GRC Lead - India

ION Group
India
Workplace: OnsiteFull timeFunction: Administration & Executive AssistanceExperience: 8-10 yearsEducation: bachelorsSkills: ["Stakeholder management","Subject matter expertise","Risk management culture","Remediation management","Executive communication"]

Own governance and policy management for the enterprise information security program, ensuring policies, standards, and controls are consistently implemented and adhered to. Lead and continuously improve the ISMS, driving ISO 27001 certification and recertification, coordinating audits, and managing remediation. Build and evolve the security risk framework and register, run client assurance and right-to-audit engagements, and oversee third-party security risk assessments across the organization.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
ION Group
ION Group
1 day ago

GRC Lead - India

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 1 hour agoStatus: Live

Job Summary

Own governance and policy management for the enterprise information security program, ensuring policies, standards, and controls are consistently implemented and adhered to. Lead and continuously improve the ISMS, driving ISO 27001 certification and recertification, coordinating audits, and managing remediation. Build and evolve the security risk framework and register, run client assurance and right-to-audit engagements, and oversee third-party security risk assessments across the organization.
Location: India
Workplace: Onsite
Employment Type: Full time
Job Function: Administration & Executive Assistance

Key Responsibilities

  • •Own the lifecycle management of information security policies, standards, frameworks, and procedures, including governance documentation and alignment to regulatory requirements.
  • •Establish and run governance processes to ensure policies, standards, and controls are consistently implemented; monitor adherence and drive remediation for non-compliance.
  • •Lead ongoing maintenance and continual improvement of the ISMS, including ISO 27001 certification and recertification and maintenance of audit-ready evidence and records.
  • •Own and continuously improve the enterprise information security risk management framework, including maintaining the Group Security Risk Register and guiding risk activities across business units.
  • •Lead client assurance and regulatory compliance activities, including responses to security questionnaires, due diligence and regulatory enquiries, and coordination of right-to-audit engagements and auditor touchpoints.

Key Requirements

  • •Minimum 8–10 years of experience in Governance, Risk & Compliance, Information Security, Audit, or Risk Management, preferably in financial services.
  • •Bachelor’s degree or equivalent related experience.
  • •Proven experience leading ISO 27001 certification and recertification programmes in large, complex organisations (ISO27001 Lead Implementer/Auditor).
  • •Demonstrable experience designing, implementing, and maintaining enterprise information security policies, standards, and control frameworks.
  • •Extensive experience managing customer assurance activities, security questionnaires, and Right-to-Audit engagements; able to present risk and compliance information to senior stakeholders.
Experience:8-10 yearsFinancial servicesFintechRisk managementGovernance, risk & complianceInformation security
Education:Bachelor's
Skills:Stakeholder managementSubject matter expertiseRisk management cultureRemediation managementExecutive communication
Certifications:ISO 27001 Lead ImplementerISO 27001 Auditor
Tech Stack:ISO 27001ISO 27002ISO 31000ISO 27005ISO 22301ISO 42001NIST Cybersecurity FrameworkSOC 1SOC 2GDPRDORANIS2

Company Brief

ION Group
Provides trading, workflow and risk management software and technology solutions for capital markets, treasury and asset management firms, delivering front-to-back systems, analytics and connectivity to financial institutions worldwide.
Industry: Enterprise Software
Company Size: Enterprise (1,001+ employees)
Growth: Established Company
Funding: Private Equity Backed
Headquarters: London, United Kingdom
WebsiteLinkedIn