About Toast
Toast is driven by building the restaurant platform that helps restaurants adapt, take control, and get back to what they do best: building the businesses they love. Because our technology is purpose-built for restaurants, our customers trust that we will deliver on their needs today while investing in innovative experiences that will power the future of the industry.
About this roll*:
We are seeking a strategic and experienced leader to manage our Corporate Security and Governance, Risk, and Compliance functions in India. You will lead and grow both teams, strengthen our security posture, drive compliance with industry frameworks, and support enterprise risk efforts, while partnering closely with global stakeholders on key initiatives.
What you will do:
Corporate Security:
- Provide leadership and oversight to the CorpSec team, ensuring the implementation of best practices across endpoint protection, vulnerability management, and threat mitigation.
- Guide the design and management of a secure enterprise endpoint strategy, ensuring the CorpSec team aligns with policy and compliance requirements.
- Supervise the CorpSec team in conducting vendor risk assessments and coordinate with global stakeholders to drive remediation activities.
- Oversee the management of secure email gateway and Data Loss Prevention (DLP) systems, ensuring the CorpSec team enforces data protection and policy compliance across all endpoints (Windows, macOS, Linux).
- Manage endpoint investigations and root cause analysis, directing the CorpSec team to collaborate with the SOC for integrating telemetry into SIEM platforms (e.g., Splunk, Datadog).
- Ensure the CorpSec team maintains documentation, SOPs, and training resources, and oversees the delivery of awareness sessions to improve endpoint hygiene.
- Stay informed on emerging threats to provide strategic guidance to the CorpSec team for enhancing threat detection and response capabilities.
Governance, Risk, and Compliance (GRC):
- Oversee the development and maintenance of GRC frameworks (SOC 2, PCI DSS, ISO 27001), ensuring the Technical GRC team aligns with global standards and maintains ongoing compliance.
- Manage the review process for third-party security attestations (e.g., SOC 2, ISO 27001) and guide the Technical GRC team in assessing vendors in collaboration with Legal, Procurement, and IT.
- Supervise periodic vendor risk reviews, ensuring the Technical GRC team identifies gaps and drives remediation plans effectively.
- Partner with internal audit and external assessors to support security evaluations and regulatory alignment.
- Provide oversight for regular reporting on compliance posture, risk trends, and incident metrics to senior stakeholders, ensuring the Technical GRC team delivers accurate and timely updates.
Team Leadership and Development:
- Provide leadership and mentorship to the Corporate Security and GRC teams in India, fostering a high-trust, collaborative environment.
- Recruit, train, and grow security talent to build a resilient, high-performing organization.
- Set performance goals, conduct evaluations, and support team members' ongoing development.
Do you have the right ingredients*?
- Bachelor’s in Computer Science, InfoSec, or related field (Master’s preferred).
- Industry certifications like CISSP, CISM, or CEH are strongly preferred.
- 10+ years in cybersecurity, with hands-on experience in vulnerability management, compliance automation, and GRC.
- Strong understanding of SOC operations, incident response, and security tooling (SIEM, IDS/IPS, WAF).
- Proven leadership experience managing distributed security teams in dynamic environments.
- Skilled in communication, collaboration, and team development.
- Deep knowledge of compliance frameworks (e.g., SOC 2, PCI DSS, ISO 27001) and regulatory expectations.
Diversity, Equity, and Inclusion is Baked into our Recipe for Success
At Toast, our employees are our secret ingredient—when they thrive, we thrive. The restaurant industry is one of the most diverse, and we embrace that diversity with authenticity, inclusivity, respect, and humility. By embedding these principles into our culture and design, we create equitable opportunities for all and raise the bar in delivering exceptional experiences.
We Thrive Together
We embrace a hybrid work model that fosters in-person collaboration while valuing individual needs. Our goal is to build a strong culture of connection as we work together to empower the restaurant community. To learn more about how we work globally and regionally, check out: https://careers.toasttab.com/locations-toast.
Apply today!
Toast is committed to creating an accessible and inclusive hiring process. As part of this commitment, we strive to provide reasonable accommodations for persons with disabilities to enable them to access the hiring process. If you need an accommodation to access the job application or interview process, please contact [email protected].
------
For roles in the United States, It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
Similar Jobs
What We Do
Toast is the all-in-one platform built for restaurants of all sizes. Toast provides a single platform of software as a service (SaaS) products and financial technology solutions that give restaurants everything they need to run their business, including point of sale, payments, supplier management, digital ordering and delivery, marketing and loyalty, and team management. By serving as the restaurant operating system across dine-in, takeout, and delivery channels, Toast helps restaurants increase revenue, streamline operations and deliver amazing guest experiences.
Why Work With Us
Our recipe for an awesome workplace:
One splash of friendship
A dollop of impact
A sprinkle of no hierarchy &
A heavy spoonful of individuality
Mix these ingredients in a fast-paced and hardworking environment. Best paired with a side of interesting people who always bring their whole selves to work.
*100% Sunday scary free
Gallery










Toast Teams
Toast Offices
Hybrid Workspace
Employees engage in a combination of remote and on-site work.