Governance, Risk & Compliance (GRC) Manager — Internal Audit Lead

SymphonyAI

Bengaluru

On-site

INR 1,800,000 - 3,200,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

SymphonyAI is seeking a Governance, Risk & Compliance (GRC) Manager – Internal Audit Lead in Bengaluru to run the global internal audit program and maintain ISO certifications and SOC 2 attestation.

You will coordinate audits, manage findings, and support the design of AI governance initiatives while collaborating with engineering and operations teams to enhance control effectiveness.

Qualifications

  • 5+ years in GRC, internal audit, or information security compliance.
  • Certified Lead Auditor in ISO/IEC 27001; ISO 9001 or ISO 22301 preferred.
  • Strong understanding of AWS and Azure for technical audits.
  • Knowledge of AI/ML risks and AI governance concepts.
  • Experience using AI tools in audit processes.

Responsibilities

  • Own and execute the annual internal audit plan across ISO 9001, ISO/IEC 27001, ISO 22301, and SOC 2 (Type II) globally.
  • Perform risk-based internal audits of processes, controls, and cloud infrastructure.
  • Prepare audit reports and present findings to senior leadership.
  • Manage nonconformities, observations, and corrective actions.
  • Maintain and improve IMS documentation and conduct management reviews.
  • Coordinate with external auditors for audits and remediation.
  • Lead ISO 42001 AI governance certification efforts.

Skills

GRC
Internal Audit
Information Security

Education

ISO/IEC 27001 Lead Auditor
ISO 9001 Lead Auditor
ISO 22301 Lead Auditor

Tools

AWS
Azure
GRC Platforms

Job description

Introduction

Job Title:

Governance, Risk & Compliance (GRC) Manager — Internal Audit Lead

Department:

Financial Services

Overview:

SymphonyAI is poised at the forefront of digital transformation, establishing itself as the leading enterprise AI SaaS company for key growth industries such as retail, financial services, manufacturing, and more. Founded in 2017, SymphonyAI has expanded to serve over 2,000 enterprise customers worldwide, supported by a team of 2,500 professionals across more than 30 countries. Our Financial Services vertical is seeking a GRC Manager to lead our global internal audit program and maintain our established ISO certifications and SOC 2 attestation. This role is essential for ensuring compliance and driving continuous improvement across our integrated management systems.

About the Role:

As a GRC Manager at SymphonyAI Financial Services, you will run our internal audit program, ensuring the integrity of certifications including ISO 9001, ISO/IEC 27001, and ISO 22301, as well as SOC 2 attestations for AWS and Azure environments. You will spearhead efforts toward obtaining ISO/IEC 42001 certification for AI governance, while executing audits, managing findings, and preparing for external assessments. This visible role involves collaboration with various departments and providing critical guidance on control design and effectiveness.

Job Description
Key Responsibilities:
Internal Audit Programme:
  • Own and execute the annual internal audit plan covering ISO 9001, ISO/IEC 27001, ISO 22301, and SOC 2 (Type II) requirements globally.
  • Conduct risk-based internal audits of business processes, technical controls, and cloud infrastructure.
  • Produce actionable audit reports; present findings and recommendations to senior leadership.
  • Manage closure of nonconformities, observations, and corrective/preventive actions.
Management Systems (IMS):
  • Maintain and improve the integrated management system and associated documentation.
  • Facilitate management reviews, control self-assessments, and risk assessments.
  • Map and harmonize controls across frameworks to enhance audit efficiency.
  • Support the design and integration of the AI management system (AIMS).
External Audit & Certification Maintenance:
  • Coordinate with external auditors and certification bodies for audit scheduling and remediation.
  • Prepare stakeholders for audit interviews and maintain certification integrity.
  • Lead audit-readiness activities for ISO/IEC 42001 certification.
Cloud & Technical Compliance:
  • Assess cloud security and change management controls within AWS and Azure environments.
  • Collaborate with engineering teams to automate compliance checks.
  • Apply AI tools and automation to enhance audit processes and reporting.
  • Evaluate disaster recovery testing against ISO 22301 standards.
Risk, Governance & Advisory:
  • Support risk management processes, including third-party risk assessments.
  • Advise on control implications for new products and organizational changes.
  • Deliver training on management system requirements and audit expectations.
AI-First Ways of Working:
  • Use AI tools extensively in daily work activities to enhance audit efficiency.
  • Promote AI-enabled GRC processes across the team.
  • Remain updated on emerging AI capabilities and adopt approved tools.
Required Qualifications & Experience:
  • 5+ years' experience in GRC, internal audit, or information security compliance.
  • Certified Lead Auditor in ISO/IEC 27001; additional qualifications in ISO 9001 or ISO 22301 preferred.
  • In-depth knowledge of AWS and Azure services for credible technical audits.
  • Understanding of AI/ML technologies and the associated risks.
  • Demonstrated use of AI tools in audit processes.
Desirable:
  • Professional certifications like CISA, CISM, CRISC, CISSP.
  • Experience in regulated environments such as financial services.
  • Familiarity with GRC platforms and evidence automation tools.
  • Knowledge of ISO/IEC 42001 and other frameworks.
What Success Looks Like in Year One:
  • Successful delivery of the annual internal audit plan with zero certification lapses.
  • Completion of external audits with no major nonconformities.
  • Progress toward ISO/IEC 42001 certification with implementation in progress.
  • Improved CAPA closure rates and reduced audit finding recurrence.
Diversity & Inclusion Statement:

We are committed to building a diverse and inclusive team and encourage candidates from all backgrounds to apply.

About Us

SymphonyAI is building the leading enterprise AI SaaS company for digital transformation across the most critical and resilient growth industries, including retail, consumer packaged goods, financial crime prevention, manufacturing, media, and IT service management. Since its founding in 2017, SymphonyAI today serves 1500+ Enterprise customers globally and has grown to 3,000 talented leaders, data scientists, and other professionals across over 30 countries.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Governance, Risk & Compliance (GRC) Manager — Internal Audit Lead
Governance, Risk & Compliance (GRC) Manager — Internal Audit Lead

Symphony Industrial AI, Inc. • Bengaluru

On-site
INR 1,800,000 - 3,000,000
Manager - GRC
Manager - GRC

ZS • Pune District

Hybrid
INR 2,500,000 - 4,500,000
Technical Consultant – Professional Services (Financial Services)
Technical Consultant – Professional Services (Financial Services)

Symphony Industrial AI, Inc. • Bengaluru

On-site
INR 1,200,000 - 2,200,000
Technical Consultant – Professional Services (Financial Services)
Technical Consultant – Professional Services (Financial Services)

SymphonyAI • Bengaluru

On-site
INR 1,200,000 - 2,000,000
Lead - GRC and AI Governance
Lead - GRC and AI Governance

LeadSquared • Bengaluru

On-site
INR 1,800,000 - 2,600,000
Project Manager – Professional Services (Financial Services)
Project Manager – Professional Services (Financial Services)

SymphonyAI • Bengaluru

On-site
INR 1,800,000 - 2,600,000
GRC Lead / Security Compliance Lead
GRC Lead / Security Compliance Lead

Gnani Innovations Private Limited. • India

On-site
INR 350,000 - 600,000
Data Scientist – Financial Services
Data Scientist – Financial Services

SymphonyAI • Bengaluru

On-site
INR 1,800,000 - 3,200,000
Senior Project Manager – Professional Services (Financial Services)
Senior Project Manager – Professional Services (Financial Services)

SymphonyAI • Bengaluru

On-site
INR 3,800,000 - 7,000,000
Governance, Risk & Compliance (GRC) Manager
Governance, Risk & Compliance (GRC) Manager

Zenwork, Inc • Hyderabad

On-site
INR 1,200,000 - 1,800,000
Competitive compensation
Professional development support
Work in a fast-growing technology environment