We are looking for a Cyber Security Compliance Lead to join our security team, who will be responsible for driving security compliance initiatives (SOC 2, HIPPA, ISO 27001, etc.), leading compliance strategy, and overseeing security governance while collaborating with the VAPT and technical teams to ensure compliance alignment across applications, systems, and infrastructure.
About Us:
Qualysec Technologies is a cybersecurity company specializing in Web & Mobile Penetration Testing, Source Code Review, IoT, and Cloud Security, helping organizations strengthen their security posture.
Since 2020, we’ve delivered security consulting to global clients across Finance,Government, Healthcare, Insurance, and emerging tech sectors like AI/ML, IoT, and Blockchain. Our expert team leverages modern methodologies to protect critical assets.
We foster a growth mindset, enable fast career progression, encourage open feedback, and support continuous skill development.
Qualysec – Securing systems, building careers.
- Qualification:- Bachelor’s degree in Cybersecurity, Information Security, Computer Science, or related field.
- Experience:- 3 to 5 years of experience in information security compliance, governance, or cybersecurity domain.
- Experience:- Bhubaneswar
Responsibilities
- Lead and manage cybersecurity compliance programs including SOC 2, ISO 27001, GDPR, HIPAA, and related frameworks.
- Develop and maintain security policies, governance frameworks, compliance documentation, and audit readiness processes.
- Conduct internal/external audits, risk assessments, vendor assessments, and compliance gap remediation activities.
- Collaborate with VAPT, DevOps, and infrastructure teams to ensure effective implementation of security controls.
- Monitor regulatory updates, improve compliance tracking/reporting, mentor junior team members, and support client security assurance requirements.
Skills Required
- Strong expertise in Governance, Risk, and Compliance (GRC) with hands-on experience in security governance and compliance management.
- Deep understanding of frameworks including SOC 2, ISO 27001/27002, GDPR, HIPAA, NIST, and HITRUST.
- Good knowledge of penetration testing, vulnerability assessments, OWASP Top 10, MITRE ATT&CK, SANS, CVSS, and secure development practices
- Experience in implementing compliance programs, audit management, risk assessments, remediation tracking, and security documentation.
- Strong understanding of cloud and infrastructure security, access control models, and excellent communication and presentation skills.
- Compensation & Benefits: Competitive salary with performance-based bonuses, and on-time payments.
- Work-Life Balance: Paid time off, holidays, leave encashment, and lunch at the workplace.
- Learning & Career Growth: Regular L&D sessions, free access to online courses, fast-track career growth, and opportunities in a high-growth environment.
- Rewards & Recognition: Performance-based hikes, and monthly & annual awards.
- Culture & Environment: Fun Saturday activities, annual outings, open and supportive culture, and opportunities to work on cutting-edge cybersecurity and SaaS projects.