Security Lead (GRC & AppSec)

Posted 9 Days Ago
Be an Early Applicant
Hyderabad, Telangana, IND
In-Office
Senior level
Logistics • Mobile • Software
The Role
Founding security hire to build and lead a 3-person security team. Owner of GRC, SOC 2 readiness, AppSec pipeline (SAST/SCA/DAST) in CI/CD, vulnerability management, incident response, security reviews, and security awareness programs for a growth-stage SaaS.
Summary Generated by Built In
Security Lead (GRC & AppSec)
Location: Hyderabad, India
Employment Type: Full-Time; Salaried 
Compensation: Base Salary, Bonus, Stock Options, Medical

About Innovapptive

Innovapptive is an enterprise SaaS company building an AI-powered Connected Worker Platform for industrial organizations. Our platform connects frontline workers, back-office systems, and assets in real-time to drive safety, reliability, and operational productivity.

Leading global enterprises including Shell, Hess, Westlake Chemical, Kimberly-Clark, Scott Miracle-Gro, and Newmont Mining, rely on Innovapptive to transform how work gets done across plants and field operations.

Our customers have achieved $50M+ EBITDA savings at a single enterprise, 10× improvement in frontline productivity, and 15–20% reductions in maintenance costs.

Innovapptive is recognized as a Leader in Frost & Sullivan's “Frost Radar 2025 -  Augmented Connected Worker Platforms”, with acknowledgments from Gartner and LNS Research, and is backed by Vista Equity Partners and Tiger Global Management.

With headquarters in Houston and an engineering center in Hyderabad, we have 300+ employees across the U.S., India, and ANZ and are on a strong trajectory toward $100M ARR.

Why This Role Exists

You are the founding security hire. Build Security & Compliance from scratch: GRC, AppSec pipeline, vulnerability management, security culture. Hire and lead a 3-person team.

What You Own

  • Security program from zero: GRC framework, risk register, policies, vendor assessments.
  • SOC 2 Type II readiness.
  • AppSec pipeline: SAST/SCA in CI/CD. 100% repo coverage.
  • Vulnerability management: ≥95% Crit/High resolved within 7/30 days.
  • Security review for high-risk changes.
  • Incident response playbook.
  • Security awareness and training.
  • Team building: AppSec Engineer now, Infra/Cloud in Q3.

You Must Have

  • 6+ years information security with 2+ years leading programs.
  • GRC: SOC 2, ISO 27001. Audit coordination.
  • AppSec: SAST/DAST/SCA, OWASP Top 10, threat modeling.
  • Security tooling in CI/CD.
  • Communicate risk in business terms.
  • Building security from zero in growth-stage SaaS.

Nice to Have

  • CISSP, CISM, CEH, or AWS Security Specialty.
  • Regulated industries (energy, utilities, manufacturing).
  • SAP security patterns.
  • PenTest experience.
  • AI/ML security.

You Will Be Measured On

  • SAST/SCA 100% repos within 60 days.
  • ≥95% Crit/High resolved within 7/30 days.
  • SOC 2 audit-ready by year end.
  • Playbook v1 within 30 days.
  • Team at 3 HC by Q3.
  • ≥90% quarterly audits satisfactory.

Tech Stack & Tools

SAST/SCA: SonarQube, Snyk, Dependabot, GitLab SAST
DAST: OWASP ZAP, Burp Suite
Infrastructure: AWS (IAM, GuardDuty, Security Hub), Docker, K8s
Identity: SAML, OAuth 2.0, RBAC
Compliance: Vanta/Drata
Monitoring: CloudWatch, Sentry, Mixpanel

Compensation & Growth

Reports to VP SRE. Founding security role. Path to Head of Security / CISO.

What We Offer

  • Competitive compensation and equity tied to measurable impact on AI accuracy and performance.
  • A platform to shape the semantic intelligence layer of a category-defining industrial SaaS company.
  • Access to cutting-edge AI, data, and observability toolchains for continuous learning and innovation.
 

Innovapptive does not accept and will not review unsolicited resumes from search firms.
Innovapptive is an equal opportunity employer and is committed to a diverse and inclusive workplace.  Qualified applicants will receive consideration for employment without regard to race, color, religion or creed, alienage or citizenship status, political affiliation, marital or partnership status, age, national origin, ancestry, physical or mental disability, medical condition, veteran status, gender, gender identity, pregnancy, childbirth (or related medical conditions), sex, sexual orientation, sexual and other reproductive health decisions, genetic disorder, genetic predisposition, carrier status, military status, familial status, or domestic violence victim status and any other basis protected under federal, state, or local laws

Skills Required

  • 6+ years information security with 2+ years leading programs
  • GRC experience: SOC 2, ISO 27001 and audit coordination
  • AppSec expertise: SAST, DAST, SCA, OWASP Top 10, threat modeling
  • Experience integrating security tooling in CI/CD pipelines
  • Ability to communicate risk in business terms
  • Experience building security from zero in a growth-stage SaaS
  • CISSP, CISM, CEH, or AWS Security Specialty
  • Experience in regulated industries (energy, utilities, manufacturing)
  • SAP security patterns
  • Penetration testing experience
  • AI/ML security experience
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Houston, TX
269 Employees
Year Founded: 2012

What We Do

At Innovapptive, our mission is to help improve the working life of front line worker. We are the only Connected Worker Platform that combines ERP (SAP, IBM Maximo) operational data with digital, visual, & step by step guided work instructions on mobile and smart glasses to empower front-line workers to get jobs done faster, better, cheaper & safer. By engineering a platform that fuels innovation & collaboration, we are transforming the experience of the industrial worker to bridge the skills gap and further helping our customers increase revenues & margins. Together, with our employees, customers and partners across the globe, we are growing economies of some of the world's largest brands. We recently closed our Series A Fund Raise of $16.3M with Tiger Global Management, a Global Marquee Fund with over $30 Billion of Assets Under Management (AUM). Tiger Global Management has a reputation of investing and building some of world's "Unicorn"​ brands such as Spotify, Netflix, Facebook, LinkedIn, Amazon, Peloton, Harry's, Ola, Flipkart, Freshworks and many more! Come join an Incredible company that is on a mission to improve working life of front line workers by enriching the experience of every single field worker, back office and executives to help grow our customer's revenues and profitability!

Similar Jobs

Micron Technology Logo Micron Technology

Design Engineer

Artificial Intelligence • Hardware • Information Technology • Machine Learning
In-Office
Hyderabad, Telangana, IND
45000 Employees

Micron Technology Logo Micron Technology

Sr Layout Engineer-DPG-LPDDR

Artificial Intelligence • Hardware • Information Technology • Machine Learning
In-Office
Hyderabad, Telangana, IND
45000 Employees

Micron Technology Logo Micron Technology

Staff Engineer

Artificial Intelligence • Hardware • Information Technology • Machine Learning
In-Office
Hyderabad, Telangana, IND
45000 Employees
8-8 Annually

ServiceNow Logo ServiceNow

Technical Product Manager

Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Hybrid
Hyderabad, Telangana, IND
29000 Employees

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account