Stand out for this role — generate a tailored resume and cover letter in about a minute.
Cashify is seeking an execution-focused governance professional to maintain information security, privacy, and compliance posture across ISO 27001/27701, DPDPA, ITGC, and third-party risk. The role drives audit readiness, non-conformity closure, and DPIA/contract reviews, while coordinating with government bodies and ESG reporting.
The ideal candidate has 5–6 years in infoSec/compliance, with relevant certifications and experience in R2v3 and ESG reporting.
Execution-focused governance role responsible for maintaining the organization's information security, privacy, and compliance posture across ISO 27001/27701, DPDPA, ITGC, third-party risk, and R2v3 requirements. The role owns documentation, audit readiness, and the timely closure of non-conformities, coordinates with internal and regulatory/government stakeholders, and supports contract/DPA reviews, awareness training, and ESG reporting.
ISO 27001 / 27701 documentation kept current and audit-ready
Timely closure of NCs, observations, and audit findings within SLA
Third-party risk assessments and due diligence completed within agreed TATR2v3 downstream due diligence and data-sanitization compliance maintained
Contract / DPA reviews turned around within SLA Information security and privacy awareness training coverage and completion ESG metrics and reports prepared accurately and submitted on time
Education: B.E./B.Tech/B.Sc. in CS/IT/ECE (essential); M.Tech/MCA/MBA-IT/M.Sc. Cybersecurity (preferred). Relevant certifications such as ISO 27001 Lead Auditor / Lead Implementer, ISO 27701, CISA, or a recognised privacy / data-protection certification (preferred).
Experience: 5-6 years with at least 3-4 years in a hands-on InfoSec/compliance role and worked on third-party risk assessments. Exposure to R2v3 and ESG reporting is an advantage.
Should have been part of at least one full ISO 27001 certification cycle.