About Position:
We are seeking an experienced Compliance Manager to lead the organizations Governance, Risk, and Compliance (GRC) program with primary responsibility for maintaining and managing compliance against: ISO 27001 SOC 2 Type II PCI DSS The role will be responsible for audit readiness, control governance, risk assessments, compliance reporting, policy management, certification lifecycle management, and stakeholder coordination across technology, security, legal, privacy, and business teams. The Compliance Manager will act as the primary point of contact for auditors, certification bodies, and senior leadership regarding security compliance initiatives.
- Role: Compliance Manager – GRC
- Location: Pune
- Experience: 8 to 12 Years
- Job Type: Full-Time Employment
What You'll Do:
- Compliance Program Management Lead enterprise compliance programs for
- ISO 27001
- SOC 2 Type II
- PCI DSS Establish compliance roadmaps and annual assessment plans.
- Develop and maintain compliance policies, standards, and procedures.
- Ensure security controls remain aligned with regulatory and business requirements.
- Drive continuous improvement of compliance programs.
- ISO 27001 ISMS Management Maintain and enhance the Information Security Management System (ISMS).
- Manage ISO 27001 certification and recertification activities.
- Internal Audits
- Management Reviews
- Surveillance Audits
Expertise You'll Bring:
- Compliance Frameworks ISO 27001:2022 SOC 2 Type II PCI DSS 4.0 NIST Cybersecurity Framework ISO 27017 ISO 27018 ISO 27701 Governance Risk Enterprise Risk Management Risk Register Management Control Assessments Compliance Monitoring Audit Management GRC Platforms Archer ServiceNow GRC Audit Board Drata One Trust (Preferred) Documentation Policies Standards Control Framework Mapping Evidence Collection Audit Artefacts Compliance Reporting
- Preferred Certifications: Certified Information Systems Auditor (CISA) Certified Information Security Manager (CISM) ISO 27001 Lead Auditor ISO 27001 Lead Implementer PCI DSS Internal Security Assessor (ISA) Certified in Risk and Information Systems Control (CRISC) PCI Professional (PCIP)
Benefits:
- Competitive salary and benefits package
- Culture focused on talent development with quarterly growth opportunities and company-sponsored higher education and certifications
- Opportunity to work with cutting-edge technologies
- Employee engagement initiatives such as project parties, flexible work hours, and Long Service awards
- Annual health check-ups
- Insurance coverage: group term life, personal accident, and Mediclaim hospitalization for self, spouse, two children, and parents
Values-Driven, People-Centric & Inclusive Work Environment:
Persistent is dedicated to fostering diversity and inclusion in the workplace. We invite applications from all qualified individuals, including those with disabilities, and regardless of gender or gender preference. We welcome diverse candidates from all backgrounds.
- We support hybrid work and flexible hours to fit diverse lifestyles.
- Our office is accessibility-friendly, with ergonomic setups and assistive technologies to support employees with physical disabilities.
- If you are a person with disabilities and have specific requirements, please inform us during the application process or at any time during your employment
Let's unleash your full potential at Persistent - persistent.com/careers
Persistent is an Equal Opportunity Employer and prohibits discrimination and harassment of any kind.