Job Description
About the Role
BETSOL is seeking a Compliance Lead to join our Governance, Risk, and Compliance (GRC) team. The Compliance Lead will be responsible for designing, implementing, and continuously improving the organization's compliance framework across IT and business functions. This role ensures adherence to regulatory, contractual, and industry standards while supporting audits, risk management, and governance initiatives.
Responsibilities
- Own and manage the compliance program covering Security, Privacy, and IT controls.
- Ensure alignment with frameworks such as ISO 27001, ISO 9001, SOC 2 Type II, PCI DSS, HIPAA, and GDPR.
- Develop, maintain, and update compliance policies, standards, and procedures.
- Conduct periodic control testing, evidence collection, and remediation tracking.
- Coordinate external audits, certification assessments, and readiness reviews.
- Lead internal compliance assessments and governance reviews.
- Manage compliance exceptions, deviations, and risk acceptance processes.
- Support vendor and third-party risk assessments.
- Collaborate with Security, IT, Engineering, HR, and Legal teams to address compliance gaps.
- Conduct compliance awareness and training programs.
- Maintain compliance dashboards, KPIs, audit records, and leadership reports.
Looking For
- 6+ years of experience in IT Compliance, Information Security Governance, GRC, Audit, or Risk Management.
- Experience managing compliance programs and regulatory audits.
- Strong understanding of security controls, risk management, governance processes, and audit methodologies.
- Experience working with cross-functional stakeholders in a fast-paced environment.
Mandatory Skills
A. Technical Skills
- Governance, Risk, and Compliance (GRC)
- ISO 27001, ISO 9001, SOC 2 Type II
- PCI DSS, HIPAA, GDPR
- Internal and External Audit Management
- Control Testing and Evidence Collection
- Risk Assessments and Risk Management
- Vendor and Third-Party Compliance Reviews
- Policy and Procedure Management
- Access Governance, Vulnerability Management, Change Management, and Incident Management
B. Soft Skills
- Strong stakeholder management
- Excellent communication and documentation skills
- Analytical and problem-solving abilities
- Attention to detail
- Collaboration and leadership skills
Good to Have Skills
- CISSP, CISA, CISM, CRISC
- ISO/IEC 27001:2022 Lead Auditor or Lead Implementer
- ISO 9001:2015 Lead Auditor or Lead Implementer
- CGRC
- PCI QSA
- SOC 2 Practitioner
- CCSP
- Experience working in cloud and SaaS environments