Lead - Technology as a Business/Senior Lead - Technology

Bajaj Finance · Pune

  • Experience6–8 yrs
  • SalaryNot disclosed
  • Work modeonsite
  • Levelsenior
  • Posted10 Sept 2026

About Bajaj Finance

Bajaj Finance is hiring in Pune in financial services. This role looks for around 6+ years of experience.

Skills

  • ISO 27001
  • SOC 2
  • cloud security
  • SaaS architecture
  • data protection privacy regulations
  • risk assessment
  • threat modeling
  • vendor risk management
  • incident response
  • business continuity planning
  • disaster recovery
  • Information Security
  • Governance, Risk, and Compliance

The role

A security compliance leader at a financial services technology company designs and governs ISO 27001, SOC 2, and cloud security programs for SaaS environments, translating risk assessments into audit-ready controls and incident readiness. The role also applies data protection privacy regulations and supports enterprise customer security reviews.

Full job description

Job Purpose

Your job is to make sure our SaaS platform is secure, audit-ready, and certifiable without slowing the company down. Youll design and run our information security and compliance programs end-to-endturning chaos into controls, and controls into certifications customers actually care about.

In a SaaS startup, security is revenue insurance. This role directly impacts:

Enterprise deal velocity

Customer trust retention

Long-term company valuation

You wont be a back-office function. Youll be a strategic enabler.

Duties and Responsibilities

A-Minimum required Accountabilities for this role

1. Security Compliance Ownership

Own the InfoSec and compliance roadmap for the company

Define and maintain policies, standards, and controls (practical, not academic)

Act as the single point of accountability for audits and certifications

2. Certifications Frameworks (Core Mandate)

You will lead certification efforts end-to-end, including:

ISO 27001 (ISMS design, implementation, audits)

SOC 2 Type I II

GDPR, DPDP (India), and customer-driven security questionnaires

Prepare evidence, manage auditors, close gapsno outsourcing responsibility

3. Risk, Controls Security Governance

Conduct risk assessments and threat modeling for SaaS architecture

Translate risks into prioritized, business-aligned controls

Own vendor risk management and third-party security reviews

4. Engineering Product Partnership

Work directly with Engineering, DevOps, and Product teams

Embed security into SDLC, CI/CD, cloud infrastructure, and data flows

Push for automation over manual controls wherever possible

5. Incident Response Readiness

Define and maintain incident response, BCP, and DR plans

Lead tabletop exercises and post-incident reviews

Ensure real preparednessnot just documented plans

6. Customer Sales Enablement

Support enterprise sales with security narratives and compliance evidence

Respond to customer security assessments and due-diligence reviews

Act as a credibility multiplier, not a bottleneck

B-Additional Accountabilities pertaining to the role

Leadership Expectations

Think systems-first, not tool-first.

Bias for automation and simplicity.

Calm under pressure; decisive during incidents.

Business-aware: understands how infra decisions affect revenue, customers, and growth.

Comfortable pushing back on bad ideaseven from senior stakeholders.

Major Challenges

Core certifications achieved and renewed with minimal audit friction

Security controls embedded into engineering workflows

Reduced sales friction due to faster, confident compliance responses

Clear risk posture that leadership actually understands

No security theateronly controls that work

Required Qualifications and Experience

a)Qualifications

Post Graduates with relevant sales experience of 6-8 years (also graduates with experience of 8-10 years may apply)

b)Work Experience

Relevant sales experience in managing large sales channels in multiple market environments

Prior relevant experience in the Financial Services Industry would be an added advantage.

Demonstrated success achievement orientation.

Excellent communication skills.

Strong bias for action driving results in a high performance environment.

Demonstrated ability to lead from the front.

Excellent relationship skills.

Strong analytical skills to drive channel performance and drive profitability.

Exceptionally high motivational levels and needs to be a self-starter.

Must-Have

510+ years in InfoSec, GRC, or compliance roles (SaaS or cloud-native preferred)

Proven ownership of ISO 27001 and/or SOC 2 certifications

Strong understanding of:

oCloud security (AWS / Azure / GCP)

oSaaS architecture multi-tenant systems

oData protection privacy regulations

Ability to write clear, audit-grade documentation that engineers dont hate

Comfortable pushing back on leadership when risk is real

Nice-to-Have (Big Plus)

Experience in early-stage or scaling SaaS startups

Automation mindset (GRC tools, evidence pipelines, scripts)

Certifications like ISO 27001 LA, CISA, CISSP, or similar

Experience dealing with global customers and enterprise procurement teams