Search by job, company or skills

Vymo

Information Security Manager

Save
  • Posted 6 days ago
  • Be among the first 10 applicants
Early Applicant

Job Description

Note to Candidates: Please review the details of this Job Description carefully before hitting apply. Ensure your experience aligns with our requirements.

About Vymo:

Vymo transforms how financial institutions manage their distribution networks and collections operations. Our AI-powered DMS and CMS platform serves 350,000+ users across 70+ global financial enterprises, enabling banks and insurers to optimize performance across their distribution channels, and empowering banks to drive operational excellence in collections.

Why Global Leaders Choose Vymo:

Vymo partners with financial institutions through a comprehensive solution that combines deep domain expertise with cutting-edge technology. Our platform's human-centric design, coupled with enterprise-grade scalability and AI-powered intelligence, delivers measurable business outcomes while ensuring high user adoption and engagement.

Recognition & Trust:

● Backed by $45M+ funding from Peak XV partners (formerly Sequoia), Emergence Capital, and Bertelsmann Investments.

● Trusted by leading global financial institutions including Berkshire Hathaway, AIA, AXA, SBI Life, HDFC Bank, Aditya Birla Capital, Tata AIA, ABSLI and many more!

● Recognized by Celent in their 2024 Distribution Management Solutions report, with an Advanced Functionality ranking.

● Featured in Gartner's Market Guide for Sales Engagement Applications and recognized as a

Strong Performer in Forrester's Sales Engagement Wave Report.

● Microsoft AI for All award winner for innovation in artificial intelligence

About the Role:

We are seeking an Information Security Leader to operate at the intersection of technology, compliance, and customer trust. This is a highly visible, external-facing role where you will represent our security posture to enterprise clients in highly regulated sectors (banking, insurance, financial services).

Why This Role Matters:

For our customers (regulated financial institutions) security and compliance are non-negotiable foundations of their business. This role is central to how Vymo earns and retains customer trust, supports revenue growth, and manages enterprise risk. You will have direct exposure to senior leadership and significant influence over company-wide security decisions.

Key Responsibilities:

You will partner closely with an external strategic security firm and be responsible for translating complex security requirements into clear, actionable commitments, both internally and externally.

Requirements Experience

  • Core Experience: 8–12 years in information security, with at least 3 years in a manager or leadership role.
  • Industry Preference: Prior experience in a B2B SaaS company or technology vendor serving regulated industries is highly preferred.
  • Focus: Demonstrated experience in customer-facing security roles—not solely internal security operations.
  • Technical: Hands-on experience with cloud security (AWS, GCP, or Azure) and familiarity with cloud-native security tools.

Knowledge & Skills

  • Compliance Expertise: Deep understanding of compliance frameworks relevant to BFSI, including DPDP, ISO 27001, SOC 2 Type II, RBI Master Directions, and IRDAI guidelines.
  • Risk Management: Strong grasp of risk management principles and the ability to assess and articulate risk in clear business terms.
  • Autonomy: Ability to independently own and respond to security questionnaires, audits, and vendor assessments.
  • Legal Acumen: Comfortable reviewing and negotiating security clauses in contracts and Data Processing Agreements (DPAs).
  • Architecture: Familiarity with modern security architecture concepts: zero trust, least privilege, data residency, and encryption (at rest and in transit).

What You'll Do

Customer Engagement & Trust:

  • Primary Contact: Serve as the main security point of contact for enterprise customers during procurement, contract negotiations, and periodic security reviews.
  • Security Representation: Lead all customer-facing security discussions, including RFP responses, vendor risk assessments, and security questionnaires.
  • Build Credibility: Establish and maintain strong security credibility with CISOs, Risk, and Compliance teams at client organizations.
  • Audit Management: Represent Vymo's security posture in customer-initiated audits, due diligence processes, and regulatory inquiries.

Compliance & Risk Management:

  • Framework Ownership: Own and manage critical compliance frameworks relevant to regulated industries (e.g., DPDP Act, ISO 27001, SOC 2, RBI/IRDAI guidelines).
  • Risk Mitigation: Conduct and oversee risk assessments, gap analyses, and remediation planning.
  • Contractual Security: Maintain Data Processing Agreements (DPAs), security schedules, and contractual security obligations with enterprise clients.
  • Regulatory Monitoring: Proactively monitor the evolving regulatory landscape across key customer segments and update internal controls accordingly.

Cloud & Technical Security:

  • Security Architecture: Oversee the security architecture and posture of our cloud infrastructure (AWS/GCP/Azure), focusing on access controls, data encryption, network segmentation, and logging.
  • Security in SDLC: Partner with engineering and DevOps teams to embed security into the Software Development Life Cycle (SDLC), CI/CD pipelines, and product releases.
  • Proactive Security: Lead vulnerability management, penetration testing programs, and incident response planning.
  • Tooling: Manage and optimize security tooling, including SIEM, endpoint protection, identity management, and data loss prevention.

Strategic Partnership & Internal Leadership:

  • Security Roadmap: Work with the external strategic security partner to design and execute the company's long-term security roadmap.
  • Execution: Translate strategic guidance into prioritized internal execution plans for technical teams.
  • Team Building: Build and mentor a small internal security function as the company scales.
  • Internal Liaison: Work closely with engineering teams to address reported issues, follow up on corrective actions, and report status to stakeholders, including clients and internal partners.
  • Vendor Management: Evaluate security software tools and vendors, conducting TCO/pros/cons analysis to make informed implementation and onboarding decisions.
  • Reporting: Report to senior leadership on key security performance indicators (KPIs), risk posture, and compliance status.

Attributes

  • Exceptional Communicator: Able to explain complex security topics equally well to a non-technical CFO and a client's technical security team.
  • Commercially Aware: Understands that security is both a risk management function and a critical competitive differentiator in B2B sales.
  • Agile & Adaptable: Operates effectively with ambiguity, balancing thoroughness with speed in a fast-paced environment.
  • Highly Collaborative: Naturally able to work across Sales, Engineering, Legal, and Product teams without creating friction. Preferred Certifications: CISSP, CISM, CCSP, ISO 27001 Lead Implementer/Auditor, or equivalent.

More Info

Job Type:
Industry:
Employment Type:

About Company

Job ID: 151284631

Similar Jobs

Bengaluru, India

Skills:

SOC 2ISO IEC 27001Risk ManagementContinuous Assurance ToolingEvidence ManagementCompliance AutomationAudit Planning

Bengaluru, India

Skills:

Cyber Risk ManagementHipaaVaptIT Audit ComplianceVendor Risk ManagementIsoSOC2Security GovernanceAI Risk ManagementCloud Security GovernancePCI-DSSVulnerability GovernanceResponsible AI

Bengaluru, India

Skills:

cloud securityData ProtectionOktaGcpApplication SecurityIamSiemPAMAzurePythonAWSSOARvulnerability scannersPimEDRTinesEntra

Bengaluru, India

Skills:

GdprIso 27001Security ControlsSaasHipaaDPDPSOC 2

Bengaluru, India

Skills:

DASTGdprLoggingConfigBashNetworkingEncryptionIso 27001IamKubernetesPythonAWSGoSecurity HubSOC 2SASTGuardDutyAppSec toolingDORA