Information Security Engineer

2 weeks ago


india UNCIA Full time

About the company:


We are a dynamic enterprise application software product company catering to NBFCs and Banks with a suite of pure-play SaaS products in the Digital Lending space.


We offer a comprehensive suite tailored to meet evolving customer needs, primarily focusing on Lending solutions such as SME Lending, Home Finance, and Supply Chain Finance. Uncia boasts of a formidable and referenceable clientele across Banks and NBFCs where it has achieved remarkable success in quick GTM with its innovative product and delivery models.


Formerly known as ThemePro Technologies Private Limited, this rebranding embodies not just a visual transformation but also reflects the evolution of our company and vision for the future.


Currently in a phase of rapid expansion, Uncia presents exciting opportunities as we move forward. We take pride in our lean and collaborative organizational structure, where every team rolls up their sleeves to get things done. Our commitment is to provide a consistent and empowering experience for all employees and potential hires.


If you are a highly motivated individual with a passion for driving innovative solutions in the BFSI sector, we welcome you to join our team and contribute significantly to the ever-evolving world of FinTech.


Job Title: Information Security

Relevant Experience: 4+ years

Location: Chennai


Responsibilities:


• Manage and maintain ISMS related documents, processes, procedures, metrics, activities, audits and inspections as per ISMS calendar.

• Collate and maintain pertinent Information Security and Compliance requirements for Uncia and for its clients.

• Identify areas and suggest control automation where applicable.

• Improve security awareness to Uncia staff, clients on an ongoing basis.

• Periodical cybersecurity review BRD and Change request on an ongoing basis.

• Perform application security testing as on when required.

• Ensure the test, quality, release and production environments are reviewed as per the documented security requirements.

• Ensure ISMS requirements are enabled in to the Uncia processes.

• Develop and Review Information Security Policy and procedures.

• Develop and maintain Security Metrics.

• Manage Information Security Audits for the clients, stakeholders as per the calendar.

• Conduct risk assessments, suggest pertinent remediation efforts or workarounds to ensure risk is managed in a cost effective and optimised way.


Candidate profile:


▪ ISO 27001 champion who have managed more than 4 PDCA (Plan Do Check Act) cycles.

▪ Knowledge on MS Azure cloud environment is a must.

▪ Experience with software development environment is a must.

▪ Experience of Information Risk management is a must.

▪ Experience on Incident management and handling process is a must.

▪ Experience on change management and release management.

▪ Exposure to LOS, LMS and Supply chain finance solutions (desirable)

▪ Collate and maintain pertinent Information Security and Compliance requirements.

▪ Develop and Review Information Security Policy and procedures.

▪ Develop and maintain Security Metrics.

▪ Develop and maintain Compliance calendars.

▪ Scheduling Client audits and compliance requirements.

▪ Manage Information Security Audits for the clients, stakeholders as per the calendar



  • india Locus Full time

    Information Security Engineer We're looking for a 2-4 yrs experienced Information Security Engineer. Responsibilities: Define, implement, and maintain the Information Security Management System (ISMS) and Privacy Information Management System (PIMS). Plan and execute periodic risk assessments. Work directly with the business units to facilitate risk...


  • india TAC Security Full time

    Job Title: Senior Security Engineer - VAPT Location: Pune, India Company Description TAC Security is a global leader in vulnerability management that specializes in protecting Fortune 500 companies, leading enterprises, and governments worldwide. With its AI-based Vulnerability Management Platform ESOF (Enterprise Security in One Framework), TAC Security...


  • india Piramal Capital & Housing Finance Limited Full time

    QUALIFICATION: Graduate (BSc. IT, BE) with Information Security Certifications – CISSP EXPERIENCE: Candidate must have strong experience in Information Security Management system, Policy & procedures creation, implementation ISO27001 assessment – Specification for a framework of policies procedures that include all technical & operational controls...

  • Senior Red Team Lead

    2 weeks ago


    india Security Lit Full time

    Job Description: We are looking for a skilled and experienced professional to join our Information Security Governance team as a Senior Infrastructure, Application & Cloud Offensive Security Assessment expert. This role involves leading and executing comprehensive security assessments, including web application security testing, vulnerability assessment, and...


  • India MicroStrategy Full time

    Ideal candidates will be located in Nagpur or within commutable distance, however remote candidates will be considered. Your Focus: Support the detection, monitoring and tracking of security vulnerabilities at the application, database, server, workstation and OS levels. Support AWS, Azure, and Google cloud operations in securing the public cloud...


  • India MicroStrategy Full time

    Ideal candidates will be located in Nagpur or within commutable distance, however remote candidates will be considered. Your Focus: Support the detection, monitoring and tracking of security vulnerabilities at the application, database, server, workstation and OS levels. Support AWS, Azure, and Google cloud operations in securing the public cloud...


  • india Gritstone Technologies Full time

    Information Security Specialist GRIT-JR0000247 Job Summary We are looking to hire a cyber security engineer or Specialist with an analytical mind and a detailed understanding of cybersecurity methodologies. Cyber security engineers are expected to have meticulous attention to detail, outstanding problem-solving skills, work comfortably...


  • india Gritstone Technologies Full time

    Jr. Information Security GRIT-JR0000252 Job Summary We are looking to hire a cyber security engineer or Specialist with an analytical mind and a detailed understanding of cybersecurity methodologies. Cyber security engineers are expected to have meticulous attention to detail, outstanding problem-solving skills, work comfortably under...


  • india Danfoss Full time

    Job Responsibilities Responsibilities for this position include, but are not limited to, the following. • Drives the continuous development of the risk management process.• Communication expert to different stakeholders across the organization• Supports the Security Governance of the ISMS• Support the Information Security Governance...


  • india Security Lit Full time

    Job Description: Join the forefront of cybersecurity innovation at Security Lit! We're on the hunt for a dynamic Application Security (AppSec) Manager Lead to steer our Information Security Team. This pivotal role focuses on Vulnerability Assessment and Penetration Testing within the BFSI sector. You’ll be leading a spirited team spread across the UK,...

  • Information Security

    1 month ago


    india Novac Technology Solutions Full time

    Experience : 6 - 10 years Location : Chennai Work Mode : Work from Office Devise and Enhance the IT Security Policies and Controls. Involving, Educating, Training all the stakeholders on IT Policies. Plan, lead and execute cyber audits/assessments, which include managing the conduct of audit(s) and ensure that they are delivered on time, on budget, to the...


  • India Aexonic Full time

    Company Description Aexonic is a global IT solutions company that provides full-cycle services in the areas of software development, IT consulting, mobile application development, Digital Marketing, Cloud-based enterprise solutions, and portal development. Our quality-driven delivery model, combined with technical and business domain expertise, allows us to...


  • India Aexonic Full time

    Company DescriptionAexonic is a global IT solutions company that provides full-cycle services in the areas of software development, IT consulting, mobile application development, Digital Marketing, Cloud-based enterprise solutions, and portal development. Our quality-driven delivery model, combined with technical and business domain expertise, allows us to...

  • Security Researcher

    2 months ago


    India Altered Security Full time

    We are looking for top Security Researchers (Remote) with demonstrable expertise to join our team of experts! Altered Security is an information security startup with focus on edtech, hands-on learning and focused security assessments. It has offices in India and Singapore. We are experts in information security training, cyber ranges, online labs and...

  • Security Researcher

    2 months ago


    India Altered Security Full time

    We are looking for top Security Researchers (Remote) with demonstrable expertise to join our team of experts!Altered Security is an information security startup with focus on edtech, hands-on learning and focused security assessments. It has offices in India and Singapore.We are experts in information security training, cyber ranges, online labs and security...


  • india Luminary Talent Sourcing Full time

    Job Description Introduction: We seek an Information Security Officer to join the Infrastructure and Operations department. As the Information Security Officer, you will be responsible for the information security vision, strategy, governance, management, processes and user education. The role also requires technical abilities to assist the team in improving...


  • india Total Shape Full time

    Your Compass in the Health & Fitness Journey Total Shape is a community dedicated to making the pursuit of a healthier lifestyle both achievable and straightforward. At Total Shape, we pride ourselves on delivering comprehensive information  tailored to your health and fitness journey. Our mission is to help you make informed decisions  that expedite...


  • india Insight Global Full time

    Position Overview In this role, you will be a hands-on engineering leader to build an innovative security foundation architected for scale. You will partner with internal stakeholders and all parts of the business to drive security programs, implement state of art security technologies, build and manage security platforms that help secure the brand and...


  • india Snaphunt Full time

    The Offer Flexible working options Leadership Role Fantastic work culture The Job Your responsibilities will include: Monitoring and analyzing network and system activity Investigating and responding to security incidents Escalating security incidents and alerts Installing and configuring security software and hardware Performing security audits and...


  • india Promaynov Advisory Services Pvt. Ltd Full time

    Location: Whitefield, Bengaluru. No of years’ experience required: 3 to 6 years Job Role: Perform application threat modelling based on STRIDE/DREAD model, use C4 data model architecture to identify the trust boundaries and security gaps to create application risk profile and remediation recommendations. Advise Product Owners to manage their security...