Security & Compliance Engineer (Senior)
Experience band: 7–10 years · Needed on day one
Owns the security design of the gateway and its mapping
to regulatory expectations.
Responsibilities
• Produces the threat model; hardens the platform;
owns mTLS/PKI, secrets management, access reviews and kill-switch drills
• Maps controls to RBI IT governance and
outsourcing directions and to the DPDP Act; supports client security testing
and remediation
• Reviews the client’s existing gateway deployment
for keys, logs and access hygiene
Must have
• 7+ years in security engineering
• PKI and mTLS, HashiCorp Vault or equivalent,
Kubernetes security, SIEM integration
• Has faced auditors or regulators in a banking or
financial-services environment
Nice to have
• AI/LLM security (OWASP Top 10 for LLM
applications)
• CISSP, CISM or equivalent



