InfoSec & Compliance Specialist

Posted Yesterday
Be an Early Applicant
Hyderabad, Telangana, IND
In-Office
Senior level
Information Technology • Software • Consulting • Cybersecurity
The Role
Leads information security governance, risk, and compliance activities under the CISO’s office. Responsibilities include security assessments, control testing, internal audits, risk reporting, data protection compliance, GRC platform management, application security assessments, third-party risk management, client initiatives, and cybersecurity GRC projects. The role requires strong knowledge of security frameworks, IT environments, cloud systems, application development, stakeholder engagement, and cybersecurity standards.
Summary Generated by Built In

 

Job Statement:

 

NopalCyber makes cybersecurity manageable, affordable, reliable, and powerful for companies that need to be resilient and compliant. Managed extended detection and response (MXDR), attack surface management (ASM), breach and attack simulation (BAS), and advisory services fortify your cybersecurity across both offense and defense. AI-driven intelligence in our Nopal360° platform, our NopalGo mobile app, and our proprietary Cyber Intelligence Quotient (CIQ) lets anyone quantify, track, and visualize their cybersecurity posture in real-time. Our service packages are tailored to client needs and budgets, with external threat analysis provided at no cost—democratizing access to enterprise-grade cybersecurity for all.

 

We are looking for a high-energy, results-oriented GRC professional with 6 to 10 years of experience, combining expertise in IT and Governance, Risk, and Compliance (GRC). The candidate will report directly to the CISO’s office and contribute to internal audits and projects executed under CISO’s instructions.

 

 

Key Responsibilities:

  • Serve as a subject matter expert on information and cybersecurity governance, risk, and compliance (GRC) services and solutions.
  • Execute security assessments of on-premise/cloud IT environments aligned with business objectives and regulatory requirements.
  • Conduct testing and validation of IT security controls, documenting findings and preparing detailed reports.
  • Manage and perform internal audits as per the CISO’s directives, contributing to risk posture improvements and present the metrics to the CISO on a regular basis.
  • Apply knowledge of the Digital Personal Data Protection Act, 2023, and other global data protection laws.
  • Utilize and manage GRC tools and platforms.
  • Conduct security control assessments for web/mobile applications and enterprise systems.
  • Drive third-party risk management and support client-facing initiatives.
  • Deliver complex GRC projects in dynamic, fast-paced environments.
  • Engage in knowledge-sharing forums to strengthen team capabilities.
  • Continuously enhance the cybersecurity strategy based on evolving threats and technologies.

 

Job Requirements:

1. Qualifications:

  • Bachelor’s degree in Engineering or a related technology discipline.
  • Mandatory Certification:
    • Must possess CISA or ISO 27001 Lead Auditor certification.
  • Additional certifications preferred:
    • ISO 27001 Lead Implementer
    • CISSP, CIPP, CCSK, or CCSP
    • Public Cloud certifications (AWS, Azure, GCP)

 

2. Experience:

 

  • 6 to 10 years of total experience with proven exposure to both IT and GRC functions.
  • Experience in internal audits, consulting, and cybersecurity risk advisory.

 

3. Desired Skills:

 

  • Deep understanding of information security principles and compliance frameworks.
  • Strong understanding of the IT topology and application development principles
  • Hands-on experience with security tools (e.g., vulnerability scanners, code review platforms).
  • Strong exposure to IT/cybersecurity standards: ISO 27001/27005, NIST CSF, PCI DSS, SOC 1/2, GDPR, COBIT.
  • Excellent communication skills, documentation abilities, and stakeholder engagement.
  • Experience in program and project management within cybersecurity initiatives.

 

4. Personal Attributes:

 

  • Self-starter with strong problem-solving skills.
  • Highly motivated and able to work with minimal supervision.
  • Strong prioritization and multitasking abilities under pressure.

 

 

 


 

 



Skills Required

  • Bachelor’s degree in Engineering or a related technology discipline
  • CISA certification
  • ISO 27001 Lead Auditor certification
  • 6 to 10 years of total experience with exposure to IT and GRC functions
  • Experience in internal audits, consulting, and cybersecurity risk advisory
  • Deep understanding of information security principles and compliance frameworks
  • Understanding of IT topology and application development principles
  • Hands-on experience with vulnerability scanners and code review platforms
  • Strong exposure to ISO 27001/27005, NIST CSF, PCI DSS, SOC 1/2, GDPR, and COBIT
  • Excellent communication, documentation, and stakeholder engagement skills
  • Experience in program and project management within cybersecurity initiatives
  • ISO 27001 Lead Implementer certification
  • CISSP, CIPP, CCSK, or CCSP certification
  • Public cloud certification from AWS, Azure, or GCP
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
99 Employees
Year Founded: 2022

What We Do

NopalCyber provides integrated offensive and defensive cybersecurity solutions for organizations seeking resilience and compliance. Its offerings include managed extended detection and response, attack surface management, breach and attack simulation, advisory services, and 24/7 security operations. AI-driven products such as Nopal360°, NopalGo, and Cyber Intelligence Quotient help clients quantify, visualize, and reduce cyber risk across their IT environments while tailored service packages broaden access to enterprise-grade protection.

Similar Jobs

Wells Fargo Logo Wells Fargo

Consultant

Fintech • Financial Services
Hybrid
Hyderabad, Telangana, IND
205000 Employees
Hybrid
Hyderabad, Telangana, IND
205000 Employees

Wells Fargo Logo Wells Fargo

Consultant

Fintech • Financial Services
Hybrid
Hyderabad, Telangana, IND
205000 Employees
Hybrid
Hyderabad, Telangana, IND
205000 Employees

Similar Companies Hiring

Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account