Talent.com
Information Security Lead - Managed Security Services

Information Security Lead - Managed Security Services

TerralogicBangalore, Bangalore (district)
21 hours ago
Job description

Experience : 8+ Years

Function : Security Assessments (Web, API, Mobile, Infra, Cloud) | Customer / Delivery Support

Location : Bangalore

Employment Type : Full-Time (In office)

Application Form : Role Purpose

We are seeking an experienced Information Security Lead to drive and oversee end-to-end

security assessments across diverse technology stacks — including web, mobile, API,

infrastructure, and cloud. The role involves hands-on testing, validating findings with technical

evidence or PoC, mapping results to standards (OWASP, NIST, CIS), and ensuring closure

through effective remediation. The candidate will also act as a technical interface with

customers, delivery teams, and internal stakeholders.

Key Responsibilities

1. End-to-End VAPT Delivery

  • Plan, scope, and execute Vulnerability Assessment and Penetration Testing (VAPT)

across applications, APIs, infrastructure, and cloud workloads.

  • Focus on manual-first testing to uncover complex issues like IDOR / BOLA, broken
  • access control, SSRF, logic abuse, and weak authentication.

  • Deliver detailed reports with proof-of-concept, impact assessment, and remediation
  • guidance.

    2. Application / API / Mobile Security

  • Conduct security testing of web and APIs aligned with OWASP Top 10 (Web & API)
  • standards.

  • Perform mobile app testing (Android / iOS) per OWASP MASVS / MSTG, using tools like
  • MobSF, Frida, and Objection.

  • Work closely with developers and DevOps teams to clarify findings, verify fixes, and
  • perform retests.

    3. Cloud Security Review

  • Review AWS, Azure, and GCP configurations for misconfigurations, weak IAM policies,
  • and exposed services.

  • Recommend security hardening in line with CIS benchmarks.
  • Validate cloud-exposed endpoints and configurations to prevent SSRF and metadata
  • exposure attacks.

    4. Defensive Integration

  • Translate assessment findings into actionable defensive controls — SIEM rules, WAF
  • policies, and API gateway configurations.

  • Collaborate with SOC / Defensive teams to enhance visibility and detection based on
  • VAPT results.

    5. Customer / Delivery / Internal Support

  • Join client and internal calls to explain methodologies, findings, and risk ratings.
  • Provide inputs for SOWs, level of effort (LoE), and environment requirements.
  • Conduct walkthroughs of assessment results with app, infra, and cloud teams for
  • effective remediation.

    6. Process & Team Enablement

  • Maintain and update SOPs, templates, and checklists in line with OWASP and NIST
  • frameworks.

  • Integrate testing processes into SDLC and CI / CD pipelines for continuous security
  • assurance.

  • Mentor junior team members, review reports, and ensure quality in assessment delivery.
  • Required Technical Skills

  • Strong hands-on experience in VAPT, WAPT, API, and Mobile Application Testing.
  • Proficiency with tools : Burp Suite Pro, Nmap, MobSF, Frida, Objection, Postman,
  • sqlmap, cloud consoles.

  • Deep understanding of OAuth2 / OIDC / JWT, TLS, REST, GraphQL, and CORS.
  • Familiarity with security frameworks and standards — OWASP, NIST CSF, CIS
  • Benchmarks, CVSS v3.x.

  • Scripting ability in Python / PowerShell for automation and PoC generation.
  • Preferred Certifications

  • Offensive Certifications : OSCP, OSWE, eWPTX, GWAPT, GMOB
  • Cloud & Security Certifications : AZ-500, AWS Security Specialty, CCSP
  • Exposure to SAST, DAST, SCA, and DevSecOps pipeline integration
  • Create a job alert for this search

    Information Security Lead • Bangalore, Bangalore (district)

    Related jobs
    • Promoted
    Senior Manager - Information Security (Governance, Risk and Compliance)

    Senior Manager - Information Security (Governance, Risk and Compliance)

    NaviBengaluru, Karnataka, India
    At Navi, the InfoSec team safeguards our digital ecosystem - ensuring the confidentiality, integrity, and availability of critical systems and data. We lead the charge on cyber risk management, regu...Show moreLast updated: 2 days ago
    • Promoted
    Senior Manager - Information Security (Governance, Risk And Compliance)

    Senior Manager - Information Security (Governance, Risk And Compliance)

    NaviBengaluru, Republic Of India, IN
    At Navi, the InfoSec team safeguards our digital ecosystem - ensuring the confidentiality, integrity, and availability of critical systems and data. We lead the charge on cyber risk management, regu...Show moreLast updated: 2 days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    interface.aihosur, tamil nadu, in
    Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show moreLast updated: 30+ days ago
    • Promoted
    Illumio- Zero Trust Microsegmentation

    Illumio- Zero Trust Microsegmentation

    CareerXperts Consultinghosur, tamil nadu, in
    Hiring : Manager - Zero Trust Microsegmentation.Bengaluru | 💼 5+ Years Experience.Lead Illumio microsegmentation implementations. Design & deploy Zero Trust policies.Analyze network infrastructure &...Show moreLast updated: 13 days ago
    • Promoted
    Information Security Lead

    Information Security Lead

    Narayana HealthBengaluru, Republic Of India, IN
    Experience : 8+ Years Function : Security Assessments (Web, API, Mobile, Infra, Cloud) | Customer / Delivery Support Location : Bangalore Employment Type : Full-Time (In office) Application Form : Role P...Show moreLast updated: 30+ days ago
    • Promoted
    Information Security Lead - CISSP / CISM Certified

    Information Security Lead - CISSP / CISM Certified

    DashhireBangalore
    This role involves building and leading the information security function at Nurix AI.The company is experiencing rapid growth and requires a seasoned expert to establish a world-class security pos...Show moreLast updated: 30+ days ago
    • Promoted
    Information Security Lead – Managed Security Services

    Information Security Lead – Managed Security Services

    TerralogicBengaluru, Karnataka, India
    Security Assessments (Web, API, Mobile, Infra, Cloud) | Customer / Delivery Support.Application Form : https : / / forms. We are seeking an experienced Information Security Lead to drive and oversee end-to...Show moreLast updated: 2 days ago
    • Promoted
    Head of Information Security

    Head of Information Security

    HotelTrader LodgIQ (India) Pvt. Ltd.hosur, tamil nadu, in
    Hotel Trader is a 100% automated & cloud-based distribution management company providing the tools necessary for hotels to seamlessly connect to global demand with the click of a button.We fully em...Show moreLast updated: 30+ days ago
    • Promoted
    Head of Information Security

    Head of Information Security

    Cube Consultancy Serviceshosur, tamil nadu, in
    We are seeking a highly skilled and adaptable business analyst who focuses on technology and B2B distribution.This role involves working closely with both internal development teams and external cl...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Cloud Security Specialist

    Senior Cloud Security Specialist

    ACL Digitalhosur, tamil nadu, in
    We are a leading organization in the field of information security, dedicated to protecting our clients' data and ensuring their digital safety. Our mission is to provide innovative security solutio...Show moreLast updated: 1 day ago
    • Promoted
    Mashreq - Manager - Information Security

    Mashreq - Manager - Information Security

    Mashreq Global Services Private LimitedBangalore, India
    Management : - To Strategize, develop and implement Data Protection Controls in coordination with stakeholders across the Organization globally. To ensure compliance of the Organ...Show moreLast updated: 29 days ago
    • Promoted
    Mashreq - Senior Manager - Information Security Cyber Culture & Awareness

    Mashreq - Senior Manager - Information Security Cyber Culture & Awareness

    Mashreq Global Services Private LimitedBangalore, India
    Responsibilities : - Cybersecurity Training Program Development - Design, develop, and deliver engaging cybersecurity training programs tailored f...Show moreLast updated: 14 days ago
    • Promoted
    Director Product – Building and Managing Security Products - Cyber Security Startup - Salary INR 75 L

    Director Product – Building and Managing Security Products - Cyber Security Startup - Salary INR 75 L

    CareerXperts Consultinghosur, tamil nadu, in
    We are seeking a hands-on product leader to drive the strategy, design, and operational delivery of AI-driven threat investigation and response content at platform scale. This role is ideal for a fo...Show moreLast updated: 2 days ago
    • Promoted
    Niyo Solutions - Manager - Information Security

    Niyo Solutions - Manager - Information Security

    Niyo SolutionsBangalore
    PROFILE : ISM / Information Security Manager.Niyo Information Security function looking for a candidate who can manage Information Security operations in order to maintain and improve Information S...Show moreLast updated: 7 days ago
    • Promoted
    Information Security Engineer

    Information Security Engineer

    InCred CapitalBangalore Urban, Karnataka, India
    We are seeking a highly motivated and independent Information Security Engineer to join.The ideal candidate will possess a broad range of technical and compliance expertise across various informati...Show moreLast updated: 23 days ago
    • Promoted
    Senior Information Security Specialist

    Senior Information Security Specialist

    AmpleBengaluru, Karnataka, India
    Location - Jakkur (Yehalanka) | 5 days working from office.We are seeking a skilled and proactive Information Security Specialist to join our Internal IT team. This role will be pivotal in developin...Show moreLast updated: 2 days ago
    • Promoted
    Senior Data Security & Governance Specialist

    Senior Data Security & Governance Specialist

    Integris Grouphosur, tamil nadu, in
    The Senior Data Security & Governance Specialist is responsible for defining and enforcing governance, compliance, and security controls across modern data platforms built on Azure and Databricks.T...Show moreLast updated: 2 days ago
    • Promoted
    Information Security Lead - SAST / DAST

    Information Security Lead - SAST / DAST

    Terralogic Software Solutions Private Limited.Bangalore
    Experience : 8+ Years Function : Security Assessments (Web, API, Mobile, Infra, Cloud) | Customer / Delivery Support Lo...Show moreLast updated: 3 days ago