Information Security & Compliance Lead

Infra360 Solutions Pvt. Ltd.

Haryana

On-site

INR 1,000,000 - 1,500,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Infra360 Solutions Pvt. Ltd. is seeking an Information Security & Compliance Engineer who will handle compliance execution while collaborating with engineering and client teams. The successful candidate will be responsible for managing compliance programs like ISO 27001 and SOC 2 and implementing security controls across cloud environments.

This hands-on execution role requires 4–6 years of experience in Information Security, with a focus on documentation and communication skills. Opportunities for growth into a Security & Compliance Manager role are available.

Qualifications

  • 4–6 years of experience in Information Security, GRC, or Compliance.
  • Hands-on experience with ISO 27001 implementation.
  • Experience working with external auditors.

Responsibilities

  • Own and support compliance programs like ISO 27001 and SOC 2.
  • Implement security controls in AWS, Azure, and GCP environments.
  • Respond to client security questionnaires.

Skills

Information Security, GRC, or Compliance
ISO 27001 implementation
SOC 2 Type I
Documentation and communication skills
Cloud security concepts

Job description

Reporting to: Founder / Engineering Leadership

About infra360.io

Infra360.io is a cloud, DevOps, and infrastructure services company helping fast‑growing startups and enterprises build secure, scalable, and compliant cloud platforms across AWS, Azure, and GCP.

As our clients mature, security and compliance are becoming critical enablers for growth, enterprise sales, and trust.

We are looking for an Information Security & Compliance Engineer (GRC) who can own day‑to‑day compliance execution and work closely with engineering and client teams.

Role Overview

This is a hands‑on execution role, not a purely advisory or audit‑only position.

You will be responsible for implementing, maintaining, and supporting multiple security compliance programs while collaborating with DevOps, SRE, and client stakeholders.

Compliance & Governance

Own and support compliance programs, including:

  • ISO 27001 (ISMS)
  • SOC 2 (Type I & II)
  • HIPAA readiness
  • PCI DSS (scope & coordination)
  • NIST CSF mappings

Coordinate internal and external audits end‑to‑end

Manage audit evidence collection and documentation

Maintain risk registers and track remediation actions

Security Policies & Documentation

Draft, update, and maintain:

  • Information Security policies
  • Access control & IAM policies

Ensure policies are practical and aligned with engineering workflows

Cloud & DevOps Collaboration

Work closely with DevOps/SRE teams to:

  • Implement security controls in cloud environments (AWS/Azure/GCP)
  • Review IAM, network security, logging, and monitoring controls
  • Support DevSecOps initiatives (CI/CD security, secrets management)
Client & Stakeholder Interaction

Respond to client security questionnaires (SIG, CAIQ, custom formats)

Support sales and pre‑sales teams on security and compliance discussions

Coordinate with clients and vendors on security assessments

Required Skills & Experience

Must‑Have

  • 4–6 years of experience in Information Security, GRC, or Compliance
  • Hands‑on experience with ISO 27001 implementation
  • Hands‑on experience with SOC 2 Type I (Type II is a strong plus)
  • Experience working with external auditors
  • Strong documentation and communication skills
  • Basic to intermediate understanding of cloud security concepts

Good‑to‑Have

  • Exposure to HIPAA, PCI DSS, or GDPR
  • Experience with AWS, Azure, or GCP environments
  • Familiarity with NIST frameworks
  • Experience in startups, SaaS, fintech, or cloud services companies

Certifications (Nice to Have)

  • ISO 27001 Lead Implementer or Lead Auditor
  • CISA / CISSP / CCSP (any one is a plus)
  • PCI DSS Implementer (rare, strong advantage)

Who Will Be a Good Fit

  • Hands‑on and execution‑focused
  • Comfortable working in a fast‑moving environment
  • Able to collaborate with engineering teams
  • Willing to learn and grow into a lead role over time
  • Not afraid of audits, documentation, or client‑facing discussions
  • Opportunity to grow into Security & Compliance Manager
  • Play a key role in shaping infra360.io’s security practice
  • High exposure to enterprise clients and cloud‑native environments

Required Skills

Security Security Compliance HIPAA Information Security SOC 2 (Type I & II) GDPR ISO 27001 (ISMS) PCI DSS GRC NIST CSF IAM policies

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Compliance & GRC Lead
Security Compliance & GRC Lead

Cybrilla • Bengaluru

On-site
INR 2,400,000 - 4,200,000
Governance, Risk & Compliance (GRC) Manager
Governance, Risk & Compliance (GRC) Manager

TeamsWork.In • India

On-site
INR 1,500,000 - 2,100,000
Governance, Risk and Compliance (GRC) Lead
Governance, Risk and Compliance (GRC) Lead

Money Honey Financial Services • Mumbai

On-site
INR 1,500,000 - 2,000,000
Information Security Manager / GRC Lead
Information Security Manager / GRC Lead

Keka Technologies Private Limited • Bengaluru

On-site
INR 1,200,000 - 1,800,000
GRC Lead / Security Compliance Lead
GRC Lead / Security Compliance Lead

Gnani Innovations Private Limited. • India

On-site
INR 350,000 - 600,000
Module Lead Information Security
Module Lead Information Security

IDfy • Mumbai

On-site
INR 4,000,000 - 7,000,000
Information Security Manager / GRC Lead
Information Security Manager / GRC Lead

Flamapp • India

On-site
INR 1,500,000 - 2,100,000
Security, Risk & Compliance Lead
Security, Risk & Compliance Lead

RedDoorz • Dadri

On-site
INR 2,400,000 - 4,800,000
Sr Engineer, Governance, Risk & Compliance
Sr Engineer, Governance, Risk & Compliance

NextGen Healthcare India • Bengaluru

On-site
INR 1,600,000 - 2,800,000
Technical Manager
Technical Manager

Incedo Inc. • Gurugram District

On-site
INR 2,500,000 - 5,000,000