Associate Compliance Manager
Meesho
Bangalore, Karnataka, IndiaPosted 3 months ago
Skill Required
TechEngineeringISO 27001security
Role overview
This is a hands-on individual contributor role for someone who wants to drive—not just oversee—a multi-framework compliance program. You'll be the DRI for ISO 27001:2022 and SOC 2 Type II, run end-to-end ITGC and TPRM cycles, and help operationalise India's DPDP Rules 2025 across a product organisation that processes data at meaningful scale. You'll work directly with Engineering, IT, Legal, Product, and external auditors.
Responsibilities
- Drive a multi-framework compliance program
- Be the DRI (Directly Responsible Individual) for ISO 27001:2022
- Be the DRI for SOC 2 Type II
- Run end-to-end ITGC (IT General Controls) cycles
- Run end-to-end TPRM (Third-Party Risk Management) cycles
- Help operationalise India's DPDP Rules 2025 across the product organisation
- Work directly with Engineering, IT, Legal, Product, and external auditors
Additional details
- Meesho's Security & Compliance team safeguards a platform that 5% of Indian households shop with - millions of orders, billions of data points, zero downtime as a baseline
- The team owns the Information Security Management System
- The team drives every external certification
- The team shapes how Meesho earns trust with sellers, buyers, partners and regulators
- The team moves fast, defaults to automation, and obsesses over evidence