Talent.com
This job offer is not available in your country.
Security Engineer - GRC Domain

Security Engineer - GRC Domain

CNHBangalore
30+ days ago
Job description

Job Title : Security Engineer (with GRC Expertise)

Location : Bengaluru

Type : Full-time

Department : Infosec

Reports to : Head of Security / CTO

About Us :

CNH is on a mission to improve healthcare through secure, user-friendly technology. As a healthtech startup, protecting sensitive health data is foundational to our work. Were looking for a Security Engineer who can bridge hands-on security engineering with compliance and risk management.

Youll play a key role in helping us achieve and maintain SOC 2 and ISO 27001 : 2022 / 2019 certifications, while strengthening our security posture across the Youll Do :

  • Co-ordinate the technical aspects of SOC 2, ISO 27001 readiness and audits.
  • Audit Representation : Represent CNH's security posture in both internal and external audits.
  • Policies and Documentation : Develop and maintain security policies, control documentation, and evidence for audits.
  • Risk Register Management : Identify, document, and maintain an information security risk register.
  • Regularly report to the security lead and other stakeholders.
  • Third-Party Risk Management : Provide monitoring, independent oversight, and facilitate the execution and continuous improvement of third-party risk management and processes.
  • Security Awareness : Drive security awareness initiatives and conduct regular training on CNHs security policies and standard requirements through training sessions, communication, and workshop.
  • Operationalize and automate compliance processes using tools like Drata, Vanta, or Secureframe.
  • Collaborate with IT ,legal, HR, and product to ensure data protection across the You Bring :
  • Minimum 3 years of experience in security engineering, with at least 1-2 years of exposure to Governance, Risk, and Compliance (GRC) domains and audit processes.
  • Strong understanding of SOC 2 and ISO 27001 frameworks (preferably 2022 revisions).
  • Strong knowledge of core security principles such as least privilege access, defense in depth, preventative vs. detective controls,

network security, cloud security, application security, endpoint security, data protection, and incident response.

  • Familiarity with cloud platforms (AWS, GCP) and securing modern infrastructure.
  • Familiarity with compliance platforms and automation tools.
  • Excellent communication and cross-functional collaboration Points :
  • Security certifications like CISSP, CISM, ISO 27001 Lead Implementer, or AWS Security.
  • Experience with health data security (HIPAA, HITECH) or working in healthtech environments.
  • Experience in a startup or high-growth company setting.
  • Knowledge of secure software development lifecycle (SSDLC) and threat Join Us :
  • Be part of a mission-driven team solving real-world healthcare challenges.
  • Competitive salary, meaningful equity, and flexible work environment.
  • Opportunity to shape the security culture and infrastructure from the ground up.
  • Work at the intersection of cutting-edge tech and regulatory compliance.
  • (ref : hirist.tech)

    Create a job alert for this search

    Security Engineer • Bangalore

    Related jobs
    • Promoted
    GCP Cloud Security Engineer

    GCP Cloud Security Engineer

    ObjectwaysBengaluru, Karnataka, India
    Job Description : GCP Cloud Security Engineer.Bangalore (Hybrid – 3 days in-office).We are looking for a passionate GCP Cloud Security Engineer to enhance our Network Security and Technology Risk te...Show moreLast updated: 30+ days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    GigSkyBangalore Urban, Karnataka, India
    We're Hiring : Senior Staff Cybersecurity Engineer.Company : GigSky | Global Connectivity, Simplified.At GigSky, we’re redefining global mobile connectivity—powering everything from wearables to airp...Show moreLast updated: 25 days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    YASH Technologiesbangalore district, karnataka, in
    The AppSec Engineer is a specialized cybersecurity role focused on DevOps engineering principles.While the expectation of their sibling role – SAE – is to have practical working security knowledge,...Show moreLast updated: 23 days ago
    • Promoted
    Cyber Security Engineer with Splunk

    Cyber Security Engineer with Splunk

    IntraEdgehosur, tamil nadu, in
    This role will lead the development and implementation of intelligent security solutions using SIEM, SOAR, and machine learning to enhance detection, response, and operational efficiency across the...Show moreLast updated: 7 days ago
    • Promoted
    Cloud Security Engineer

    Cloud Security Engineer

    Aquanowhosur, tamil nadu, in
    Aquanow, a leading infrastructure and liquidity provider that provides institutional and enterprise application platforms for digital assets, is looking for a Cloud Security Engineer to join our te...Show moreLast updated: 26 days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    L&T Technology ServicesBengaluru, Karnataka, India
    Domain : Automotive Cybersecurity.Security feature development - Secure boot, Secure diagnostics, Secure JTAG, Secure Flashing, Secure FOTA / AOTA, AUTOSAR (CSM / Cryif / Crypto / DCM), HSM / HSE based servic...Show moreLast updated: 7 days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Vista Applied Solutions Group Inchosur, tamil nadu, in
    Hiring Sr Cyber Security Engineer | Long Term Contract | Remote.Job Title : Sr Cyber Security Engineer – Product Security. Location : Mostly Indian business hours, some cross over with US and EU teams...Show moreLast updated: 7 days ago
    • Promoted
    Engineer

    Engineer

    Intraedge Technologyhosur, tamil nadu, in
    Expected skillsets & job profile -.Go Anywhere and Seeburger MFT standard FTP servers and secure FTP servers using SFTP (SSH File Transfer Protocol), SCP, AS2, and FTPS (FTP over SSL) protocols.Exp...Show moreLast updated: 26 days ago
    • Promoted
    DevSecOps / AppSecOps Staff Engineer

    DevSecOps / AppSecOps Staff Engineer

    First American (India)hosur, tamil nadu, in
    Our people-first culture empowers bold thinkers and passionate technologists to solve real-world challenges through scalable architecture and innovative design. If you're driven by impact, thrive in...Show moreLast updated: 7 days ago
    • Promoted
    Groww - Senior Security Engineer - GRC Domain

    Groww - Senior Security Engineer - GRC Domain

    Groww- A brand under Billion Brains Garage VentureBangalore
    About Groww : We are a passionate group of people focused on making financial services accessible to every Indian through a multi-product platform.Each day, we help m...Show moreLast updated: 30+ days ago
    • Promoted
    Cyber Security Engineer (Qualys, Vulnerability Management, AWS security)

    Cyber Security Engineer (Qualys, Vulnerability Management, AWS security)

    FICOBengaluru, Karnataka, India
    This is an opportunity to define, build, and shape the future of FICO’s Cybersecurity and Risk Posture.As part of the Threat & Vulnerability Management team, you will collaborate across the busines...Show moreLast updated: 22 days ago
    • Promoted
    Security Engineer

    Security Engineer

    redBusBengaluru, Karnataka, India
    We are looking for a Security Engineer to join our cybersecurity team and strengthen redBus.This role involves monitoring, analysing, and responding. Security Operations, with deep expertise in Endp...Show moreLast updated: 26 days ago
    • Promoted
    Security GRC 2LoD

    Security GRC 2LoD

    Soffit Infrastructure Services (P) LtdBengaluru, Karnataka, India
    Governance, Risk, and Compliance) 2nd Line of Defense (.The role involves monitoring risk remediation efforts, providing expert guidance, and supporting the first line of defense (1LoD) in achievin...Show moreLast updated: 25 days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    ArcanaBangalore, IN
    As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show moreLast updated: 30+ days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Anumanabangalore, karnataka, in
    Position : Cyber Security Engineer.Work Mode : Hybrid (3 days in the office, 2 days remote).Anumana is seeking a skilled and motivated Cybersecurity Engineer to ensure the security, integrity, and co...Show moreLast updated: 30+ days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    AkkodisBengaluru, Karnataka, India
    Bachelor’s in computer engineering, Computer Science, or Electrical Engineering.Long-term experience in defining and designing large complex embedded networked computer systems including definition...Show moreLast updated: 14 days ago
    • Promoted
    Network Security Engineer

    Network Security Engineer

    RSEChosur, tamil nadu, in
    RSEC is a cybersecurity research and development company known for its advanced solutions and expert consultation services. We specialize in offering cutting-edge cybersecurity technologies to prote...Show moreLast updated: 30+ days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    interface.aiBengaluru, IN
    Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show moreLast updated: 26 days ago