Lead - Technology as a Business/Senior Lead - Technology
Bajaj Finance · Pune
- Experience6–8 yrs
- SalaryNot disclosed
- Work modeonsite
- Levelsenior
- Posted10 Sept 2026
About Bajaj Finance
Bajaj Finance is hiring in Pune in financial services. This role looks for around 6+ years of experience.
Skills
- ISO 27001
- SOC 2
- cloud security
- SaaS architecture
- data protection privacy regulations
- risk assessment
- threat modeling
- vendor risk management
- incident response
- business continuity planning
- disaster recovery
- Information Security
- Governance, Risk, and Compliance
The role
A security compliance leader at a financial services technology company designs and governs ISO 27001, SOC 2, and cloud security programs for SaaS environments, translating risk assessments into audit-ready controls and incident readiness. The role also applies data protection privacy regulations and supports enterprise customer security reviews.
Full job description
Job Purpose
Your job is to make sure our SaaS platform is secure, audit-ready, and certifiable without slowing the company down. Youll design and run our information security and compliance programs end-to-endturning chaos into controls, and controls into certifications customers actually care about.
In a SaaS startup, security is revenue insurance. This role directly impacts:
Enterprise deal velocity
Customer trust retention
Long-term company valuation
You wont be a back-office function. Youll be a strategic enabler.
Duties and Responsibilities
A-Minimum required Accountabilities for this role
1. Security Compliance Ownership
Own the InfoSec and compliance roadmap for the company
Define and maintain policies, standards, and controls (practical, not academic)
Act as the single point of accountability for audits and certifications
2. Certifications Frameworks (Core Mandate)
You will lead certification efforts end-to-end, including:
ISO 27001 (ISMS design, implementation, audits)
SOC 2 Type I II
GDPR, DPDP (India), and customer-driven security questionnaires
Prepare evidence, manage auditors, close gapsno outsourcing responsibility
3. Risk, Controls Security Governance
Conduct risk assessments and threat modeling for SaaS architecture
Translate risks into prioritized, business-aligned controls
Own vendor risk management and third-party security reviews
4. Engineering Product Partnership
Work directly with Engineering, DevOps, and Product teams
Embed security into SDLC, CI/CD, cloud infrastructure, and data flows
Push for automation over manual controls wherever possible
5. Incident Response Readiness
Define and maintain incident response, BCP, and DR plans
Lead tabletop exercises and post-incident reviews
Ensure real preparednessnot just documented plans
6. Customer Sales Enablement
Support enterprise sales with security narratives and compliance evidence
Respond to customer security assessments and due-diligence reviews
Act as a credibility multiplier, not a bottleneck
B-Additional Accountabilities pertaining to the role
Leadership Expectations
Think systems-first, not tool-first.
Bias for automation and simplicity.
Calm under pressure; decisive during incidents.
Business-aware: understands how infra decisions affect revenue, customers, and growth.
Comfortable pushing back on bad ideaseven from senior stakeholders.
Major Challenges
Core certifications achieved and renewed with minimal audit friction
Security controls embedded into engineering workflows
Reduced sales friction due to faster, confident compliance responses
Clear risk posture that leadership actually understands
No security theateronly controls that work
Required Qualifications and Experience
a)Qualifications
Post Graduates with relevant sales experience of 6-8 years (also graduates with experience of 8-10 years may apply)
b)Work Experience
Relevant sales experience in managing large sales channels in multiple market environments
Prior relevant experience in the Financial Services Industry would be an added advantage.
Demonstrated success achievement orientation.
Excellent communication skills.
Strong bias for action driving results in a high performance environment.
Demonstrated ability to lead from the front.
Excellent relationship skills.
Strong analytical skills to drive channel performance and drive profitability.
Exceptionally high motivational levels and needs to be a self-starter.
Must-Have
510+ years in InfoSec, GRC, or compliance roles (SaaS or cloud-native preferred)
Proven ownership of ISO 27001 and/or SOC 2 certifications
Strong understanding of:
oCloud security (AWS / Azure / GCP)
oSaaS architecture multi-tenant systems
oData protection privacy regulations
Ability to write clear, audit-grade documentation that engineers dont hate
Comfortable pushing back on leadership when risk is real
Nice-to-Have (Big Plus)
Experience in early-stage or scaling SaaS startups
Automation mindset (GRC tools, evidence pipelines, scripts)
Certifications like ISO 27001 LA, CISA, CISSP, or similar
Experience dealing with global customers and enterprise procurement teams