Talent.com
Information Security Lead

Information Security Lead

Narayana HealthBengaluru, Republic Of India, IN
30+ days ago
Job description

Experience : 8+ Years Function : Security Assessments (Web, API, Mobile, Infra, Cloud) | Customer / Delivery Support Location : Bangalore Employment Type : Full-Time (In office) Application Form : Role Purpose We are seeking an experienced Information Security Lead to drive and oversee end-to-end security assessments across diverse technology stacks — including web, mobile, API, infrastructure, and cloud. The role involves hands-on testing, validating findings with technical evidence or PoC, mapping results to standards (OWASP, NIST, CIS), and ensuring closure through effective remediation. The candidate will also act as a technical interface with customers, delivery teams, and internal stakeholders. Key Responsibilities 1. End-to-End VAPT Delivery

  • Plan, scope, and execute Vulnerability Assessment and Penetration Testing (VAPT) across applications, APIs, infrastructure, and cloud workloads.
  • Focus on manual-first testing to uncover complex issues like IDOR / BOLA, broken access control, SSRF, logic abuse, and weak authentication.
  • Deliver detailed reports with proof-of-concept, impact assessment, and remediation guidance. 2. Application / API / Mobile Security
  • Conduct security testing of web and APIs aligned with OWASP Top 10 (Web & API) standards.
  • Perform mobile app testing (Android / iOS) per OWASP MASVS / MSTG, using tools like MobSF, Frida, and Objection.
  • Work closely with developers and DevOps teams to clarify findings, verify fixes, and perform retests. 3. Cloud Security Review
  • Review AWS, Azure, and GCP configurations for misconfigurations, weak IAM policies, and exposed services.
  • Recommend security hardening in line with CIS benchmarks.
  • Validate cloud-exposed endpoints and configurations to prevent SSRF and metadata exposure attacks. 4. Defensive Integration
  • Translate assessment findings into actionable defensive controls — SIEM rules, WAF policies, and API gateway configurations.
  • Collaborate with SOC / Defensive teams to enhance visibility and detection based on VAPT results. 5. Customer / Delivery / Internal Support
  • Join client and internal calls to explain methodologies, findings, and risk ratings.
  • Provide inputs for SOWs, level of effort (LoE), and environment requirements.
  • Conduct walkthroughs of assessment results with app, infra, and cloud teams for effective remediation. 6. Process & Team Enablement
  • Maintain and update SOPs, templates, and checklists in line with OWASP and NIST frameworks.
  • Integrate testing processes into SDLC and CI / CD pipelines for continuous security assurance.
  • Mentor junior team members, review reports, and ensure quality in assessment delivery. Required Technical Skills
  • Strong hands-on experience in VAPT, WAPT, API, and Mobile Application Testing.
  • Proficiency with tools : Burp Suite Pro, Nmap, MobSF, Frida, Objection, Postman, sqlmap, cloud consoles.
  • Deep understanding of OAuth2 / OIDC / JWT, TLS, REST, GraphQL, and CORS.
  • Familiarity with security frameworks and standards — OWASP, NIST CSF, CIS Benchmarks, CVSS v3.X.
  • Scripting ability in Python / PowerShell for automation and PoC generation. Preferred Certifications
  • Offensive Certifications : OSCP, OSWE, eWPTX, GWAPT, GMOB
  • Cloud & Security Certifications : AZ-500, AWS Security Specialty, CCSP
  • Exposure to SAST, DAST, SCA, and DevSecOps pipeline integration
Create a job alert for this search

Information Security • Bengaluru, Republic Of India, IN

Related jobs
  • Promoted
Senior Manager - Information Security (Governance, Risk and Compliance)

Senior Manager - Information Security (Governance, Risk and Compliance)

NaviBengaluru, Karnataka, India
At Navi, the InfoSec team safeguards our digital ecosystem - ensuring the confidentiality, integrity, and availability of critical systems and data. We lead the charge on cyber risk management, regu...Show moreLast updated: 2 days ago
  • Promoted
Sr. Lead - Cloud Security

Sr. Lead - Cloud Security

Sycamore Informatics Inc.hosur, tamil nadu, in
Cloud security framework; Strong scripting skills with PowerShell and.Solid understanding of version control tools, particularly Git. Experience with cloud platforms, including AWS, Azure and GCP.Pr...Show moreLast updated: 15 days ago
  • Promoted
Lead Security Engineer

Lead Security Engineer

interface.aihosur, tamil nadu, in
Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show moreLast updated: 30+ days ago
  • Promoted
Illumio- Zero Trust Microsegmentation

Illumio- Zero Trust Microsegmentation

CareerXperts Consultinghosur, tamil nadu, in
Hiring : Manager - Zero Trust Microsegmentation.Bengaluru | 💼 5+ Years Experience.Lead Illumio microsegmentation implementations. Design & deploy Zero Trust policies.Analyze network infrastructure &...Show moreLast updated: 13 days ago
  • Promoted
Information Security Lead - Managed Security Services

Information Security Lead - Managed Security Services

TerralogicBangalore, Bangalore (district)
Security Assessments (Web, API, Mobile, Infra, Cloud) | Customer / Delivery Support.We are seeking an experienced Information Security Lead to drive and oversee end-to-end. The role involves hands-on ...Show moreLast updated: 1 day ago
  • Promoted
Senior Information Security Engineer

Senior Information Security Engineer

First American (India)Bengaluru, Karnataka, India
This senior technical role is responsible for supporting, maturing, and expanding our Security Operations Center (SOC) logging and monitoring functions. This is a collaborative role and requires an ...Show moreLast updated: 2 days ago
  • Promoted
Information Security Lead - CISSP / CISM Certified

Information Security Lead - CISSP / CISM Certified

DashhireBangalore
This role involves building and leading the information security function at Nurix AI.The company is experiencing rapid growth and requires a seasoned expert to establish a world-class security pos...Show moreLast updated: 30+ days ago
  • Promoted
Information Security Lead – Managed Security Services

Information Security Lead – Managed Security Services

TerralogicBengaluru, Karnataka, India
Security Assessments (Web, API, Mobile, Infra, Cloud) | Customer / Delivery Support.Application Form : https : / / forms. We are seeking an experienced Information Security Lead to drive and oversee end-to...Show moreLast updated: 2 days ago
  • Promoted
Head of Information Security

Head of Information Security

HotelTrader LodgIQ (India) Pvt. Ltd.hosur, tamil nadu, in
Hotel Trader is a 100% automated & cloud-based distribution management company providing the tools necessary for hotels to seamlessly connect to global demand with the click of a button.We fully em...Show moreLast updated: 30+ days ago
  • Promoted
Head of Information Security

Head of Information Security

Cube Consultancy Serviceshosur, tamil nadu, in
We are seeking a highly skilled and adaptable business analyst who focuses on technology and B2B distribution.This role involves working closely with both internal development teams and external cl...Show moreLast updated: 30+ days ago
  • Promoted
Senior Cloud Security Specialist

Senior Cloud Security Specialist

ACL Digitalhosur, tamil nadu, in
We are a leading organization in the field of information security, dedicated to protecting our clients' data and ensuring their digital safety. Our mission is to provide innovative security solutio...Show moreLast updated: 1 day ago
  • Promoted
Director Product – Building and Managing Security Products - Cyber Security Startup - Salary INR 75 L

Director Product – Building and Managing Security Products - Cyber Security Startup - Salary INR 75 L

CareerXperts Consultinghosur, tamil nadu, in
We are seeking a hands-on product leader to drive the strategy, design, and operational delivery of AI-driven threat investigation and response content at platform scale. This role is ideal for a fo...Show moreLast updated: 2 days ago
  • Promoted
Information Security Engineer

Information Security Engineer

InCred CapitalBangalore Urban, Karnataka, India
We are seeking a highly motivated and independent Information Security Engineer to join.The ideal candidate will possess a broad range of technical and compliance expertise across various informati...Show moreLast updated: 23 days ago
  • Promoted
Senior Information Security Specialist

Senior Information Security Specialist

AmpleBengaluru, Karnataka, India
Location - Jakkur (Yehalanka) | 5 days working from office Immediate Joiner preferred Job Summary : We are seeking a skilled and proactive Information Security Specialist to join our Internal IT t...Show moreLast updated: 2 days ago
  • Promoted
  • New!
Lead

Lead

Yotta Data Services Private Limitedhosur, tamil nadu, in
Yotta Data Services | Powering Digital Transformation with Scalable Cloud, Colocation, and Managed Services.Yotta Data Services offers a comprehensive suite of cloud, data center, and managed servi...Show moreLast updated: 7 hours ago
  • Promoted
Senior Data Security & Governance Specialist

Senior Data Security & Governance Specialist

Integris Grouphosur, tamil nadu, in
The Senior Data Security & Governance Specialist is responsible for defining and enforcing governance, compliance, and security controls across modern data platforms built on Azure and Databricks.T...Show moreLast updated: 2 days ago
  • Promoted
Information Security Lead - SAST / DAST

Information Security Lead - SAST / DAST

Terralogic Software Solutions Private Limited.Bangalore
Experience : 8+ Years Function : Security Assessments (Web, API, Mobile, Infra, Cloud) | Customer / Delivery Support Lo...Show moreLast updated: 3 days ago
  • Promoted
Information Security Lead

Information Security Lead

TalentOyeBangalore
Information Security Lead Location : Bangalore, India Experience : 6 to 15 years <...Show moreLast updated: 30+ days ago