Full-Time

Information Security Manager

Cyber GRC

Posted on 2/4/2026

Zafin

Zafin

501-1,000 employees

SaaS platform for bank product pricing

No salary listed

Thiruvananthapuram, Kerala, India

In Person

Category
IT & Security (1)
Required Skills
Microsoft Azure
Risk Management
Requirements
  • Bachelor’s degree in computer science, Information Security, or a related field
  • Strong knowledge of GRC frameworks (e.g., NIST, ISO 27001, GDPR, etc.)
  • Minimum 6 years of experience in cybersecurity risk, governance, or compliance
  • Experience conducting risk assessments and audits
  • Experience working on Azure Environment
  • Experience in Vendor Risk Management (Information Security focus)
Responsibilities
  • Develop and implement governance, risk, and compliance frameworks for cybersecurity. Ensure that frameworks are aligned with industry standards, regulatory requirements, and internal policies. Continuously improve the GRC process to enhance risk management and compliance across the organization. Be an owner for Trust Center and Cyber GRC controls under the overall controls framework.
  • Conduct comprehensive cyber risk assessments and support internal audits to evaluate security controls, processes, and compliance. Identify gaps in cybersecurity practices and recommend remediation measures. Provide evidence and documentation to internal audit teams and clients for certifications and compliance audits.
  • Perform vendor risk assessments, focusing on information security and cybersecurity practices. Provide input to clients and internal teams on vendor risk and ensure that vendors meet cybersecurity requirements.
  • Monitor changes in cybersecurity regulations, industry standards, and best practices. Ensure that the organization remains compliant with relevant laws and regulatory requirements. Update policies and procedures to reflect these changes and provide training to relevant stakeholders.
  • Develop, review, and maintain all cybersecurity-related policies and procedures. Ensure policies are communicated to all employees and are integrated into day-to-day operations. Regularly review and update policies to adapt to emerging threats and new regulations.
  • Prepare reports on the status of cybersecurity risks, compliance levels, and vendor assessments. Work with cross-functional teams, including IT, security, legal, and compliance, to develop strategies to mitigate identified risks and improve the organization’s cybersecurity posture.
Desired Qualifications
  • Certified Information Systems Auditor (CISA)
  • Certified in Risk and Information Systems Control (CRISC)
  • Certified in the Governance of Enterprise IT (CGEIT)
  • Certified Information Systems Security Professional (CISSP)
  • ISO/IEC 27001 Lead Auditor or equivalent
  • Experience using GRC tools for risk and compliance tracking

Zafin is a financial technology platform that helps banks and financial institutions manage and optimize their product pricing, packaging, and offers through a Software-as-a-Service (SaaS) model. It works by providing a cloud-based system where banks can design, configure, and deploy pricing and product configurations quickly—typically in days—without heavy IT involvement. The platform supports catalog management, pricing rules, and offer creation, while ensuring regulatory compliance through consistent governance and transparency across products. Compared with competitors, Zafin focuses on fast deployment, end-to-end product and pricing management, and global industry experience, enabling banks to respond rapidly to market changes and digital transformation efforts. Its goal is to help banks modernize their pricing and product strategies, improve efficiency, stay compliant, attract new customers, and retain existing ones.

Company Size

501-1,000

Company Stage

Late Stage VC

Total Funding

$52M

Headquarters

Vancouver, Canada

Founded

2002

Simplify Jobs

Simplify's Take

What believers are saying

  • ChatGPT Enterprise integration accelerates platform development and innovation.
  • Microsoft Azure AI collaboration advances bank modernization globally.
  • 10x Banking partnership enables incremental core system upgrades.

What critics are saying

  • Nordic Capital forces unprofitable US expansion, eroding margins in 12-24 months.
  • Temenos AI pricing modules capture clients seeking end-to-end solutions in 6-12 months.
  • Backbase poaches mid-tier clients like SunTrust with native pricing tools.

What makes Zafin unique

  • Zafin's miRevenue platform enables relationship-based pricing without core migrations.
  • Zafin Studio overlays legacy cores for rapid product bundling and personalization.
  • IO Canvas low-code builder redefines data integration for banks.

Help us improve and share your feedback! Did you find this helpful?

Your Connections

People at Zafin who can refer or advise you

Benefits

Paid Vacation

Wellness Program

Professional Development Budget

Hybrid Work Options

Growth & Insights and Company News

Headcount

6 month growth

0%

1 year growth

0%

2 year growth

2%
Zafin
Oct 24th, 2025
Zafin and Emirates NBD Win at the Global Retail Banking Innovation Awards 2025

Zafin and Emirates NBD win at the Global Retail Banking Innovation Awards 2025. October 24, 2025 Zafin, in partnership with Emirates NBD, is proud to be recognized at the Global Retail Banking Innovation Awards 2025, winning the title of Best Technology Implementation by a Retail Bank - Middle East. This win celebrates the Zafin SaaS implementation that modernized Emirates NBD's pricing and product architecture - accelerating innovation, enhancing governance, elevating customer experience, and driving revenue growth. The achievement underscores Zafin's role as a strategic partner driving digital transformation and cloud banking leadership across the Middle East. At the Digital Banker's Awards Ceremony in Singapore, Anugopal Venugopalan, Co-founder and Chief Revenue Officer at Zafin, accepted the award on behalf of Zafin and in collaboration with Chong Lip Fah, of Emirates NBD, marking a proud milestone in its long-standing collaboration with one of the region's most forward-looking financial institutions. Emirates NBD began its Zafin journey in 2013 with the on-prem pricing solution. In 2024, the bank successfully migrated to Zafin's SaaS platform - a complex, enterprise-wide transition covering the full spectrum of fees and charges across Retail, Wealth, Commercial, and Corporate segments, including legacy custom developments built over years. Delivered in record time, this milestone showcases the power of collaboration and innovation at scale. As Emirates NBD continues to build on this success, Zafin remains committed to helping financial institutions accelerate, deliver, and unlock the next era of digital banking!

Financial IT
Jul 24th, 2025
Zafin Integrates ChatGPT Enterprise to Accelerate Platform Development and Help Banks Compete

Zafin, the strategic platform partner that banks trust to accelerate innovation and deliver transformative customer value, is collaborating with OpenAI to apply ChatGPT Enterprise across its product development and delivery operations.

Dubai Iconic Lady
Jun 25th, 2025
Zafin Introduces Transaction Enrichment to Unlock Loyalty Through Personalized Banking

Zafin, the strategic platform partner that banks trust to accelerate innovation and deliver transformative customer value, today announces the launch of Transaction Enrichment.

Vistara Growth
Jun 2nd, 2025
Vistara Growth Wins VC Award for Zafin

Vistara Growth has won the 2025 Venture Capital Regional Impact Award for Western Canada from the CVCA for its investment in Zafin, a Vancouver-based fintech. Vistara's partnership since 2016 helped Zafin transition to SaaS and cloud-based delivery, leading to a Series B financing with Accenture Ventures in 2018. Zafin achieved 8x revenue growth, expanded to 750+ employees globally, and was acquired by Nordic Capital in 2024.

Business Wire
Nov 14th, 2024
Zafin Introduces IO Canvas, a Low-Code Builder, to Redefine Data Integration for Financial Institutions

Zafin introduces IO Canvas, a low-code builder, to redefine data integration for financial institutions.

INACTIVE