Weekday, Inc. Logo

Weekday, Inc.

Security & Compliance Engineer

Posted 5 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in India
Senior level
Remote
Hiring Remotely in India
Senior level
Manage information security incidents, including containment, investigation, escalation, recovery, and post-incident reviews. Maintain incident response runbooks, coordinate with SOC/MDR teams, and support ISO 27001 and PDPL compliance. Administer BeyondTrust PAM, review privileged access, maintain risk registers, support audits, prepare security metrics, and manage information governance, security controls, policies, evidence, and remediation activities.
The summary above was generated by AI

๐—ง๐—ต๐—ถ๐˜€ ๐—ฟ๐—ผ๐—น๐—ฒ ๐—ถ๐˜€ ๐—ณ๐—ผ๐—ฟ ๐—ผ๐—ป๐—ฒ ๐—ผ๐—ณ ๐˜๐—ต๐—ฒ ๐—ช๐—ฒ๐—ฒ๐—ธ๐—ฑ๐—ฎ๐˜†'๐˜€ ๐—ฐ๐—น๐—ถ๐—ฒ๐—ป๐˜๐˜€

๐—ฆ๐—ฎ๐—น๐—ฎ๐—ฟ๐˜† ๐—ฟ๐—ฎ๐—ป๐—ด๐—ฒ: ๐—ฅ๐˜€ ๐Ÿญ๐Ÿฌ๐Ÿฌ๐Ÿฌ๐Ÿฌ๐Ÿฌ๐Ÿฌ - ๐—ฅ๐˜€ ๐Ÿฎ๐Ÿฌ๐Ÿฌ๐Ÿฌ๐Ÿฌ๐Ÿฌ๐Ÿฌ (๐—ถ๐—ฒ ๐—œ๐—ก๐—ฅ ๐Ÿญ๐Ÿฌ-๐Ÿฎ๐Ÿฌ ๐—Ÿ๐—ฃ๐—”)

Experience: 5+ yrs

Location: Remote (India)

Job Type: Full-time

We are looking for an experienced Information Security & Compliance Specialist to strengthen security operations, incident response, information governance, risk management, and compliance initiatives. The role is suited for a security professional with strong hands-on experience in incident response, ISO 27001, PDPL, information governance, privileged access management, and security operations.

You will play an important role in maintaining the organisation's security posture, responding to security incidents, supporting regulatory and audit requirements, managing information risks, and ensuring security governance processes are effectively implemented.


Requirements

Key Responsibilities

  • Provide first response and operational support for information security incidents.
  • Execute defined incident containment, response, escalation, and recovery activities.
  • Develop, maintain, and improve security incident response runbooks and procedures.
  • Coordinate with MDR/SOC teams to investigate, contain, and resolve security incidents.
  • Support incident investigation, documentation, root-cause analysis, and post-incident reviews.
  • Monitor and track security incidents, actions, escalations, and remediation activities.
  • Support ISO 27001 information security management and compliance activities.
  • Contribute to PDPL compliance initiatives, security controls, assessments, and documentation.
  • Support information classification, handling requirements, records management, and information governance processes.
  • Coordinate and provide evidence for internal and external security audits.
  • Maintain and update security risk registers and track mitigation and remediation activities.
  • Prepare and maintain monthly security metrics, dashboards, and management reports.
  • Support periodic security and governance reviews, including Y1.2 reviews and related assessment activities.
  • Administer and support BeyondTrust Privileged Access Management (PAM).
  • Review privileged access, access controls, approvals, and governance requirements.
  • Coordinate with governance, compliance, IT, security, and business stakeholders on security initiatives.
  • Support security control assessments, compliance reviews, and remediation tracking.
  • Maintain accurate security policies, procedures, records, evidence, and governance documentation.
  • Identify opportunities to strengthen security operations, incident readiness, information governance, and compliance processes.

What Makes You a Great Fit

  • 5+ years of professional experience in IT security, information security, cybersecurity, security governance, or compliance.
  • 3+ years of hands-on experience in incident response and security operations.
  • 2+ years of experience with ISO 27001 and PDPL compliance or related information-security regulatory frameworks.
  • 2+ years of experience in information governance, including information classification and records management.
  • Strong understanding of security incident response processes, containment, escalation, investigation, and recovery.
  • Experience developing and maintaining incident response runbooks and operational procedures.
  • Experience coordinating with SOC, MDR, or managed security service providers.
  • Hands-on experience with BeyondTrust PAM administration.
  • Strong understanding of privileged access management, access governance, and security controls.
  • Experience maintaining security risk registers and supporting risk assessments and remediation.
  • Experience preparing security metrics, management reports, audit evidence, and compliance documentation.
  • Strong understanding of ISO 27001, information security governance, risk management, and audit processes.
  • Practical knowledge of PDPL requirements and information governance principles.
  • Strong coordination skills with the ability to work across security, governance, compliance, IT, and business teams.
  • Excellent written and verbal communication skills.
  • Strong analytical, documentation, and problem-solving abilities.
  • Ability to work independently in a remote environment and manage multiple security and compliance priorities.

Similar Jobs

7 Days Ago
Remote
India
Senior level
Senior level
Edtech • Software
Own the organizationโ€™s cybersecurity program, including SOC 2 Type 2 compliance, cloud security posture management, vulnerability management, IAM, Google Workspace security, endpoint protection, detection and incident response. Develop policies, automate security workflows with Python, Bash, and Terraform, manage audits and risk assessments, and advise engineering, IT, legal, leadership, and customers on security matters.
Top Skills: AWSAzureBashCspmDkimDmarcEdrGCPGdprGoogle WorkspaceHipaaIamIso 27001KubernetesMdmMfaMongoDBOidcOrcaPrisma CloudPythonRedisSAMLScimSIEMSoc 2SpfSsoTerraformWizZero Trust
Senior level
Information Technology • Marketing Tech • Software • App development
Own security and compliance for finance and digital platforms. Implement KYC/AML, audit logging, encryption, and compliance controls. Coordinate external VAPT vendors and auditors. Define security policies for mobile and backend systems to meet SEBI/IRDAI, PCI-DSS, and GDPR standards.
Top Skills: AmlEncryptionGdprIamIrdaiKycPci-DssSebiSecrets ManagementVapt
2 Hours Ago
Remote or Hybrid
Senior level
Senior level
Artificial Intelligence • Cloud • Information Technology • Sales • Security • Software • Cybersecurity
Processes PO and non-PO invoices, expense claims, vendor records, payments, and AP mailbox inquiries. Investigates invoice exceptions, approval delays, system integration failures, and discrepancies while supporting payment runs, reporting, compliance, documentation, internal controls, and process improvements. The role requires collaboration with vendors, Procurement, employees, and global Finance teams, along with familiarity with Indian GST and TDS regulations and US shift availability.
Top Skills: ConcurCoupaErp SystemsNetSuite

What you need to know about the Mumbai Tech Scene

From haggling for the best price at Chor Bazaar to the bustle of Crawford Market, the energy of Mumbai's traditional markets is a key part of the city's charm. And while these markets will always have their place, the city also boasts a thriving e-commerce scene, ranking among the largest in the region. Driven by online sales in everything from snacks to licensed sports merchandise to children's apparel, the local industry is worth billions, with companies actively recruiting to meet the demands of continued growth.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account