Manager ? Information Security and Data Privacy

Tiger Analytics

Chennai District

Hybrid

INR 3,500,000 - 6,500,000

Full time

8 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Tiger Analytics seeks an experienced Information Security & Data Privacy leader to head GRC initiatives and strengthen our security posture in India. The role oversees security governance programs, compliance activities, privacy controls, risk assessments, and audits while ensuring regulatory adherence.

The candidate will drive ISO 27001/27701, SOC 2 Type II, GDPR, HIPAA efforts, manage incidents, and mentor teams handling security and privacy programs across the organization.

Qualifications

  • 13+ years of experience in Information Security, Cybersecurity, Privacy, or GRC functions.
  • Experience with ISO 27001, ISO 27701, SOC 2, GDPR, HIPAA and audit management.
  • Policy development, compliance management, and risk assessments expertise.
  • Experience evaluating security/privacy risks related to AI/LLM technologies.
  • ISO 27001 Lead Implementer/Lead Auditor, CISSP, CISM, CIPM, CIPT or equivalent certifications preferred.

Responsibilities

  • Develop, implement, and maintain information security and data privacy policies, standards, and procedures.
  • Drive compliance initiatives across ISO 27001, ISO 27701, SOC 2 Type II, GDPR, and HIPAA.
  • Conduct risk assessments, compliance reviews, and remediation activities across business functions.
  • Review security and privacy requirements in DPAs with customers and vendors.
  • Lead internal and external audits and coordinate successful audit completion.
  • Manage security incidents, investigations, and remediation efforts.
  • Partner with stakeholders to identify, evaluate, and mitigate information security risks.
  • Perform governance and risk assessments for AI/LLMs and emerging tech.
  • Act as liaison with customers, auditors, regulators, and external stakeholders.
  • Lead and mentor teams responsible for information security and privacy programs.

Skills

Information Security Governance
Data Privacy & Protection
GRC
ISO 27001
ISO 27701
SOC 2 Type II
GDPR
HIPAA
Risk Assessment
Policy Development
Vendor Risk Management
DPA Review
Audits & Remediation
AI/LLM Risk Assessments
Stakeholder Management
Team Leadership
Incident Response
Regulatory Compliance
Audit Management
Audit Coordination

Education

Bachelor's degree in Computer Science, Information Systems, or a related discipline

Job description

We are seeking an experienced Information Security & Data Privacy professional to lead Governance, Risk, and Compliance (GRC)

initiatives and strengthen our organization's security and privacy posture. The ideal candidate will be responsible for managing

security governance programs, compliance activities, privacy controls, risk assessments, and audit engagements while ensuring

adherence to global regulatory requirements.


Key Responsibilities:
  • Develop, implement, and maintain information security and data privacy policies, standards, and procedures.
  • Drive compliance initiatives across frameworks including ISO 27001, ISO 27701, SOC 2 Type II, GDPR, and HIPAA.
  • Conduct risk assessments, compliance reviews, and remediation activities across business functions.
  • Review security and privacy requirements in customer, vendor, and Data Processing Agreements (DPAs).
  • Lead internal and external audits and coordinate successful audit completion.
  • Manage security incidents, investigations, and remediation efforts.
  • Partner with business stakeholders to identify, evaluate, and mitigate information security risks.
  • Perform governance and risk assessments for emerging technologies, including AI and Large Language Models (LLMs).
  • Act as a key liaison with customers, auditors, regulators, and external stakeholders.
  • Lead and mentor teams responsible for information security and privacy compliance programs.

Required Qualifications:
  • Bachelor's degree in Computer Science, Information Systems, or a related discipline.
  • 13+ years of experience in Information Security, Cybersecurity, Privacy, or GRC functions.
  • Strong experience with ISO 27001, ISO 27701, SOC 2, GDPR, HIPAA, and audit management.
  • Proven expertise in policy development, compliance management, and risk assessments.
  • Experience evaluating security and privacy risks related to AI/LLM technologies.
  • Professional certifications such as ISO 27001 Lead Implementer/Lead Auditor, CISSP, CISM, CIPM, CIPT, or equivalent
  • are preferred.

Skills & Expertise
  • Information Security Governance
  • Data Privacy & Protection
  • Governance, Risk & Compliance (GRC)
  • ISO 27001
  • ISO 27701
  • SOC 2 Type II
  • GDPR
  • HIPAA
  • Risk Assessment & Risk Management
  • Security Audits & Compliance Reviews
  • Policy Development & Governance
  • Third-Party Risk Management
  • Data Processing Agreements (DPA)
  • Vendor Security Reviews
  • Incident Response & Remediation
  • Enterprise Security Controls
  • Privacy Compliance Programs
  • Regulatory Compliance
  • AI/LLM Risk Assessments
  • ISO 42001 (Preferred)
  • Stakeholder Management
  • Security Awareness & Communication
  • Team Leadership
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Security and Data Privacy - Lead
Information Security and Data Privacy - Lead

Tiger Analytics • Chennai District

On-site
INR 3,000,000 - 5,200,000
Information Security Engineer - GRC
Information Security Engineer - GRC

EDGE Executive Search • Gurugram District

On-site
INR 900,000 - 1,500,000
Director - Data Privacy & Information Security
Director - Data Privacy & Information Security

Indegene • Bengaluru

On-site
INR 2,000,000 - 3,000,000
Comprehensive health insurance
Retirement benefits
Professional development opportunities
Data Privacy Specialist-Cyber Security
Data Privacy Specialist-Cyber Security

Ubique Systems • Mumbai

On-site
INR 1,400,000 - 2,100,000
Lead Information Security and Data Privacy US
Lead Information Security and Data Privacy US

Tiger Analytics • Chennai District

On-site
INR 3,000,000 - 6,000,000
Lead - Information Security and Data Privacy (India/US hours)
Lead - Information Security and Data Privacy (India/US hours)

Tiger Analytics • Chennai District

On-site
INR 4,000,000 - 7,000,000
Vice President - Global Head of Information Security
Vice President - Global Head of Information Security

RateGain • India

On-site
INR 2,500,000 - 3,500,000
GRC Analyst
GRC Analyst

Exotel • Bengaluru

On-site
INR 800,000 - 1,200,000
GRC Lead
GRC Lead

Baldor Technologies • Mumbai

On-site
INR 300,000 - 600,000
Lead InfoSec Audit and GRC
Lead InfoSec Audit and GRC

InApp • Ernakulam

Hybrid
INR 1,800,000 - 2,800,000