About WeCredit :
WeCredit is a fast-growing digital lending marketplace connecting customers with leading banks and NBFCs. As a regulated FinTech, security, compliance, and technology governance are central to our business.
Role Overview :
We are looking for a Head - IT Compliance & Information Security to lead information security governance, IT audits, regulatory compliance, and partner due diligence. The role will work closely with banks, auditors, engineering, and product teams to ensure compliance with regulatory requirements and industry security standards.
Key Responsibilities :
- Lead IT Compliance, Information Security Governance, and IT Audit functions.
- Manage partner bank due diligence, RFIs, security reviews, and audit requirements.
- Drive Information System (IS) Audits, IT Audits, and audit closure activities.
- Oversee Vulnerability Assessment & Penetration Testing (VAPT) and remediation tracking.
- Implement and govern Disaster Recovery (DR), Business Continuity Planning (BCP), and RTO/RPO compliance.
- Establish data protection controls, database encryption standards, and multi-tenant security frameworks.
- Manage Identity & Access Management (IAM), SIEM monitoring, DLP, endpoint security, and access governance.
- Conduct vendor risk assessments, change management reviews, and security control evaluations.
- Translate compliance requirements into actionable tasks for Engineering, DevOps, and Product teams.
- Track compliance metrics and ensure adherence to bank and regulatory TATs.
Required Skills & Experience :
- 6- 10 years of experience in IT Compliance, Information Security, IT Audit, or GRC within FinTech, Digital Lending, Banking, or NBFC sectors.
- Strong understanding of RBI regulations, Digital Lending Guidelines, IT Outsourcing Guidelines, Cyber Security Frameworks, and DPDP Act.
- Hands-on knowledge of AWS Security, Cloud Infrastructure, Network Security, Database Security, API Security, IAM, SIEM, DLP, and Endpoint Protection.
- Experience managing IS Audits, IT Audits, VAPT programs, risk assessments, and regulatory compliance reviews.
- Strong stakeholder management skills with the ability to engage auditors, partner banks, and internal technology teams.
Preferred Certifications :
- CISA
- CISM
- CISSP
- ISO 27001 (Lead Auditor/Implementer)
Why Join WeCredit?
Own and shape the organization's security and compliance framework while partnering with leading banks and NBFCs in a high-impact leadership role.
Benefits:
- Paid sick time
- Provident Fund
Ability to commute/relocate:
- Jaipur, Rajasthan (Jaipur): Reliably commute or planning to relocate before starting work (Preferred)
Application Question(s):
- Please mention your current location.
- Mention your notice period
- How many years of experience you have working in BFSI Industry.
Work Location: In person