Threat ResQ

Company

Careers

We're hiring across security operations, product, compliance, and revenue. Below are our open roles, and how we hire and where we work.

Open roles

Current openings

Cybersecurity Analyst

3+ years experience

Security Operations · New Delhi, India (Hybrid) · Full-time

Monitor, triage, and respond to security events across client environments as part of our SOC+ managed detection service, and support VAPT and incident response engagements.

Responsibilities

  • Monitor and triage alerts across SOC+ managed environments, escalating genuine incidents per defined playbooks
  • Support VAPT engagements with vulnerability validation and evidence documentation
  • Contribute to incident response engagements — containment, investigation, and reporting
  • Maintain and tune detection rules and playbooks based on observed threat activity
  • Document findings clearly for both technical and executive audiences

What we're looking for

  • Minimum 3 years in a SOC, incident response, or VAPT-focused role
  • Working knowledge of common attack techniques (MITRE ATT&CK) and detection tooling
  • Familiarity with vulnerability assessment tools (e.g. Burp Suite, Nessus, Nmap)
  • Clear written communication — you'll be producing reports clients rely on
  • A relevant certification (e.g. CEH, OSCP, Security+) is a plus, not a requirement

Frontend Developer

3+ years experience

Product & Engineering · New Delhi, India (Hybrid) · Full-time

Build the interfaces our customers use to see their risk posture across TRISA, getTRAC, DomainShield IQ, and SOC+ — production UI, not prototypes.

Responsibilities

  • Build and maintain product UI in React and TypeScript across our platform
  • Work closely with design and backend engineering to ship features end-to-end
  • Own the performance, accessibility, and responsiveness of the interfaces you build
  • Participate in code review and help maintain a consistent design system

What we're looking for

  • Minimum 3 years building production frontend applications
  • Strong React and TypeScript fundamentals
  • Experience with modern CSS approaches (e.g. Tailwind) and responsive design
  • Comfortable working directly against real API contracts and data, not just mocks

GRC Consultant

3+ years experience

Compliance Consulting · New Delhi, India (Hybrid) · Full-time

Run compliance gap assessments and control mapping for clients pursuing frameworks like ISO 27001, SOC 2, and DPDP, and support getTRAC implementations.

Responsibilities

  • Run gap assessments against frameworks including ISO 27001, SOC 2, DPDP, and GDPR
  • Map client controls to framework requirements and produce prioritized remediation roadmaps
  • Support getTRAC implementations for clients automating compliance evidence collection
  • Act as the day-to-day point of contact for clients through an engagement

What we're looking for

  • Minimum 3 years in GRC, compliance consulting, or IT audit
  • Working knowledge of at least one major framework (ISO 27001, SOC 2, DPDP, GDPR, or similar)
  • Comfortable running client-facing workshops and writing audit-ready documentation
  • A relevant certification (e.g. ISO 27001 Lead Implementer/Auditor, CISA) is a plus, not a requirement

Cybersecurity Sales Consultant

3+ years experience

Revenue · New Delhi, India (Hybrid) · Full-time

Own the full sales cycle for our security services and platform — VAPT, compliance consulting, TRISA, getTRAC, DomainShield IQ, and SOC+ — from qualified lead to signed engagement.

Responsibilities

  • Run discovery calls to understand a prospect's security and compliance posture
  • Position the right mix of services and products for their situation, not a one-size-fits-all pitch
  • Manage the sales cycle from qualified lead through proposal and close
  • Work with delivery teams to scope engagements accurately before they're sold

What we're looking for

  • Minimum 3 years selling B2B security, compliance, or SaaS solutions
  • Comfortable speaking to both technical (CISO/IT) and business (CFO/compliance) buyers
  • A track record of carrying and hitting a quota
  • Based in or able to work India business hours

How we work

What we hire for

Ship what you'd defend to an auditor

Every product here leaves an evidence trail on purpose — the same standard applies to how we build internally.

One accountable owner, always

The same principle behind our delivery methodology (a named engagement lead) applies to how we structure teams.

Practitioners first

The platform was built by people who ran VAPT engagements and SOC shifts — we hire for people who've done the work, not just described it.

Regions we serve

Regulatory coverage

IndiaUAESaudi ArabiaSingaporeUKUSA
Talk to an Expert

We use cookies for essential function and, with consent, analytics. Cookie Policy