
Search by job, company or skills
Role: Security Engineer — Data Security
Function: Security Engineering / Data Security
Location: Bengaluru, India (In-office)
Type: Full-time
Industry: Information Technology & Services, Computer Software, Fintech
About Company
The company is a Bengaluru-based enterprise tech startup founded in 2016. It powers digital identity verification, e-signing, document automation, and payment automation for over 1,500 enterprises and 100 million users across India.
It handles some of the most sensitive data in Indian fintech — Aadhaar, PAN, KYC packets, and executed agreements. The company is certified for security and compliance and is RBI-authorised as a payment aggregator.
With a 90-person team, it is building security infrastructure to match India's growing DPDP regulatory landscape. What gets built here won't just protect the company — it will become the foundation of a data security product for the Indian market.
Position Overview
This is a builder-operator role. You will own the company's data security program end-to-end — covering discovery, classification, access review, breach readiness, and regulator-ready evidence — and build the engineering tooling that makes the program work. You'll operate in an AWS-heavy fintech environment handling DPDP-regulated, Aadhaar-class data, and your work will form the foundation of a data security product the company intends to bring to market.
Role & Responsibilities
Must Have Criteria
Nice to Have
What We Offer
Job ID: 147190527
Skills:
DAST, Linux, Siem, AWS, EDR, SAST, nist, SOC 2, MDR, CIS
Skills:
DAST, Vulnerability Scanning, Cloudformation, PowerShell, Bash, Jenkins, DevSecOps, Terraform, Docker, Ansible, Kubernetes, Python, GitHub Actions, SAST, infrastructure as code
Skills:
DAST, Tcp, Saml, Vpns, Okta, Docker, Terraform, Sonarqube, Python, AWS, Oauth2, Http, Waf, Kubernetes, GitOps, Wiz, Go, GRPC, SAST, ABAC, Ip, Snyk, TLS 1.3, rbac, ArgoCD, mTLS, OIDC
Skills:
red teaming , Node.js, Automation, Application Security, Oscp, Python, Offensive Security, OSCE, Adversary Simulation, Go, Manual Code Review, GXPN, AWS Security Architecture
Skills:
.NET, Java, DAST, Jenkins, Rest Apis, Python, OpenID Connect, CWE Top 25, DevSecOps practices, application API and microservices security, OAuth 2.0, SCA, OWASP Top 10 Web API and LLM Applications, secret scanning tools, SAST, CI CD pipelines, Git-based workflows
We don’t charge any money for job offers