Manager, Technology Risk
2 weeks ago
About PhonePe Limited:
Headquartered in India, its flagship product, the PhonePe digital payments app, was launched in Aug 2016. As of April 2025, PhonePe has over 60 Crore (600 Million) registered users and a digital payments acceptance network spread across over 4 Crore (40+ million) merchants. PhonePe also processes over 33 Crore (330+ Million) transactions daily with an Annualized Total Payment Value (TPV) of over INR 150 lakh crore.
PhonePe's portfolio of businesses includes the distribution of financial products (Insurance, Lending, and Wealth) as well as new consumer tech businesses (Pincode - hyperlocal e-commerce and Indus AppStore Localized App Store for the Android ecosystem) in India, which are aligned with the company's vision to offer every Indian an equal opportunity to accelerate their progress by unlocking the flow of money and access to services.
Culture:
At PhonePe, we go the extra mile to make sure you can bring your best self to work, Everyday. And that starts with creating the right environment for you. We empower people and trust them to do the right thing. Here, you own your work from start to finish, right from day one. PhonePe-rs solve complex problems and execute quickly; often building frameworks from scratch. If you're excited by the idea of building platforms that touch millions, ideating with some of the best minds in the country and executing on your dreams with purpose and speed, join us
Role - Manager - IT Audit & Compliance
Roles and Responsibilities: -
Maintenance:
- Ensure Review of policies and procedures on a periodic basis or whenever there is change and place it for Management approvals to board on a timely fashion
- Preparation of architectural diagrams and technical documentations for audit and regulatory purposes along with stakeholders and consultants
- Ensure the Business Impact Assessment of new businesses, applications etc.
- Ensure Risk assessments for all IT assets and processes periodically and ensure RA/ RT is in place.
- Run project management for implementation of various security controls by liaising with different teams.
- Renewal of certifications on time (ISO 27001 and PCI DSS)
- Review all merchant and IT vendor contracts for clauses w.r.t information security and regulatory requirements
Monitoring and Guidance:
- Exception management, review (periodic) controls, analyse and make appropriate recommendation
- Provide guidance to the stakeholders with respect to the contractual obligation on IT policy management and process implementations.
- Provide guidance to stakeholders on Periodic updates to BCP strategy, liaising with teams to perform drills etc. Guide team members on planning Phishing and other information security drills
- Evaluation of vendors, review of internal tool reviews for SRE /Engg. teams /PhonePe functions from Data security angle
Regulatory and Compliance audits:
- Interpret IT control requirements from regulatory guidelines and circulars and prepare a detailed framework for implementation and Advisory on implementation of information security controls
- Ensure that IT regulatory requirements are tracked and continuously monitored.
- Plan audit calendars and schedule the same.
- Manage all internal and external audits related to IT and Non IT .
- Plan and Overseeing all IT audits (including CISA (PPI) ,RBI/ ReBIT Audit, ISNP &; CIS (insurance), PCI DSS, System Audits, partner bank audits, ISO 27k ,Stat audits ,NPCI audits etc.
- Fore fronting all the audits and act as POC for all escalations for any audit related activities
- Liaise with auditors to explain infosec posture, org structure, provide technical architecture overview, process understanding on IT controls etc.
- Support management to provide audit finding responses, implementation of controls as per audit recommendations etc and ensure all IT audit observations are taken to closure
Must Haves -
- 7 to 10 years of work experience, BE / relevant experience in Group 4 consultancies, or likes of Group 4 . CISA / DISA / CIA preferred.
- Has high ethical standards and are able to work diligently to complete your duties.
- Has an analytical mind able to "see" the complexities of procedures and regulations.
- Demonstrate the ability to plan and execute projects with minimal management support.
PhonePe Full Time Employee Benefits (Not applicable for Intern or Contract Roles)
- Insurance Benefits - Medical Insurance, Critical Illness Insurance, Accidental Insurance, Life Insurance
- Wellness Program - Employee Assistance Program, Onsite Medical Center, Emergency Support System
- Parental Support - Maternity Benefit, Paternity Benefit Program, Adoption Assistance Program, Day-care Support Program
- Mobility Benefits - Relocation benefits, Transfer Support Policy, Travel Policy
- Retirement Benefits - Employee PF Contribution, Flexible PF Contribution, Gratuity, NPS, Leave Encashment
- Other Benefits - Higher Education Assistance, Car Lease, Salary Advance Policy
Our inclusive culture promotes individual expression, creativity, innovation, and achievement and in turn helps us better understand and serve our customers. We see ourselves as a place for intellectual curiosity, ideas and debates, where diverse perspectives lead to deeper understanding and better quality results. PhonePe is an equal opportunity employer and is committed to treating all its employees and job applicants equally; regardless of gender, sexual preference, religion, race, color or disability. If you have a disability or special need that requires assistance or reasonable accommodation, during the application and hiring process, including support for the interview or onboarding process,
please fill out this form.
Read more about PhonePe
on our blog
.
Life at PhonePe
PhonePe in the news
-
Regulatory Management, Technology Risk
7 days ago
Bengaluru, Karnataka, India State Street Full time ₹ 12,00,000 - ₹ 36,00,000 per yearWho we are looking forAn AVP within IT Regulatory Management Services (RMS) in India (BLR & Hyd only) who will assist in operational management and continuous improvement of regulatory exams, assessments and inquiries across any SS regulated entities. The role requires close collaboration with Technology stakeholders, Enterprise Risk Management, and IT...
-
Manager of Technology
3 days ago
Bengaluru, Karnataka, India CSC Full time ₹ 12,00,000 - ₹ 36,00,000 per yearDescriptionRole: IT Audit & Risk Manager Exp range: 12+ yearsWork Location: BangaloreWork timings: 12 to 9pm IST Work model: HybridPosition SummaryThe Cyber Security IT Audit and Risk Manager is an essential role to assist our business with making risk informed decisions. The position is responsible for supporting the security direction of the business...
-
Software Engineer, Risk Technology
17 hours ago
Bengaluru, Karnataka, India Point72 Full time ₹ 12,00,000 - ₹ 36,00,000 per yearJOB TITLESoftware Engineer, Risk Technology A Career with point72'S TECHNOLOGY TEAM As Point72 continues to reimagine the future of investing, our Technology group is constantly improving our company's IT infrastructure, positioning us at the forefront of a rapidly evolving technology landscape. We're a team of experts experimenting and discovering new ways...
-
Manager of Technology
5 days ago
Bengaluru, Karnataka, India CSC Full time ₹ 12,00,000 - ₹ 36,00,000 per yearRole: Manager of Technology (IT Audit & Risk Manager)Location: BangaloreWorking Hours: 12 to 9 PMWorking Model: HybridPosition SummaryThe Cyber Security IT Audit and Risk Manager is an essential role to assist our business with making risk informed decisions. The position is responsible for supporting the security direction of the business and elevating the...
-
Technology Lead
3 weeks ago
Bengaluru, Karnataka, India, Karnataka Iridescent Technology Full timeTechnology Lead - Iridescent Technology, Bangalore (Salary 24-30 lakhs pa)1. About Iridescent TechnologyFounded in 2022, building AI that unleashes human potential. Products include Zavmo (Top 20 AI Innovation Learning Tools 2025) and Jan Analytics, transforming how millions learn globally through enterprise learning technology.2. The Role: Team Lead...
-
PSOC Manager
1 week ago
Bengaluru, Karnataka, India PINKERTON | Comprehensive Risk Management Full time ₹ 20,00,000 - ₹ 25,00,000 per yearOverview170+ Years Strong. Industry Leader. Global Impact.At Pinkerton, the mission is to protect our clients. To do this, we provide enterprise risk management services and programs specifically designed for each client. Pinkerton employees are one of our most important assets and critical to the delivery of world-class solutions. Bonded together, we share...
-
Manager, Risk
2 weeks ago
Bengaluru, Karnataka, India Capital One Full time ₹ 8,00,000 - ₹ 24,00,000 per yearVoyager , India, Bangalore, KarnatakaManager, RiskAt Capital One, we're building a leading information-based technology company. Still founder-led by Chairman and Chief Executive Officer Richard Fairbank, Capital One is on a mission to help our customers succeed by bringing ingenuity, simplicity, and humanity to banking.At Capital One India, we are at the...
-
Bengaluru, Karnataka, India Legal operations Full time ₹ 15,00,000 - ₹ 25,00,000 per yearRequisition Id : As a global leader in assurance, tax, transaction and advisory services, we hire and develop the most passionate people in their field to help build a better working world. This starts with a culture that believes in giving you the training, opportunities and creative freedom. At EY, we don't just focus on who you are now, but who you can...
-
Risk Manager
10 hours ago
Bengaluru, Karnataka, India Technovids Consulting Services Full time ₹ 12,00,000 - ₹ 36,00,000 per yearAbout the Company: The company is a boutique firm specializing in Enterprise Service Management functions. Our focused attention and strength in ServiceNow, BMC product suite, and RPA differentiate us from this segment's rest of the pack. Our value proposition lies in consultative innovation that drives service excellence, customer experience, and business...
-
Risk Manager
4 days ago
Bengaluru, Karnataka, India Chevron Full time ₹ 15,00,000 - ₹ 28,00,000 per yearTotal Number of Openings1About the position:Develop and maintain the cybersecurity strategy, policies, and risk management processes to ensure that the organization effectively secures Chevron's operations.Key responsibilities:Lead a team of Risk Analysts and direct appropriate communications, measures, and actions to remediate OT cybersecurity risks as...