About Us.
Arrise Solutions (India) Pvt. Ltd. is a leading content provider to the iGaming and Betting Industry, offering a multi-product portfolio that is innovative, regulated and mobile-focused. Arrise Solutions (India) Pvt. Ltd. strives to create the most engaging and evocative experience for customers globally across a range of products, including slots, live casino, sports betting, virtual sports and bingo.
Driven by a persistence to craft immersive experiences and responsible thrills, our professional team consistently deliver best-in-class services with a dedication to create games that players love time and time again.
About the Role
We are seeking an experienced IT Compliance specialist to lead and manage our compliance programs across ISO 27001 and SOC 2, ensuring our gaming platform and related services meet the highest standards of security, privacy, and regulatory compliance.
Key Responsibilities
Compliance Management
- Lead and maintain the company’s ISO 27001 ISMS and SOC 2 Trust Services Criteria certification programs.
- Own compliance audits: planning, coordination with auditors, evidence collection, and audit responses.
- Manage risk assessments, control testing, and remediation activities.
Policy & Process Governance
- Develop, maintain, and enforce IT security and compliance policies, procedures, and standards.
- Ensure documentation is aligned with ISO 27001 Annex A controls and SOC 2 requirements.
Control Implementation & Monitoring
- Oversee access control, change management, incident management, and third-party/vendor risk management in scope of ISO 27001/SOC 2.
- Ensure compliance across environments supporting software development, hosting platforms, and APIs.
- Monitor effectiveness of security controls; recommend improvements to mitigate emerging risks.
Audit & Assurance
- Act as the primary point of contact for external auditors, regulators, and certification bodies.
- Conduct internal compliance audits, gap assessments, and readiness reviews.
- Track and close compliance findings and audit issues.
Training & Awareness
- Build awareness of compliance requirements across development, operations, and support teams.
- Deliver targeted training on compliance obligations (e.g., secure software development, data handling, gaming industry standards).
Vendor & Third-Party Risk Management
- Assess compliance of key vendors, including cloud hosting providers, content partners (e.g., Pragmatic Play), and integration providers.
- Ensure contractual and SLA alignment with ISO 27001 and SOC 2 requirements.
Reporting
- Provide regular compliance updates and risk posture reports to senior management and stakeholders.
- Support the management with compliance performance metrics and KPIs.
Qualifications & Experience
- Bachelor's degree in information security, Computer Science, Risk Management, or related field.
- 5+ years’ experience in IT compliance, GRC, risk management, or information security, ideally in gaming, fintech, or other regulated industries.
- Strong understanding of:
- ISO 27001:2022 Information Security Management System (ISMS)
- SOC 2 Trust Services Criteria (Security, Availability, Confidentiality, Processing Integrity, Privacy)
- Proven track record of leading certification and audit processes.
- Experience with SaaS/PaaS environments, APIs, and cloud-based hosting services.
- Knowledge of secure SDLC, DevOps, and CI/CD compliance integration.
- Professional certifications preferred (e.g., CISA, CISM, ISO 27001 Lead Implementer/Auditor, CCSK, CRISC).
Key Skills
- Excellent knowledge of IT compliance, audit, and risk frameworks.
- Strong stakeholder management and communication skills.
- Ability to influence cross-functional teams (dev, ops, support) to adopt compliance practices.
- Analytical thinker with problem-solving approach to compliance challenges.
- Detail-oriented with strong documentation and evidence management skills.
What We Offer
- Driven by a persistence to craft immersive experiences and responsible thrills, our professional team consistently deliver best-in-class services with a dedication to create games that players love time and time again.
- Professional and personal development
- Opportunities to progress within a dynamic team.
- Close and collaborative colleagues
Our Values
PERSISTENCE
- We never give up and are determined to be the best at what we do.
RESPECT
- We value and respect our clients, their players, and our team members, promoting professionalism, integrity and fairness without compromise.
OWNERSHIP
- We take ownership of our work and consistently deliver in a reliable manner; always providing the highest level of quality.