Manager- GRC, Customer Assurance

24 hours ago


Gurugram, India Sirion Full time

About Sirion
Sirion is the world's leading
AI–native Contract Lifecyle Management (CLM) platform
, transforming the end-to-end contracting journey for enterprises. With Agentic AI at the core, the platform's extraction, conversational search, and AI-enhanced negotiation capabilities have revolutionized contracting across Fortune 500 companies like IBM, Coca Cola, Citi and GE. With more than 800 employees across the globe, Sirion comprises a team of AI engineers, legal experts and researchers who are working relentlessly to build reliable and trustworthy CLM for businesses of tomorrow. Recognized by Gartner, IDC, and Spend Matters as a consistent CLM leader, Sirion sets the innovation benchmark for the category.

For more information, visit
.

Power the Future of AI & Why This Role Matters
Join us as an
Information Security & Data Privacy GRC Professional
and help shape the security backbone of our AI-powered SaaS. With deep expertise in information security frameworks, risk management, and data privacy regulations, you will
design and implement
enterprise-grade governance, risk, and compliance strategies. You will
partner
with business leaders, engineering teams, and legal experts to
safeguard
sensitive data,
uphold
regulatory compliance, and
mitigate
risks in a fast-paced, innovation-driven environment.

How You'll Make An Impact

  • Develop & Implement GRC Frameworks — Design, maintain, and enhance governance, risk, and compliance strategies, policies, and procedures to align with enterprise standards and global regulations.
  • Lead Risk Assessments — Conduct vendor, third-party, and internal security assessments to identify and mitigate privacy and security risks.
  • Drive Compliance Excellence — Ensure adherence to standards like GDPR, HIPAA, ISO 27001, SOC 2, and PCI DSS through continuous monitoring and process improvement.
  • Oversee Data Privacy Programs — Manage initiatives for data classification, governance, and Privacy Impact Assessments (PIAs) to protect sensitive information.
  • Act as Privacy SME — Serve as the go-to expert for data privacy matters, collaborating with legal teams to address regulatory inquiries.
  • Mitigate Security Risks — Identify, prioritize, and address threats by developing and implementing effective risk controls.
  • Promote Security Awareness — Design and deliver engaging training programs to foster a culture of compliance and data protection.
  • Collaborate Across Functions — Work closely with IT, Legal, Engineering, and Product teams to embed security and privacy into enterprise operations.
  • Mentor & Guide Teams — Provide leadership to junior team members and align stakeholders toward achieving organizational security objectives.

Skills & Experience You Bring To The Table
Experience:
5-8 Years of Proven track record in information security and data privacy GRC, with hands-on expertise in risk management and compliance frameworks.

Core Expertise

  • Strong knowledge of GDPR, CCPA, HIPAA, ISO 27001, SOC 2, PCI DSS.
  • Risk assessment methodologies and vendor/third-party security reviews.
  • Data privacy governance, classification, and PIA execution.
  • Familiarity with security protocols (OAuth2, TLS, JWT) and auditing processes.

Preferred Certifications

  • CISSP | CISM | CISA | CDPSE | ISO 27001 Lead Implementer/Auditor | GDPR Certification

Soft Skills

  • Strong leadership and decision-making abilities.
  • Excellent communication and stakeholder management skills.
  • Ability to thrive in fast-paced, high-growth environments.

Commitment to Diversity and Inclusion
We are an equal opportunity employer committed to diversity and inclusion. We do not discriminate based on race, color, gender, religion, national origin, ancestry, age, disability, medical condition, genetic information, military or veteran status, marital status, pregnancy, gender identity, sexual orientation, or any other protected characteristic. We provide reasonable accommodations for disabled employees and applicants as required by law. These principles apply to all aspects of employment, including recruitment, training, promotions, compensation, benefits, transfers, and social programs.

Excited about this opportunity?
We'd love to hear from you To apply, simply visit our
Career at Sirion
page and follow the easy steps to submit your application.


  • Grc Manager

    23 hours ago


    Gurugram, India Clix Capital Services Full time

    Role & responsibilities T Infrastructure Management: Oversee the design, implementation, and maintenance of the organizations IT infrastructure, including servers, networks, storage, and On-prim systems. Manage and optimize the performance, scalability, and security of IT systems. Ensure high availability and disaster recovery plans are in place and tested...

  • grc tprm

    23 hours ago


    Gurugram, India Sn Dhawan Full time

    Governance, Risk, and Compliance (GRC) Specialist Third-Party Risk Management & Training Overview We are seeking a detail-oriented and highly motivated Governance, Risk, and Compliance (GRC) Specialist with a focus on Third-Party Risk Management (TPRM) and security training. This role is critical in ensuring that our organization's vendor relationships,...


  • Gurugram, India Crocs Full time

    Overview :Reporting into Information Security, the Governance, Risk, and Compliance (GRC) Engineer plays an instrumental role in guiding GRC strategies and processes. As the primary GRC authority in India and supporting the global GRC team, this engineer works directly with other partners such as Legal, Risk, Internal Audit, etc. to ensure the alignment of...

  • Executive - Grc

    2 weeks ago


    Gurugram, Haryana, India Sun Life Full time

    You are as unique as your background, experience and point of view. Here, you’ll be encouraged, empowered and challenged to be your best self. You'll work with dynamic colleagues - experts in their fields - who are eager to share their knowledge with you. Your leaders will inspire and help you reach your potential and soar to new heights. Every day, you'll...

  • Chief Manager GRC

    22 hours ago


    Gurugram, India Bean HR Consulting Full time

    Chief Manager Information Security GRC Specialist Location: Gurugram Experience: 8-14 Years We are looking for an experiencedInformation Security GRC (L3)professional with a strong background inIndian Banking or Fintech industryto join one of India's leadingPayments Bank & Fintech organizations. The role requires deep expertise ingovernance, risk &...


  • Gurugram, India Skillventory Full time

    Job Description - Deep understanding of SAP authorization concept. - Knowledge of Segregation of Duties (SOD) with an understanding of business processes and applicable mitigating controls. - Understanding of periodic SAP security reviews/audits. - Experience with BRF+ and MSMP. - GRC request administration and GRC (12.0) configuration. - Experience in...

  • Manager - GRC

    20 hours ago


    Gurugram, India PNB Housing Full time

    Role & responsibilities GRC Manager, inter alia, be responsible for the following: Plan and establish organization-wide Information security Management System (ISMS) in accordance with ISO/IEC 27001 Standard, and other relevant security standards, Evaluate compliance with respect to legal and regulatory requirement for information security. Perform...

  • GRC Professional

    3 days ago


    Gurugram, India Silverskills Private Limited Full time

    Responsibilities :- Lead the team of GRC professionals and executing advisory & consulting projects around regulatory risk & compliances such as ISO 27001, ISO27701, HIPAA, GDPR etc.- Oversee the delivery of services related to pre-preparedness for an information security audit (ISO 27001, ISO27701, HIPAA, GDPR etc.), risk management, and security awareness...


  • Gurugram, Noida, India KPMG Assurance and Consulting Services LLP Full time US$ 90,000 - US$ 1,20,000 per year

    We are seeking an experienced ServiceNow GRC Developer with minimum 4-6 years of experience in the ServiceNow platform to join our team and play a key role in designing, developing, and maintaining ServiceNow Governance, Risk, and Compliance (GRC) solutions. The ideal candidate will have hands-on expertise in ServiceNow Workspace, scripting, integrations,...


  • Gurugram, India Google Full time

    Minimum qualifications: Bachelor's degree or equivalent practical experience. 3 years of experience in program or project management. Experience in risk analytics, internal audit, or Governance, Risk and Compliance (GRC) tools. Experience working with compliance frameworks. Preferred qualifications: Experience in dealing with ambiguity and delivering...