HamburgerMenu
iimjobs

Posted by

Recruiter

HR at CyRAACS

Last Active: 11 August 2026

Job Views:  
215
Applications:  41
Recruiter Actions:  0

Posted in

IT & Systems

Job Code

1706978

CyRAACS - Governance/Risk & Compliance Lead - Professional Services

CyRAACS.6 - 10 yrs.Bangalore
Posted 2 months ago
Posted 2 months ago

ROLE PURPOSE:

CyRAACS is building a high-velocity GRC compliance automation business on the COMPASS platform. As GRC Implementation Lead, you are the bridge between the platform and the client taking signed SOWs and turning them into live, working compliance programmes on COMPASS. You will be the primary implementation owner for clients onboarding to CyRAACS GRC services, working directly with client teams, internal delivery teams, and the Product Management function to ensure every client goes live on time and gets value from day one.

This is a player-coach role. The team starts small 1 to 2 members with the incumbent running implementations directly. As the client base grows and the breadth of GRC services on COMPASS expands, the team will scale accordingly. The quality of the onboarding experience you design today becomes the template for how CyRAACS builds its professional services capability at scale.

THE PLATFORM COMPASS:

COMPASS is CyRAACS's integrated technology platform delivering GRC compliance automation through a combination of traditional platform engineering and AI-powered capabilities. Key platform services include:

- Compliance automation across ISO 27001, SOC 2, RBI, SEBI, IRDAI, and DPDPA frameworks

- AI-assisted audit reports, compliance gap identification, and recommendation engines

- TPRM (Third Party Risk Management), Risk Management, and Audit Services in active build for 2026

- Client portal integrations for compliance reporting and evidence management

The GRC Implementation Lead is expected to develop deep working knowledge of COMPASS not as an engineer, but as an expert practitioner who can configure the platform to meet client compliance requirements, understand its capabilities and constraints, and translate client needs into platform-ready implementation plans.

KEY RESPONSIBILITIES:

1. Client Onboarding and Implementation:

- Own end-to-end onboarding of clients post-SOW from kickoff through go-live on COMPASS

- Understand the client's business environment, technology landscape, and compliance scope as defined in the SOW

- Configure COMPASS to meet each client's specific compliance requirements across applicable frameworks

- Define and execute implementation plans with clear milestones, dependencies, and client responsibilities

- Manage client stakeholders through the onboarding process setting expectations, resolving blockers, and driving timely completion

- Ensure clients are fully activated on COMPASS and deriving value before handoff to BAU services

2. GRC Framework Expertise:

- Apply deep knowledge of GRC standards and frameworks ISO 27001, SOC 2, RBI guidelines, SEBI circulars, IRDAI regulations, and DPDPA to translate regulatory requirements into COMPASS implementation scope

- Stay current on regulatory changes across RBI, SEBI, IRDAI, and DPDPA that affect client compliance programmes on COMPASS

- Support onboarding for TPRM, Risk Management, and Audit Services as these capabilities mature through 2026

3. Change Management and Expansion:

- Own change management as the COMPASS platform evolves communicate platform changes to clients, update implementation configurations, and ensure continuity of compliance programmes

- Onboard the upsell and cross-sell changes as client scope expands new frameworks, additional services, or new COMPASS capabilities and work with internal teams to scope and execute expansions

- Collaborate with Product Management to stay abreast of regulatory changes to supported standards (e.g. RBI, SEBI, NIST, GDPR, IRDAI, DPDPA etc.) that affect client compliance and build change management plans for clients.

- Maintain implementation documentation for each client current configuration, scope, framework coverage, and open items

4. Internal Collaboration:

- Work closely with the BAU services delivery teams to ensure smooth handoff post-onboarding and alignment on ongoing client needs

- Act as the voice of the client back to Product Management surfacing platform gaps, configuration limitations, and feature requests from implementation experience

- Collaborate with the CTO's engineering team on platform performance - capability questions, integration requirements, scale constraints and configuration edge cases

- Contribute to the development of onboarding playbooks, implementation templates, and best practice documentation as the practice scales

5. Team Building (Player-Coach):

- Start with a team of 1-2 members, running implementations directly

- As the client base and breadth of GRC services on COMPASS grow, identify the right point to expand the team and mentor junior implementation consultants

WHAT YOU BRING:

Experience:

- 6-10 years of experience in GRC consulting, implementation, or compliance

- Hands-on and extensive experience implementing and configuring GRC technology platforms (e.g., ServiceNow GRC, Archer, MetricStream, OneTrust, or similar) COMPASS knowledge can be built on the job

- Deep working knowledge of at least two of: ISO 27001, SOC 2, RBI cybersecurity framework, SEBI circulars, IRDAI guidelines, DPDPA

- Have delivered at least one implementation driven by AI technologies, tools towards migration/adoption requirements.

- Experience working with BFSI clients banks, NBFCs, insurance companies, brokerages, or fintech is a strong plus given CyRAACS's primary market

- Exposure to SMB client environments preferred ability to work with clients who have lean internal teams and limited GRC maturity

Skills:

- Strong client-facing skills able to run workshops, manage stakeholder expectations, and communicate clearly with both technical and compliance audiences

- Structured implementation mindset able to break down complex compliance requirements into clear, executable onboarding plans

- Comfort with AI-powered platforms and GRC automation tools not a developer, but technically fluent enough to configure and troubleshoot

- Strong written communication implementation plans, status updates, and documentation must be crisp and client-ready

- Change management capability comfortable managing clients through platform evolution and expanding compliance scope

CyRAACS is a CERT-In empanelled cybersecurity firm building the market-defining GRC compliance automation platform for India, the Middle East, and the USA. This is an early-stage professional services leadership role the person who joins now will define how CyRAACS delivers GRC implementations at scale.

Didn’t find the job appropriate? Report this Job

Similar jobs that you might be interested in

Posted by

Recruiter

HR at CyRAACS

Last Active: 11 August 2026

Job Views:  
215
Applications:  41
Recruiter Actions:  0

Posted in

IT & Systems

Job Code

1706978

Loading chat...