Data Compliance and Security Lead

7 days ago


Mumbai, Maharashtra, India IDfy Full time

IDfy is Asia's leading TrustStack, trusted by the best, with global expertise and enterprise-grade tech, we're solving trust challenges, making compliance easy, fraud detection smarter, and onboarding seamless.

Our clients include HDFC Bank, Zomato, Amazon, PhonePe, Paytm, HUL and many others. With more than 13+ years of experience and 2 million verifications per day, we are pioneers in this industry.

IDfy's three platforms- OnboardIQ, OneRisk, and Privy - come together to form one seamless solution enabling trust.

Onboard IQ

An onboarding platform that accelerates growth with frictionless omni-channel onboarding, while mitigating fraud and improving quality of account.

OneRisk

A fraud and risk management platform to mitigate financial, legal, and reputational risks and avoid losses with proactive fraud prevention. It covers individual risk, entity risk, and asset risk.

Privy

A privacy and data governance platform to ensure DPDPA compliance through trust and privacy governance suite and avoid monetary and reputational loss.

We are the perfect match if you...

  • Have 10+ years of experience in Information Security, with a strong focus on Governance, Risk, Compliance, and Data Privacy.
  • Are well-versed with frameworks and regulations such as ISO 27001:2022, SOC 2 Type II, India's DPDPA, RBI regulations (e.g. V-CIP), and sector-specific compliance requirements like SAR and data localization.
  • Enjoy building trust with customers by clearly articulating security controls, data handling practices, and participating in customer audits.
  • Are confident reviewing client MSAs, handling TPRM requests, and aligning contractual obligations with internal security practices.
  • Have a solid understanding of cloud security fundamentals and how compliance controls are mapped in cloud environments.
  • Know how to balance compliance needs with business agility, and can translate complex regulatory requirements into practical, actionable controls.
  • Thrive in cross-functional environments, working closely with internal teams (Legal, Product, Engineering, etc.) to get things done.

Here's what your day would look like...

  • Lead the GRC function and own our compliance roadmap (ISO, SOC 2, etc.).
  • Interpret new regulations (e.g. DPDPA, RBI advisories) and drive necessary security and privacy program updates.
  • Represent security in customer calls, audits, and RFPs helping build client trust and confidence.
  • Own internal risk assessments, policy governance, and third-party risk management workflows.
  • Review and negotiate security-related clauses in customer contracts and vendor agreements.
  • Work with internal teams to ensure controls are implemented, monitored, and improved over time.
  • Collaborate with engineering, cloud, and DevSecOps teams to ensure security solutions align with compliance goals.
  • Regularly update senior leadership and business units on compliance posture, risks, and mitigation plans.

Technical Skills

  • Deep understanding of security frameworks: ISO 27001:2022, SOC 2 Type II, DPDPA, SAR, RBI circulars (esp. for financial services), and data localization norms.
  • Familiarity with privacy impact assessments, DPIAs, and data retention practices.
  • Hands-on experience with internal audits, policy development, and third-party risk management.
  • Understanding of modern cloud architectures and associated compliance controls (GCP, AWS, Azure).
  • Exposure to security tools (SIEM, DLP, WAF2, GRC platforms, etc.) and how they support audit/compliance needs.
  • Ability to interpret MSA/contractual security clauses and align them with internal controls.

Soft Skills

  • Strong communication skills able to simplify complex security and compliance topics for non-technical stakeholders.
  • Confident in customer-facing discussions and audits; builds trust through clear and honest dialogue.
  • Comfortable working cross-functionally and influencing without authority.
  • Detail-oriented, organized, and able to manage multiple priorities in a fast-paced environment.
  • Collaborative mindset with a bias toward problem-solving and execution.


  • Mumbai, Maharashtra, India beBeeDataSecurity Full time ₹ 6,00,000 - ₹ 8,00,000

    Job Title: Data Compliance and Security LeadSolutions-driven professional with expertise in data compliance and security seeking a challenging role to leverage knowledge and skills in ensuring seamless onboarding, fraud detection, and trust management.Key Responsibilities:Develop and implement effective data security protocolsConduct thorough risk...


  • Mumbai, Maharashtra, India beBeeCompliance Full time ₹ 1,04,000 - ₹ 1,30,878

    As a trusted advisor, you will lead our compliance and security function, ensuring we meet regulatory requirements and protect sensitive data.Your day-to-day will involve interpreting new regulations, driving program updates, and representing our security interests in customer calls and audits.You will own risk assessments, policy governance, and third-party...


  • Mumbai, Maharashtra, India IDfy Full time

    IDfy is Asia's leading TrustStack, trusted by the best, with global expertise and enterprise-grade tech, we're solving trust challenges, making compliance easy, fraud detection smarter, and onboarding seamless. Our clients include HDFC


  • Mumbai, Maharashtra, India beBeeGovernance Full time ₹ 90,00,000 - ₹ 1,20,00,000

    We are seeking a seasoned professional to lead our Governance, Risk and Compliance (GRC) function. As our Security Governance Lead, you will be responsible for driving the development and implementation of our compliance roadmap.About the RoleThe successful candidate will have a deep understanding of security frameworks, including ISO 27001:2022, SOC 2 Type...


  • Mumbai, Maharashtra, India State Bank Operations Support Services Full time US$ 1,50,000 - US$ 2,00,000 per year

    About the RoleWe are looking for a highly skilled Lead Information Security professional to oversee and strengthen the organization's IT security posture. The role involves managing infrastructure security, leading cybersecurity initiatives, coordinating with vendors, and acting as the SPOC for Group CISO representations. The candidate will be responsible...


  • Mumbai, Maharashtra, India Hurix Full time ₹ 1,50,000 - ₹ 28,00,000 per year

    Role & responsibilitiesImplement KYC, fraud detection, and dispute resolution workflows.Conduct regular penetration testing and vulnerability assessments.Ensure compliance with GDPR, Indian IT Act, and data privacy laws.Develop systems for verified astrologers, money-back guarantees, and trust signals.Collaborate with DevOps and backend engineers on...


  • Navi Mumbai, Maharashtra, India Eventus Security Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    Job Summary : We are seeking a highly motivated and experienced Senior Security Engineer to join our dynamic team. The ideal candidate will possess a strong background in server, data center, and endpoint security, with a specialized focus on Trend Micro products. This role requires a proactive individual capable of providing L2 support, conducting product...

  • Security Researcher

    2 weeks ago


    Mumbai, Maharashtra, India Security Brigade Full time US$ 80,000 - US$ 1,20,000 per year

    Job DescriptionSecurity Brigade is looking for a Security Researcher who will be working with ShadowMap tool which is an internal security tool & manage on-site clients for long-term.Objective of this RoleAnalyze attack surface management tool which contains web & mobile application alerts, data leaks, dark web & exposed code repositories.Assist clients by...


  • Mumbai, Maharashtra, India NTT DATA Full time ₹ 1,04,000 - ₹ 1,30,878 per year

    Continue to make an impact with a company that is pushing the boundaries of what is possible. At NTT DATA, we are renowned for our technical excellence, leading innovations, and making a difference for our clients and society. Our workplace embraces diversity and inclusion – it's a place where you can continue to grow, belong, and thrive.Your career here...


  • Mumbai, Maharashtra, India VIBS Infosol Full time

    Job Summary:We are seeking an experienced Data Security Engineer with strong hands-on skills in Forcepoint DLP and Data Security Posture Management (DSPM) solutions. The role includes deployment, administration, and troubleshooting of data security platforms, incident handling, and coordination with internal teams and OEMs. This individual will play a...