About Wingify:

Wingify is a fast-paced, innovation-driven organization focused on delivering top-notch digital solutions. Wingify is an India-based, fast-growing software company that makes globally admired technology products. Our flagship product VWO Experience Optimization Platform (https://vwo.com/) is loved by thousands of businesses and users across 90+ countries, and the customer list includes brands like Microsoft, Lenovo, Walt Disney, Target, eBay, and Ubisoft. We uphold the highest standards of corporate security and compliance, ensuring the protection of data, privacy, and information for our customers, partners, and employees.


 At Wingify, security, privacy, and compliance are not just checkboxes—they are embedded in our DNA. We hold globally recognized certifications, including ISO 27001:2022 ISMS, ISO 27701:2019 PIMS, ISO 27017 Cloud security, ISO 27018 Cloud privacy, SOC 2 Type II, CSA CAIQ V4.0, and PCI DSS v3.2.1, ensuring that we meet the highest industry standards. Our operations comply with leading data privacy regulations such as GDPR, CCPA, HIPAA, CPRA, and other evolving global frameworks. For more details, visit: https://vwo.com/compliance/.

Joining Wingify means being part of an ecosystem where cutting-edge technology, data privacy, and ESG initiatives shape the future of digital experiences. Our diverse client base spans industries like banking, retail, healthcare, insurance, automotive, FMCG, and e-commerce, offering

unparalleled exposure and learning opportunities. If you thrive in a dynamic, security and privacy-conscious, and compliance-driven environment, Wingify is the place to be!


Role Overview:

We are seeking a highly motivated and skilled Associate Manager/Manager to join our Corporate Security and Compliance team. The ideal candidate will possess good understanding of Data Protection & Compliance, Information Security, ESG (Environmental, Social, and Governance),

and ESMS (Environmental and Social Management Systems). This isn’t your typical compliance role where you just tick boxes and call it a day. Nope. At Wingify, you’ll be dealing with real, highstakes challenges that require both technical expertise and legal acumen.


  • Global Compliance, Local Chaos – You’ll be ensuring compliance with laws across multiple jurisdictions while sitting in India, where half the regulations change overnight and the other half contradict each other. Fun times!
  • This role blends data protection, information security, sustainability, and governance, so you’ll need to juggle legal documents, security controls, and ESG reports.



Actual Problem-Solving Required – Unlike some roles where you copy-paste policies and hope

for the best, here you’ll be:

  • Managing compliance for privacy-by-design and security-by-design across VWO digital products used by thousands of global enterprises.
  • Aligning ESG strategy with stringent regulatory requirements and stakeholders expectations to drive sustainable growth and compliance.
  • Managing third-party risk, because let’s face it—vendors will always swear they’re compliant until you actually dig into their infosec, privacy and compliance practices.
  • Responding to real-time privacy and security incidents, handling data subject requests, working closely with legal, engineering, and product teams to mitigate risk.


Strategic Influence – Your work will directly shape Wingify’s compliance and ESG roadmap, ensuring we stay ahead of regulations and industry expectations.


Key Responsibilities:

A. Data Protection and Privacy Compliance:

  • Assist the global DPO in ensuring compliance with global data protection laws, including but not limited to GDPR, CCPA, CPRA, DPDP India, HIPAA, etc.
  • Implement and maintain ISO 27701:2019 Privacy Information Management System (PIMS).
  • Conduct and manage Data Protection Impact Assessments (DPIAs).
  • Create and maintain Records of Processing Activities (RoPA).
  • Review and negotiate Data Processing Agreements (DPAs) with clients and vendors.

B. Information Security Management:

  • Maintain ISO 27001:2022 Information Security Management System (ISMS).

C. ESG and ESMS Compliance:

  • Drive compliance with ISO 14001 Environmental and Social Management System (ESMS).
  • Develop and implement processes aligning with ESG frameworks and standards.

D. Audits and Risk Management:

  • Assist the Corporate Security and Compliance lead in conducting and managing internal audits for privacy, security, and environmental compliance.
  • Identify and mitigate risks related to data protection, security, and sustainability.

E. Stakeholder Collaboration and Training:

  • Collaborate with internal stakeholders, including legal, IT, and business teams, to address compliance requirements.
  • Design and deliver training programs on data privacy, security, and ESG compliance.


Why Join Wingify’s Corporate Security and Compliance Team?

Joining Wingify’s Corporate Security and Compliance team means gaining hands-on experience in one of the most dynamic, high-impact, and interdisciplinary roles in the industry. This isn’t just a job—it’s a front-row seat to the ever-evolving world of global data privacy, cybersecurity, ESG, and regulatory compliance.

Here’s what’s in store for you:

a. Exposure to Global Privacy & Security Frameworks:

Work on real-world implementations of GDPR, CCPA, HIPAA, CPRA, ISO 27701, SOC 2, PCI DSS, and more—because Wingify and its clients expect nothing less than the highest standards.

b. Cross-Functional Collaboration:

Work closely with legal teams, engineers, product managers, finance, HR, Sales, Product Consultants, and other client-facing teams—because compliance touches everything. Learn how to translate regulatory jargon into actionable insights for engineers and business leaders.

c. Accelerated Career Growth in a High-Demand Domain:

Data privacy, information security, and ESG are among the fastest-growing fields globally, and specialists in these areas are highly sought after. This role will set you up for leadership positions in compliance, risk management, or governance.

d. Continuous Learning and Certifications:

We encourage upskilling and will support you in obtaining certifications like CIPP/E, CIPM, CISSP, CISM, ISO 27001 Lead Auditor/Implementer, and ESG-related qualifications. The more you learn, the more valuable you become.

e. Making a Tangible Impact:

Your work directly influences the security, privacy, and sustainability posture of a company that serves thousands of global businesses. You will be shaping policies, driving real change, and helping Wingify stay ahead in an increasingly regulated world.

If you want a challenging, high-impact role that puts you at the forefront of global compliance, privacy, and ESG, this is it. Expect to learn, grow, and occasionally question your life choices—but trust us, it’ll be worth it.


Qualifications and Experience:

A. Education:

  • Bachelor’s or Master’s degree in Law, Computer Science Engineering, Information Technology, Cybersecurity, or related fields.

B. Experience:

  • 3–5 years in Data Protection, Information Security, and/or Compliance roles.


Key Skills and Knowledge:

  • Strong understanding of global data protection laws (GDPR, CCPA, CPRA, DPDP India, HIPAA, etc.).
  • Hands-on experience with ISO 27701:2019 PIMS, ISO 27001:2022 ISMS, and PCI DSS v4.0 standards.
  • Knowledge of ESG frameworks and ISO 14001 ESMS standards.
  • Proficiency in conducting DPIAs, maintaining RoPA, and reviewing DPAs.
  • Familiarity with internal audit processes for privacy and security.
  • Excellent verbal and written communication skills.
  • Detail-oriented, hardworking, and dedicated professional.


Preferred Certifications:

  • CIPP/E (Certified Information Privacy Professional/Europe)
  • CIPM (Certified Information Privacy Manager)
  • CIPT (Certified Information Privacy Technologist)
  • ISO 27001 ISMS Lead Auditor
  • ISO 27701 PIMS Lead Implementer
  • ISO 14001 ESMS Lead Auditor