
Lead - Cybersecurity Risk & Compliance
The Cybersecurity Risk & Compliance function is responsible for evaluating security and compliance risks within the organization. They set up security benchmarks, verify adherence to these standards across all internal sectors, and promote a culture of information security throughout the company.
As a member of our Cybersecurity Risk and Compliance team, you'll play a pivotal role in fortifying our security measures, leveraging your expertise in various technologies, regulatory frameworks, and emerging domains such as Artificial Intelligence (AI). This position demands a proactive approach to risk management, security, automation, AI governance, and strategic collaboration with diverse stakeholders to elevate our security standards.
Role Expectation
Drive the day-to-day activities about policy governance, control governance, risk, and compliance initiatives — including emerging AI governance and responsible AI adoption initiatives.
Enumerate cyber security and compliance risks and ensure they are managed appropriately across the products and business functions — including risks arising from AI/ML systems, GenAI integrations, third-party AI services, and agentic workflows. Ensure the Product/ Functional team takes prudent risk ownership through active partnership and collaboration.
Design and oversee the enforcement of policies and procedures based on industry-standard best practices, including AI governance policies covering model lifecycle management, AI data handling, and secure AI deployment practices.
Provide contextual guidance to various internal teams in terms of processes and controls to improve the information security, AI governance, and compliance posture of the organization.
Certify the readiness of the identified security frameworks and certifications by identifying & operationalizing the control requirements — including AI-related frameworks such as ISO 42001, NIST AI RMF, and applicable AI regulatory requirements (e.g., EU AI Act where relevant).
Responsible for reviewing and reporting the operating effectiveness of the controls and risk/loss exposure, including controls governing AI model security, data privacy in AI systems, prompt injection safeguards, and third-party AI usage.
Drive continuous monitoring initiatives for the developed controls and develop reporting metrics, dashboards, and evidence artifacts periodically to be presented to the Leadership — including metrics related to AI risk posture and governance maturity.
Drive security awareness program throughout the year to effectively motivate desired behaviors & conduct regular training on security policy and standard requirements through training, communication, and workshops — including responsible and secure use of AI tools across the organization.
Be a role model for the team and provide a healthy platform for the team to learn and grow, including building awareness on emerging AI security and governance trends.
Stay abreast of the developing regulatory concerns and changing information security trends, including evolving global AI governance and compliance requirements.
5–10 years of experience in the Risk & Compliance space, viz. Risk enumeration, defining security standards, and managing information security processes. Exposure to AI governance, model risk management, or AI security risk assessments is highly desirable.
Work experience or conceptual understanding of the AWS cloud platform to define controls for the cloud environment and suggest best practices, including controls for AI/ML workloads hosted in cloud environments.
Working experience or conceptual understanding of FAIR methodology risk assessments or Quantified risk assessments, including application to AI-related risks.
Have a deep understanding of security control frameworks such as ISO27001, PCI DSS, HIPAA, SOC 1/2, NIST Cyber Security Framework, NIST800-171, and the Cloud Compliance Framework. Familiarity with AI governance frameworks such as ISO 42001 and NIST AI RMF is an added advantage.
Understanding of AI/ML risk domains such as:
Data leakage in training or inference
Prompt injection and model misuse
AI output reliability and hallucination risks
Bias and fairness considerations
Third-party AI and SaaS AI integrations
Security certifications like CISA, CISSP, CRISC, and cloud security certifications will be highly desired. AI governance or AI risk-related certifications are a plus.
Ability to gather, analyze, and evaluate facts and to prepare and present concise, detailed, and clear oral and written reports, including emerging AI risk themes.
Ability to build relationships, influence others, instill accountability, and achieve results.
Ability to thrive in a dynamic, fast-paced environment taking up multiple responsibilities, including rapidly evolving AI governance requirements.
Excellent problem-solving, interpersonal, and communication skills.
Be a team player and a go-getter and thrive for success.
At Freshworks, we have fostered an environment that enables everyone to find their true potential, purpose, and passion, welcoming colleagues of all backgrounds, genders, sexual orientations, religions, and ethnicities. We are committed to providing equal opportunity and believe that diversity in the workplace creates a more vibrant, richer environment that boosts the goals of our employees, communities, and business. Fresh vision. Real impact. Come build it with us.
Similar roles
Senior Corporate Security Engineer
Robinhood·Bellevue, United States
JOIN US IN BUILDING THE FUTURE OF FINANCE. Our mission is to democratize finance for all. An estimated $124 trillion of assets will be inherited by younger generations in the next two decades. The largest transfer of wealth in human history. If you’re ready to be at the epicenter of this historic cultural and financial shift, keep reading. ABOUT THE…
- Full-time
Principal Manager, New Program Development (EAII Advisors)
Evidence Action·New Delhi, India
This position is with EAII Advisors, Evidence Action's technical partner in India. About EAII EAII Advisors, Evidence Action’s technical partner in India, supports state governments in delivering evidence-based public health programs, including safe drinking water initiatives and school and Anganwadi-based National Deworming Day and iron and folic acid supplementation. Operating across 10 states, EAII Advisors provides technical assistance to ministries…
- Hybrid
- Full-time
Enterprise Sales Specialist
CodeplixAI·Hyderabad, India
Job Title: Enterprise Experience: 3 years in IT Sales / Enterprise Sales Job Description: We are looking for an experienced Enterprise Sales professional with hands-on experience in IT solution selling, IT product selling, and enterprise solution selling . Key Responsibilities: Generate new leads through cold calling and other channels. Identify and qualify potential enterprise clients. Sell IT products, solutions, and…
- Full-time
Internal Controls and Audit Analyst for insurance domain
VikMark Technologies Private Limited·Hyderabad, India
Position Overview The Internal Controls & Audit Analyst is an independent control resource who maps, documents, and independently tests Client's operational processes and vendor performance. The role exists to close the accountability gaps identified in Client's operational review: undocumented processes, work products released without a peer reviewer of record, institutional knowledge concentrated in single individuals, and vendor commitments tracked without…
- Full-time
CA Fresher (IDT) Mumbai
H N A & Co LLP·Mumbai, India
Company Description H N A & Co LLP is a trusted and versatile Chartered Accountant firm, established in 1988 by Madhukar N Hiregange, with a strong focus on delivering value-added professional services in Indirect Taxation, including GST, Customs, FTP, Service Tax, and Central Excise. The firm has 23 partners and a team of over 400 professionals serving clients across multiple…
- Contract
Jio Point Manager
Jio·Mandi, India
We at Jio are hiring for Jio Point Manager Key requirements are Experience Required: 2-4 Years in Sales & Distribution Education Required : Graduation in any discipline Job Description Role & responsibilities : Develop the Jio point market Achieve acquisition and revenue target Identify & onboard channel partners Service retailers as per beat plan Ensure stock availability and visibility in…
- Full-time
Receptionist
OrbiTouch HR·Delhi, India
Profile : Receptionist Location: , Greater Kailash-I, New Delhi – 110048 CTC: ₹3 LPA Experience Required: Minimum 2 Years About the Company A leading skin care and hair treatment clinic based in Greater Kailash, New Delhi, specializing in dermatology, hair restoration, aesthetic treatments, and skin care solutions. Key Responsibilities Welcome and assist patients and visitors professionally. Manage front desk operations…
- Full-time
Senior Penetration Tester - CTL
Bridewell·London, United Kingdom
As a result of growth, we are looking for an experienced Senior Penetration Tester with solid experience of infrastructure and web application testing to deliver testing engagements on a range of key client work. This is an excellent opportunity for a highly motivated and determined Penetration Tester to continue their development and work on a range of exciting projects. As…
- Hybrid
- Full-time