Experience
2 - 4 yrs
Salary (CTC)
₹15L - ₹25L
Job Location
Chandigarh, India
Vacancy
1
Designation
Information Security Engineer
Job Type
Not specified
Job Description
Information Security & Audit Engineer and play a key role in safeguarding modern trust and financial infrastructure. You will drive the organization's security posture by leading vulnerability assessments, penetration testing, and supporting regulatory compliance across cloud and enterprise environments. This is an opportunity to collaborate with cross-functional teams, leverage the latest security tools, and contribute to the protection of critical assets in a highly regulated, innovative environment.
Key Responsibilities
- Conduct comprehensive vulnerability assessments and penetration testing (VAPT) for web applications
- APIs, cloud infrastructure, operating systems, and network devices
- Perform authenticated and unauthenticated vulnerability scans using industry-standard security tools (Nessus
- Tenable, etc.)
- Lead cloud security assessments and reviews across AWS and GCP environments, including IAM, encryption, and privileged access controls
- Coordinate remediation activities and validate fixes with engineering
- DevOps, and infrastructure teams
- Review and ensure secure configurations based on CIS Benchmarks and industry best practices
- Support and maintain the Information Security Management System (ISMS), including risk assessments and risk register maintenance
- Plan, coordinate, and support internal and external audits (SOC 2
- PCI DSS
- GLBA
- CIS Controls
- OWASP Top 10), including evidence collection and control testing
- Develop, review, and maintain security policies, standards, guidelines, and documentation to align with regulatory and business requirements
- Participate in security incident investigations, root cause analysis, and corrective action implementation
- Promote security awareness through training, phishing simulations, and cross-functional collaboration
Requirements
Must have
- Bachelor's degree in Computer Science
- Information Technology
- Cyber Security, or a related discipline
- Minimum of 2 years of hands-on experience in Information Security
- Cyber Security
- IT Audit, or Governance
- Risk & Compliance (GRC)
- Strong understanding of cloud security in AWS and GCP environments
- Practical experience with vulnerability management and penetration testing tools such as Nessus and Tenable
- Excellent analytical thinking, problem-solving, and communication skills
- Proven ability to document, report, and present security findings to technical and non-technical stakeholders
- Demonstrated integrity, attention to detail, and ability to manage multiple priorities
Good to have
- Experience working in fintech, banking
- SaaS, or other regulated industries is preferred
- Professional certifications such as CEH
- CompTIA Security+
- CISA
- CISSP
- ISO/IEC 27001 Lead Auditor
- PCI Professional
- AWS Certified Security Specialty, or Google Professional Cloud Security Engineer are a plus
- Familiarity with Microsoft Azure security services is a plus
Bonus
- Experience with container and Kubernetes security assessments is an added advantage
- Knowledge of scripting or automation for security tasks is a bonus
Benefits
- Competitive salary and performance-based incentives
- Exposure to modern cloud technologies (AWS, GCP)
- Opportunities for continuous learning and professional certifications
- Collaborative and integrity-driven work culture
- Hands-on experience with leading security and compliance frameworks (SOC 2
- PCI DSS
- GLBA)
- Support for professional growth and career advancement
No Referrers Available
There are currently no referrers available for this job. You can still apply, will let you know once there is any referrer available.
