Get more replies from employers
Send a job-specific resume in minutes.
Infra360 Solutions Pvt. Ltd. is seeking an Information Security & Compliance Engineer who will handle compliance execution while collaborating with engineering and client teams. The successful candidate will be responsible for managing compliance programs like ISO 27001 and SOC 2 and implementing security controls across cloud environments.
This hands-on execution role requires 4–6 years of experience in Information Security, with a focus on documentation and communication skills. Opportunities for growth into a Security & Compliance Manager role are available.
Reporting to: Founder / Engineering Leadership
About infra360.io
Infra360.io is a cloud, DevOps, and infrastructure services company helping fast‑growing startups and enterprises build secure, scalable, and compliant cloud platforms across AWS, Azure, and GCP.
As our clients mature, security and compliance are becoming critical enablers for growth, enterprise sales, and trust.
We are looking for an Information Security & Compliance Engineer (GRC) who can own day‑to‑day compliance execution and work closely with engineering and client teams.
Role Overview
This is a hands‑on execution role, not a purely advisory or audit‑only position.
You will be responsible for implementing, maintaining, and supporting multiple security compliance programs while collaborating with DevOps, SRE, and client stakeholders.
Own and support compliance programs, including:
Coordinate internal and external audits end‑to‑end
Manage audit evidence collection and documentation
Maintain risk registers and track remediation actions
Draft, update, and maintain:
Ensure policies are practical and aligned with engineering workflows
Work closely with DevOps/SRE teams to:
Respond to client security questionnaires (SIG, CAIQ, custom formats)
Support sales and pre‑sales teams on security and compliance discussions
Coordinate with clients and vendors on security assessments
Required Skills & Experience
Must‑Have
Good‑to‑Have
Certifications (Nice to Have)
Who Will Be a Good Fit
Required Skills
Security Security Compliance HIPAA Information Security SOC 2 (Type I & II) GDPR ISO 27001 (ISMS) PCI DSS GRC NIST CSF IAM policies