Information Security & Data Privacy Engineer - SKF Automotive Business
SKF Group · Greater Bengaluru Area
- Experience2–7 yrs
- SalaryNot disclosed
- Work modeonsite
- Levelmid
- Posted17 Sept 2026
About SKF Group
SKF Group is hiring in Greater Bengaluru Area in manufacturing industrial. This role looks for around 2+ years of experience.
Skills
- GDPR
- security governance
- security architecture
- privacy impact assessment
- data protection
- PII protection
- Identity and Access Management
- Data Loss Prevention
- encryption
- cloud security
- application security
- information protection
- ISO 27001
- ISO 27701
- TISAX
- NIS2
- security assurance
- data governance
The role
An information security and data privacy engineer at an automotive manufacturing company translates GDPR and security governance requirements into controls, assesses privacy risks, and reviews cloud security architectures. The role applies ISO 27001 and data protection practices across AI and technology initiatives.
Full job description
By creating bearings and solutions for everything from industrial applications to vehicles, SKF plays an essential role in our everyday lives. In Q4 2026, SKF intends to spin off its Automotive business and list it as a separate company under the name of SKF Vertevo. A company created to support the future of the automotive market, and to co-drive the future of mobility faster.
This role will be a part of that new company. Would you like to join us, and move people further?
Information Security & Data Privacy Engineer - SKF Automotive Business
As the Information Security & Data Privacy Engineer, you will play a key role in ensuring security, privacy, and regulatory requirements are effectively embedded across SKF Automotive's technology landscape. Combining strong cybersecurity expertise with specialist knowledge of GDPR, personal data protection, and regulatory compliance, you will act as the bridge between Security, Legal, Procurement, Engineering, and Business teams.
In this unique and specialised position, you will help ensure that IT, OT, Cloud, Data and AI solutions are designed, implemented, and operated in accordance with security, privacy, and compliance requirements. You will champion Secure by Design, Privacy by Design, and responsible data governance principles while enabling innovation and business growth.
What you can expect in the roleTranslate security, privacy, regulatory, and contractual requirements into practical technical and operational controls.Lead security and privacy assessments, including DPIAs, PIAs, risk assessments, and compliance reviews.Provide expert guidance on GDPR, PII processing, data retention, data minimisation, lawful processing, data subject rights, and records management.Review and provide security and privacy input into Data Processing Agreements (DPAs), Controller-to-Processor agreements, Controller-to-Controller agreements, Standard Contractual Clauses (SCCs), and supplier contracts.Assess data residency, data sovereignty, cross-border transfer, and third-party processing risks across cloud and SaaS environments.Review solution architectures and technology implementations to ensure compliance with security, privacy, and regulatory requirements.Validate/audit technical safeguards including Identity and Access Management, Data Loss Prevention, encryption, logging, monitoring, vulnerability management, and information protection controls.Conduct security and privacy due diligence of suppliers, technology partners, data processors, and cloud providers.Support internal and external audits, certification activities, customer assessments, and regulatory enquiries.Manage compliance gaps, remediation plans, security exceptions, and risk acceptance activities.Support AI and data-driven initiatives by assessing data processing, privacy implications, information protection requirements, and compliance obligations.Monitor emerging privacy, security, and AI regulations and ensure organisational policies and controls remain aligned.
You will enjoy working here if you have Strong technical cybersecurity background with experience in security governance, compliance, architecture, or assurance.Expert knowledge of GDPR, personal data processing, PII protection, controller and processor obligations, data sovereignty, and privacy regulations.Experience reviewing and negotiating DPAs, privacy clauses, and data-sharing agreements.Deep understanding of security controls including IAM, DLP, encryption, cloud security, application security, and information protection.Knowledge of ISO 27001, ISO 27701, TISAX, NIS2, and other relevant security and privacy frameworks.Experience supporting audits, regulatory assessments, and compliance programmes.Ability to assess AI workloads through established security, privacy, and data governance principles.Strong analytical, communication, and stakeholder management skills.
If you want to go further This position is located at one of our major SKF sites in Poznań (Poland), Pune or Bangalore (India), Saint-Cyr (France), or Cajamar (Brazil).
You will report to Malonie Guha, Chief Information Security Officer, who is located in Milton Keynes, United Kingdom. For questions regarding the recruitment process, please contact Martin Andersson, Talent Acquisition Specialist, by email martin.n.andersson@skfvertevo.com. Please note that we can't accept applications via email.
Apply with your CV in English throughout the system, no later than 4th of October 2026. Applications or CVs not submitted in English will not be reviewed or progressed.We will screen candidates continuously, so make sure to submit your application as soon as possible.
If you want to know more about SKF Automotive business, please visit our webpage: SKF Automotive: Bearings & aftermarket solutions since 1907
Transparency and fairness matter to usAt SKF, we see diversity in our workforce as an asset that supports better business results. We are committed to having a fair and inclusive recruitment process where all hiring decisions are based on objective, job-related criteria, ensuring equal opportunities for all candidates.
To support a fair and transparent recruitment process, the process may include assessments, and before hiring, we may also carry out background checks and verify application information. We will discuss your salary expectations during the first interview, and our final offer will be based on an objective evaluation of your experience, skills, and potential, aligned with the scope of the role and our internal salary guidelines. Our recruitment process may differ from country to country and will always be in line with applicable country-specific laws and regulations.
Come as you are – just be yourself. #weareSKF