15 Sep
|
Infra360
|
Gurugram
Information Security & Compliance Lead
Location: Gurugram
Experience: 3-5 Years
Employment Type: Full-time
About the Role
Infra360 is growing, and we re looking for an Information Security & Compliance Lead to help build and strengthen our InfoSec & GRC practices.
This is a hands-on, high-ownership opportunity for someone who wants to take the next step in their career by working across Information Security, Compliance, Risk, and Governance.
You ll work closely with Leadership, DevOps, Cloud, IT, and Security teams to build practical security processes, support compliance initiatives, and prepare the organization for certifications, audits, and customer security requirements.
What You ll Work On
- Build and improve Infra360 s Information Security & GRC processes.
- Develop and maintain security policies, controls, and procedures.
- Support ISO 27001 and SOC 2 readiness, audits, and compliance activities.
- Conduct security risk assessments and track remediation.
- Coordinate with internal teams and auditors for evidence, assessments, and audits.
- Support customer security questionnaires, RFPs, and due diligence.
- Help establish vendor and third-party security assessment processes.
- Work with DevOps, Cloud and IT teams to strengthen and document security controls.
- Support security awareness and compliance initiatives across the organization.
- Help create simple,
scalable processes as Infra360 continues to grow.
What We re Looking For
- 3-5 years of experience in Information Security, GRC, Risk & Compliance.
- Practical experience with ISO 27001 / ISMS and exposure to SOC 2 .
- Understanding of security policies, controls, risk management, and audits.
- Working knowledge of HIPAA, PCI DSS, GDPR or DPDP is a plus.
- Basic technical understanding of Cloud, IAM, Endpoint Security, Vulnerability Management and Security Operations.
- Good communication and stakeholder-management skills.
- Solid ownership and documentation skills.
- Someone who enjoys building processes, solving problems, and working in a fast-moving environment.
Good to Have ISO 27001 Lead Implementer/Auditor, CISA, CISM, CISSP, CRISC or CCSP .
Why This Role An opportunity to build and shape Infra360 s InfoSec & GRC function , work closely with technical and leadership teams, and grow with a fast-scaling cloud and cybersecurity organization.
Required Skills
Security Security Compliance HIPAA Information Security SOC 2 (Type I & II) GDPR ISO 27001 (ISMS) PCI DSS GRC NIST CSF IAM policies
Disclaimer: This job posting and Location has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.
📌 Information Security & Compliance Lead (Gurugram)
🏢 Infra360
📍 Gurugram