Sr. Security Compliance Engineer

Pratiti Technologies Pvt. Ltd.

Pune District

On-site

INR 1,500,000 - 2,100,000

Full time

6 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Pratiti Technologies Pvt. Ltd. in Pune seeks a Sr.

Security Compliance Engineer to design and implement secure, compliant controls across cloud and IT infrastructure, leveraging policy-as-code. You will drive internal audits, manage third-party risk, and provide evidence for external assessments in line with GDPR, SOC2, or ISO standards. Collaborate with IT, DevOps and engineering to remediate vulnerabilities, enforce information security policies, and monitor controls with automation.

Qualifications

  • 4+ years in security and compliance roles.
  • Experience with vulnerability management tooling and remediation.
  • Strong understanding of cloud security and AWS.
  • Familiarity with GDPR, SOC2, ISO and NIST frameworks.
  • Scripting in Python/Bash/PowerShell.

Responsibilities

  • Design and implement secure, compliant controls in cloud/IT infra.
  • Lead audits and provide evidence for external assessments.
  • Develop and enforce information security policies and standards.
  • Identify and remediate security gaps with IT/DevOps teams.
  • Maintain continuous monitoring and automate audit work.
  • Collaborate with compliance project managers and IT for new standards.
  • Stay updated on AI developments and secure integration.
  • Coordinate with engineering to build secure SDLC practices.
  • Manage patching and AWS config updates with Terraform.

Skills

GRC experience
Cloud security
Scripting languages
Vulnerability management

Education

Bachelor's degree in CS/IS/Security

Tools

Docker
Terraform
AWS

Job description

Job Summary

Sr. Security Compliance Engineer Responsibilities Engineering Implementation: Designing and implementing secure, compliant controls within cloud and IT infrastructure, often using policy-as-code.

Audit Risk Management: Conducting internal audits, managing third-party risk, and providing evidence for external assessments in alignment with national and international regulations.

Policy Documentation: Creating, managing, and enforcing information security policies, procedures, and technical standards.

Vulnerability Management: Identifying security gaps and driving remediation in partnership with IT, DevOps, and engineering teams.

Monitoring Tools: Maintaining continuous monitoring of security controls and utilizing automation to reduce manual audit work.

Implement security measures and compliance controls within our backend systems, focusing on cloud environments like AWS and enterprise security.

Collaborate with compliance project managers and corporate IT to adopt new compliance standards, integrate them with existing security solutions and collect evidence for external audits.

Enhance data protection, conduct risk assessments, and ensure systems comply with standards like GDPR, SOC2, or ISO.

Ensure controls are configured correctly and integrated into the security strategy Identify and mitigate vulnerabilities, ensuring both security and compliance across systems.

Stay updated on security technologies and compliance regulations, applying this knowledge to improve our infrastructure.

Works with the engineering team to build secure and compliant software development practices.

Manage application patching and update AWS configurations using Terraform to maintain system integrity and performance.

Work with the team to conduct regular audits to ensure compliance with internal policies and procedures, relevant security standards, best practices, regulations and client requirements to identify gaps and provide remediation solutions.

Staying up to date on the latest AI developments is an added value, but not required.

Qualifications
  • Bachelors degree in Computer Science, Information Systems, Security or a related field.
  • 4+ years of experience within a security and compliance function.
  • 3+ years of experience in GRC (Governance, Risk, and Compliance), security operations, or audits.
  • Experience with vulnerability management tooling, remediation, and processes.
  • Experience with Docker, Terraform, AWS.
  • Understanding of concepts related to Systems Engineering/DevOps, IaC, IAM, network security, systems security, cryptography, privacy.
  • Understanding of compliance frameworks (e.g., GDPR, SOC2, ISO) and security best practices.
  • Strong expertise in cloud security and compliance, particularly with AWS.
  • An understanding of best practices and how to implement them at a business-wide level.
  • Have a wide understanding of cybersecurity and data protection with frameworks such as SOC 2, ISO 27001, NIST, DPDPA, or GDPR.
  • Technical proficiency in scripting (Python, Bash, PowerShell) and security tools.
  • Strong understanding of cloud security (AWS, Azure, etc.).
  • Critical thinking skills and the ability to solve problems as they arise.
  • Direct experience with International and National Laws and Requirements.
  • Knowledge of disaster recovery, computer forensic tools, technologies, and methods around data protection.
  • Experience planning, researching, and developing policies, standards, and procedures to align with companys strategy and best practices.
  • Experience in NIST 800 series standards and NIST Privacy Framework, preferred.
  • Knowledge of Large Language Models (LLMs) and secure, compliant integration.
  • Ability to communicate identified issues to peers and management.
  • Analyze systems and seek improvements on a continuous basis.
  • Deep understanding of how artificial intelligence works is an added value, but not required.
  • Attention to detail and concentration.
  • This role is critical for reducing organizational risk while enabling product teams to move quickly without compromising security posture.
Job Type

Full time

Disclaimer: This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Sr. Security Compliance Engineer
Sr. Security Compliance Engineer

Pratiti Technologies Pvt Ltd • Pune District

On-site
INR 1,000,000 - 1,500,000
Cloud Security and GRC Engineer (Compliance/ Security Architecture)
Cloud Security and GRC Engineer (Compliance/ Security Architecture)

PeopleGene • Pune District

On-site
INR 1,000,000 - 1,500,000
IT Security And Compliance Engineer
IT Security And Compliance Engineer

Rapyuta Robotics • Chennai District

On-site
INR 1,500,000 - 2,500,000
Competitive salary
Great team culture
Senior Information Security Analyst-(Risk and Regulatory Tech Complainance)
Senior Information Security Analyst-(Risk and Regulatory Tech Complainance)

KreditBee • Bengaluru

On-site
INR 800,000 - 1,500,000
Cybersecurity & Compliance Advisor
Cybersecurity & Compliance Advisor

Siemens • Gurugram District

On-site
INR 2,800,000 - 4,200,000
Cloud Security Operations Specialist - DevSecOps
Cloud Security Operations Specialist - DevSecOps

BOT Consulting • Jaipur

On-site
INR 1,200,000 - 1,800,000
Specialist II - Information Security
Specialist II - Information Security

UST • Chennai District

On-site
INR 3,500,000 - 5,500,000
Compliance Analyst
Compliance Analyst

HCLTech • Jigani

Hybrid
INR 900,000 - 1,500,000
Senior Security Engineer
Senior Security Engineer

Radius Ois • Khordha

On-site
INR 1,500,000 - 2,500,000
Senior GRC Analyst
Senior GRC Analyst

3M HEALTHCARE • Hyderabad

On-site
INR 1,500,000 - 2,200,000