Manager_Cyber Security Governance, Risk and Compliance Specialist_Pune
Pune, IndiaPosted Jul 1, 2026
## Who we are
VOIS (Vodafone Intelligent Solutions) is a strategic arm of Vodafone Group Plc, creating value for customers by delivering intelligent solutions through Talent, Technology & Transformation.
As the largest shared services organisation in the global telco industry with 30,000 FTE, our portfolio of next-generation solutions and services are designed in partnership with customers across Vodafone Group, local markets, and partner markets to simplify and drive growth. With our strategic partner Accenture, we work alongside our Vodafone customers, other Telco and tech companies to drive transformation, meet the challenges of our industry and ensure we stay relevant and resilient. This partnership is a unique, industry-first model which brings together the best of in-house and 3rd party capability.
We work with customers across 28 countries from 10 VOIS locations: Albania, Egypt, Hungary, India, Romania, Spain, Turkey, UK, Germany, Ireland, and with a network of teams in Czech Republic, Italy, Greece, and Portugal.
#VOIS #BeUnrivalled #CreateTheFuture
## About this Role
We are seeking an experienced Office IT Security & Compliance Specialist to support the delivery of security, risk, and compliance objectives across Global Office IT. The role will work closely with security, service, and solution stakeholders to ensure compliance with internal controls and external regulations, including ISO 27001, GDPR, SOX, and IT General Controls frameworks. The successful candidate will drive control implementation, evidence management, audit readiness, compliance reporting, risk assessment, and security awareness initiatives while helping to strengthen the overall security posture of Global Office IT.
## What you’ll do
* Partner with Global Office IT teams to identify and address security and compliance gaps.
* Support the implementation, management, and monitoring of security controls across platforms, applications, and data environments.
* Ensure adherence to applicable standards and regulations, including ISO 27001, GDPR, and related security frameworks.
* Monitor compliance performance and provide regular compliance reporting to stakeholders.
* Collaborate with service and solution owners to collect and maintain evidence required for security compliance reviews and CHARM controls.
* Maintain governance documentation, evidence repositories, and version-controlled records.
* Conduct periodic compliance assessments and audits, driving remediation and closure of findings.
* Perform risk assessments and support mitigation planning for IT services, applications, and infrastructure.
* Promote security awareness and compliance best practices across Office IT environments.
## Who you are
* Experienced in IT auditing, either internal or external.
* Knowledgeable in ISO 27001 implementation, governance, and audit practices, ideally with Lead Implementer or Lead Auditor credentials.
* Experienced in SOX testing and IT General Controls (ITGC) frameworks.
* Certified Information Systems Security Professional (CISSP) or possessing equivalent security expertise.
* Cloud security certification or practical cloud security experience.
* Experienced in IT risk assessment and risk management methodologies.
* Familiar with data privacy and data security controls, including encryption, GDPR, and PKI.
* Understanding of cyber security domains such as vulnerability management, patching, and endpoint protection.
* Demonstrates strong analytical thinking, stakeholder management, and problem-solving capabilities.
* Comfortable influencing diverse stakeholders and driving compliance improvements across multiple teams.
## Not a perfect fit?
Concerned you may not meet every requirement? Vodafone is committed to creating an inclusive workplace where everyone can thrive. If you are excited about this role but your experience does not align exactly with every aspect of the job description, you are encouraged to...