
Security Engineer, Compliance & Cloud Security
Real job — pulled straight from Loyalytics’s careers page · Verified May 17, 2026 · No reposts.
Job description
Loyalytics is hiring a Security Engineer, Compliance & Cloud Security — a full-time, based in Bengaluru, India role. Apply directly on Loyalytics's careers page below.
Security Engineer (Compliance & Cloud Security)
Location: Bengaluru, India
Department: Product Development
Experience: 4-6
- Own end-to-end security of our Azure infrastructure:
- Azure App Services, Azure Functions, Container Apps
- Cosmos DB, Redis, Databricks
- Define and enforce best practices for:
- Identity & access management (RBAC, least privilege)
- Network security (private endpoints, VNETs, NSGs)
- Secrets management (Azure Key Vault, secret rotation)
- Continuously improve Azure Security Score and proactively close gaps.
- Review and improve security of backend services built in Node.js and Golang.
- Secure APIs and internal services:
- Authentication & authorization flows
- Rate limiting, abuse prevention
- Secure handling of PII data
- Drive secure coding practices and threat modelling across services.
- Design and document end-to-end data flow across the platform:
- Controllers, processors, sub-processors
- Data ingress, storage, processing, and egress
- Ensure proper handling of PII data (mobile numbers, emails, transaction history).
- Define data retention, masking, encryption, and access control policies.
- Ensure multi-tenant data isolation is robust and well-designed.
- end-to-end Own compliance readiness and execution for:
- ISO 27001 (continuous compliance)
- PDPL (GCC / Saudi)
- GDPR (current & future EU expansion)
- Write, maintain, and improve:
- Security policies
- Risk registers
- Incident response plans
- Access control and data protection policies
- Work closely with external security agencies and auditors to:
- Close audit findings
- Prepare evidence
- Drive certifications and assessments
- Plan, manage, and execute VAPT:
- Coordinate with external vendors
- Optionally perform internal testing where possible
- Track findings, prioritize risks, and ensure closure with engineering teams.
- Integrate security into CI/CD pipelines (GitHub Actions / Azure DevOps):
- Secrets scanning
- Dependency vulnerability scanning
- Basic SAST / DAST practices
- Ensure secure build, deploy, and release processes.
- Review how AI is used across the platform.
- Ensure confidential and PII data is not exposed to AI systems improperly.
- Define guardrails and policies for AI usage from a security and privacy perspective.
- Join security calls with enterprise customers when required.
- Respond to customer security questionnaires and due-diligence requests.
- Own incident response:
- Detection
- Containment
- Root Cause Analysis (RCA)
- Preventive actions
- 4–6 years of hands-on experience in security engineering
- Strong experience securing cloud-native systems on Azure
- Practical experience with:
- ISO 27001
- GDPR
- PDPL or similar regional privacy laws
- Experience handling PII-heavy, multi-tenant SaaS platforms
- Comfortable writing security policies and technical documentation
- Experience working with external security agencies and auditors
- Ability to work independently and take full ownership
- Hands-on VAPT or penetration testing experience
- DevSecOps tooling experience
- Experience in customer-facing security roles
- Startup or high-growth SaaS experience
- Clear visibility and documentation of data flows across the platform
- Improved Azure security posture and security score
- All critical/high VAPT findings closed
- PDPL & GDPR readiness with external agencies
- Security policies and incident response processes in place
- Engineering team following consistent security best practices
- Confidence from enterprise customers in Swan’s security posture
Get Security Engineer jobs like this→
New roles from thousands of companies land hourly, straight from their careers pages. Get the freshest matches by email so you never miss one.
Email me new jobsSimilar jobs




Lead Infrastructure Engineer, Site Reliability Engineering
Frequently asked questions
What skills are required for Security Engineer, Compliance & Cloud Security at Loyalytics?
The required skills for Security Engineer, Compliance & Cloud Security at Loyalytics include: Azure, Node.js, Go, API, ISO 27001, GDPR, DevSecOps, CI/CD, GitHub Actions, Azure DevOps.
What is the seniority level for Security Engineer, Compliance & Cloud Security at Loyalytics?
Security Engineer, Compliance & Cloud Security at Loyalytics is a Mid Level / Senior level position.
How do I apply for Security Engineer, Compliance & Cloud Security at Loyalytics?
You can view the full description and apply for Security Engineer, Compliance & Cloud Security at Loyalytics on EchoJobs: https://echojobs.io/job/loyalytics-security-engineer-compliance-cloud-security-7c751.