Return to jobs list

Security and Compliance Analyst

Full Time · Legal & Policy · On-Site

Bengaluru, Karnataka, India

Digantara is a leading Space Surveillance and Intelligence company focused on ensuring orbital safety and sustainability. With expertise in space-based detection, tracking, identification, and monitoring, Digantara provides comprehensive domain awareness across all regimes, enabling end-users to gain actionable intelligence on a single platform. At the core of its infrastructure lies a sophisticated integration of hardware and software capabilities aligned with the key principles of situational awareness: perception(data collection), comprehension(data processing), and prediction (analytics). This holistic approach empowers Digantara to monitor all Resident Space Objects(RSOs) in orbit, fostering comprehensive domain awareness.

Why Us?

  • Be part of a collaborative and innovative environment where your ideas and skills make a real difference to the entire space realm.

  • Push the boundaries with hands-on experience, greater responsibilities, and rapid career advancement.

  • Competitive incentives, galvanizing workspace, blazing team—pretty much everything you have heard about a startup.

Ideal Candidate:

We are looking for a Security and Compliance Expert who will take full ownership of our organizational security infrastructure, ensuring we maintain the highest standards of information security, compliance, and risk management. This is a critical, cross-functional role supporting Digantara’s work with high-assurance sectors such as aerospace and defense.

Responsibilities:

  • Lead and coordinate internal and external audits for frameworks such as ISO 27001, NIST, SOC 2 Type II, etc., including remediation and continual improvement efforts. .

  • Prepare documentation and collaborate with auditors, legal, and technical teams to maintain certifications and ensure compliance across jurisdictions on an ongoing basis.

  • Assess and onboard critical third-party vendors through structured third-party risk assessments.

  • Work closely with the Legal Team to ensure client contractual obligations and legal requirements (e.g., GDPR, CCPA) on information security are consistently met.

  • Design, implement, and maintain the organization’s Information Security Management System (ISMS) and Privacy Information Management System (PIMS) in alignment with industry standards.

  • Conduct periodic risk assessments, develop risk treatment plans, and work closely with engineering and leadership teams to address and ensure timely mitigation.

  • Assess, deploy, and manage compliance frameworks tailored for high-assurance environments, including space and defense-related standards (such as AS9100). Lead cross-functional certification projects, including initiatives for ISMS, GRC platform rollouts, and industry-specific attestations.

  • Develop, review, improve, and maintain information security and privacy  policies, processes, procedures, controls, and standards based on changes in the business environment, emerging threats, and applicable legal and regulatory requirements. 

  • Coordinate and execute Business Continuity Planning and Disaster Recovery tests.

  • Set guidelines and review adherence to secure development practices, including secure coding standards.

  • Oversee third-party penetration tests across cloud, on-prem, and embedded systems. Track remediation efforts and validate fixes for vulnerabilities that could affect aerospace operations or data integrity.

  • Complete customer security and privacy assessments to support international partnerships and defense customers. Conduct vendor risk assessments and collaborate with procurement and legal to ensure third-party compliance.

  • Act as the point of contact for compliance-related incidents, coordinate investigations, and ensure proper documentation and corrective action.

  • Work closely with cross-functional teams to embed security-by-design principles into every layer of the organization, including people, processes, and technology.

  • Conduct employee awareness and training programs for security and privacy.

Qualifications:

  • Strong background in Information Security, Compliance Management, Privacy, Computer Science, Aerospace Systems, or a related field.

  • Minimum of 3-5 years of experience in information security compliance, risk management, or IT audit, preferably in a regulated or high-assurance industry (e.g., aerospace, defense, or government).

  • Proven experience managing and implementing compliance frameworks such as ISO 27001, SOC 2, GDPR, etc.

  • Ability to handle multiple compliance initiatives across globally distributed teams and mission-critical systems

Preferred Qualities:

  • Professional certifications such as CISA, CISSP, CISM, or ISO 27001 Lead Auditor are strongly preferred.

  • Knowledge of space sector cybersecurity standards or compliance regulations (e.g., ITAR, DFARS, BIS export controls) is a plus.

  • Experience working with or auditing Enterprise SaaS and space-industry systems is highly desirable.

General Requirements:

  • Strong analytical, investigative, and communication skills 

  • Attention to technical and regulatory detail.

  • Ability to take direction and work independently. 

  • Ability to work in a fast-paced environment. 

  • Flexibility to adapt to changing requirements and priorities.  

  • Maintain a regular and predictable work schedule.

Job Location: Hebbal, Bengaluru

Made with