
Posted a day ago
Security and Compliance Engineer
Hevo DataSecurity and Compliance Engineer
Requirements
5–8 years security engineering or compliance experience, End-to-end SOC 2 Type II audit ownership, Cloud security fundamentals (AWS, GCP, or Azure), Knowledge of GDPR and CCPA, Experience with GRC platforms, Secure SDLC and DevSecOps principles
Skills
AWSGDPRDevSecOps
About the role
Responsibilities
- Own and manage end-to-end compliance certifications including SOC 2 Type II, ISO 27001, GDPR, and other applicable frameworks.
- Design, implement, and improve security controls across cloud infrastructure, access management, and data handling.
- Collaborate with DevOps and Engineering to embed security requirements into CI/CD pipelines and infrastructure-as-code.
- Lead internal readiness assessments, gap analyses, and remediation roadmaps.
- Serve as the primary point of contact for external auditors and respond to customer security questionnaires and due diligence requests.
- Develop and operationalize security policies, standards, and continuous compliance monitoring frameworks.
- Partner with Product and Engineering to assess compliance implications of new features and infrastructure changes.
Requirements
- 5–8 years of experience in security engineering, information security, or a compliance-focused engineering role.
- Hands-on experience owning SOC 2 Type II audits end-to-end, including scoping, evidence collection, and remediation.
- Strong understanding of cloud security fundamentals in AWS, GCP, or Azure (IAM, network security, encryption, and logging).
- Familiarity with data privacy regulations such as GDPR and CCPA.
- Experience using GRC platforms (e.g., Sprinto, Tugboat Logic) for continuous compliance monitoring.
- Solid grasp of secure SDLC practices, vulnerability management, and DevSecOps principles.
- Strong written communication skills for authoring policies and audit documentation.
About the Company
Hevo is a powerful No-code Data Pipeline platform that enables companies to consolidate data from multiple software sources for faster analytics. Hevo powers data analytics for over 2,000 data-driven companies globally. Based in San Francisco and Bangalore, Hevo is on a mission to build technology that is simple to adopt and easy to access, allowing everyone to unlock the full potential of their data.
ScoutJobs Agent
Get matches like this delivered daily
Sign up free — we'll pull jobs that fit your CV from across the web and rank them for you.
Get started — it's freeSecurity and Compliance Engineer
Hevo Data · Bangalore
