Associate Manager - Information Security and Compliance

Finnable

Bengaluru

On-site

INR 800,000 - 1,200,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A rapidly growing Fintech company in Bengaluru is looking for an Associate Manager in Information Security and Compliance. This mid-senior level role involves supporting security audit readiness, managing cybersecurity and regulatory audits, and ensuring compliance with RBI guidelines. Candidates should have 2–4 years of relevant experience and a strong understanding of cybersecurity, GRC roles, and audit management. Familiarity with security frameworks and cloud security is advantageous. Full-time position with opportunities for professional growth.

Qualifications

  • 2–4 years of experience in Information security, GRC roles within NBFC / Fintech / BFSI.
  • Must have handled cybersecurity or regulatory audits and IT risk management.
  • Strong documentation skills and experience with GRC/security automation tools preferred.

Responsibilities

  • Manage and support cybersecurity and regulatory audits.
  • Maintain audit readiness aligned to RBI IT Governance & Cyber Security Framework.
  • Coordinate user access reviews and privileged access controls.
  • Track and close vulnerability management findings as per timelines.

Skills

Information security experience
Cybersecurity audit handling
Knowledge of security frameworks (ISO, SOC 2, NIST, GDPR)
IAM & access controls
Vulnerability management & VAPT
Cloud security fundamentals
Documentation and audit skills
Experience with GRC / Security tools
Security certifications (CISA, CISM, ISO 27001 LA)
Organizational and time management skills

Job description

Associate Manager - Information Security and Compliance

Finnable is a rapidly growing financial technology start‑up that provides hassle‑free personal loans to salaried professionals, aiming to make loans accessible in less than one minute. Founded by experienced ex‑bankers and entrepreneurs Nitin Gupta, Amit Arora, and Viraj Tyagi, Finnable leverages deep expertise in financial technology to enhance financial well‑being. The company is driven by a mission to reduce financial inequality through innovative solutions, helping millions of salaried individuals lead more stress‑free and productive lives. Finnable stands out in the Fintech sector by transforming the lending experience through technological advancements and employer support.

We are looking for an Associate Manager — InfoSec & Compliance to support security audit readiness, driving Infosec operations and security governance.

This is a managerial, coordination‑heavy role, ideal for someone who understands information security and compliance deeply but prefers driving execution, audits, and stakeholder alignment, and also assists the team in liaisoning and setting up core processes across infosec verticals.

You will work closely with the Head of Information Security and his team to manage cybersecurity and regulatory audit readiness in line with RBI IT Framework, outsourcing guidelines, prepare evidence packs, coordinate VAPT and remediation, run access reviews, maintain software asset inventories, and liaise with engineering and cloud teams on security controls.

Key responsibilities
  • Manage and support cybersecurity and regulatory audits, internal IS audits, TPRMs, vendor due diligence / VRR bank side onsite audits ensuring timely and successful completion of all the audits
  • Maintain audit readiness aligned to RBI IT Governance & Cyber Security Framework, ITGRC, IT outsourcing and other RBI Master Directions
  • Coordinate user access reviews, privileged access controls, and attestations
  • Perform baseline security assessments, identify gaps and risk and facilitate remediation
  • Track and close vulnerability management findings as per regulatory timelines
  • Support incident response reporting and BCP/DR drills, table top exercises.
  • Maintain software and third‑party asset inventories for regulatory visibility
  • Assist in vendor due diligence and outsourcing risk assessments and TPRMs
  • Coordinate with engineering and cloud teams to ensure secure configurations and logging
  • Identify any deviations from the security policies, procedures, SOPs and report critical non‑conformances to the management, and work towards remediation
Skills & Experience
  • 2–4 years experience in Information security, GRC roles within NBFC / Fintech / BFSI
  • Experience of handling cybersecurity / regulatory audits, IT risk management or information security domains, VAPT security reviews is a must
  • Fundamental understanding of audit disciplines like audit concepts (e.g. pre‑/post‑implementation audits), security controls, auditing project management and well versed with security frameworks like ISO, SOC 2, NIST, GDPR
  • IAM & access controls
  • Vulnerability management & VAPT
  • Cloud security fundamentals (AWS preferred)
  • Strong documentation and audit augmentation skills
  • Experience with GRC / Security and compliance automation tools preferred
  • Security certifications like CISA / CISM / ISO 27001 LA preferred
  • Strong organizational, time management, decision making, and problem‑solving skills
Seniority level
  • Mid‑Senior level
Employment type
  • Full‑time
Job function
  • Information Technology
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Head – Information System, Audit and Compliance
Head – Information System, Audit and Compliance

Muthoot Fincorp Ltd. • Thiruvananthapuram

On-site
INR 4,000,000 - 7,000,000
Infosec Analyst
Infosec Analyst

super.money • Bengaluru

On-site
INR 900,000 - 1,500,000
Competitive compensation
Shape GRC for a top UPI company in I
Information Technology Compliance Manager
Information Technology Compliance Manager

HireGenie | Finance Recruitment Expert • Chennai

On-site
INR 600,000 - 800,000
Senior Security GRC Analyst
Senior Security GRC Analyst

Kite • Gurugram District

On-site
INR 1,500,000 - 2,300,000
Assistant Manager - Cyber Security - IT-GRC
Assistant Manager - Cyber Security - IT-GRC

BDO India • Bengaluru Urban

On-site
INR 1,200,000 - 1,800,000
IT Risk & Compliance Manager
IT Risk & Compliance Manager

TVS Credit Services Ltd • Chennai District

On-site
INR 1,500,000 - 2,000,000
Senior Manager - Information Security (GRC)
Senior Manager - Information Security (GRC)

Sampoorna Consultants • Mumbai

On-site
INR 2,500,000 - 4,500,000
Lead GRC Compliance RBI Audit
Lead GRC Compliance RBI Audit

3i Infotech • Navi Mumbai

On-site
INR 2,500,000 - 4,000,000
GRC Analyst – Information Security & Compliance
GRC Analyst – Information Security & Compliance

WeRize • Bengaluru

On-site
INR 800,000 - 1,200,000
Senior Manager - Information Security And Governance
Senior Manager - Information Security And Governance

HDB Financial Services Ltd. • Hyderabad

On-site
INR 1,000,000 - 1,500,000