platform Engineer, ITC

    NIKEKarnataka, Karnataka, India
    It is a place to explore potential, obliterate boundaries and push out the edges of what can be.The company looks for people who can grow, think, dream and create. Its culture thrives by embracing d...Show moreLast updated: 29 days ago
    • Promoted
    Information Security Lead - Managed Security Services

    Information Security Lead - Managed Security Services

    TerralogicKarnataka, India
    Security Assessments (Web, API, Mobile, Infra, Cloud) | Customer / Delivery Support.We are seeking an experienced Information Security Lead to drive and oversee end-to-end. The role involves hands-on ...Show moreLast updated: 1 day ago
    • Promoted
    Manager - Senior Cyber Analyst [T500-21251]

    Manager - Senior Cyber Analyst [T500-21251]

    MUFGKarnataka, India
    Japan’s premier bank, with a global network spanning in more than 40 markets.Outside of Japan, the bank offers an extensive scope of commercial and investment banking products and services to busin...Show moreLast updated: 1 day ago
    • Promoted
    Manager Enterprise Risk

    Manager Enterprise Risk

    Ujjivan Small Finance BankKarnataka, India
    These responsibilities are representative and the role holder is also responsible for any other job assigned by the superior authorities from time to time. This section in not intended to be an exha...Show moreLast updated: 1 day ago
    • Promoted
    Information Technology Infrastructure Specialist

    Information Technology Infrastructure Specialist

    TRUGlobalKarnataka, India
    IT Infra Technical Delivery SME.YOE in hands-on Technical Delivery.Lead and manage end-to-end delivery of IT infrastructure and operations projects across End User Computing, Network, Windows, Linu...Show moreLast updated: 1 day ago