Information Security Engineer

2 weeks ago


Bengaluru, Karnataka, India Nexthire Full time

About Nexthire

Nexthire is a pioneering financial services group that leverages technology and data-science to make lending quick and easy. At Nexthire, we believe traditional ways of lending can exclude those most in need because of outdated, rigid and often inefficient processes. Our goal is to create a trustworthy, transparent, and highest integrity financial institution that positively advances the socio-economic well-being of lower middle class to middle-class Indian households while protecting the interests of all stakeholders.

Job Description

We are seeking a highly skilled Information Security Engineer to join our team. As an Information Security Engineer, you will be responsible for developing and finalizing policies, procedures, and guidelines related to IT and Infosec domains in alignment with industry best practices (ISO 27001, GDPR, and SOC 2). You will also align internal IT and Infosec processes as per ISO 27001 and SOC 2 standards and security guidelines.

Key Responsibilities:

Develop and finalize policies, procedures, and guidelines related to IT and Infosec domains in alignment with industry best practices.

Align internal IT and Infosec processes as per ISO 27001 and SOC 2 standards and security guidelines.

Assist in defining and reviewing the key metrics for management reporting.

Develop of cyber security standards, including incorporating industry practices and applicable compliance requirements.

Maintain the security risk register and related policies.

Maintain the inventory of IT vendors as per regulatory guidelines.

Develop review checklists, questionnaire, and manage evidences to assist the IT vendor risk management process.

Perform 3rd party security due-diligence reviews and periodic vendor risk assessments to assess vendor compliance.

Coordinate with external stakeholders and auditors for IT and Infosec related reviews.

Coordinate for conducting periodic penetration testing exercises on in-scope applications and related infrastructure.

Assist in imparting security awareness training and executing phishing simulation exercises to employees.

Assist IT and Infosec in gathering the metrics data and prepare management dashboards.

Lead the periodic IT and Infosec governance review meetings and gather feedback for improvement.

Assess the existing IT and Infosec processes and provide recommendations to improve.

Identify opportunities for IT and Infosec governance automation and lead the continuous compliance initiatives.

Support cross-entity teams/group entities to mirror the best practices implemented at the parent entity.

Develop templates for incident reporting and manage artifacts. Assist during incident investigation and collaborating with stakeholders.

Requirements:

5-12 years of experience in information security domain and minimum 4 years in overall IT and Infosec governance related activities.

Sound knowledge in defining processes, developing policies, procedures, and guidelines, and preparing management reporting dashboards.

Experience in guiding teams with respect to SOC 2 requirements.

Developing and implementing enterprise governance, risk, and compliance strategy and solutions.

Ability to document and explain details in a concise & understandable manner.

Industry recognized certificates relevant to the roles such as SOC 2, ISO 27001 are desired.

Ability to lead complex, cross-functional projects, and problem-solving initiatives.

Possionate about IT/information security and update knowledge on daily basis to support the organization.

Candidates must have excellent verbal and written communication skills.

Familiarity with industry standards and regulations including PCI, ISO27001, SOC 2, GDPR, CIS, NIST is desired.

Candidates from BFSI experience will be preferred.

Fair understanding of public cloud models (e.g. AWS, Google, Microsoft Azure) and their security implications.

Skills:

Candidate should be a good team player.

Should have good interpersonal skills.

Good written communication skills including ability to develop process documentation and security guidelines.

Ability to apply critical thinking and logic to a wide range of intellectual and practical problems.

Ability to maintain composure under pressure and work calmly during an emergency.

Ability to manage multiple tasks and schedules.



  • Bengaluru, Karnataka, India Information Dynamics Full time

    We are seeking a highly skilled Information Security Risk Manager to join our team at Information Dynamics. In this role, you will be responsible for conducting risk assessments on Applications, Network & Systems according to Client policies, applicable Standards, legal & regulatory requirements. Your expertise in Control testing, Control assessment, and...


  • Bengaluru, Karnataka, India Information Dynamics Full time

    As a key member of the Information Dynamics team, you will play a vital role in ensuring the security and integrity of our IT systems and data. Your primary responsibility will be to conduct risk assessments on applications, networks, and systems to identify potential vulnerabilities and develop strategies to mitigate them.You will work closely with clients...


  • Bengaluru, Karnataka, India Nexthire Full time

    About the RoleWe are seeking an experienced Information Security Engineer to join our team at Nexthire. As a key member of our Infosec team, you will be responsible for developing and implementing policies, procedures, and guidelines related to IT and Infosec domains.Key ResponsibilitiesDevelop and finalize policies, procedures, and guidelines related to IT...

  • RSA Security Engineer

    2 weeks ago


    Bengaluru, Karnataka, India RSA Security Full time

    Job Title: RSA Security Engineer - Application Security ExpertJob Summary: We are seeking a highly skilled Application Security Engineer to join our team at RSA Security. As an Application Security Engineer, you will be responsible for designing and implementing secure software development lifecycle (SDLC) processes, identifying and mitigating security...


  • Bengaluru, Karnataka, India Comaea Consulting Full time

    We are seeking an experienced Information Security Engineer to support the growth of our client’s cybersecurity service offering in Abu Dhabi. The ideal candidate will have a strong background in Network Detection and Response (NDR) and Mobile Device Management (MDM) technologies.About the RoleResponsibilities:Deploy, configure, and maintain NDR solutions,...


  • Bengaluru, Karnataka, India MRI Software Full time

    About the Role:We are seeking an experienced Information Security Engineer to join our team at MRI Software. As an Information Security Engineer, you will play a critical role in safeguarding our systems, networks, and data from potential threats and vulnerabilities.Responsibilities:Implement and maintain robust security measures to protect our systems and...

  • Security Engineer

    4 weeks ago


    Bengaluru, Karnataka, India Elanco Full time

    Job Title: Security Engineer - Information AssuranceWe are seeking a highly skilled Security Engineer - Information Assurance to join our team at Elanco. As a key member of our security team, you will be responsible for designing, implementing, and maintaining a robust security posture to protect our organization's assets and data.Responsibilities:Develop...


  • Bengaluru, Karnataka, India WELLS FARGO BANK Full time

    About this role:Wells Fargo is seeking a highly skilled Information Security Engineer to join our team. As a key member of our security team, you will be responsible for leading computer security incident response activities for highly complex events, conducting technical investigations of security-related incidents, and providing security consulting on...


  • Bengaluru, Karnataka, India WELLS FARGO BANK Full time

    About this RoleWells Fargo is seeking a highly skilled Senior Information Security Engineer to join our team. In this role, you will be responsible for leading or participating in computer security incident response activities for moderately complex events.Key ResponsibilitiesConduct technical investigation of security-related incidents and post-incident...


  • Bengaluru, Karnataka, India Head pro Full time

    Job Summary :Head pro is seeking a skilled Senior Staff Information Security Engineer to join our team. As a key member of our Information Security team, you will be responsible for executing the Information Security Program, Data Governance practices, and Privacy assurance. This role requires a strong understanding of security concepts, technical controls,...


  • Bengaluru, Karnataka, India WELLS FARGO BANK Full time

    About this role:Wells Fargo is seeking a highly skilled Senior Information Security Engineer to join our Data Loss Prevention team. As a key member of our team, you will be responsible for providing engineering support across our Symantec Data Loss Prevention, ICA, and UEBA solutions.Key Responsibilities:Design, implement, and oversee moderately complex data...


  • Bengaluru, Karnataka, India Recro Full time

    At Recro, we are seeking a skilled Staff Information Security Engineer to join our team.This is a full-time, hybrid role in Bangalore, India.As a Staff Information Security Engineer, you will be responsible for:Designing and developing automated workflows using APIs to tackle vulnerability management gaps.Researching and implementing security-focused tools...


  • Bengaluru, Karnataka, India WELLS FARGO BANK Full time

    About this role:Wells Fargo is seeking a highly skilled Senior Information Security Engineer to join our Data Loss Prevention team. As a key member of our team, you will be responsible for designing, implementing, and overseeing moderately complex data protection security solutions.Key responsibilities include:Providing security consultation for internal...


  • Bengaluru, Karnataka, India WELLS FARGO BANK Full time

    About this role:We are seeking a highly skilled Senior Information Security Engineer to join our Data Loss Prevention team at Wells Fargo Bank. As a key member of our team, you will be responsible for providing engineering support across our Symantec Data Loss Prevention, ICA, and UEBA solutions.Key Responsibilities:Design, implement, and oversee moderately...


  • Bengaluru, Karnataka, India WELLS FARGO BANK Full time

    About this RoleWe are seeking a highly skilled Information Security Engineer to join our team at Wells Fargo Bank. As a key member of our security operations team, you will play a critical role in ensuring the confidentiality, integrity, and availability of our systems and data.Key ResponsibilitiesParticipate in security consulting on small projects for...


  • Bengaluru, Karnataka, India Comaea Consulting Full time

    Job Title: Information Security EngineerWe are seeking an experienced Information Security Engineer to join our team at Comaea Consulting in Abu Dhabi, UAE.About the Role:As an Information Security Engineer, you will be responsible for deploying, configuring, and maintaining Network Detection and Response (NDR) solutions, particularly ExtraHop, to detect,...


  • Bengaluru, Karnataka, India IBCScorp Full time

    Job Title: Senior Information Security EngineerOverview:Our team at IBCScorp is seeking a highly skilled Senior Information Security Engineer to oversee the configuration and management of our SIEM tools, ensuring the security and integrity of our production environments. As a key member of our security operations team, you will be responsible for managing...


  • Bengaluru, Karnataka, India MRI Software Full time

    Information Security Engineer RoleWe are seeking an experienced Information Security Engineer to join our team at MRI Software. As a key member of our security team, you will play a critical role in safeguarding our systems, networks, and data from potential threats and vulnerabilities.Responsibilities:Collaborate with the information security team to...


  • Bengaluru, Karnataka, India RSA Security Full time

    Job Title: Principal Security EngineerRSA Security is looking for a highly skilled Principal Security Engineer to join our team. As a key member of our cybersecurity team, you will be responsible for designing, developing, and maintaining our flagship product, NetWitness, in the SIEM domain.ResponsibilitiesDesign, develop, and maintain features for a...


  • Bengaluru, Karnataka, India LinkedIn Full time

    About the RoleAt LinkedIn, we're committed to protecting our members' information and ensuring the security of our infrastructure and applications. We're seeking an experienced Senior Incident Response Engineer to join our Information Security team.Key ResponsibilitiesInvestigate and respond to security incidents, working closely with cross-functional teams...