InfoSec Engineer
2 days ago
About Drip Capital
We are a US-based fintech company revolutionizing global trade for SMEs. At Drip Capital, we're redefining the future of trade finance and facilitation, empowering small and medium-sized enterprises (SMEs) to scale internationally with ease.
With the global SME trade market exceeding $5 trillion, our mission is to provide businesses in emerging markets with seamless access to capital—eliminating red tape and outdated processes. By leveraging cutting-edge technology, we make trade finance fast, efficient, and hassle-free. Beyond financing, we simplify trade and sourcing, helping SMEs navigate global markets effortlessly.
Headquartered in Palo Alto, California, with offices in India, Drip Capital is strategically positioned to meet the evolving needs of SMEs in emerging markets.
Backed by top investors—including Accel, Peak XV, Wing VC, Sequoia India, Y Combinator, GMO, SMBC Japan, Barclays, and IFC—Drip has facilitated over $7 billion in trade across 10,000+ buyers and sellers. As we continue to grow, we remain committed to transforming global trade for SMEs worldwide.
Role Overview :
We are looking for a highly motivated and detail-oriented Security Compliance Engineer with a strong focus on ISO/IEC 27001:2022 audit and implementation. The ideal candidate should also have hands-on experience in GRC, Cloud security, Vulnerability Assessment & Penetration Testing (VAPT), and general information security best practices. This role is essential in ensuring our compliance with security frameworks, maintaining our ISMS, and strengthening our overall security posture.
Key Responsibilities:
- Lead ISO/IEC 27001:2022 compliance initiatives, including implementation, internal audits, surveillance, and recertification audits.
- Prepare and maintain documentation for audits, including evidence collection and audit logs.
- Conduct or support internal VAPT exercises; work with external vendors for third-party assessments and ensure closure of findings.
- Evaluate and ensure security compliance in cloud environments (AWS), including configuration reviews and adherence to cloud security best practices.
- Perform security risk assessments, gap analyses, and impact assessments across systems, processes, and vendors.
- Collaborate cross-functionally with Engineering, IT, Legal, and HR to ensure compliance across business units.
- Develop and maintain security policies, procedures, standards, and guidelines aligned with ISO 27001 and other applicable frameworks.
- Monitor compliance with regulatory requirements (e.g., GDPR, SOC 2, NIST, HIPAA) and internal policies.
- Assist in developing security awareness training and conducting compliance onboarding for new employees.
- Stay updated on emerging threats, vulnerabilities, and evolving regulatory requirements.
Requirements:
- Minimum 3+ years of experience in a security compliance, security engineering, or audit-focused role.
- Strong experience with ISO/IEC 27001:2022 implementation, audits, and certification processes.
- Practical knowledge of VAPT tools and methodologies, including reporting and remediation tracking.
- Solid understanding of cloud security principles (preferably with hands-on experience in AWS).
- Familiarity with security controls, risk management, and audit frameworks (e.g., SOC 2, NIST, GDPR).
- Excellent documentation and communication skills, especially for audit readiness and stakeholder reporting.
- Ability to manage multiple security and compliance initiatives simultaneously.
Preferred:
Certifications such as ISO 27001 Lead Auditor/Implementer, CEH, or CCSK.
Exposure to secure software development lifecycle (SDLC) and DevSecOps practices.
- Familiarity with identity and access management (IAM), data loss prevention (DLP), and endpoint security tools.
Bachelor's degree in Computer Science, Information Security, Cybersecurity, or a related field.
3+ years of experience in a security compliance, security engineering, or audit-focused role.
-
Head of InfoSec and Cyber Security
3 days ago
Mumbai, Maharashtra, India Liberis Full time ₹ 2,00,000 - ₹ 4,00,000 per yearAbout Us:Liberis is on a mission to supercharge the power of small businesses all over the world - delivering the financial products they need to grow through a network of global partners. Before all else, Liberis is a technology company, connecting finance with small businesses.We use data to help partners understand their customers' real time needs and...
-
Project Engineer
11 hours ago
Mumbai, Maharashtra, India Vasu infosec Full time ₹ 9,00,000 - ₹ 12,00,000 per yearJob Profile: Project Planning EngineerPosition Summary:The Project Planning Engineer is responsible for creating and managing detailed project schedules, ensuring timely delivery, optimal resource allocation, and risk mitigation. This role requires collaboration with cross-functional teams to track progress, resolve delays, and maintain project alignment...
-
Security Engineer
4 days ago
Mumbai, Maharashtra, India SolutionTech HR Full time ₹ 12,00,000 - ₹ 36,00,000 per yearResponsibilities : - Conduct deep-dive penetration testing and red team simulations on web, mobile, cloud, APIs, and thick client systems. - Perform proactive threat modeling during product development to identify design-stage risks. - Build custom scripts/tools and automate offensive security workflows. - Report technical findings with clear,...
-
Offensive Security Engineer
1 week ago
Mumbai, Maharashtra, India Dash Hire Full time ₹ 12,00,000 - ₹ 36,00,000 per yearDescription : Responsibilities : - Conduct deep-dive penetration testing and red team simulations on web, mobile, cloud, APIs, and thick client systems. - Perform proactive threat modeling during product development to identify design-stage risks. - Build custom scripts/tools and automate offensive security workflows. - Report technical...
-
Security Analyst, InfoSec
2 days ago
Mumbai, Maharashtra, India Kroll Full time ₹ 40,00,000 - ₹ 1,20,00,000 per yearDescriptionWe are looking to recruit a Security Analyst to join our high-performance team in Mumbai. Candidate will be responsible for monitoring security events and alerts for potential malicious behaviors and evaluating the type and severity of security events by making use of packet analyses, and an in-depth understanding of exploits and vulnerabilities...
-
IT Infrastructure Audit Engineer
6 days ago
Mumbai, Maharashtra, India Live Connections Full time ₹ 19,20,000 - ₹ 48,00,000 per yearJob Title: IT Infrastructure Audit Engineer (2 requirement)Experience: 6–12 YearsLocation: Airoli, Navi MumbaiCTC: 40 LPA (Max)Job Summary:We are seeking a highly skilled and detail-oriented IT Infrastructure Audit Engineer to join our team. The ideal candidate will be responsible for auditing, assessing, and improving the organization's IT infrastructure,...
-
Senior Information Security Engineer
2 weeks ago
Mumbai, Maharashtra, India IDfy Full time ₹ 12,00,000 - ₹ 36,00,000 per yearAbout IDfyIDfy is Asia's leading TrustStack, trusted by the best, with global expertise and enterprise-grade tech, we're solving trust challenges, making compliance easy, fraud detection smarter, and onboarding seamless.Our clients include HDFC Bank, Zomato, Amazon, PhonePe, Paytm, HUL and many others. With more than 13+ years of experience and 2 million...
-
Active Directory Support Engineer
2 days ago
Mumbai, Maharashtra, India MNR Solutions Full time ₹ 8,00,000 - ₹ 12,00,000 per yearDesignation: Active Directory Engineer Location: Lower Parel (Mumbai) Experience : 2 to 6 years Mode : Work from office (WFO) Skills Required : Windows AD( Active Directory)/ Active Directory, SCCM, ERM JOB DESCRIPTION : Windows AD 1. Creation and management of directory infrastructure 2. Monitoring and reporting associated with the reliability...
-
DevOps Engineer
2 weeks ago
Mumbai, Maharashtra, India Trigyn Technologies Ltd Full time ₹ 5,00,000 - ₹ 15,00,000 per yearJob Description : DevOps Engineer Position Id: G Job Type: Full TimeCountry: IndiaLocation: Mumbai/PunePay Rate: OpenContact Recruiter: : Essential Functions / Job Responsibilities:Identify knowledge and skill gaps in existing team and recommend learning paths Drive infrastructure as code adoption Maintain vulnerability management and compliance...
-
Kissht - Engineering Manager - System Design
2 weeks ago
Mumbai, Maharashtra, India ONEMI TECHNOLOGY SOLUTIONS PRIVATE LIMITED Full time ₹ 20,00,000 - ₹ 25,00,000 per yearDescription : We are seeking an experienced Engineering Manager with deep technical expertise to lead a team of backend engineers. Youll be responsible for guiding the teams technical direction, ensuring high-quality delivery, fostering career development, and collaborating closely with product and design teams.Key Responsibilities : - Lead and manage...