Назад
Company hidden
1 день назад

It Security Engineer

Формат работы
hybrid
Тип работы
fulltime
Грейд
middle/senior
Английский
b2
Страна
India
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

IT Security Engineer: Strengthening the organization’s security control maturity and audit posture by bridging technical security operations with governance and assurance requirements with an accent on SOC 2, ISO 27001 readiness, and internal security audits. Focus on continuous testing, evidence validation, and cross‑functional collaboration.

Location: Hybrid in Hyderabad, Telangana

Company

Beghou brings over three decades of experience helping life sciences companies optimize their commercialization through strategic insight, advanced analytics, and technology.

What you will do

  • Support SOC 2 (Type I & Type II), Future ISO 27001 readiness, and internal security audits as they relate to SOC and IT operations.
  • Coordinate and manage audit evidence collection from SOC, endpoint, identity, and infrastructure teams.
  • Partner with IT and GRC to support vulnerability management oversight and track remediation of SLAs, compensating controls, and risk exceptions.
  • Support endpoint security control assurance across corporate devices using Microsoft Intune.
  • Support data protection and information governance controls using Microsoft Purview.
  • Maintain SOC-related policies, standards, procedures, and control narratives.

Requirements

  • 2–6 years of experience in information security, IT audit, SOC governance, or security compliance.
  • Hands-on exposure to SOC audit or compliance activities.
  • Working knowledge of SOC 2 / ITGC concepts, control testing and evidence collection.
  • Familiarity with ISO 27001, NIST CSF / 80053, AICPA Trust Services Criteria.
  • Experience working with Nessus (vulnerability scanning & remediation tracking), Microsoft Intune (device compliance / endpoint security assurance), Microsoft Purview (DLP, data classification, compliance tooling).
  • Strong documentation, analytical, and stakeholder communication skills.

Nice to have

  • Certifications: CISA, ISO 27001 Foundation or LA, CRISC, Microsoft Security fundamentals

Culture & Benefits

  • Highly collaborative, values-driven team.
  • Technical excellence, analytical rigor, and personal growth converge.
  • Passionate about AI innovation, building commercialization strategies, or shaping the next generation of data-first solutions in life sciences.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →

Текст вакансии взят без изменений

Источник - загрузка...