Manager - Governance and Compliance (Contractor) (India)

Manager - Governance and Compliance (Contractor) (India)

06 Oct
|
Ollion
|
India

06 Oct

Ollion

India

Job Description

Position Description

As the Manager - Governance and Compliance (Contractor), you will play a pivotal role in helping to drive the organization’s comprehensive, long-term strategy for Security, Risk & Compliance, and AI Governance functions in alignment with global business objectives. This is a full-time remote role where you can work from anywhere in India. The core goal of this position is to safeguard the company against internal and external threats, ensure a constant state of audit readiness, and enforce strict AI safety and governance standards. This position requires an individual who possesses thought leadership in their areas of expertise, the ability to communicate the vision, and hands-on involvement with a start-up mentality. You will be responsible for the day to day management and execution of the organization’s security programs, AI governance frameworks, and applicable compliance requirements, while collaborating closely with teams and stakeholders across different regions and time zones. The role requires flexibility in working hours to support global collaboration and business needs.

Job Responsibilities

- Develop and maintain policies, standards, processes, and tools that ensure cyber readiness, regulatory compliance, AI governance, and operational excellence in alignment with business goals.

- Establish, rollout, and enforce acceptable use policies and security guardrails for Generative AI and Machine Learning tools across internal operations to prevent IP leakage, shadow AI, and unauthorized data ingestion.

- Define and enforce AI governance and security architecture standards for client-facing projects and deliverables, ensuring client data confidentiality, algorithmic transparency, and compliance with client security requirements.

- Conduct regular AI risk assessments and audits covering prompt injection, training data provenance, bias mitigation, and third-party SaaS/vendor AI features.

- Act as the company’s subject matter expert on industry regulations and provide compliance consulting and guidance to clients. You'll also design and embed compliance processes into assessments, ensuring they’re executed effectively — whether handled in-house or through trusted partners.

- Ensure full compliance with relevant global and regional privacy regulations (including India's DPDP Act, GDPR, CCPA, PDPA) and manage requirements for cross-border data transfers between remote/offshore delivery centers and global client jurisdictions.

- Uphold Internal Security Standards: Oversee Ollion’s IT’s infrastructure ensuring systems are secure, monitored,



and maintained according to best practices.

- Mature the company's security program through proactive exercises, including annual penetration testing, disaster recovery simulations, and CSPM.

- Integrate Dev SecOps and Secure SDLC practices into internal and client build pipelines, ensuring software supply chain security, dependency scanning, and Software Bill of Materials (SBOM) management.

- Oversee the development, implementation, and enforcement of security policies and procedures, championing a Zero Trust architecture based on the principle of least privilege and Role-Based Access Control (RBAC).

- Lead the incident response process, determining severity, assigning resources, and ensuring swift containment of Security and compliance threats.

- Hands-on experience with security tools such as SIEM, DLP, endpoint detection and response (EDR), and vulnerability scanning.

- Proficiency with endpoint management solutions (e.g., Intune MDM, Manage Engine RMM) and ticketing systems (e.g., Freshservice).

- Manage and optimize security tools, including SIEM (Microsoft Sentinel), the Microsoft Defender suite, and secret scanning solutions for development environments.

- Drive company-wide security culture, phishing simulations, and employee awareness programs, including training on AI-driven risks and social engineering threats.

- Lead and manage all compliance programs and audits.

- Act as the primary liaison with external partners, including auditors and virtual CISO (vCISO) providers.

- Evaluate emerging technologies and lead strategic digital initiatives to enhance operational efficiency and business agility.

- Manage relationships with external vendors and technology partners; negotiate contracts, conduct third-party risk assessments (including vendor AI evaluations), and ensure service levels are met.

- Undertake any other duties of a similar level and responsibility as may be required from time to time.

Qualifications

Experience You Bring:

- 8+ years of experience in a Senior IT, Security, or Compliance role, with at least 2 years in a leadership position managing a technical team.

- Understanding and experience in Cloud Technologies. Should possess general familiarity across all three major CSPs (GCP, AWS and Azure).





- Proven track record of successfully leading and passing audits for major compliance frameworks (e.g., SOC 2, ISO 27001, and ISO 42001).

- Strong understanding of AI governance frameworks, AI safety, data privacy in AI pipelines, and LLM threat modeling (e.g., OWASP Top 10 for LLMs).

- Strong and practical knowledge of industry adopted frameworks and methodologies (MITRE ATT&CK;, CIS, NIST, ISO, etc.).

- Strong knowledge of global and regional data protection standards (e.g., India DPDP Act, GDPR, CCPA, PDPA) and cross-border data transfer governance.

- Strong knowledge of networking, identity access policies, and security best practices for cloud-based environments.

- Communication skills: Excellent verbal and written communication skills to effectively interact with customers, internal teams, and global stakeholders across different time zones.

- Problem-solving skills: Robust analytical and problem-solving abilities to identify and resolve issues and challenges, efficiently and timely.

- Time management: Effective time management skills to lead complex, cross-functional technology projects and various other tasks simultaneously.

- Proactive approach: Being proactive in identifying potential issues, opportunities for improvement, and going the extra mile to ensure Ollion’s success.

- Team player: Collaborating effectively with other teams within the organization, such as sales, marketing, customer support, and product development.

- Adaptability: Being adaptable to evolving business needs, unplanned security challenges and embody a cooperative “all hands on-deck” mentality when necessary.

- Exceptional written and verbal communication skills, with the ability to explain complex technical concepts to non-technical stakeholders.

- Demonstrated experience in developing and managing departmental budgets and negotiating with vendors.

- Industry certification(s) in Information Security (e.g., CCSP, CISSP, CISM) or Risk Management (e.g., CRISC).

- B.S. in Computer Science, Information Technology, Information Systems, or IT Management.

Additional Information

Ollion is an equal chance employer. We celebrate diversity and we are committed to creating an inclusive environment for all employees. Ollion does not discriminate in employment on the basis of race, color, religion, sex (including pregnancy and gender identity), national origin, political affiliation, sexual orientation, marital status, disability, genetic information, age, membership in an employee organization, parental status, military service, or other non-merit factor.

📌 Manager - Governance and Compliance (Contractor) (India)
🏢 Ollion
📍 India

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: manager - governance and compliance (contractor) (india) / india