20 Aug
|
Cyraac Services
|
Bengaluru
20 Aug
Cyraac Services
Bengaluru
CyRAACS is a CERT-In empanelled cybersecurity firm building the market-defining GRC compliance automation platform for India, the Middle East, and the USA. This is an early-stage professional services leadership role nd the person who joins now will define how CyRAACS delivers GRC implementations at scale.
CyRAACS is building a high-velocity GRC compliance automation business on the COMPASS platform. As GRC Implementation Lead, you are the bridge between the platform and the client taking signed SOWs and turning them into live, working compliance programmes on COMPASS.
You will be the primary implementation owner for clients onboarding to CyRAACS GRC services, working directly with client teams, internal delivery teams, and the Product Management function to ensure every client goes live on time and gets value from day one.
The GRC Implementation Lead is expected to develop deep working knowledge of COMPASS nd not as an engineer, but as an expert practitioner who can configure the platform to meet client compliance requirements, understand its capabilities and constraints, and translate client needs into platform-ready implementation plans.
KEY RESPONSIBILITIES
1. Client Onboarding and Implementation
- Own end-to-end onboarding of clients post-SOW nd from kickoff through go-live on COMPASS
- Understand the client's business environment, technology landscape, and compliance scope as defined in the SOW
- Configure COMPASS to meet each client's specific compliance requirements across applicable frameworks
- Define and execute implementation plans with clear milestones, dependencies, and client responsibilities
- Manage client stakeholders through the onboarding process nd setting expectations, resolving blockers, and driving timely completion
- Ensure clients are fully activated on COMPASS and deriving value before handoff to BAU services
2. GRC Framework Expertise
- Apply deep knowledge of GRC standards and frameworks nd ISO 27001, SOC 2, RBI guidelines, SEBI circulars, IRDAI regulations,
and DPDPA nd to translate regulatory requirements into COMPASS implementation scope
-Stay current on regulatory changes across RBI, SEBI, IRDAI, and DPDPA that affect client compliance programmes on COMPASS
- Support onboarding for TPRM, Risk Management, and Audit Services as these capabilities mature through 2026
3. Change Management and Expansion
-Own change management as the COMPASS platform evolves nd communicate platform changes to clients, update implementation configurations, and ensure continuity of compliance programmes
-Onboard the upsell and cross-sell changes as client scope expands and new frameworks, additional services, or new COMPASS capabilities nd and work with internal teams to scope and execute expansions
- Collaborate with Product Management to stay abreast of regulatory changes to supported standards (e.g. RBI, SEBI, NIST, GDPR, IRDAI, DPDPA etc.) that affect client compliance and build change management plans for clients.
- Maintain implementation documentation for each client nd current configuration, scope, framework coverage, and open items
4. Internal Collaboration
- Work closely with the BAU services delivery teams to ensure smooth handoff post-onboarding and alignment on ongoing client needs
- Act as the voice of the client back to Product Management nd surfacing platform gaps, configuration limitations, and feature requests from implementation experience
- Collaborate with the CTO's engineering team on platform performance - capability questions, integration requirements, scale constraints and configuration edge cases
- Contribute to the development of onboarding playbooks, implementation templates, and best practice documentation as the practice scales
5. Team Building (Player-Coach)
- Start with a team of 1-2 members, running implementations directly
- As the client base and breadth of GRC services on COMPASS grow, identify the right point to expand the team and mentor junior implementation consultants
WHAT YOU BRING
Experience
- 6- 10 years of experience in GRC consulting, implementation, or compliance
- hands-on and extensive experience implementing and configuring GRC technology platforms (e.g., ServiceNow GRC, Archer, MetricStream, OneTrust, or similar) nd COMPASS knowledge can be built on the job
- Deep working knowledge of at least two of: ISO 27001, SOC 2, RBI cybersecurity framework, SEBI circulars, IRDAI guidelines, DPDPA
-Have delivered at least one implementation driven by AI technologies, tools towards migration/adoption requirements.
- Experience working with BFSI clients nd banks, NBFCs, insurance companies, brokerages, or fintech nd is a strong plus given CyRAACS's primary market
- Exposure to SMB client environments preferred nd ability to work with clients who have lean internal teams and limited GRC maturity
Skills
- Robust client-facing skills nd able to run workshops, manage stakeholder expectations, and communicate clearly with both technical and compliance audiences
- Structured implementation mindset nd able to break down complex compliance requirements into clear, executable onboarding plans
- Comfort with AI-powered platforms and GRC automation tools nd not a developer, but technically fluent enough to configure and troubleshoot
- Strong written communication and implementation plans, status updates, and documentation must be crisp and client-ready
- Change management capability nd comfortable managing clients through platform evolution and expanding compliance scope
📌 PS Lead (Bengaluru)
🏢 Cyraac Services
📍 Bengaluru