Upload Button Icon Add office photos
Engaged Employer

i

This company page is being actively managed by Whatfix Team. If you also belong to the team, you can get access from here

Whatfix Verified Tick

Compare button icon Compare button icon Compare
filter salaries All Filters

46 Whatfix Jobs

Vendor Risk Management and GRC

2-5 years

Bangalore / Bengaluru

1 vacancy

Vendor Risk Management and GRC

Whatfix

posted 2d ago

Job Description

Who are we

Founded in 2014 by Khadim Batti and Vara Kumar, Whatfix is a leading global B2B SaaS provider and the largest pure-play enterprise digital adoption platform (DAP). Whatfix empowers companies to maximize the ROI of their digital investments across the application lifecycle, from ideation to training to the deployment of software. Driving user productivity, ensuring process compliance, and improving user experience of internal and customer-facing applications.

Whatfix has seven offices across the US, India, UK, Germany, Singapore, and Australia and a presence across 40+ countries.

Customers: 700+ enterprise customers, including over 80 Fortune 500 companies such as Shell, Microsoft, Schneider Electric, and UPS Supply Chain Solutions.

Investors: Raised a total of ~$270 million. Most recently Series E round of $125 Million led by Warburg Pincus with participation from existing investor SoftBank Vision Fund 2. Other investors include Cisco Investments, Eight Roads Ventures (A division of Fidelity Investments), Dragoneer Investments, Peak XV Partners, and Stellaris Venture Partners.

  • With over 45% YoY sustainable annual recurring revenue (ARR) growth, Whatfix is among the Top 50 Indian Software Companies as per G2 Best Software Awards.
  • Recognized as a Leader in the digital adoption platforms (DAP) category for the past 4+ years by leading analyst firms like Gartner, Forrester, IDC, and Everest Group.
  • The only vendor recognized as a Customers Choice in the 2024 Gartner Voice of the Customer for Digital Adoption Platforms has once again earned the Customers Choice distinction in 2025. 4.5 on Gartner Peer Insights, and a high CSAT of 99.8%
  • Highest-Ranking DAP on 2023 Deloitte Technology Fast 500 North America for Fourth Consecutive Year
  • Only DAP to be among the top 35% companies worldwide in sustainability excellence with EcoVadis Bronze Medal

Role Summary:

Manage daily compliance tasks, ensure continuity of compliance run-books and SOPs, follow up with stakeholders, and manage compliance trackers.

Conduct vendor assessments, review vendor-provided evidence and artefacts, follow up with vendors, and manage vendor management trackers and SOPs.

RolesResposblities:

  • Support the preparation, coordination, and documentation of compliance audits (e.g., ISO 27001, SOC 2, ISO 27701, etc.) by gathering and managing audit evidence, managing audit trackers, etc.

  • Manage periodic updates of Information security policies in terms of annual updates, maintenance, etc.

  • Assist in the development and delivery of security awareness training materials and campaigns to educate employees on security policies, procedures, and best practices.

  • Research emerging trends, threats, and technologies in information security, GRC, and related areas, and assist in analyzing their potential impact on the organization.

  • Assist in conducting risk assessments and due diligence activities on third-party vendors and suppliers to evaluate their security controls, practices, and compliance with contractual requirements.

  • Aid in identifying and analyzing potential risks associated with third-party relationships, including data security, privacy and compliance risks.

  • Monitor the Vendor Assessment tool continuously and ensure that the vendor and assessment records are appropriate at all times

  • Maintain a track of all vendors due to periodic risk assessments and assist in conducting the periodic assessments

  • Assist in maintaining accurate and up-to-date documentation of third-party risk assessments, findings, and remediation activities, and prepare reports for management and stakeholders as needed.

  • Contribute to the development and enhancement of third-party risk management policies, procedures, and guidelines to ensure alignment with industry best practices and regulatory requirements.

    Functional Competencies

    • Entry-level understanding of at least 3 of the following areas viz. Regulatory and Compliance requirements; implementation knowledge in risk management, policy development, security controls implementation, incident response, technical proficiency, vendor management, monitoring and reporting, collaboration, and continuous improvement.

    • Fair understanding in Vendor Management, Risk Management, Facilitation, Communication Skills, Collaboration, Due Diligence and Compliance


Employment Type: Full Time, Permanent

Read full job description

Prepare for Risk Management roles with real interview advice

Top Whatfix Risk Management Interview Questions

Q1. How would you respond if a customer rejects the solution you proposed for a particular scenario?
Q2. What are the methods to perform DOM manipulation for a specific element in an application?
Q3. What is the algorithm or logic behind binary search?
View all 22 questions

What people at Whatfix are saying

What Whatfix employees are saying about work life

based on 91 employees
51%
99%
66%
56%
Strict timing
Monday to Friday
No travel
Night Shift
View more insights

Whatfix Benefits

Work From Home
Cafeteria
Free Food
Team Outings
Free Transport
Health Insurance +6 more
View more benefits

Compare Whatfix with

Freshworks

3.5
Compare

Zoho

4.3
Compare

Druva

3.7
Compare

Postman

3.6
Compare

CleverTap

3.6
Compare

Chargebee

3.9
Compare

Uniphore Software Systems

3.5
Compare

Zenoti

3.0
Compare

InMobi

3.5
Compare

MindTickle

2.8
Compare

Udaan

3.9
Compare

Swiggy

3.8
Compare

BlackBuck

3.8
Compare

Blinkit

3.7
Compare

Ninjacart

4.0
Compare

Meesho

3.7
Compare

Paisabazaar.com

3.4
Compare

Tata 1mg

3.6
Compare

Zepto

3.5
Compare

Digit Insurance

3.9
Compare

Similar Jobs for you

EC Engineer at CoinDCX

Bangalore / Bengaluru

4-8 Yrs

₹ 6-10 LPA

Senior Associate at BNY Mellon International Operations (India)

Pune

2-5 Yrs

₹ 7-11 LPA

Senior Security Advisor at Global Infovision Pvt Ltd

Hyderabad / Secunderabad

3-6 Yrs

₹ 11-15 LPA

GRC Analyst at MoEngage Inc

Bangalore / Bengaluru

3-5 Yrs

₹ 5-10 LPA

GRC Analyst at PROTERA TECHNOLOGIES, INC.

Mumbai

5-10 Yrs

₹ 5-9 LPA

GRC Analyst at DataRobot

Remote

5-8 Yrs

₹ 8-11 LPA

GRC Analyst at Kaseya

Bangalore / Bengaluru

3-8 Yrs

₹ 8-12 LPA

Information Security Associate at CRISIL

Mumbai

1-5 Yrs

₹ 5-9 LPA

Analyst at InApp Information Technologies

Thiruvananthapuram, Cochin/Ernakulam/Kochi

6-8 Yrs

₹ 8-10 LPA

Technology Risk Analyst at Visionet Systems Inc.

Kolkata, Mumbai + 5

5-6 Yrs

₹ 7-8 LPA

Whatfix Bangalore / Bengaluru Office Location

View all
Bengaluru Office
443, 17th Cross Road Sector 4, HSR Layout Bengaluru
560102

Vendor Risk Management and GRC

2-5 Yrs

Bangalore / Bengaluru

2d ago·via naukri.com

Software Engineer E6 Full Stack Developer

8-13 Yrs

Bangalore / Bengaluru

6d ago·via naukri.com

Senior/Product Marketing Manager (M - 5325)

6-8 Yrs

Bangalore / Bengaluru

7d ago·via naukri.com

Account Executive, GTM Labs

2-10 Yrs

Bangalore / Bengaluru

7d ago·via naukri.com

Territory Sales Leader- Middle East & Africa

4-7 Yrs

Bangalore / Bengaluru

8d ago·via naukri.com

Field Marketing Specialist

3-5 Yrs

Bangalore / Bengaluru

8d ago·via naukri.com

Whatfix - ML Research Engineer (5-13 yrs)

5-13 Yrs

8d ago·via hirist.com

Whatfix - Frontend Engineer - React.js (6-12 yrs)

6-12 Yrs

8d ago·via hirist.com

Territory Sales Leader, Enterprise - North America

3-7 Yrs

Bangalore / Bengaluru

10d ago·via naukri.com
write
Share an Interview