
Real job — pulled straight from Lumel’s careers page · Verified July 13, 2026 · No reposts.
Job description
Lumel is hiring a Senior Manager, Information Security Compliance and GRC — a full-time, remote role. Apply directly on Lumel's careers page below.
Senior Manager – Information Security Compliance & GRC
Location: Chennai, India
Department: Products
Experience: 5-7
About Lumel
About the role
Key Responsibilities
Compliance Program Leadership
- Own and lead Lumel's enterprise Information Security Compliance Program.
- Develop and execute the long-term compliance roadmap aligned with business growth.
- Establish governance structures, compliance metrics, reporting dashboards, and executive updates.
- Build scalable compliance processes supporting multiple global regulatory frameworks.
Security Certifications & Audit Management
- SOC 2 Type II
- ISO/IEC 27001
- GDPR
- HIPAA
- Future compliance initiatives (ISO 27701, PCI DSS, CSA STAR, NIST CSF, etc.)
- Readiness assessments
- Gap assessments
- Control implementation
- Risk assessments
- Audit planning
- Evidence collection
- Audit coordination
- Certification maintenance
- Continuous monitoring
Governance, Risk & Controls
- Design and maintain security policies, standards, procedures, and governance frameworks.
- Develop and manage:
- Risk Registers
- Control Matrices
- Risk Treatment Plans
- Compliance Dashboards
- Policy Lifecycle
- Perform control testing and internal compliance reviews.
- Drive remediation efforts across engineering and business teams.
Audit & Vendor Management
- Serve as primary liaison for external auditors, certification bodies, customers, and compliance partners.
- Manage audit timelines, evidence requests, and certification deliverables.
- Coordinate third-party risk assessments and vendor security reviews.
- Support customer security questionnaires and due diligence requests.
Cross-Functional Leadership
- Engineering
- Cloud Infrastructure
- DevOps
- Product Management
- IT
- HR
- Legal
- Executive Leadership
Continuous Improvement
- Monitor emerging regulations and security standards.
- Recommend improvements to Lumel's governance and risk management practices.
- Deliver compliance awareness and security training across the organization.
- Build an audit-ready culture through automation, documentation, and process excellence.
Required Qualifications
- 5+ years of experience in Information Security, Governance, Risk & Compliance (GRC), Risk Assurance, or Information Security Compliance.
- Proven experience in independently leading enterprise compliance programs from initiation through successful certification.
- Hands-on experience managing:
- SOC 2 Type II
- ISO 27001
- GDPR
- HIPAA
- Strong understanding of:
- Information Security Governance
- Risk Management
- Internal Controls
- Audit Methodologies
- Control Testing
- Security Policies
- Experience working with external auditors, certification bodies, Big4 firms, or consulting organizations.
- Strong project management and stakeholder management skills.
- Excellent executive communication and presentation skills.
- Ability to influence cross-functional teams without direct authority.
- Highly organized, detail-oriented, and capable of managing multiple compliance initiatives simultaneously.
- Self-driven with a strong ownership mindset and the ability to work independently in a fast-paced environment.
Preferred Qualifications
- Microsoft Azure
- AWS
- Google Cloud Platform (GCP)
Preferred Certifications
- CISA
- CISM
- CISSP
- CRISC
- ISO/IEC 27001 Lead Auditor
- ISO/IEC 27001 Lead Implementer
Why Join Lumel?
- Own and build Lumel's enterprise Information Security Compliance function from the ground up.
- Lead strategic security initiatives with executive visibility and influence.
- Shape the company's long-term governance, risk, and compliance strategy.
- Work in a collaborative, fast-growing global SaaS organization.
- Opportunity to implement modern compliance automation and best-in-class security practices.
- Competitive compensation, comprehensive benefits, and strong career growth opportunities.
Get Senior Manager, Information Security Compliance and GRC jobs like this→
New roles from thousands of companies land hourly, straight from their careers pages. Get the freshest matches by email so you never miss one.
Email me new jobsSimilar jobs




Frequently asked questions
Is Senior Manager, Information Security Compliance and GRC at Lumel a remote job?
Yes, Senior Manager, Information Security Compliance and GRC at Lumel is a remote position. Candidates in Chennai, India may be preferred.
What skills are required for Senior Manager, Information Security Compliance and GRC at Lumel?
The required skills for Senior Manager, Information Security Compliance and GRC at Lumel include: SOC 2, ISO 27001, GDPR, HIPAA, CISA, CISM, CISSP, PCI DSS, Azure, AWS, GCP.
What is the seniority level for Senior Manager, Information Security Compliance and GRC at Lumel?
Senior Manager, Information Security Compliance and GRC at Lumel is a Manager / Senior level position.
How do I apply for Senior Manager, Information Security Compliance and GRC at Lumel?
You can view the full description and apply for Senior Manager, Information Security Compliance and GRC at Lumel on EchoJobs: https://echojobs.io/job/lumel-senior-manager-information-security-compliance-grc-ers92.