Lead - Governance/Risk & Compliance

3 weeks ago


Bengaluru, Karnataka, India Smarsh Full time

Who are we?.

Smarsh empowers its customers to manage risk and unleash intelligence in their digital communications.

Our growing community of over 6500 organizations in regulated industries counts on Smarsh every day to help them spot compliance, legal or reputational risks in 80+ communication channels before those risks become regulatory fines or headlines.

Relentless innovation has fueled our journey to consistent leadership recognition from analysts like Gartner and Forrester, and our sustained, aggressive growth has landed Smarsh in the annual Inc.

5000 list of fastest-growing American companies since 2008.

Core Responsibilities

ISMS Governance & Controls Assurance.

- Lead the maintenance and continuous improvement of Smarsh's ISO 27001-aligned ISMS.

- Oversee the control assurance programme, ensuring robust evidence collection, control testing, and continuous monitoring.

- Own key internal and external audit workstreams, including SOC 2, ISO 27001, FedRAMP and customer audits.

Cybersecurity Risk Management

- Drive the risk assessment lifecycle, embedding business, technical, and supply chain risk perspectives.

- Enhance risk methodologies and tools, integrating real-time risk metrics into dashboards and governance forums.

- Support risk acceptance processes and facilitate cross-functional remediation plans.

Regulatory, Contractual & Client Assurance

- Monitor emerging regulations (e.DORA, SEC, UK AI Act) and translate them into actionable internal obligations.

- Manage customer security assessments and DDQs, enabling frictionless trust through reusable assurance artefacts.

- Coordinate timely, high-quality client responses and external assurance artefacts in the Smarsh Trust Center.

Third-Party & Supply Chain Risk

- Lead third-party security reviews and ensure governance controls are extended across the vendor lifecycle.

- Partner with Procurement and Legal to align contractual security requirements and risk acceptance criteria.

Policy Governance & Stakeholder Reporting

- Maintain the InfoSec policy lifecycle and track compliance across business units.

- Develop and maintain security governance metrics and reporting for the CISO and wider executive team.

- Support the operation of governance forums and steering committees.

Security Awareness & Culture

- Deliver targeted security training and awareness campaigns aligned to regulatory and business needs.

- Promote a security-aware culture of governance accountability and enablement across teams.

GRC Operations & Enablement

- Own and refine core GRC workflows, including documentation, issue tracking, evidence management, and status reporting.

- Maintain and expand GRC tooling integrations, ensuring high-quality automation and reporting outputs.

Essential Experience

- 7-10 years' experience in security governance, risk, or compliance roles within SaaS or regulated industries.

- Strong track record operationalising ISMS frameworks, managing control assurance, and supporting external audits.

- Hands-on experience with GRC platforms, security metrics reporting, and risk assessments.

- Proven ability to work across business, engineering, and legal teams to embed governance effectively.

- Familiarity with modern regulatory landscapes and frameworks such as ISO 27001, SOC 2, GDPR, DORA, FedRAMP and SEC Cyber rules.

- Strong communication skills, with the ability to create executive-level reporting and artefacts.

- Experience leading client assurance programmes or third-party risk management.

- Professional certifications (CISA, CISM, ISO 27001 LA, CISSP, CRISC) preferred.

About Our Culture

Smarsh hires lifelong learners with a passion for innovating with purpose, humility and humor.

Collaboration is at the heart of everything we do.

We work closely with the most popular communications platforms and the world's leading cloud infrastructure platforms.

We use the latest in AI/ML technology to help our customers break new ground at scale.

We are a global organization that values diversity, and we believe that providing opportunities for everyone to be their authentic self is key to our success.

Smarsh leadership, culture, and commitment to developing our people have all garnered Comparably.

(ref:iimjobs.com)

  • Bengaluru, Karnataka, India InnoWave360 Full time

    Job DescriptionJob Title: Governance, Risk & Compliance (GRC) Associate/Assistant Manager/ Dy. ManagerLocation: BangaloreEmployment Type: Full-timeRole Overview:We are seeking a seasoned Governance, Risk & Compliance (GRC) professional with deep expertise in Business Audit, ERM, IFC, investigations, process transformation, and cost optimization. The ideal...


  • Bengaluru, Karnataka, India Boeing Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    OverviewAs a leading global aerospace company, Boeing develops, manufactures, and services commercial airplanes, defense products, and space systems for customers in more than 150 countries. As a top U.S. exporter, the company leverages the talents of a global supplier base to advance economic opportunity, sustainability, and community impact. Boeings team...


  • Bengaluru, Karnataka, India KPMG Global Services Full time ₹ 5,00,000 - ₹ 15,00,000 per year

    As a GRC Analyst, you will support the organization's Governance, Risk, and Compliance initiatives by performing risk assessments, control testing, and ensuring adherence to NIST Cybersecurity Framework (CSF) and ISO 27001standards •Conduct risk assessments for systems, applications, and third-party vendors aligned with ISO 27001 and NIST...


  • Bengaluru, Karnataka, India Boeing Full time

    Job DescriptionJob DescriptionJob DescriptionOverviewAs a leading global aerospace company, Boeing develops, manufactures, and services commercial airplanes, defense products, and space systems for customers in more than 150 countries. As a top U.S. exporter, the company leverages the talents of a global supplier base to advance economic opportunity,...

  • Credit Risk

    2 days ago


    Bengaluru, Karnataka, India Risk Inn Full time ₹ 2,50,000 - ₹ 3,00,000 per year

    Apply Now: Step into a senior consulting role and drive transformation in Credit Risk, Data Analytics, Model Validation. Role Requirement:Data Governance / Data Quality + SAS + Credit Risk / Model ValidationExperience:3 - 7 yearsCTC Range: Upto ₹25 – ₹30 LPALocation: Remote Positions Available & BangaloreJob ID: CRSAS-BLRPlease read the job description...

  • Risk Compliance

    2 days ago


    Bengaluru, Karnataka, India Wipro Full time US$ 9,00,000 - US$ 12,00,000 per year

    Role PurposeThe purpose of the role is to lead and manage security requirements and recommend specific improvement measures that helps maintain the Security posture of organisationDoLead Risk and Compliance to protect sensitive informationa. Drive Risk Management, Regulatory and Contractual complianceb. Diagnose the level of preparedness of the customer for...


  • Bengaluru, Karnataka, India ABB Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Your role and responsibilities:In this role, you will be responsible to lead and monitor the IS risk and compliance performance, implementation and management of IS IT related regulatory and digital compliance in the country. Accountable for strong over-all Governance Risk and Compliance (GRC) for country management. Establish, monitor and perform continuous...


  • Bengaluru, Karnataka, India ABB Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    This Position reports to:EL IS Compliance LeaderYour role and responsibilitiesIn this role, you will be responsible to lead and monitor the IS risk and compliance performance, implementation and management of IS IT related regulatory and digital compliance in the countries of EL Business Area. Ac-countable for strong overall Governance Risk and Compliance...


  • Bengaluru, Karnataka, India MUFG Full time

    About Us:MUFG Bank, Ltd. is Japan's premier bank, with a global network spanning in more than 40 markets. Outside of Japan, the bank offers an extensive scope of commercial and investment banking products and services to businesses, governments, and individuals worldwide. MUFG Bank's parent, Mitsubishi UFJ Financial Group, Inc. (MUFG) is one of the world's...


  • Bengaluru, Karnataka, India MUFG Full time

    About Us:MUFG Bank, Ltd. is Japan's premier bank, with a global network spanning in more than 40 markets. Outside of Japan, the bank offers an extensive scope of commercial and investment banking products and services to businesses, governments, and individuals worldwide. MUFG Bank's parent, Mitsubishi UFJ Financial Group, Inc. (MUFG) is one of the world's...