Padmi

Information Security & Audit Engineer

IndiaPosted 2 months ago
CybersecurityJunior
Apply at Aspire Talent Innovations

Opens the source posting on naukri.com

Source description

About the role

View original

Information Security & Audit Engineer and play a key role in safeguarding modern trust and financial infrastructure. You will drive the organization's security posture by leading vulnerability assessments, penetration testing, and supporting regulatory compliance across cloud and enterprise environments. This is an opportunity to collaborate with cross-functional teams, leverage the latest security tools, and contribute to the protection of critical assets in a highly regulated, innovative environment. Key Responsibilities Conduct comprehensive vulnerability assessments and penetration testing (VAPT) for web applications APIs, cloud infrastructure, operating systems, and network devices Perform authenticated and unauthenticated vulnerability scans using industry-standard security tools (Nessus Tenable, etc.) Lead cloud security assessments and reviews across AWS and GCP environments, including IAM, encryption, and privileged access controls Coordinate remediation activities and validate fixes with engineering DevOps, and infrastructure teams Review and ensure secure configurations based on CIS Benchmarks and industry best practices Support and maintain the Information Security Management System (ISMS), including risk assessments and risk register maintenance Plan, coordinate, and support internal and external audits (SOC 2 PCI DSS GLBA CIS Controls OWASP Top 10), including evidence collection and control testing Develop, review, and maintain security policies, standards, guidelines, and documentation to align with regulatory and business requirements Participate in security incident investigations, root cause analysis, and corrective action implementation Promote security awareness through training, phishing simulations, and cross-functional collaboration Requirements Must have Bachelor's degree in Computer Science Information Technology Cyber Security, or a related discipline Minimum of 2 years of hands-on experience in Information Security Cyber Security IT Audit, or Governance Risk & Compliance (GRC) Strong understanding of cloud security in AWS and GCP environments Practical experience with vulnerability management and penetration testing tools such as Nessus and Tenable Excellent analytical thinking, problem-solving, and communication skills Proven ability to document, report, and present security findings to technical and non-technical stakeholders Demonstrated integrity, attention to detail, and ability to manage multiple priorities Good to have Experience working in fintech, banking SaaS, or other regulated industries is preferred Professional certifications such as CEH CompTIA Security+ CISA CISSP ISO/IEC 27001 Lead Auditor PCI Professional AWS Certified Security Specialty, or Google Professional Cloud Security Engineer are a plus Familiarity with Microsoft Azure security services is a plus Bonus Experience with container and Kubernetes security assessments is an added advantage Knowledge of scripting or automation for security tasks is a bonus Benefits Competitive salary and performance-based incentives Exposure to modern cloud technologies (AWS, GCP) Opportunities for continuous learning and professional certifications Collaborative and integrity-driven work culture Hands-on experience with leading security and compliance frameworks (SOC 2 PCI DSS GLBA) Support for professional growth and career advancement

One address, no account. We’ll tell you when matching roles go live.

More at Aspire Talent Innovations

Related open roles

View all roles