Information Security & Data Privacy Engineer - SKF Automotive Business

SKF Group

Maharashtra

On-site

INR 1,500,000 - 2,100,000

Full time

11 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

SKF Group seeks an Information Security & Data Privacy Engineer for SKF Automotive to embed security, privacy, and regulatory requirements across IT, OT, Cloud, Data, and AI. You will bridge Security, Legal, Procurement, Engineering and Business teams to enable compliant innovation.

You will translate requirements into controls, lead DPIAs/PIAs, advise on GDPR and data processing, review DPAs and data-sharing agreements, assess data residency and cross-border transfers, and support audits and

Qualifications

  • Strong technical cybersecurity background with experience in security governance, compliance, architecture, or assurance.
  • Expert knowledge of GDPR, personal data processing, PII protection, controller and processor obligations, data sovereignty, and privacy regulations.
  • Experience reviewing and negotiating DPAs, privacy clauses, and data-sharing agreements.
  • Deep understanding of security controls including IAM, DLP, encryption, cloud security, application security, and information protection.
  • Knowledge of ISO 27001, ISO 27701, TISAX, NIS2, and other relevant security and privacy frameworks.
  • Experience supporting audits, regulatory assessments, and compliance programmes.

Responsibilities

  • Translate security, privacy, regulatory, and contractual requirements into practical technical and operational controls.
  • Lead security and privacy assessments, including DPIAs, PIAs, risk assessments, and compliance reviews.
  • Provide expert guidance on GDPR, PII processing, data retention, data minimisation, lawful processing, data subject rights, and records management.
  • Review and provide security and privacy input into DPAs and supplier contracts.
  • Assess data residency, data sovereignty, cross-border transfer, and third-party processing risks across cloud and SaaS environments.
  • Review solution architectures to ensure compliance with security, privacy, and regulatory requirements.
  • Validate/audit safeguards including IAM, DLP, encryption, logging, monitoring, vulnerability management, and information protection controls.
  • Conduct security and privacy due diligence of suppliers, technology partners, data processors, and cloud providers.
  • Support internal and external audits, certification activities, customer assessments, and regulatory enquiries.
  • Manage compliance gaps, remediation plans, security exceptions, and risk acceptance activities.
  • Support AI and data-driven initiatives by assessing data processing, privacy implications, information protection requirements, and compliance obligations.

Skills

Cybersecurity governance
Privacy by design
GDPR expertise
Data protection
IAM
DLP

Education

Bachelor's degree in Information Security / CS

Tools

DPAs review
Data processing agreements
Cloud security
ISO 27001
ISO 27701

Job description

By creating bearings and solutions for everything from industrial applications to vehicles, SKF plays an essential role in our everyday lives. In Q4 2026, SKF intends to spin off its Automotive business and list it as a separate company under the name of SKF Vertevo. A company created to support the future of the automotive market, and to co-drive the future of mobility faster.

This role will be a part of that new company. Would you like to join us, and move people further?

Information Security & Data Privacy Engineer - SKF Automotive Business

As the Information Security & Data Privacy Engineer, you will play a key role in ensuring security, privacy, and regulatory requirements are effectively embedded across SKF Automotive's technology landscape. Combining strong cybersecurity expertise with specialist knowledge of GDPR, personal data protection, and regulatory compliance, you will act as the bridge between Security, Legal, Procurement, Engineering, and Business teams.

In this unique and specialised position, you will help ensure that IT, OT, Cloud, Data and AI solutions are designed, implemented, and operated in accordance with security, privacy, and compliance requirements. You will champion Secure by Design, Privacy by Design, and responsible data governance principles while enabling innovation and business growth.

What you can expect in the role
  • Translate security, privacy, regulatory, and contractual requirements into practical technical and operational controls.
  • Lead security and privacy assessments, including DPIAs, PIAs, risk assessments, and compliance reviews.
  • Provide expert guidance on GDPR, PII processing, data retention, data minimisation, lawful processing, data subject rights, and records management.
  • Review and provide security and privacy input into Data Processing Agreements (DPAs), Controller-to-Processor agreements, Controller-to-Controller agreements, Standard Contractual Clauses (SCCs), and supplier contracts.
  • Assess data residency, data sovereignty, cross-border transfer, and third-party processing risks across cloud and SaaS environments.
  • Review solution architectures and technology implementations to ensure compliance with security, privacy, and regulatory requirements.
  • Validate/audit technical safeguards including Identity and Access Management, Data Loss Prevention, encryption, logging, monitoring, vulnerability management, and information protection controls.
  • Conduct security and privacy due diligence of suppliers, technology partners, data processors, and cloud providers.
  • Support internal and external audits, certification activities, customer assessments, and regulatory enquiries.
  • Manage compliance gaps, remediation plans, security exceptions, and risk acceptance activities.
  • Support AI and data-driven initiatives by assessing data processing, privacy implications, information protection requirements, and compliance obligations.
  • Monitor emerging privacy, security, and AI regulations and ensure organisational policies and controls remain aligned.
You will enjoy working here if you have
  • Strong technical cybersecurity background with experience in security governance, compliance, architecture, or assurance.
  • Expert knowledge of GDPR, personal data processing, PII protection, controller and processor obligations, data sovereignty, and privacy regulations.
  • Experience reviewing and negotiating DPAs, privacy clauses, and data-sharing agreements.
  • Deep understanding of security controls including IAM, DLP, encryption, cloud security, application security, and information protection.
  • Knowledge of ISO 27001, ISO 27701, TISAX, NIS2, and other relevant security and privacy frameworks.
  • Experience supporting audits, regulatory assessments, and compliance programmes.
  • Ability to assess AI workloads through established security, privacy, and data governance principles.
  • Strong analytical, communication, and stakeholder management skills.
If you want to go further

This position is located at one of our major SKF sites in Poznań (Poland), Pune or Bangalore (India), Saint-Cyr (France), or Cajamar (Brazil).

You will report to Malonie Guha, Chief Information Security Officer, who is located in Milton Keynes, United Kingdom.

Transparency and fairness matter to us

At SKF, we see diversity in our workforce as an asset that supports better business results. We are committed to having a fair and inclusive recruitment process where all hiring decisions are based on objective, job-related criteria, ensuring equal opportunities for all candidates.

To support a fair and transparent recruitment process, the process may include assessments, and before hiring, we may also carry out background checks and verify application information. We will discuss your salary expectations during the first interview, and our final offer will be based on an objective evaluation of your experience, skills, and potential, aligned with the scope of the role and our internal salary guidelines. Our recruitment process may differ from country to country and will always be in line with applicable country-specific laws and regulations.

Come as you are – just be yourself. #weareSKF

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Security & Data Privacy Engineer - SKF Automotive Business
Information Security & Data Privacy Engineer - SKF Automotive Business

SKF Group • Bengaluru

On-site
INR 1,800,000 - 2,400,000
SAP Integration Architect- SKF Automotive Business
SAP Integration Architect- SKF Automotive Business

SKF ISEAM • Bengaluru

On-site
INR 1,800,000 - 2,400,000
Digital Service Manager Infrastructure Security - Automotive Business
Digital Service Manager Infrastructure Security - Automotive Business

SKF Group • Bengaluru

On-site
INR 3,500,000 - 5,500,000
Diverse team environment
Opportunity for global collaboration
Head of Cyber Security
Head of Cyber Security

Gruppo SKF • Pune District

On-site
INR 2,000,000 - 3,000,000
Program Manager - PDS
Program Manager - PDS

SKF Group • Bengaluru

On-site
INR 1,200,000 - 2,000,000
Sr. Full Stack GenAI Developer
Sr. Full Stack GenAI Developer

SKF Group • Bengaluru

On-site
INR 2,500,000 - 4,000,000
Pricing Performance & Analytics Manager
Pricing Performance & Analytics Manager

SKF Group • Maharashtra

On-site
INR 2,200,000 - 3,400,000
Application Engineer
Application Engineer

Gruppo SKF • India

On-site
INR 600,000 - 1,200,000
Application Engineer
Application Engineer

SKF Group • Bengaluru

On-site
INR 900,000 - 1,300,000
Application Engineer - Hyderabad
Application Engineer - Hyderabad

SKF Group • Chennai District

On-site
INR 600,000 - 1,000,000