Senior/Lead - Infosec

usemultiplier.com

Bengaluru

On-site

INR 900,000 - 1,600,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Multiplier is building a dedicated compliance function that operates inside the cloud environment rather than on paper. You will own global frameworks including ISO 27001, SOC 2, GDPR, and DPDPA, and supervise IT general controls (ITGC), IT application controls (ITAC), and statutory audits across EOR and advisory services.

You will personally log into AWS and GCP to validate controls and drive continuous GRC automation across the platform.

Qualifications

  • Global compliance frameworks including ISO 27001, SOC 2, GDPR, and DPDPA
  • ITGC/ITAC audits across EOR and advisory services
  • Hands-on validation of controls in cloud environments (AWS, GCP)

Responsibilities

  • Own compliance inside the cloud environment and drive GRC automation
  • Oversee cybersecurity governance, strategy and operational procedures
  • Lead IT statutory audits and internal controls
  • Ensure adherence to security frameworks (SOC 2, ISO 27001, GDPR, NIST)
  • Manage third-party risk assessments and vendor security monitoring
  • Drive risk intelligence and anomaly detection using AI-enabled controls
  • Partner with executive and audit teams to align business, finance and security goals
  • Define and implement governance, risk and compliance programs across global entities

Skills

GRC automation
SOC 2/GDPR/ISO 27001
Risk management
Data privacy
Third-Party risk
Cloud security
Audit readiness
AI literacy

Education

ISO 27001
CISA/CISM
Privacy Certifications

Tools

AWS
GCP
DLP
IDS-IPS
Network security tools

Job description

About us:

The global hiring revolution is shaping a future where talent can thrive everywhere, driving innovation and progress on a global scale.

Multiplier is at the forefront of this change. By removing barriers and simplifying global hiring, we’re creating a level playing field where businesses and individuals – (like you) – can compete, grow, and succeed, regardless of geography.

Multiplier empowers companies to hire, onboard, manage, and pay talent in 150+ countries, quickly and compliantly. Our mission is to build a world without limits, where ambitious businesses can look beyond borders to build their global dream teams. Our unified employment platform, complete with world-class EOR, AOR and Global Payroll products, means it has never been easier to seize the global hiring opportunity.

We’re backed by some of the best in the business, (Sequoia, DST, and Tiger Global), are led by industry-leading experts, scaling fast, and seeking brilliant like-minded enthusiasts to join our team. The future is borderless. Let’s build it together.

What’s the opportunity?

Multiplier is building a function that has never existed here before: someone who owns compliance and personally works inside the cloud environment that compliance governs, rather than splitting the two across separate people. This role covers global compliance frameworks including ISO 27001, SOC 2, GDPR, and DPDPA, alongside internal financial controls and statutory audits (ITGC/ITAC) across EOR and advisory. You will drive GRC automation and continuous compliance, and you will also be the one who logs into AWS and GCP to validate controls yourself, not someone who hands that work to an engineering team.

A key focus area will also include leveraging AI-driven controls and analytics to enhance control and process violation detection, compliance monitoring, and risk intelligence across the enterprise.

What you'll do:
  • Strong interpersonal and stakeholder management skills to collaborate with executive and audit teams to align business, finance, and security goals
  • Develop and execute cybersecurity governance, strategy, and operational procedures for group companies.
  • Oversee technical risk, compliance, and data security, especially for applicable compliances
  • Strategize readiness and execute IT statutory audits, including Internal Financial Controls (IFC), IT General Controls (ITGC), and IT Application Controls (ITAC).
  • Ensure adherance to Cybersecurity Framework, SOC 2, GDPR, ISO 27001, NIST, CIS, and DPDPA, among others.
  • Drive all GRC initiatives for information security and data privacy in the enterprise on the cloud and on-premises.
  • Drive continuous automation and improvement for audit readiness, technical documentation, and regulatory response
  • Conduct comprehensive Third Party Risk Assessments focused on information security and privacy risks, including vendor security posture evaluation, contractual security obligations, and ongoing monitoring of third-party controls
  • Performed SAR, Data Localisation and Tokenisation audits.
  • Performed user entitlement review, ITSM audits.
  • Define strategies and lead initiatives to automate Governance, Risk, and Compliance (GRC) processes, driving continuous compliance across all regulatory and statutory mandates
  • Establish and oversee AI security frameworks, ensuring compliance with security and data privacy requirements.
  • Implementation of SOC 1 and SOC 2 audit processes, including key dependencies and limitations regarding reliance on external SOC reports for control assurance
Core Competencies / Must Haves
  • Genuine hands-on comfort working inside cloud environments, not just reviewing documentation about them
  • Compliance as a core identity, not a side function to a technical specialty or a checklist exercise
  • GRC automation and continuous compliance
  • SOC 2, GDPR, and ISO 27001 enablement
  • Risk management and audit readiness
  • Data privacy, data governance, and data protection
  • Third Party Risk Assessment
  • Execution rigor and strategic planning
Qualifications:
  • ISO 27001, CISA/CISM, Privacy Certifications
  • Working on cloud environment (AWS, GCP etc)
  • Hands on experience in Enterprise security tool like DLP, IDS-IPS, Network security tools
  • Demonstrated Ai literacy in understanding data processing, security, and responsible Ai use.

Equal Employment Opportunity:

Multiplier is an equal opportunity employer: we value diversity. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Compliance Officer
Senior Compliance Officer

Multiplier Technologies Private Limited • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Senior Manager IT & Security
Senior Manager IT & Security

usemultiplier.com • Bengaluru

Hybrid
INR 4,200,000 - 6,000,000
Flexible vacation
Flexible work times
Equipment you need to do your job
+2
Principal Product Manager - Compliance Platform
Principal Product Manager - Compliance Platform

usemultiplier.com • Bengaluru, Pune District, Chennai District, Delhi

On-site
INR 4,000,000 - 8,000,000
Flexible vacation
Flexible work times
Work from anywhere
+3
Governance, Risk, and Compliance Engineer
Governance, Risk, and Compliance Engineer

Herman Miller • Bengaluru

On-site
INR 1,500,000 - 2,300,000
Sr. Security Compliance Engineer
Sr. Security Compliance Engineer

Pratiti Technologies Pvt. Ltd. • Pune District

On-site
INR 1,500,000 - 2,100,000
Information Security & Compliance Lead
Information Security & Compliance Lead

Infra360 Solutions Pvt. Ltd. • Haryana

On-site
INR 1,000,000 - 1,500,000
GRC Lead / Security Compliance Lead
GRC Lead / Security Compliance Lead

Gnani Innovations Private Limited. • India

On-site
INR 350,000 - 600,000
Information Security Engineer - GRC
Information Security Engineer - GRC

EDGE Executive Search • Gurugram District

On-site
INR 900,000 - 1,500,000
Information Security Manager / GRC Lead
Information Security Manager / GRC Lead

Keka Technologies Private Limited • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Cybersecurity Lead - GRC
Cybersecurity Lead - GRC

Medusind • Mumbai

On-site
INR 2,500,000 - 4,500,000