Come work at a place where innovation and teamwork come together to support the most exciting missions in the world
We are looking for a motivated and detail-oriented Compliance Research Analyst with 2–3 years of experience to join our organization. The ideal candidate has foundational to intermediate hands-on knowledge of Linux systems, scripting, and security frameworks, along with a growing interest in automation and AI-powered tooling. This role involves research, analysis, and scripting to support the development and maintenance of compliance policies, technical standards, and target configuration as per CIS/DISA benchmarks. We value curiosity, a willingness to learn, and a solid work ethic over perfection.
Key Responsibilities
Technical Research & Policy Support
- Assist in analyzing and documenting compliance controls across platforms including Windows, Linux, macOS, and network devices.
- Support the development of technical standards and compliance policies based on frameworks such as CIS, DISA STIG, NIST, PCI-DSS, ISO, and HIPAA.
- Help map controls to industry frameworks (e.g., MITRE, NIST) and document control categories, criticality ratings, and remediation steps.
Linux Systems & Hardening
- Analyze, interpret, and implement Linux security hardening and compliance configuration requirements across enterprise server environments.
- Work with Linux systems across enterprise distributions including RHEL, Ubuntu, CentOS, and Debian.
- Configure and manage disk partitioning, filesystems, mount options, and LVM layouts for secure system deployments.
- Configure and maintain SELinux in enforcing mode, including policy configuration, contexts, and validation of confined services.
- Harden Linux systems by configuring kernel parameters, disabling unnecessary kernel modules, and applying secure sysctl settings.
- Configure and manage auditd services, audit rules, log retention policies, and audit log analysis to support security monitoring, traceability, and c
📌 Compliance Research Analyst (Pune)
🏢 Qualys
📍 Pune