Control Advisor

Notified

Bengaluru

Hybrid

INR 800,000 - 1,100,000

Full time

46 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Cab pickup/drop
Office in Bengaluru
Hybrid work schedule

Job summary

Notified is seeking an Information Security Compliance professional to lead audits and drive regulatory compliance initiatives in Bengaluru. You will coordinate frameworks like ISO 27001, SOC 2, GDPR, DORA, and FISMA, acting as SME on security and compliance matters.

Responsibilities include evidence collection, control testing, risk assessments, and remediation planning, with cross-functional collaboration to ensure ongoing compliance and risk management.

Qualifications

  • 3–4 years of experience in Information Security, Cybersecurity Compliance, Governance, Risk & Compliance (GRC), or IT Audit/Security Assurance.
  • Solid understanding of ISO 27001, SOC 2, NIST CSF, GDPR.
  • Experience with IAM, Vulnerability Management, Cloud Security (Azure/AWS/GCP).

Responsibilities

  • Lead and maintain information security compliance programs aligned with policies and regulatory requirements.
  • Coordinate audits and manage compliance frameworks (ISO 27001, SOC 2, GDPR, DORA, FISMA).
  • Plan audits, collect evidence, perform control testing, track findings and remediation.
  • Collaborate with business and tech teams to ensure audit success and ongoing compliance.

Skills

Audit management
GRC
Information security
Risk assessment

Education

Bachelor's degree

Tools

Drata
Archer
LogicGate
ServiceNow GRC

Job description

Support the organization’s information security compliance program by leading audits, regulatory compliance initiatives, control assessments, risk management activities, and evidence collection. Act as a trusted advisor to the business, promoting risk-based decision-making, compliance awareness, control maturity, and process improvement.

Key Responsibilities
Compliance & Audit Management
  • Lead and maintain information security compliance programs aligned with corporate policies and regulatory requirements.
  • Support and manage audits and compliance frameworks such as ISO 27001, SOC 2, GDPR, DORA, FISMA, and related standards.
  • Serve as a subject matter expert on security and compliance matters.
  • Plan and execute framework audits, collect and validate evidence, perform control testing, and assess procedural compliance.
  • Identify, document, and track audit findings, remediation plans, and control improvements.
  • Partner with business and technology teams to ensure successful audit outcomes and ongoing compliance.
  • Maintain knowledge of business systems, processes, regulations, and industry best practices.
  • Monitor emerging security, privacy, and regulatory risks affecting the business.
  • Conduct risk assessments and support risk register maintenance and treatment activities.
  • Evaluate and score risks related to audit findings, exceptions, and attestations.
  • Monitor, report, and escalation identified risks while driving remediation to acceptable risk levels.
  • Collaborate with stakeholders to ensure risk exposure remains within approved tolerances.
Security Governance & Reporting
  • Monitor compliance with security standards and controls.
  • Review security metrics, compliance KPIs, and governance reports.
  • Support security awareness and compliance initiatives.
  • Prepare compliance and risk reports for management and key stakeholders.
  • Respond to customer security questionnaires, due diligence requests, and regulatory inquiries.
  • Build strong relationships with internal and external stakeholders.
  • Provide timely issue resolution, recommendations, and process improvements.
  • Support projects from planning through completion, including reporting and recommendations.
Required Qualifications
Experience
  • 3–4 years of experience in:
  • Information Security
  • Cybersecurity Compliance
  • Governance, Risk & Compliance (GRC)
  • IT Audit or Security Assurance
Compliance & Risk Knowledge

Strong understanding of:

  • ISO 27001
  • SOC 2
  • NIST Cybersecurity Framework
  • GDPR
Technical Knowledge

Working knowledge of:

  • Identity & Access Management (IAM)
  • Vulnerability Management
  • Cloud Security fundamentals (Azure, AWS, GCP)
  • Secure Change Management
  • Data Protection & Encryption
Core Skills
  • Audit coordination and evidence management
  • Risk assessment and control testing
  • Policy and procedure reviews
  • Compliance reporting and documentation
  • Stakeholder management and communication
Tools

Experience with:

  • Microsoft 365
  • Word and Excel (reporting and analysis)
  • SharePoint / OneDrive
  • GRC platforms such as Drata, Archer, LogicGate, or ServiceNow GRC
Education

Bachelor’s degree in information security, Computer Science, IT, Risk Management, or a related field.

Preferred Qualifications
Certifications
  • ISO 27001 Internal Auditor or Lead Auditor
  • Security+
  • Certified in Cybersecurity (CC)
  • CISA
Additional Knowledge
  • DORA, CCPA, NYDFS
  • Azure Defender / Security Center
  • AWS Security Services
  • Compliance metrics and KPI reporting
Soft Skills
  • Executive presentations
  • Project management
  • Process improvement
  • Training and coaching
  • Cross-functional collaboration
Location

This role will be based out of The Leela Office located on the 4th Floor, Airport Road, Kodihalli, Bangalore- 560008.

Work Timing

1 pm to 10 pm IST. Cab Pick-up and drop available.

Hybrid

Our expectation at this time, is that you would work from our office on Tuesdays, Wednesdays, Thursdays with flexibility to work from home on Mondays and Fridays.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Compliance and Risk Management Advisor
Information Security Compliance and Risk Management Advisor

Equiniti India Pvt Ltd • Bengaluru

Hybrid
INR 1,200,000 - 1,800,000
IT Compliance Lead
IT Compliance Lead

Mobileum • Bengaluru

Hybrid
INR 2,500,000 - 4,000,000
IT Associate
IT Associate

MS Clinical Research • Bengaluru

On-site
INR 1,500,000 - 2,100,000
Senior Associate, Security Governance, Risk & Compliance
Senior Associate, Security Governance, Risk & Compliance

Athena Executive Search And Consulting • Gurugram District, Bengaluru

Hybrid
INR 1,500,000 - 2,500,000
Medical insurance
Gratuity
Flexible work models
Senior / Principal GRC Analyst
Senior / Principal GRC Analyst

Altera • Bengaluru

On-site
INR 3,000,000 - 4,500,000
Senior / Principal GRC Analyst
Senior / Principal GRC Analyst

844 Altera Semiconductor Technology India Pvt. Ltd. • Bengaluru

On-site
INR 2,000,000 - 3,000,000
IN_Associate_SOC - SIEM_Cyber in Emerging Technology_Advisory_Mumbai
IN_Associate_SOC - SIEM_Cyber in Emerging Technology_Advisory_Mumbai

PwC India • Mumbai

On-site
INR 900,000 - 1,300,000
Security Risk and Regulatory Tech Compliance
Security Risk and Regulatory Tech Compliance

KreditBee • Bengaluru

On-site
INR 1,000,000 - 1,500,000
Senior Information Security Analyst-(Risk and Regulatory Tech Complainance)
Senior Information Security Analyst-(Risk and Regulatory Tech Complainance)

KreditBee • Bengaluru

On-site
INR 800,000 - 1,500,000
Governance, Risk and Compliance (GRC) Specialist
Governance, Risk and Compliance (GRC) Specialist

Career Guideline • Pune District

On-site
INR 1,500,000 - 2,500,000