Senior Information Security Engineer
1 week ago
About Groww We are a passionate group of people focused on making financial services accessible to every Indian through a multi-product platform. Each day, we help millions of customers take charge of their financial journey. Every product, every design, every algorithm down to the tiniest detail is executed keeping the customers’ needs and convenience in mind. Let’s chat. Every individual deserves the knowledge, tools, and confidence to make informed financial decisions. At Groww, we are making sure every Indian feels empowered to do so through a cutting-edge multi-product platform offering a variety of financial services. Our long-term vision is to become the trusted financial partner for millions of Indians. Our culture enables us to be what we are — India’s fastest-growing financial services company. It fosters an environment where collaboration, transparency, and open communication take center-stage and hierarchies fade away. There is space for every individual to be themselves and feel motivated to bring their best to the table, as well as craft a promising career for themselves. The values that form our foundation are: Long-term thinking Policy Development and Enforcement: Develop, implement, and maintain policies, procedures, standards, and associated plans based on industry best practices such as ISO 27001, NIST, ITGC, PCI-DSS, etc. Ensure rigorous enforcement of these policies. Risk Assessment and Management: Conduct technology-based gap risk assessments, third-party risk assessments, and M&A security governance. Manage exceptions against Groww standards to maintain risk at an acceptable level. Compliance Checks: Perform compliance checks for user access management on network, servers, and applications. Additionally, ensure compliance with security and hardening standards for network, servers, applications, and workstations. Prepare compliance reports and remediation plans based on periodic reviews of application, workstation, server, and network device configurations. Data Loss Prevention (DLP) and CASB: Monitor and maintain compliance of Data Loss Prevention (DLP) and Cloud Access Security Broker (CASB) for all applications, infrastructure, and systems supporting Groww operations to prevent data leakage. SDLC Risk Assessment: Conduct risk assessments on applications during the Software Development Life Cycle (SDLC) and perform compliance checks related to access control and data sanitization. Risk Register Management: Identify, document, and maintain an information security risk register. Regularly report to the security lead and other stakeholders. Third-Party Risk Management: Provide monitoring, independent oversight, and facilitate the execution and continuous improvement of third-party risk management and M&A programs and processes. Security Control Automation: Influence security control automation efforts to enhance security and compliance at scale. Audit Representation: Represent Groww's security posture in both internal and external audits. Security Awareness: Drive security awareness initiatives and conduct regular training on Groww’s security policies and standard requirements through training sessions, communication, and workshops. A bachelor’s degree in information technology or a related field provides a strong foundation. A minimum of 3-5 years of professional experience in information security practices, with at least 2 years specializing in Governance, Risk, and Compliance (GRC) domains. Previous experience in managing SEBI, RBI, and IRDAI compliance and audits is highly valuable. Proficiency in security policy management and a deep understanding of security standards and frameworks, including CSA CCM, ISO 27001:2013, NIST CSF, PCI-DSS, SOX, and SOC2. Solid grasp of operational and organizational structures, including experience in global, matrix organizations, and third-party risk management. Strong knowledge of core security principles such as least privilege access, defense in depth, preventative vs. detective controls, network security, cloud security, application security, endpoint security, data protection, and incident response. Familiarity with agile methodologies and experience in DevOps or DevSecOps practices, along with an understanding of how they impact risk management and compliance. Possession of information security certifications, such as CISSP, CISM, CRISC, CEH, or ISO 27001, demonstrates expertise and will be an added benefit. Experience in reviewing High-Level Design (HLD) and Low-Level Design (LLD) and driving cross-functional programs is a plus.
-
Information Security Engineer
1 week ago
Bangalore, IND, India Zscaler Full time ₹ 8,00,000 - ₹ 24,00,000 per yearOur Engineering team built the world's largest cloud security platform from the ground up, and we keep building. With more than 100 patents and big plans for enhancing services and increasing our global footprint, the team has made us and our multitenant architecture today's cloud security leader, with more than 15 million users in 185 countries. Bring your...
-
Information Security Engineer
7 days ago
Bangalore, Karnataka, India Zscaler Full timeAbout Zscaler Serving thousands of enterprise customers around the world including 45 of Fortune 500 companies Zscaler NASDAQ ZS was founded in 2007 with a mission to make the cloud a safe place to do business and a more enjoyable experience for enterprise users As the operator of the world s largest security cloud Zscaler accelerates digital transformation...
-
Senior Information Security Engineer
3 weeks ago
Bangalore, Karnataka, India Jones Lang LaSalle Full timeJLL empowers you to shape a brighter way Our people at JLL and JLL Technologies are shaping the future of real estate for a better world by combining world class services advisory and technology for our clients We are committed to hiring the best most talented people and empowering them to thrive grow meaningful careers and to find a place where they belong...
-
Information Security Engineer
2 weeks ago
bangalore, India InCred Capital Full timeJob Summary: We are seeking a highly motivated and independent Information Security Engineer to join our information security team. The ideal candidate will possess a broad range of technical and compliance expertise across various information security domains. This role requires an individual who can work autonomously, manage multiple projects, and take...
-
Information Security Engineer
2 weeks ago
Bangalore, Karnataka, India Infosys Full timeResponsibilities 11 1 Work closely with the IT and project teams in getting a thorough understanding on the requirement on both network and cloud front review from the security standpoint and recommend relevant solutions 11 2 Responsible for effective coordination and prompt proactive communication with the relevant teams involved in the requirements 11 3...
-
Information Security Engineer
3 weeks ago
Bangalore Urban, India InCred Capital Full timeJob Summary: We are seeking a highly motivated and independent Information Security Engineer to join our information security team. The ideal candidate will possess a broad range of technical and compliance expertise across various information security domains. This role requires an individual who can work autonomously, manage multiple projects, and take...
-
Information Security Engineer
3 weeks ago
Bangalore Urban, India InCred Capital Full timeJob Summary: We are seeking a highly motivated and independent Information Security Engineer to joinour information security team. The ideal candidate will possess a broad range of technical and compliance expertise across various information security domains. This role requires an individual who can work autonomously, manage multiple projects, and take...
-
▷ Urgent: Information Security Engineer
3 weeks ago
Bangalore, India InCred Capital Full timeJob Summary: We are seeking a highly motivated and independent Information Security Engineer to join our information security team. The ideal candidate will possess a broad range of technical and compliance expertise across various information security domains. This role requires an individual who can work autonomously, manage multiple projects, and take...
-
Information Security Engineer
3 weeks ago
Bangalore Urban, Karnataka, India, IN InCred Capital Full timeJob Summary: We are seeking a highly motivated and independent Information Security Engineer to joinour information security team. The ideal candidate will possess a broad range of technical and compliance expertise across various information security domains. This role requires an individual who can work autonomously, manage multiple projects, and take...
-
Apprentice - Information Security
3 weeks ago
Bangalore, India Jobted IN C2 Full timeOverview: The Company Innovative, future-focused and collaborative, StoneX Group Inc. (NASDAQ: SNEX) is a global financial services firm with an entrepreneurial culture and a passion for providing world-class services to our clients. A Fortune-100 company with a nearly 100-year track record, with 3,900 employees and over 400,00 retail and institutional...