Talent.com
Information Security Lead - Managed Security Services
Information Security Lead - Managed Security ServicesTerralogic • Bangalore (division)
No longer accepting applications
Information Security Lead - Managed Security Services

Information Security Lead - Managed Security Services

Terralogic • Bangalore (division)
8 days ago
Job description

Experience : 8+ Years

Function : Security Assessments (Web, API, Mobile, Infra, Cloud) | Customer / Delivery Support

Location : Bangalore

Employment Type : Full-Time (In office)

Application Form : Role Purpose

We are seeking an experienced Information Security Lead to drive and oversee end-to-end

security assessments across diverse technology stacks — including web, mobile, API,

infrastructure, and cloud. The role involves hands-on testing, validating findings with technical

evidence or PoC, mapping results to standards (OWASP, NIST, CIS), and ensuring closure

through effective remediation. The candidate will also act as a technical interface with

customers, delivery teams, and internal stakeholders.

Key Responsibilities

1. End-to-End VAPT Delivery

  • Plan, scope, and execute Vulnerability Assessment and Penetration Testing (VAPT)

across applications, APIs, infrastructure, and cloud workloads.

  • Focus on manual-first testing to uncover complex issues like IDOR / BOLA, broken
  • access control, SSRF, logic abuse, and weak authentication.

  • Deliver detailed reports with proof-of-concept, impact assessment, and remediation
  • guidance.

    2. Application / API / Mobile Security

  • Conduct security testing of web and APIs aligned with OWASP Top 10 (Web & API)
  • standards.

  • Perform mobile app testing (Android / iOS) per OWASP MASVS / MSTG, using tools like
  • MobSF, Frida, and Objection.

  • Work closely with developers and DevOps teams to clarify findings, verify fixes, and
  • perform retests.

    3. Cloud Security Review

  • Review AWS, Azure, and GCP configurations for misconfigurations, weak IAM policies,
  • and exposed services.

  • Recommend security hardening in line with CIS benchmarks.
  • Validate cloud-exposed endpoints and configurations to prevent SSRF and metadata
  • exposure attacks.

    4. Defensive Integration

  • Translate assessment findings into actionable defensive controls — SIEM rules, WAF
  • policies, and API gateway configurations.

  • Collaborate with SOC / Defensive teams to enhance visibility and detection based on
  • VAPT results.

    5. Customer / Delivery / Internal Support

  • Join client and internal calls to explain methodologies, findings, and risk ratings.
  • Provide inputs for SOWs, level of effort (LoE), and environment requirements.
  • Conduct walkthroughs of assessment results with app, infra, and cloud teams for
  • effective remediation.

    6. Process & Team Enablement

  • Maintain and update SOPs, templates, and checklists in line with OWASP and NIST
  • frameworks.

  • Integrate testing processes into SDLC and CI / CD pipelines for continuous security
  • assurance.

  • Mentor junior team members, review reports, and ensure quality in assessment delivery.
  • Required Technical Skills

  • Strong hands-on experience in VAPT, WAPT, API, and Mobile Application Testing.
  • Proficiency with tools : Burp Suite Pro, Nmap, MobSF, Frida, Objection, Postman,
  • sqlmap, cloud consoles.

  • Deep understanding of OAuth2 / OIDC / JWT, TLS, REST, GraphQL, and CORS.
  • Familiarity with security frameworks and standards — OWASP, NIST CSF, CIS
  • Benchmarks, CVSS v3.x.

  • Scripting ability in Python / PowerShell for automation and PoC generation.
  • Preferred Certifications

  • Offensive Certifications : OSCP, OSWE, eWPTX, GWAPT, GMOB
  • Cloud & Security Certifications : AZ-500, AWS Security Specialty, CCSP
  • Exposure to SAST, DAST, SCA, and DevSecOps pipeline integration
  • Create a job alert for this search

    Information Security Lead • Bangalore (division)

    Related jobs
    Sr. Lead - Cloud Security

    Sr. Lead - Cloud Security

    Sycamore Informatics Inc. • Tumkur, IN
    Cloud security framework; Strong scripting skills with PowerShell and.Solid understanding of version control tools, particularly Git. Experience with cloud platforms, including AWS, Azure and GCP.Pr...Show more
    Last updated: 30+ days ago • Promoted
    Principal Security Engineer

    Principal Security Engineer

    First American (India) • Tumkur, IN
    Principal Information Security Engineer will implement, maintain, and monitor network, cloud, and endpoint security systems to protect sensitive data and prevent unauthorized access.They will focus...Show more
    Last updated: 2 days ago • Promoted
    Senior Security Engineer

    Senior Security Engineer

    CBTS • tumakuru, karnataka, in
    Senior level roles as IT Security Architect, IT Security Engineer, IT Security Auditor, Cyber-Security Analyst, Cyber-Intelligence Analyst. Certifications, Accreditations, Licenses.One or more of th...Show more
    Last updated: 22 days ago • Promoted
    Saviynt (Cloud Identity Security and Management Solutions)

    Saviynt (Cloud Identity Security and Management Solutions)

    Tata Consultancy Services • tumakuru, karnataka, in
    Come and join us for an exciting career with TCS!!!.TCS has always been in the spotlight for being adept in “the next big technologies”. What we can offer you is a space to explore varied technologi...Show more
    Last updated: 2 days ago • Promoted
    Cyber Security Trainer

    Cyber Security Trainer

    Vehere • tumakuru, karnataka, in
    Vehere is seeking a Cybersecurity Trainer to design, develop, and deliver world-class training for our customers, partners, and internal teams. You will play a key role in enabling users to master V...Show more
    Last updated: 22 days ago • Promoted
    Cyber Security Specialist

    Cyber Security Specialist

    Tata Consultancy Services • tumakuru, karnataka, in
    TCS is Hiring – Saviynt / IAM Integration.Are you skilled in Saviynt and passionate about Identity & Access Management (IAM) and Integration Technologies?. Here’s your chance to join Tata Consultanc...Show more
    Last updated: 10 days ago • Promoted
    Lead Security Engineer

    Lead Security Engineer

    interface.ai • Tumkur, IN
    Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show more
    Last updated: 30+ days ago • Promoted
    Security Architect One Identity Manager

    Security Architect One Identity Manager

    PineQ Lab Technology • tumakuru, karnataka, in
    Implement and document security controls.Collaborate with cross-functional teams.IAM (Identity & Access Management).One Identity Manager (OIM) expertise. Cloud Security, IAM, Compliance, Risk Assess...Show more
    Last updated: 1 day ago • Promoted
    Security Operations Center Analyst

    Security Operations Center Analyst

    Arista Networks • tumakuru, karnataka, in
    We are seeking a highly motivated and proactive Security Operations Center (SOC) Analyst to join our dynamic, remote cybersecurity team. The ideal candidate is a critical thinker, self-starter, and ...Show more
    Last updated: 2 days ago • Promoted
    Lead Network & Security Engineer (Hyperscalers – OCI / GCP)

    Lead Network & Security Engineer (Hyperscalers – OCI / GCP)

    Cloud4C Services • tumakuru, karnataka, in
    Gartner’s Magic Quadrant (2021), is a leading automation-driven Cloud Managed Services Provider (MSP).We specialize in multi-cloud migration, management, and disaster recovery with zero data loss g...Show more
    Last updated: 24 days ago • Promoted
    Head of Information Security

    Head of Information Security

    HotelTrader LodgIQ (India) Pvt. Ltd. • Tumkur, IN
    Hotel Trader is a 100% automated & cloud-based distribution management company providing the tools necessary for hotels to seamlessly connect to global demand with the click of a button.We fully em...Show more
    Last updated: 30+ days ago • Promoted
    Lead Security Engineer

    Lead Security Engineer

    Arcana • Tumkur, IN
    As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show more
    Last updated: 30+ days ago • Promoted
    Senior Data Security & Governance Specialist

    Senior Data Security & Governance Specialist

    Integris Group • Tumkur, IN
    The Senior Data Security & Governance Specialist is responsible for defining and enforcing governance, compliance, and security controls across modern data platforms built on Azure and Databricks.T...Show more
    Last updated: 10 days ago • Promoted
    Senior Manager IS Cyber Culture & Awareness

    Senior Manager IS Cyber Culture & Awareness

    Mashreq • Tumkur, IN
    The Cyber Security Awareness Specialist plays a critical role in maturing Mashreq Bank’s cyber security awareness program. The specialist is responsible for fostering a culture where Cybersecurity i...Show more
    Last updated: 10 days ago • Promoted
    Security Engineer (Not SOC Analyst)

    Security Engineer (Not SOC Analyst)

    MVW Technology • tumakuru, karnataka, in
    ABOUT MVW TECHNOLOGY CONSULTING.We are a rapidly growing Microsoft 365 and Workplace Management consultancy with offices in the UK, South America and Asia. We delight our customers with our personal...Show more
    Last updated: 1 day ago • Promoted
    Technical Security Expert - Contract - Leading IT Consultancy

    Technical Security Expert - Contract - Leading IT Consultancy

    MRP Group • tumakuru, karnataka, in
    Technical Security Expert / Engineer (Client-Facing).India or Malaysia (Hybrid / Remote).We are seeking a highly skilled Technical Security Expert / Engineer to support our enterprise customers in s...Show more
    Last updated: 10 days ago • Promoted
    Cyber Security Instructor

    Cyber Security Instructor

    Accredian • tumakuru, karnataka, in
    Accredian is a leading edtech company dedicated to empowering professionals with industry-relevant, practical, and cutting-edge technology training. Our goal is to bridge the skill gap through exper...Show more
    Last updated: 30+ days ago • Promoted
    Senior Security Analyst

    Senior Security Analyst

    cloudrho • tumakuru, karnataka, in
    Minimum 7+ years in Security Operations, Vulnerability Management.We help enterprises align technology investments with business outcomes through architecture-driven solutions, cloud optimization, ...Show more
    Last updated: 1 day ago • Promoted