🔔 FCM Loaded

Lead – Information Security (GRC)

Cysigil

8 - 10 years

Bengaluru

Posted: 17/12/2025

Getting a referral is 5x more effective than applying directly

Job Description

Role Overview

We are seeking an experienced Information Security Consultant GRC to strengthen our information security posture and ensure compliance with regulatory and client requirements. The role involves handling client RFPs and audits, collaborating with cross-functional teams, and conducting ITGC control testing to maintain security assurance and trust with clients.

Key Responsibilities

Lead and manage client RFPs, security due diligence, and vendor assessments, ensuring accurate and timely responses.

Coordinate and support client security audits, including evidence collection, remediation tracking, and closure.

Collaborate with Sales, Infrastructure, Engineering, and Operations teams to align client commitments with internal controls

Candidate should have experience in responding to customer RFQs/RFPs.

Perform IT General Controls (ITGC) testing, risk assessments, and gap analysis across systems and processes.

Maintain and update ISMS policies, SOPs, and compliance documentation in line with ISO 27001, SOC 2, RBI, and DPDP requirements.

Track, monitor, and report GRC metrics, risks, and control effectiveness to leadership.

Support internal and external audits, ensuring timely remediation of identified issues.

Drive awareness and training programs to strengthen compliance culture across teams.

Key Skills & Competencies

Strong understanding of ITGC controls, risk management, and compliance frameworks (ISO 27001, SOC 2, RBI, GDPR/DPDP).

Experience handling client-facing RFPs, due diligence, and security audits.

Ability to collaborate effectively with Sales, Infra, and technical teams.

Excellent documentation, stakeholder communication, and presentation skills.

Strong analytical mindset with the ability to identify risks and recommend mitigation.

Qualifications & Experience

Bachelors degree in Computer Science, Information Security, or related field.

48 years of experience in Information Security GRC or related roles.

Hands-on knowledge of ITGC testing and audit processes.

Relevant certifications preferred: CISA, ISO 27001 LA/LI, CISSP (preferred), or equivalent.

Immediate joiners requiredcandidates able to join Cysigil within 15 days are preferred.

Services you might be interested in

Improve Your Resume Today

Boost your chances with professional resume services!

Get expert-reviewed, ATS-optimized resumes tailored for your experience level. Start your journey now.