Information Security & Data Privacy Engineer - SKF Automotive Business

SKF Group

Bengaluru

On-site

INR 1,800,000 - 2,400,000

Full time

12 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

SKF Vertevo seeks an Information Security & Data Privacy Engineer to embed security, privacy, and regulatory requirements across SKF Automotive's technology landscape. You will bridge Security, Legal, Procurement, Engineering, and Business teams to implement GDPR, DPIAs, PIAs, and data governance across IT, OT, Cloud, Data and AI solutions.

You will assess risk, review DPAs and supplier contracts, lead audits, and support AI initiatives while monitoring evolving privacy and security regulations.

Qualifications

  • Expert knowledge of GDPR, personal data processing, PII protection, controller and processor obligations, data sovereignty, and privacy regulations.
  • Experience reviewing DPAs, privacy clauses, and data-sharing agreements.
  • Strong background in security governance, compliance, architecture, or assurance.
  • Familiarity with ISO 27001, ISO 27701, NIS2 and related security/privacy frameworks.

Responsibilities

  • Translate security, privacy, regulatory, and contractual requirements into practical technical and operational controls.
  • Lead security and privacy assessments, including DPIAs, PIAs, risk assessments, and compliance reviews.
  • Review and provide security and privacy input into DPAs, SCCs, and supplier contracts.
  • Assess data residency, data sovereignty, cross-border transfer, and third-party processing risks across cloud and SaaS environments.
  • Review solution architectures to ensure compliance with security, privacy, and regulatory requirements.
  • Validate/audit safeguards including IAM, DLP, encryption, logging, monitoring, and information protection controls.
  • Conduct due diligence of suppliers, technology partners, data processors, and cloud providers.
  • Support internal and external audits, certification activities, and regulatory inquiries.
  • Manage compliance gaps, remediation plans, security exceptions, and risk acceptance activities.
  • Support AI and data-driven initiatives by assessing data processing, privacy implications, and data governance requirements.
  • Monitor emerging privacy, security, and AI regulations and align policies accordingly.

Skills

Cybersecurity governance
Security architecture
Data privacy
GDPR expertise
PII protection
Data governance
Stakeholder management
Security assurance

Job description

Information Security & Data Privacy Engineer - SKF Automotive Business

By creating bearings and solutions for everything from industrial applications to vehicles, SKF plays an essential role in our everyday lives. In Q4 2026, SKF intends to spin off its Automotive business and list it as a separate company under the name of SKF Vertevo. A company created to support the future of the automotive market, and to co-drive the future of mobility faster.

This role will be a part of that new company. Would you like to join us, and move people further?

As the Information Security & Data Privacy Engineer, you will play a key role in ensuring security, privacy, and regulatory requirements are effectively embedded across SKF Automotive's technology landscape. Combining strong cybersecurity expertise with specialist knowledge of GDPR, personal data protection, and regulatory compliance, you will act as the bridge between Security, Legal, Procurement, Engineering, and Business teams.

In this unique and specialised position, you will help ensure that IT, OT, Cloud, Data and AI solutions are designed, implemented, and operated in accordance with security, privacy, and compliance requirements. You will champion Secure by Design, Privacy by Design, and responsible data governance principles while enabling innovation and business growth.

What you can expect in the role
  • Translate security, privacy, regulatory, and contractual requirements into practical technical and operational controls.
  • Lead security and privacy assessments, including DPIAs, PIAs, risk assessments, and compliance reviews.
  • Provide expert guidance on GDPR, PII processing, data retention, data minimisation, lawful processing, data subject rights, and records management.
  • Review and provide security and privacy input into Data Processing Agreements (DPAs), Controller-to-Processor agreements, Controller-to-Controller agreements, Standard Contractual Clauses (SCCs), and supplier contracts.
  • Assess data residency, data sovereignty, cross-border transfer, and third-party processing risks across cloud and SaaS environments.
  • Review solution architectures and technology implementations to ensure compliance with security, privacy, and regulatory requirements.
  • Validate/audit technical safeguards including Identity and Access Management, Data Loss Prevention, encryption, logging, monitoring, vulnerability management, and information protection controls.
  • Conduct security and privacy due diligence of suppliers, technology partners, data processors, and cloud providers.
  • Support internal and external audits, certification activities, customer assessments, and regulatory enquiries.
  • Manage compliance gaps, remediation plans, security exceptions, and risk acceptance activities.
  • Support AI and data-driven initiatives by assessing data processing, privacy implications, information protection requirements, and compliance obligations.
  • Monitor emerging privacy, security, and AI regulations and ensure organisational policies and controls remain aligned.
You will enjoy working here if you have
  • Strong technical cybersecurity background with experience in security governance, compliance, architecture, or assurance.
  • Expert knowledge of GDPR, personal data processing, PII protection, controller and processor obligations, data sovereignty, and privacy regulations.
  • Experience reviewing and negotiating DPAs, privacy clauses, and data-sharing agreements.
  • Deep understanding of security controls including IAM, DLP, encryption, cloud security, application security, and information protection.
  • Knowledge of ISO 27001, ISO 27701, TISAX, NIS2, and other relevant security and privacy frameworks.
  • Experience supporting audits, regulatory assessments, and compliance programmes.
  • Ability to assess AI workloads through established security, privacy, and data governance principles.
  • Strong analytical, communication, and stakeholder management skills.
If you want to go further

This position is located at one of our major SKF sites in Poznań (Poland), Pune or Bangalore (India), Saint-Cyr (France), or Cajamar (Brazil).

You will report to Malonie Guha, Chief Information Security Officer, who is located in Milton Keynes, United Kingdom. For questions regarding the recruitment process, please contact Martin Andersson, Talent Acquisition Specialist, by email martin.n.andersson@skfvertevo.com. Please note that we can't accept applications via email.

If you want to know more about SKF Automotive business, please visit our webpage: SKF Automotive: Bearings & aftermarket solutions since 1907

Transparency and fairness matter to us

At SKF, we see diversity in our workforce as an asset that supports better business results. We are committed to having a fair and inclusive recruitment process where all hiring decisions are based on objective, job-related criteria, ensuring equal opportunities for all candidates.

To support a fair and transparent recruitment process, the process may include assessments, and before hiring, we may also carry out background checks and verify application information. We will discuss your salary expectations during the first interview, and our final offer will be based on an objective evaluation of your experience, skills, and potential, aligned with the scope of the role and our internal salary guidelines. Our recruitment process may differ from country to country and will always be in line with applicablecountry-specific laws and regulations.

Come as you are – just be yourself. #weareSKF

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Security & Data Privacy Engineer - SKF Automotive Business
Information Security & Data Privacy Engineer - SKF Automotive Business

SKF Group • Maharashtra

On-site
INR 1,500,000 - 2,100,000
Digital Service Manager Infrastructure Security - Automotive Business
Digital Service Manager Infrastructure Security - Automotive Business

SKF Group • Bengaluru

On-site
INR 3,500,000 - 5,500,000
Diverse team environment
Opportunity for global collaboration
SAP Integration Architect- SKF Automotive Business
SAP Integration Architect- SKF Automotive Business

SKF ISEAM • Bengaluru

On-site
INR 1,800,000 - 2,400,000
Head of Cyber Security
Head of Cyber Security

Gruppo SKF • Pune District

On-site
INR 2,000,000 - 3,000,000
Program Manager - PDS
Program Manager - PDS

SKF Group • Bengaluru

On-site
INR 1,200,000 - 2,000,000
Pricing Performance & Analytics Manager
Pricing Performance & Analytics Manager

SKF Group • Maharashtra

On-site
INR 2,200,000 - 3,400,000
Sr. Full Stack GenAI Developer
Sr. Full Stack GenAI Developer

SKF Group • Bengaluru

On-site
INR 2,500,000 - 4,000,000
Application Engineer
Application Engineer

Gruppo SKF • India

On-site
INR 600,000 - 1,200,000
Application Engineer
Application Engineer

SKF Group • Bengaluru

On-site
INR 900,000 - 1,300,000
Application Engineer - Hyderabad
Application Engineer - Hyderabad

SKF Group • Chennai District

On-site
INR 600,000 - 1,000,000