27 Sep
|
Cross Identity
|
Bengaluru
27 Sep
Cross Identity
Bengaluru
Role: Implementation and Support Engineer
Experience: 3–5 years in cyber security, data protection or privacy solution implementation, application support or integration engineering
Location: Bangalore, travel to customer sites during implementation
Job Type: Fulltime
Company Overview:
Cross Identity is a pioneer in Converged Identity and Access Management, acclaimed by top analysts across the globe. Our platforms have achieved the distinction of being the first Identity Fabric in the industry. Our technology is used in numerous countries and various industries, and we take pride in our continuous innovation and exceptional customer service.
Cross Identity now stands out for delivering two leading IAM solutions tailored for enterprise and small business customers. To support our exceptional growth, we are seeking smart, passionate, result-oriented, and hardworking professionals to join our team.
Website: https://www.crossidentity.com
About the role
Vishwaas AI is the end-to-end DPDP Compliance Platform built natively for the Digital Personal Data Protection Act, 2023 and the DPDP Rules, 2025, which brings privacy and consent management together across seven capability areas: Data Discovery, Records, Notice Management, Consent Management, Rights Management, Breach Incident Management and Risk Management. You build each customer's platform, working to a plan set by your Senior Technical Lead: connect their systems, configure their notices, consent and rights workflows, test it all, and train the people who will use it. After go-live you keep it running as part of the support team.
What you will do
Platform set-up
- Provision the tenant and apply white-label branding: name, logos, favicon and email header.
- Invite users, assign roles, and configure SSO or OTP sign-in; test sign-in for every role.
- Configure and test the customer's email sender and SMS provider, including SMS templates registered on the DLT platform.
- On customer-hosted deployments:
install the platform in UAT and production, configure TLS, DNS and firewall rules, set up backups, and run the restore test.
Integrations and data
- Register each Processing System and build its source binding: REST API, CSV, direct read-only JDBC (PostgreSQL, MySQL) or the VAOC agent.
- Map attributes to source fields, handling formats such as phone numbers, dates and IDs, and set identity-matching rules.
- Run the first Data Principal fetch, rerun failed batches, and reconcile fetched counts against source counts.
- Configure downstream consent propagation over webhooks and APIs; prove that a withdrawal reaches the downstream system.
- Validate credentials and network reachability; keep the connectivity test log current.
Data Discovery (where licensed)
- Work with the customer's cloud team to create enumeration and per-asset scan credentials in AWS, Azure and Google Cloud.
- Register database connections and define scan scope; install and register on-premise agents.
- Schedule and run scans, rerun failed ones, and prepare findings for the DPO Gate.
- Tune the classification profile (Aadhaar, PAN, GSTIN, UPI, cards, IFSC, mobile, passport) against sample scans.
Configuration
- Enter Processing Activities: purpose, lawful basis, data categories, retention, processors and cross-border transfers; link them to systems and Data Principal profiles.
- Author notices from activity records, load language versions, and publish them through the Rule 3 gate after DPO approval.
- Configure consent campaigns, the Unified Privacy Center, cookie scanner and banner, and offline consent CSV imports (up to 1 lakh rows a file).
- Configure rights request workflows, SLAs, identity verification, routing, and the grievance channel.
- Configure breach milestones and notification templates, DPIA templates, and the Data Processor register.
Testing, training and go-live
- Write and run test cases for each phase; raise a test request of each type and complete it inside SLA.
- Support customer UAT, and fix or escalate defects.
- Deliver responder training and write user guides and runbooks.
Managed support
- Handle the daily queue: rights-request triage and progress chasing, consent campaign runs, notice updates, register changes.
- Triage gap-engine alerts and discovery findings; re-run scans; keep RoPA records current as the customer's business changes.
- Diagnose platform and integration issues; escalate to the lead or to product engineering with explicit evidence.
- Take part in the Severity 1 on-call roster, including breach-incident support.
What you will bringMust have
- 3–5 years in cyber security, data protection or privacy solution implementation, application support or integration engineering.
- Comfortable with REST APIs and webhooks: reading API documentation, and testing calls in Postman or curl.
- SQL: joins, counts and reconciliation queries on PostgreSQL or MySQL.
- Data handling: CSV and JSON, field mapping, data-quality checks.
- Basic networking and security: TLS, DNS, firewall rules, credential hygiene.
- Clear written English for test logs, runbooks and user guides.
Good to have
- Awareness of the DPDP Act and Rules, or of GDPR concepts such as consent, notices and data subject rights.
- Experience with privacy, consent, GRC, identity or CRM platforms.
- Cloud IAM in AWS, Azure or Google Cloud; SSO configuration with SAML or OIDC.
- Scripting in Python or shell; Docker or Kubernetes basics.
- ITIL 4 Foundation; a cloud fundamentals or associate certification; IAPP CIPT.
- Hindi or a regional Indian language.
📌 Implementation and Support Engineer (DPDP) (Bengaluru)
🏢 Cross Identity
📍 Bengaluru