Manager - Information Security (Governance, Risk & Compliance)
About the Team
At Navi, the InfoSec team safeguards our digital ecosystem - ensuring the confidentiality, integrity, and availability of critical systems and data. We lead the charge on information security risk management, regulatory compliance, and data protection, while championing a security-first culture across all teams.
Our mission: Protect what powers Navi - securely, compliantly, and confidently.
About the Role
You will lead Navi’s Information security governance, risk, and compliance efforts across the group. You’ll ensure alignment with RBI, IRDAI, SEBI, and global security standards by shaping policy, driving audit readiness, and embedding secure practices across tech, product, and infrastructure. This role combines regulatory depth, technical oversight, and cross-functional collaboration to minimize risk and strengthen Navi’s security posture in a fast-paced, regulated environment.
What We Expect From You
As Navi operates in the regulatory space, this role requires interpreting and helping implement regulations related to cyber security by Reserve Bank of India (RBI), IRDAI and SEBI, as well as any other applicable regulatory guidance related to the service offerings issued by relevant institutions.
Further to the point above, ensure on-going monitoring and tech-compliance with existing regulatory expectations across these dimensions
Lead the Information security - GRC practice for Navi group level.
Ensuring that information security principles, policies, frameworks, standards and controls are defined, implemented and managed effectively.
Partner and collaborate extensively with cross-functional teams, such as Engineering, Infrastructure, IT, Legal, and help minimize information security risks
Architect and deliberate on the solutions that are compliant with relevant regulatory cybersecurity requirements
Conduct and review results of Technology Risk Assessment, recommending mitigation strategies to bring the Risk to appropriate levels Nav is looking for a Manager Information Security (GRC) to be part of the information security
Ensure readiness of the organization for internal and external audits by keeping all documents, evidences, ready
If required, represent Navi in Board and Board Committee meetings, as well as in discussions with regulators
Conduct Security awareness programs, train personnel on data security & privacy related processes and responsibilities
Review / conduct Third Party Risk Assessments & Vendor assessments before onboarding
Review security solutions / controls implemented by Tech / Engineering teams, controls at data center,
cyber / information security incidents, IT BCP and DR drills, cloud security controls
Identify and define Security KPIs including weekly, monthly reports and update Security Dashboards
Must Haves
5+ years of experience working in information security GRC
Prior experience in the Fintech/Startup industry and knowledge of one of the regulatory compliances like PCI DSS, RBI Master Directives, IRDA, SEBI cyber security guideline is preferred.
Hands-on approach in solving complex security problems
Experience with Information Security & Risk Management frameworks like ISO27001, NIST SP 800-37, etc Cyber Kill Chain, MITRE ATT&CK, or other relevant frameworks
Working knowledge of Cloud environments like AWS, GCP, Oracle cloud is beneficial
Exposure to Agile methodologies, DevOps, Cloud technologies is beneficial
Soft Skills
Ability to multitask and meet deadlines, and to prioritize in a highly dynamic work environment
Ability to balance risk, potential impact, resourcing, business drivers, and timelines
Excellent verbal and written communication skills
Strong Product Thinking
Strong problem solving
Business acumen
Technology grounding
Strategic thinking
Strong written and verbal communication skills with a talent for articulating.
About Navi
We are on a mission to make finance simple, accessible and affordable for a billion Indians. Guided by a strong customer-first approach, we are building tech-first solutions that work at scale. Our offerings include a range of financial products and services across Loans, Insurance, Mutual Funds, Digital Gold and UPI.
Founded by Sachin Bansal & Ankit Agarwal in 2018, we are one of India’s fastest-growing financial services organisations. But we’re just getting started!
Our Culture
At Navi, we’re a place where ambition meets opportunity and ideas turn into impact quickly. We empower people with high ownership from the start, encouraging them to solve meaningful problems and build with excellence. Teams here work in an environment that values speed, collaboration and craftsmanship, while celebrating learning, growth and shared wins along the way. Whether you’re shaping the future of fintech products or driving innovation behind the scenes, life at Navi means being part of a high-energy, talent-driven workplace where your contributions truly make a difference.
We’re guided by our own operating system - The Navi OS - a set of principles that shape how we work and win together. You can explore them atnavi.com/our-values to see what drives us every day.
If this feels like you, Navi is the place to grow, thrive and make a real impact.