Talent.com
Information Security Lead – Managed Security Services

Information Security Lead – Managed Security Services

Terralogicmount, India
12 hours ago
Job description

Experience : 8+ Years

Function : Security Assessments (Web, API, Mobile, Infra, Cloud) | Customer / Delivery Support

Location : Bangalore

Employment Type : Full-Time (In office)

Application Form : Role Purpose

We are seeking an experienced Information Security Lead to drive and oversee end-to-end

security assessments across diverse technology stacks — including web, mobile, API,

infrastructure, and cloud. The role involves hands-on testing, validating findings with technical

evidence or PoC, mapping results to standards (OWASP, NIST, CIS), and ensuring closure

through effective remediation. The candidate will also act as a technical interface with

customers, delivery teams, and internal stakeholders.

Key Responsibilities

1. End-to-End VAPT Delivery

  • Plan, scope, and execute Vulnerability Assessment and Penetration Testing (VAPT)

across applications, APIs, infrastructure, and cloud workloads.

  • Focus on manual-first testing to uncover complex issues like IDOR / BOLA, broken
  • access control, SSRF, logic abuse, and weak authentication.

  • Deliver detailed reports with proof-of-concept, impact assessment, and remediation
  • guidance.

    2. Application / API / Mobile Security

  • Conduct security testing of web and APIs aligned with OWASP Top 10 (Web & API)
  • standards.

  • Perform mobile app testing (Android / iOS) per OWASP MASVS / MSTG, using tools like
  • MobSF, Frida, and Objection.

  • Work closely with developers and DevOps teams to clarify findings, verify fixes, and
  • perform retests.

    3. Cloud Security Review

  • Review AWS, Azure, and GCP configurations for misconfigurations, weak IAM policies,
  • and exposed services.

  • Recommend security hardening in line with CIS benchmarks.
  • Validate cloud-exposed endpoints and configurations to prevent SSRF and metadata
  • exposure attacks.

    4. Defensive Integration

  • Translate assessment findings into actionable defensive controls — SIEM rules, WAF
  • policies, and API gateway configurations.

  • Collaborate with SOC / Defensive teams to enhance visibility and detection based on
  • VAPT results.

    5. Customer / Delivery / Internal Support

  • Join client and internal calls to explain methodologies, findings, and risk ratings.
  • Provide inputs for SOWs, level of effort (LoE), and environment requirements.
  • Conduct walkthroughs of assessment results with app, infra, and cloud teams for
  • effective remediation.

    6. Process & Team Enablement

  • Maintain and update SOPs, templates, and checklists in line with OWASP and NIST
  • frameworks.

  • Integrate testing processes into SDLC and CI / CD pipelines for continuous security
  • assurance.

  • Mentor junior team members, review reports, and ensure quality in assessment delivery.
  • Required Technical Skills

  • Strong hands-on experience in VAPT, WAPT, API, and Mobile Application Testing.
  • Proficiency with tools : Burp Suite Pro, Nmap, MobSF, Frida, Objection, Postman,
  • sqlmap, cloud consoles.

  • Deep understanding of HTTP, OAuth2 / OIDC / JWT, TLS, REST, GraphQL, and CORS.
  • Familiarity with security frameworks and standards — OWASP, NIST CSF, CIS
  • Benchmarks, CVSS v3.x.

  • Scripting ability in Python / PowerShell for automation and PoC generation.
  • Preferred Certifications

  • Offensive Certifications : OSCP, OSWE, eWPTX, GWAPT, GMOB
  • Cloud & Security Certifications : AZ-500, AWS Security Specialty, CCSP
  • Exposure to SAST, DAST, SCA, and DevSecOps pipeline integration
  • Create a job alert for this search

    Information Security Lead • mount, India

    Related jobs
    • Promoted
    security practice lead

    security practice lead

    Cloud KineticsChennai, Tamil Nadu, India
    The MSS Practice Lead will drive Cloud Kinetics’ Managed Security Services strategy worldwide, establishing a best-in-class cybersecurity managed services organization. This role combines strategic ...Show moreLast updated: 1 day ago
    • Promoted
    AssetPlus - Information Security Officer

    AssetPlus - Information Security Officer

    Valueplus Technologies Private LimitedChennai
    Description : We are seeking an experienced Information Security Officer to lead and manage our organizations information security and data compliance functio...Show moreLast updated: 30+ days ago
    • Promoted
    Head of Information Security

    Head of Information Security

    Cube Consultancy ServicesChennai, IN
    We are seeking a highly skilled and adaptable business analyst who focuses on technology and B2B distribution.This role involves working closely with both internal development teams and external cl...Show moreLast updated: 1 day ago
    • Promoted
    Hustek Business Solutions - Senior Information Security Engineer -iAM

    Hustek Business Solutions - Senior Information Security Engineer -iAM

    Hustek Business SolutionsChennai
    Job Title : Senior Software Engineer InfoSec (IAM) Location : Chennai Experience : 610 years (or as req...Show moreLast updated: 30+ days ago
    Senior Information Security Engineer

    Senior Information Security Engineer

    Epergne SolutionsChennai, Tamil Nadu, India
    Quick Apply
    Senior Information Security Engineer.Job Roles & Responsibilities.Lead vulnerability assessments and policy compliance scans across on prem, cloud, container (Docker / Kubernetes), database, and ...Show moreLast updated: 30+ days ago
    • Promoted
    Information Security Auditor

    Information Security Auditor

    ConfidentialChennai
    IT & Cybersecurity Risk Assessment.Conduct regular risk assessments to identify key IT and cybersecurity risk areas.Ensure critical risks are appropriately addressed in the annual IT audit plan.Per...Show moreLast updated: 5 days ago
    • Promoted
    Regional Information Security Officer (RISO)

    Regional Information Security Officer (RISO)

    StellantisChennai, Tamil Nadu, India
    The Regional Information Security Officer (RISO) serves as the key cybersecurity and data protection leader within the region, acting as a strategic liaison between the Global CISO organization and...Show moreLast updated: 12 days ago
    • Promoted
    Information Security Manager

    Information Security Manager

    ConfidentialChennai, India
    Review and update of the information asset register in accordance with RBI, SEBI, IRDAI, UIDAI, IT Outsourcing, Data Localization and ISO 27001 : 2013 requirements. Responsible for managing, tracking,...Show moreLast updated: 5 days ago
    • Promoted
    Information Security Manager

    Information Security Manager

    Northern Arc CapitalChennai, Tamil Nadu, India
    Review and update of the information asset register in accordance with RBI, SEBI, IRDAI, UIDAI, IT Outsourcing, Data Localization and ISO 27001 : 2013 requirements. Responsible for managing, tracking,...Show moreLast updated: 1 day ago
    • Promoted
    Tanium Security Remediation Specialist

    Tanium Security Remediation Specialist

    HCLTechChennai, Tamil Nadu, India
    Tanium Security Remediation Specialist.We are seeking a skilled security remediation specialist with expertise in Tanium to join our team. The successful candidate will be responsible for reviewing,...Show moreLast updated: 23 days ago
    • Promoted
    • New!
    Senior Manager – Cyber Security & Digital Infrastructure

    Senior Manager – Cyber Security & Digital Infrastructure

    Taglynkchennai, India
    We are seeking a seasoned cybersecurity professional to join our Corporate Cyber Security team as Senior Manager.This role is pivotal in strengthening the Group’s enterprise-wide security posture a...Show moreLast updated: 12 hours ago
    • Promoted
    Senior Information Security Engineer

    Senior Information Security Engineer

    ConfidentialChennai, India
    Senior Information Security Engineer.Lead vulnerability assessments and policy compliance scans across onprem, cloud, container (Docker / Kubernetes), database, and web environments using tools like ...Show moreLast updated: 5 days ago
    • Promoted
    Head of Information Security

    Head of Information Security

    HotelTrader LodgIQ (India) Pvt. Ltd.Chennai, IN
    Hotel Trader is a 100% automated & cloud-based distribution management company providing the tools necessary for hotels to seamlessly connect to global demand with the click of a button.We fully em...Show moreLast updated: 30+ days ago
    • Promoted
    Sap Security

    Sap Security

    Tata Consultancy ServicesChennai, Tamil Nadu, India
    TCS present an excellent opportunity for SAP Security.Experience required : 7-12 yrs.Virtual Interview Date : 25-Oct-25 (Saturday). Ideally should not be more than 3-5).Expertise in SAP Security, SAP...Show moreLast updated: 12 days ago
    • Promoted
    security practice lead

    security practice lead

    ConfidentialChennai, India
    The MSS Practice Lead will drive Cloud Kinetics' Managed Security Services strategy worldwide, establishing a best-in-class cybersecurity managed services organization. This role combines strategic ...Show moreLast updated: 1 day ago
    • Promoted
    Information Security Analyst

    Information Security Analyst

    LexitasChennai, Tamil Nadu, India
    Lexitas is a high growth company.The Company is built on a belief that having strong personal relationships with our clients, and providing reliable, accurate and professional services, is the driv...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Information Security Manager

    Information Security Manager

    GGVchennai, India
    The Information Security Lead will lead the enterprise security compliance agenda, ensuring full alignment with evolving regulatory frameworks such as. ISO 27001, DPDP Act, CERT-IN, ITGC, and ISO / IE...Show moreLast updated: 12 hours ago
    Head - Information Security

    Head - Information Security

    Saaki Argus & Averil ConsultingChennai, Tamil Nadu, India
    Quick Apply
    Will be responsible for developing and implementing the enterprise vision, strategy, and security program to ensure information assets and technologies are adequately protected.Maintaining a curren...Show moreLast updated: 30+ days ago