Manager, Corporate Security & GRC

18 Hours ago • 10 Years +

Job Summary

Job Description

Toast is seeking a strategic and experienced leader to manage its Corporate Security and Governance, Risk, and Compliance (GRC) functions in India. This role involves leading and growing both teams, strengthening the company's security posture, ensuring compliance with industry frameworks, and supporting enterprise risk efforts. Responsibilities include overseeing corporate security tasks such as endpoint protection, vulnerability management, threat mitigation, vendor risk assessments, and data loss prevention. On the GRC side, the role entails developing and maintaining GRC frameworks (SOC 2, PCI DSS, ISO 27001), managing third-party security attestations, and reporting on compliance and risk trends. The position also requires providing leadership, mentorship, recruitment, and development for the security teams in India, fostering a collaborative and high-performing environment.
Must have:
  • Bachelor's in Computer Science, InfoSec, or related field
  • 10+ years in cybersecurity
  • Hands-on experience in vulnerability management
  • Hands-on experience in compliance automation
  • Hands-on experience in GRC
  • Strong understanding of SOC operations
  • Strong understanding of incident response
  • Strong understanding of security tooling
  • Proven leadership experience managing security teams
  • Skilled in communication and collaboration
  • Deep knowledge of compliance frameworks
  • Deep knowledge of regulatory expectations
Good to have:
  • Master's degree preferred
  • Industry certifications like CISSP, CISM, or CEH strongly preferred
  • Experience with SIEM, IDS/IPS, WAF

Job Details

About Toast

Toast is driven by building the restaurant platform that helps restaurants adapt, take control, and get back to what they do best: building the businesses they love. Because our technology is purpose-built for restaurants, our customers trust that we will deliver on their needs today while investing in innovative experiences that will power the future of the industry.

 

About this roll*:

We are seeking a strategic and experienced leader to manage our Corporate Security and Governance, Risk, and Compliance functions in India. You will lead and grow both teams, strengthen our security posture, drive compliance with industry frameworks, and support enterprise risk efforts, while partnering closely with global stakeholders on key initiatives.

 

What you will do:

Corporate Security:

  • Provide leadership and oversight to the CorpSec team, ensuring the implementation of best practices across endpoint protection, vulnerability management, and threat mitigation.
  • Guide the design and management of a secure enterprise endpoint strategy, ensuring the CorpSec team aligns with policy and compliance requirements.
  • Supervise the CorpSec team in conducting vendor risk assessments and coordinate with global stakeholders to drive remediation activities.
  • Oversee the management of secure email gateway and Data Loss Prevention (DLP) systems, ensuring the CorpSec team enforces data protection and policy compliance across all endpoints (Windows, macOS, Linux).
  • Manage endpoint investigations and root cause analysis, directing the CorpSec team to collaborate with the SOC for integrating telemetry into SIEM platforms (e.g., Splunk, Datadog).
  • Ensure the CorpSec team maintains documentation, SOPs, and training resources, and oversees the delivery of awareness sessions to improve endpoint hygiene.
  • Stay informed on emerging threats to provide strategic guidance to the CorpSec team for enhancing threat detection and response capabilities.

 

Governance, Risk, and Compliance (GRC):

  • Oversee the development and maintenance of GRC frameworks (SOC 2, PCI DSS, ISO 27001), ensuring the Technical GRC team aligns with global standards and maintains ongoing compliance.
  • Manage the review process for third-party security attestations (e.g., SOC 2, ISO 27001) and guide the Technical GRC team in assessing vendors in collaboration with Legal, Procurement, and IT.
  • Supervise periodic vendor risk reviews, ensuring the Technical GRC team identifies gaps and drives remediation plans effectively.
  • Partner with internal audit and external assessors to support security evaluations and regulatory alignment.
  • Provide oversight for regular reporting on compliance posture, risk trends, and incident metrics to senior stakeholders, ensuring the Technical GRC team delivers accurate and timely updates.

 

Team Leadership and Development:

  • Provide leadership and mentorship to the Corporate Security and GRC teams in India, fostering a high-trust, collaborative environment.
  • Recruit, train, and grow security talent to build a resilient, high-performing organization.
  • Set performance goals, conduct evaluations, and support team members' ongoing development.

 

Do you have the right ingredients*?

  • Bachelor’s in Computer Science, InfoSec, or related field (Master’s preferred).
  • Industry certifications like CISSP, CISM, or CEH are strongly preferred.
  • 10+ years in cybersecurity, with hands-on experience in vulnerability management, compliance automation, and GRC.
  • Strong understanding of SOC operations, incident response, and security tooling (SIEM, IDS/IPS, WAF).
  • Proven leadership experience managing distributed security teams in dynamic environments.
  • Skilled in communication, collaboration, and team development.
  • Deep knowledge of compliance frameworks (e.g., SOC 2, PCI DSS, ISO 27001) and regulatory expectations.

 

 

Diversity, Equity, and Inclusion is Baked into our Recipe for Success

At Toast, our employees are our secret ingredient—when they thrive, we thrive. The restaurant industry is one of the most diverse, and we embrace that diversity with authenticity, inclusivity, respect, and humility. By embedding these principles into our culture and design, we create equitable opportunities for all and raise the bar in delivering exceptional experiences.

We Thrive Together

We embrace a hybrid work model that fosters in-person collaboration while valuing individual needs. Our goal is to build a strong culture of connection as we work together to empower the restaurant community. To learn more about how we work globally and regionally, check out: https://careers.toasttab.com/locations-toast.

Apply today!

Toast is committed to creating an accessible and inclusive hiring process. As part of this commitment, we strive to provide reasonable accommodations for persons with disabilities to enable them to access the hiring process. If you need an accommodation to access the job application or interview process, please contact candidateaccommodations@toasttab.com.

------

For roles in the United States, It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

Similar Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Similar Skill Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Jobs in Bengaluru, Karnataka, India

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Similar Category Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

About The Company

Bradenton, Florida, United States (On-Site)

Bengaluru, Karnataka, India (Hybrid)

Chennai, Tamil Nadu, India (Hybrid)

Chennai, Tamil Nadu, India (Hybrid)

Boston, Massachusetts, United States (Remote)

Dublin, County Dublin, Ireland (Hybrid)

California, United States (On-Site)

Bengaluru, Karnataka, India (Hybrid)

Dublin, County Dublin, Ireland (Hybrid)

Bengaluru, Karnataka, India (On-Site)

View All Jobs

Get notified when new jobs are added by Toast

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug