Senior Manager – IT Governance

Concept Medical Inc.

Surat

On-site

INR 2,500,000 - 4,500,000

Full time

5 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Concept Medical Inc. seeks a Senior Manager – IT Governance to lead IT governance, information security, risk & compliance, ISMS, business continuity, and IT audit.

The role will act as the Group ISMS Owner for ISO/IEC 27001:2022, ensuring strong governance, risk management, compliance, security controls, and business resilience across the organization. Key responsibilities include owning ISO/IEC 27001:2022 ISMS, leading GRC activities, managing access controls, and driving readiness for

Qualifications

  • 10–15 years of relevant IT / Information Security experience.
  • At least 4 years specifically in Information Security Governance, IT Compliance, Risk Management, or Management Systems.
  • Strong hands-on experience with ISO 27001 ISMS and ISO 22301.
  • Experience in regulated industries, preferably Medical Devices, Pharma, Healthcare, or Life Sciences.
  • Strong knowledge of IT risk, audits, IAM, cybersecurity, ITGC, BCM, privacy, and vendor security.

Responsibilities

  • Own ISO/IEC 27001:2022 ISMS, including SoA, risk assessment, treatment plans, policies, and risk acceptance.
  • Lead IT Governance, Risk & Compliance (GRC) and internal/external audit readiness.
  • Govern IAM, PAM, MFA, SoD, and quarterly access reviews.
  • Drive ISO 22301 Business Continuity & Disaster Recovery governance.
  • Oversee cybersecurity governance, incident response, VAPT, vulnerability management, SIEM, and security controls.
  • Drive DPDP Act & GDPR readiness and third-party/vendor security assurance.
  • Ensure IT compliance with ISO 13485, GxP, and applicable regulatory requirements.
  • Align IT security controls with NIST CSF and CIS Controls.
  • Lead the IT Governance team and provide effective risk, compliance, and security reporting to management.

Skills

IT Governance
Information Security
Risk & Compliance
ISMS
Business Continuity
IT Audit

Job description

We are looking for a Senior Manager – IT Governance to lead IT Governance, Information Security, Risk & Compliance, ISMS, Business Continuity, and IT Audit.

The role will serve as the Group ISMS Owner for ISO/IEC 27001:2022, ensuring strong governance, risk management, compliance, security controls, and business resilience across the organization.

Key Responsibilities
  • Own ISO/IEC 27001:2022 ISMS, including SoA, risk assessment, treatment plans, policies, and risk acceptance.
  • Lead IT Governance, Risk & Compliance (GRC) and internal/external audit readiness.
  • Govern IAM, PAM, MFA, SoD, and quarterly access reviews.
  • Drive ISO 22301 Business Continuity & Disaster Recovery governance.
  • Oversee cybersecurity governance, incident response, VAPT, vulnerability management, SIEM, and security controls.
  • Drive DPDP Act & GDPR readiness and third-party/vendor security assurance.
  • Ensure IT compliance with ISO 13485, GxP, and applicable regulatory requirements.
  • Align IT security controls with NIST CSF and CIS Controls.
  • Lead the IT Governance team and provide effective risk, compliance, and security reporting to management.
Candidate Profile
  • 10–15 years of relevant IT / Information Security experience.
  • At least 4 years specifically in Information Security Governance, IT Compliance, Risk Management, or Management Systems.
  • Strong hands‑on experience with ISO 27001 ISMS and ISO 22301.
  • Experience in regulated industries, preferably Medical Devices, Pharma, Healthcare, or Life Sciences.
  • Strong knowledge of IT risk, audits, IAM, cybersecurity, ITGC, BCM, privacy, and vendor security.
Certifications – Preferred

ISO 27001 / ISO 22301 Lead Auditor or Implementer | CISA | CISM | CRISC | CISSP

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Manager – IT Governance
Senior Manager – IT Governance

Concept Medical • Surat

On-site
INR 4,000,000 - 7,000,000
Deputy General Manager-GRC
Deputy General Manager-GRC

SupportFinity™ • Ahmedabad District

On-site
INR 1,200,000 - 2,000,000
GAIN Central IT - Information Security Manager
GAIN Central IT - Information Security Manager

GAIN • Maharashtra

On-site
INR 1,000,000 - 1,500,000
Manager - Information Security
Manager - Information Security

Ashok Maheshwary & Associates • Gurugram District

Hybrid
INR 2,000,000 - 3,800,000
ISMS-IT Audit Director
ISMS-IT Audit Director

EY • India

On-site
INR 3,500,000 - 6,500,000
Information Security GRC Analyst
Information Security GRC Analyst

Perydot • Mumbai

On-site
INR 600,000 - 1,000,000
Manager - Information Security
Manager - Information Security

Infosys • Maharashtra

On-site
INR 1,500,000 - 2,100,000
Information Security Manager
Information Security Manager

Altraize • Mumbai

On-site
Information Security GRC Manager
Information Security GRC Manager

Mount Talent Consulting • Mumbai

On-site
INR 3,000,000 - 5,000,000
Information Technology Governance Manager
Information Technology Governance Manager

Flipkart • Bengaluru

On-site
INR 3,000,000 - 5,000,000