Talent.com
No longer accepting applications
Information Security Lead – Managed Security Services

Information Security Lead – Managed Security Services

Terralogicmumbai city, India
1 day ago
Job description

Experience : 8+ Years

Function : Security Assessments (Web, API, Mobile, Infra, Cloud) | Customer / Delivery Support

Location : Bangalore

Employment Type : Full-Time (In office)

Application Form : Role Purpose

We are seeking an experienced Information Security Lead to drive and oversee end-to-end

security assessments across diverse technology stacks — including web, mobile, API,

infrastructure, and cloud. The role involves hands-on testing, validating findings with technical

evidence or PoC, mapping results to standards (OWASP, NIST, CIS), and ensuring closure

through effective remediation. The candidate will also act as a technical interface with

customers, delivery teams, and internal stakeholders.

Key Responsibilities

1. End-to-End VAPT Delivery

  • Plan, scope, and execute Vulnerability Assessment and Penetration Testing (VAPT)

across applications, APIs, infrastructure, and cloud workloads.

  • Focus on manual-first testing to uncover complex issues like IDOR / BOLA, broken
  • access control, SSRF, logic abuse, and weak authentication.

  • Deliver detailed reports with proof-of-concept, impact assessment, and remediation
  • guidance.

    2. Application / API / Mobile Security

  • Conduct security testing of web and APIs aligned with OWASP Top 10 (Web & API)
  • standards.

  • Perform mobile app testing (Android / iOS) per OWASP MASVS / MSTG, using tools like
  • MobSF, Frida, and Objection.

  • Work closely with developers and DevOps teams to clarify findings, verify fixes, and
  • perform retests.

    3. Cloud Security Review

  • Review AWS, Azure, and GCP configurations for misconfigurations, weak IAM policies,
  • and exposed services.

  • Recommend security hardening in line with CIS benchmarks.
  • Validate cloud-exposed endpoints and configurations to prevent SSRF and metadata
  • exposure attacks.

    4. Defensive Integration

  • Translate assessment findings into actionable defensive controls — SIEM rules, WAF
  • policies, and API gateway configurations.

  • Collaborate with SOC / Defensive teams to enhance visibility and detection based on
  • VAPT results.

    5. Customer / Delivery / Internal Support

  • Join client and internal calls to explain methodologies, findings, and risk ratings.
  • Provide inputs for SOWs, level of effort (LoE), and environment requirements.
  • Conduct walkthroughs of assessment results with app, infra, and cloud teams for
  • effective remediation.

    6. Process & Team Enablement

  • Maintain and update SOPs, templates, and checklists in line with OWASP and NIST
  • frameworks.

  • Integrate testing processes into SDLC and CI / CD pipelines for continuous security
  • assurance.

  • Mentor junior team members, review reports, and ensure quality in assessment delivery.
  • Required Technical Skills

  • Strong hands-on experience in VAPT, WAPT, API, and Mobile Application Testing.
  • Proficiency with tools : Burp Suite Pro, Nmap, MobSF, Frida, Objection, Postman,
  • sqlmap, cloud consoles.

  • Deep understanding of HTTP, OAuth2 / OIDC / JWT, TLS, REST, GraphQL, and CORS.
  • Familiarity with security frameworks and standards — OWASP, NIST CSF, CIS
  • Benchmarks, CVSS v3.x.

  • Scripting ability in Python / PowerShell for automation and PoC generation.
  • Preferred Certifications

  • Offensive Certifications : OSCP, OSWE, eWPTX, GWAPT, GMOB
  • Cloud & Security Certifications : AZ-500, AWS Security Specialty, CCSP
  • Exposure to SAST, DAST, SCA, and DevSecOps pipeline integration
  • Create a job alert for this search

    Information Security Lead • mumbai city, India

    Related jobs
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    interface.aithane, maharashtra, in
    Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show moreLast updated: 30+ days ago
    • Promoted
    Manager - Information Security

    Manager - Information Security

    Hipos Consulting Services LLPNavi Mumbai
    About : - Master's or bachelor's degree in information technology / Information Security / Computer Science, or a related field. Information Security, specifically in ...Show moreLast updated: 20 days ago
    • Promoted
    Senior Information Security Engineer

    Senior Information Security Engineer

    IDfyMumbai, Maharashtra, India
    IDfy is Asia’s leading TrustStack, trusted by the best, with global expertise and enterprise-grade tech, we’re solving trust challenges, making compliance easy, fraud detection smarter, and onboard...Show moreLast updated: 1 day ago
    • Promoted
    ESDS - Security Operations Center Lead - Incident Management

    ESDS - Security Operations Center Lead - Incident Management

    ESDS Software Solution Pvt. Ltd.Mumbai
    We are seeking a highly skilled and experienced Senior SOC with 7-10 years of hands-on experience in cybersecurity, specializing in threat detection, incident management, and team leadership.In thi...Show moreLast updated: 30+ days ago
    • Promoted
    Manager - Information Security And Governance

    Manager - Information Security And Governance

    ConfidentialMumbai, India
    Develop policies in DLP system to monitor data exchange to external environment through emails, endpoints and web upload. Investigation and conclusion of violation cases where data was exchanged ext...Show moreLast updated: 6 days ago
    • Promoted
    Information Security, Senior Engineer

    Information Security, Senior Engineer

    ConfidentialNavi Mumbai, Mumbai, India
    Digital Edge DC (Digital Edge) is an emerging data center platform company, established to transform digital infrastructure in Asia. We seek to build the foundation for the world's digital future, h...Show moreLast updated: 6 days ago
    • Promoted
    Senior Manager - Information Security

    Senior Manager - Information Security

    NMS ConsultantMumbai
    Description : The Senior Manager Information Security will spearhead the development and execution of a comprehensive information security strateg...Show moreLast updated: 20 days ago
    • Promoted
    Information Security Manager

    Information Security Manager

    Ajanta Pharma LtdMumbai, Maharashtra, India
    Senior Manager – Information Security.The Senior Manager – Information Security will spearhead the development and execution of a comprehensive information security strategy that supports the organ...Show moreLast updated: 1 day ago
    • Promoted
    Information Security Analyst- Urgent-Thane

    Information Security Analyst- Urgent-Thane

    Aditya Birla Groupthane, maharashtra, in
    Job Description – Information Security Analyst (Defensive Security).Thane, Maharashtra, India (On-site).Job Description – Senior Information Security Analyst (SOC Function).Senior Information Secur...Show moreLast updated: 30+ days ago
    • Promoted
    HDB Financial Services - Senior Manager - Information Security & Governance

    HDB Financial Services - Senior Manager - Information Security & Governance

    HDB Financial Services LtdMumbai
    HDB Financial Services Ltd is looking for an experienced Red Team Assessment expert to join our Cyber Security Team.This role is responsible for simulating real-world attacks to test the effectiven...Show moreLast updated: 30+ days ago
    • Promoted
    Lead - Information Security Audit

    Lead - Information Security Audit

    Alpha OrionMumbai, India
    Lead IS Audit Job description The primary objective of Technology audits includes : - Ensure IT systems and...Show moreLast updated: 30+ days ago
    • Promoted
    Information Assurance Specialist

    Information Assurance Specialist

    Aditya Birla GroupThāne, Republic Of India, IN
    Job Description – Information Security Analyst (Defensive Security).Thane, Maharashtra, India (On-site).Job Description – Senior Information Security Analyst (SOC Function).Senior Information Secur...Show moreLast updated: 30+ days ago
    • Promoted
    Head of Information Security

    Head of Information Security

    HotelTrader LodgIQ (India) Pvt. Ltd.Thane, IN
    Hotel Trader is a 100% automated & cloud-based distribution management company providing the tools necessary for hotels to seamlessly connect to global demand with the click of a button.We fully em...Show moreLast updated: 30+ days ago
    • Promoted
    Security Lead

    Security Lead

    ConfidentialNavi Mumbai
    We are actively seeking a highly skilled and proactive.This pivotal role requires strong.Security Incident Response, Vulnerability Management, Security Tool Operation, and Threat and Vulnerability ...Show moreLast updated: 30+ days ago
    • Promoted
    Security Lead

    Security Lead

    BDx Data CentersNavi Mumbai, Maharashtra, India
    COMPANY OVERVIEWBig Data Exchange (BDX), A leading Pan Asian hybrid, hyperscale and edge solutions provider with assets located in Hong Kong, Singapore, Guangzhou, Nanjing and expanding footprints...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Manager Information Security

    Senior Manager Information Security

    ConfidentialMumbai, India
    The Senior Manager – Information Security will spearhead the development and execution of.This role requires a strategic leader with deep. Develop and implement a comprehensive information security ...Show moreLast updated: 6 days ago
    • Promoted
    Information Security / ITGC Audit

    Information Security / ITGC Audit

    Digihelic Solutions Private LimitedMumbai, India
    Conduct IT General Controls (ITGC) and Information Security audits.Review compliance with ISO 27001, SOC, and IT security standards. Evaluate access controls, change management, and incident respons...Show moreLast updated: 8 days ago
    • Promoted
    Head of Information Security

    Head of Information Security

    Cube Consultancy ServicesThane, IN
    We are seeking a highly skilled and adaptable business analyst who focuses on technology and B2B distribution.This role involves working closely with both internal development teams and external cl...Show moreLast updated: 2 days ago