Talent.com
This job offer is not available in your country.
Information Security Manager

Information Security Manager

EMBARKGCC SERVICES PRIVATE LIMITEDBangalore North, KA, in
11 days ago
Job type
  • Quick Apply
Job description

Job Description

Role : Information Security Manager

Base location : Bangalore, Chennai, Mumbai, Pune & Hyderabad

Key Responsibilities :

Security Architecture Review & Threat Modeling :

  • Conduct  security architecture reviews  for applications, cloud environments, and IT systems to identify risks.
  • Perform  threat modeling (e.g., STRIDE, PASTA, MITRE ATT&CK, DREAD)  to assess potential attack vectors and weaknesses.
  • Analyze  authentication, encryption, and access control mechanisms  within application and system architectures.
  • Review security controls against industry standards and organizational policies (e.g.,  NIST, ISO 27001, OWASP, CIS Controls, TISAX ).
  • Provide  secure design recommendations  to mitigate identified risks.

Application & Cloud Security Assessment :

  • Assess  web, mobile, and cloud-based applications  for security risks and misconfigurations.
  • Evaluate  API security, microservices architectures, and containerized environments  for vulnerabilities.
  • Validate implementation of  IAM, Zero Trust, network segmentation, and encryption standards .
  • Security Risk & Compliance Evaluation :

  • Identify  security gaps in applications and infrastructure  and recommend compensating controls.
  • Ensure compliance with  GDPR, SOC 2, PCI-DSS, ISO 27001, TISAX, and other relevant security frameworks .
  • Collaboration & Reporting :

  • Create  comprehensive reports  detailing identified  risks, mitigation strategies ,  cloud specific controls ,  data flow diagram, trust zones , and  improvement recommendations.
  • Collaborate with stakeholders to develop and refine the  enterprise security architecture and threat modeling strategies.
  • Requirements

    Qualifications & Experience :

  • Bachelor’s or Master’s degree  in Cybersecurity, Computer Science, Information Technology, or a related field.
  • Over 9  Years of experience, including  3+ years  of experience in security architecture review, threat modeling, and risk assessment.
  • Strong expertise in  threat modeling frameworks  such as  STRIDE, PASTA, MITRE ATT&CK, OWASP ASVS .
  • Knowledge of  cloud security (AWS, Azure, GCP), API security, and microservices architecture .
  • Familiarity with  IAM, Zero Trust, MFA, RBAC, PAM, and network security principles .
  • Experience in  secure SDLC, DevSecOps, and security assessment .
  • Hands-on experience with  security assessment tools  (e.g., Microsoft Threat modeling, Microsoft Visio).
  • Understanding of  penetration testing methodologies, security misconfigurations, and application security risks .
  • Preferred Certifications :

  • CISSP (Certified Information Systems Security Professional)
  • CSSLP (Certified Secure Software Lifecycle Professional)
  • CCSP (Certified Cloud Security Professional)
  • AWS / Azure Security Certifications
  • CEH (Certified Ethical Hacker) or OSCP (Offensive Security Certified Professional)
  • Requirements

    Qualifications & Experience : Bachelor’s or Master’s degree in Cybersecurity, Computer Science, Information Technology, or a related field. 3+ years of experience in security architecture review, threat modeling, and risk assessment. Strong expertise in threat modeling frameworks such as STRIDE, PASTA, MITRE ATT&CK, OWASP ASVS. Knowledge of cloud security (AWS, Azure, GCP), API security, and microservices architecture. Familiarity with IAM, Zero Trust, MFA, RBAC, PAM, and network security principles. Experience in secure SDLC, DevSecOps, and security assessment. Hands-on experience with security assessment tools (e.g., Microsoft Threat modeling, Microsoft Visio). Understanding of penetration testing methodologies, security misconfigurations, and application security risks. Preferred Certifications : CISSP (Certified Information Systems Security Professional) CSSLP (Certified Secure Software Lifecycle Professional) CCSP (Certified Cloud Security Professional) AWS / Azure Security Certifications CEH (Certified Ethical Hacker) or OSCP (Offensive Security Certified Professional)

    Create a job alert for this search

    Information Security Manager • Bangalore North, KA, in

    Related jobs
    • Promoted
    Information Security Engineer

    Information Security Engineer

    InCred CapitalBangalore Urban, Karnataka, India
    We are seeking a highly motivated and independent Information Security Engineer to join.The ideal candidate will possess a broad range of technical and compliance expertise across various informati...Show moreLast updated: 3 days ago
    • Promoted
    Information Security Consultant

    Information Security Consultant

    One Degree North HR ServicesBangalore
    Key Responsibilities : - Design, implement, and manage enterprise-grade information security solutions.Perform advanced troubleshooting fo...Show moreLast updated: 30+ days ago
    • Promoted
    Information Security Engineering Manager

    Information Security Engineering Manager

    ConfidentialBengaluru / Bangalore
    Manages a group of technical security professionals in the Information Security team.Contributes to project reviews and approves detailed designs and cost estimates for projects.Lead network securi...Show moreLast updated: 23 days ago
    • Promoted
    • New!
    (High Salary) Information Security Engineer

    (High Salary) Information Security Engineer

    InCred CapitalBengaluru, Karnataka, India
    Job Summary : We are seeking a highly motivated and independent Information Security Engineer to join our information security team. The ideal candidate will possess a broad range of technical and ...Show moreLast updated: 1 hour ago
    • Promoted
    Pixis - Head of Information Security - Vulnerability Management

    Pixis - Head of Information Security - Vulnerability Management

    PixisBangalore
    Description : Why Pixis ? We at Pixis believe that nothing is impossible, when you fail fast you learn faster, zero hierarchy, put the team above...Show moreLast updated: 3 days ago
    • Promoted
    Mashreq - Senior Manager - Cyber Culture & Awareness - Information Security Group

    Mashreq - Senior Manager - Cyber Culture & Awareness - Information Security Group

    Mashreq Global Services Private LimitedBangalore, India
    The Cyber Security Awareness Specialist plays a critical role in maturing Mashreq Bank's cyber security awareness program. The specialist is responsible for fostering a culture where Cybersecur...Show moreLast updated: 30+ days ago
    • Promoted
    Mashreq - Senior Manager - Risk Management & Reporting - Information Security Group

    Mashreq - Senior Manager - Risk Management & Reporting - Information Security Group

    Mashreq Global Services Private LimitedBangalore, India
    Mashreq - Senior Manager - Risk Management & Reporting - Information Security Group - The Information Security Risk Management and Reporting Man...Show moreLast updated: 30+ days ago
    • Promoted
    Lead Information Security Engineer -GRC

    Lead Information Security Engineer -GRC

    InMobi AdvertisingBengaluru, Karnataka, India
    InMobi is the leading provider of content, monetization, and marketing technologies that fuel growth for industries around the world. Our end-to-end advertising software platform, connected content,...Show moreLast updated: 30+ days ago
    • Promoted
    Incident Manager

    Incident Manager

    Talentojhosur, tamil nadu, in
    Act as the primary point of contact for major incidents and escalations, ensuring rapid response and communication across technical and business teams. Lead and coordinate incident resolution effort...Show moreLast updated: 30+ days ago
    • Promoted
    Pixis - Head - Information Security

    Pixis - Head - Information Security

    PixisBangalore, India
    Pixis is a global AI technology company transforming how brands plan, create, and optimize marketing.Our flagship marketing operating system, Prism, sits at the core of the Pixis platform, using AI...Show moreLast updated: 27 days ago
    • Promoted
    Manager - Information Security (Governance, Risk and Compliance)

    Manager - Information Security (Governance, Risk and Compliance)

    NaviBengaluru, Karnataka, India
    At Navi, the InfoSec team safeguards our digital ecosystem - ensuring the confidentiality, integrity, and availability of critical systems and data. We lead the charge on cyber risk management, regu...Show moreLast updated: 18 days ago
    • Promoted
    Head of Information Security

    Head of Information Security

    PixisBengaluru, Karnataka, India
    Pixis is a global AI technology company transforming how brands plan, create, and optimize marketing.Our flagship marketing operating system, Prism, sits at the core of the Pixis platform, using AI...Show moreLast updated: 30+ days ago
    • Promoted
    Mashreq - Manager - Information Security

    Mashreq - Manager - Information Security

    Mashreq Global Services Private LimitedBangalore, India
    Management : - To Strategize, develop and implement Data Protection Controls in coordination with stakeholders across the Organization globally. To ensure compliance of the Organ...Show moreLast updated: 8 days ago
    • Promoted
    Pixis - Head of Information Security

    Pixis - Head of Information Security

    PixisBangalore
    About us : Pixis is a global AI technology company transforming how brands plan, create, and optimize marketing.Our flagship marketing operating system, Prism, sits a...Show moreLast updated: 27 days ago
    • Promoted
    Information Security Manager

    Information Security Manager

    MashreqBengaluru, Karnataka, India
    To Strategize, develop and implement Data Protection Controls in coordination with stakeholders across the Organization globally. To ensure compliance of the Organization with the defined policy & f...Show moreLast updated: 18 days ago
    • Promoted
    Senior Manager - Enterprise Risk Management & Information Security - Pharma / Healthcare

    Senior Manager - Enterprise Risk Management & Information Security - Pharma / Healthcare

    Recruise India ConsultingBangalore, India
    Job Title : Senior Manager - Risk Management and Information Security Location : Bangalore only Department : Risk Management - RAC Rep...Show moreLast updated: 30+ days ago
    • Promoted
    Nextiva - Information Security Auditor

    Nextiva - Information Security Auditor

    NextivaBangalore
    Description : The Information Security Auditor will work across the organization to ensure Nextivas complian...Show moreLast updated: 10 days ago
    • Promoted
    Information Security Lead

    Information Security Lead

    Narayana HealthBengaluru, Karnataka, India
    The Information Security Lead will be responsible for developing and implementing the organization’s information security framework to safeguard patient data, clinical systems, and enterprise IT in...Show moreLast updated: 30+ days ago