Cyber Security Engineer

2 days ago


Bengaluru Karnataka India, Karnataka Anumana Full time

Position: Cyber Security EngineerExperience Range: 3 to 5 yrsJob Location: BangaloreWork Mode: Hybrid (3 days in the office, 2 days remote)Job SummaryAnumana is seeking a skilled and motivated Cybersecurity Engineer to ensure the security, integrity, and compliance of our Software as a Medical Device (SaaMD) products. This position is critical in maintaining our adherence to global security standards and regulations, specifically ISO/IEC 27001, ISO/IEC 27002, and ISO 13485.You will play a key role in implementing and monitoring security controls throughout the software development lifecycle while ensuring that our systems meet the highest standards of security and quality. Additionally, you will support audits, create threat models, conduct penetration testing, and produce comprehensive reports.Key Responsibilities: Security Control ImplementationDesign, implement, and monitor security controls within the SaaMD development lifecycle.Ensure security controls align with ISO/IEC 27001, 27002, and ISO 13485 standards.Collaborate with software development teams to integrate security best practices throughout the development pipeline.Provide guidance on secure coding practices, vulnerability management, and secure software development principles.Maintain a risk-based approach to security, identifying potential threats and vulnerabilities early in the development lifecycle. Compliance & Audit SupportProvide evidence of implemented controls and participate in internal and external audits for ISO/IEC 27001 and 27002.Collaborate with Quality and Regulatory teams to ensure ongoing compliance with ISO 13485.Develop and maintain documentation, policies, and procedures to demonstrate compliance with relevant standards.Implement and manage a robust change management and documentation process to align with audit requirements. Threat Modeling & Penetration TestingCreate, maintain, and refine threat models to identify security vulnerabilities, using tools like LucidChart.Conduct penetration testing and security assessments using tools such as BurpSuite, nmap, Wireshark, and Deptrack.Regularly perform static and dynamic analysis to identify potential vulnerabilities in the software. Vulnerability ManagementConduct vulnerability scans and assessments using tools like Grype, Dockle, and Trivy.Work with development teams to triage and prioritize vulnerabilities for remediation.Track and document vulnerabilities through their lifecycle from identification to resolution.Develop and maintain a comprehensive vulnerability management process, including reporting metrics and key performance indicators (KPIs). Reporting & CommunicationCreate detailed security assessment and penetration testing reports, including actionable remediation recommendations.Communicate findings and collaborate with cross-functional teams to ensure vulnerabilities are addressed.Provide regular updates to management on security posture, vulnerability trends, and remediation efforts. Security Awareness & TrainingContribute to the development and delivery of security awareness training for software development teams.Advocate for a culture of security within the organization, promoting adherence to security best practices. Preferred:Professional certifications such as CISSP, CEH, OSCP, CISM, or ISO/IEC 27001 Lead Implementer.Experience in security in highly regulated environments, especially SaaMD or healthcare applications.Knowledge of risk management frameworks (NIST, HITRUST) and cybersecurity standards.Experience with Continuous Integration/Continuous Deployment (CI/CD) pipelines and DevOps environments.Required Qualification:Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent experience).3+ years of experience in cybersecurity engineering, preferably within the medical device or healthcare sector.In-depth knowledge of ISO/IEC 27001, 27002, and ISO 13485 standards and requirements.Experience with threat modeling and penetration testing methodologies and tools (e.g., BurpSuite, nmap, Wireshark, LucidChart).Hands-on experience with vulnerability assessment tools such as Grype, Dockle, Trivy, and Deptrack.Strong understanding of secure software development practices, including secure coding and DevSecOps principles.Experience in providing evidence for security audits and ensuring regulatory compliance.Familiarity with cloud security best practices, container security, and modern development environments (e.g., Docker, Kubernetes).



  • Bengaluru, Karnataka, India Mitigata - Smart cyber insurance Full time

    About Us[Mitigata] is a leading provider of Cyber Security, Compliance, and Risk Management solutions helping businesses safeguard digital assets, ensure regulatory compliance, and minimize exposure to cyber threats. With a strong portfolio of solutions and services, we empower enterprises to build a resilient cyber defense posture.Role OverviewWe are...


  • Bengaluru, Karnataka, India Accedepro Private Limited Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    As aCyber Sercurity Engineer, you will be at the forefront ofCyber Resilience & Incident Recovery. Your expertise will shape and secure the organization's future by designing and maintainingcyber recovery blueprintsthat protect and restore services acrossAWS, hybrid, and on-premises environments.Cyber Security Engineer || 5-7 Y || WFO (US Shift) || Hyderabad...

  • Cyber Security

    2 days ago


    Bengaluru, Karnataka, India, Karnataka Computacenter Full time

    Life on the teamOperates the cyber compliance framework to ensure Computacenter is continually compliant to our cybersecurity obligations, helping us to achieve our business goals and build customer trust.What you’ll doOperate the Cyber Compliance Framework (~ 90%)• Compliance Framework: operate processes and procedures as part of the Cyber Compliance...


  • Bengaluru, Karnataka, India Quest Global Full time ₹ 1,04,000 - ₹ 1,30,878 per year

    Job Title: Lead Engineer, Cybersecurity- Industrial Automation and Control SystemsOffice Location: BangaloreExperience: YearsMust HaveControl System like DCS, PLC, SISOT Cyber Security related to Control SystemRisk AssessmentVulnerability AssessmentObsolescence ManagementIndustrial Control SystemsIEC 62443NIST Cybersecurity FrameworkResponsibilities:Involve...


  • Bengaluru, Karnataka, India, Karnataka CYBER سايبر Full time

    We at CYBER are looking for an exceptional Chief Information Security Officer (CISO) to join our leadership team.This is a full-time leadership role offering occasional flexibility but requiring a strong on-site and executive presence to drive security strategy across the organization.As CISO, you will design, implement, and oversee a world-class...


  • Bengaluru, Karnataka, India KPMG Assurance and Consulting Services LLP Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Roles and ResponsibilitiesIn this role, you will be responsible for Cyber Security across ------s banking arm and securities business under a dual-hat arrangement. Under this arrangement, you will act and make decisions on behalf of both the bank and the securities business, subject to the same remit and level of authority, and irrespective of the entity...


  • Bengaluru, Karnataka, India TÜV SÜD Full time

    Key Responsibilities Complete testing on time. Keep up to date with the latest in standards, regulations and technical developments in the cyber security space. Actively co-develop the security programs and details test method according to ITSAR requirements Set-up lab infrastructure and test equipments needed to deliver the service according to ITSAR, NCCS...


  • Bengaluru, Karnataka, India TÜV SÜD Full time

    Key ResponsibilitiesComplete testing on time. Keep up to date with the latest in standards, regulations and technical developments in the cyber security space.Actively co-develop the security programs and details test method according to ITSAR requirementsSet-up lab infrastructure and test equipments needed to deliver the service according to ITSAR, NCCS...

  • Cyber Security

    1 week ago


    Bengaluru, Karnataka, India Quest Global Full time ₹ 15,00,000 - ₹ 20,00,000 per year

    Job Requirements Role Objective:To provide expert advisory and assurance services on cybersecurity for railway systems across the planning, design, and procurement stages of the project. The role includes guiding clients on cybersecurity requirements, compliance, Preparation of Cyber Security Framework design and Technical Specification, Risk assessment and...


  • Bengaluru, Karnataka, India Contactx Resource Management Pvt. Ltd. Full time ₹ 1,20,000 - ₹ 1,80,000 per year

    Immediate joiners or Serving Notice period Ensure NIST, ISO27002 and CIS aligned risk controls are covered, including but not limited to Cyber Security Policies & Standards. Ensure EMEA operates under comprehensive and relevant Cyber Security policies and standards with appropriate staff awareness, compliance monitoring and reporting. Monitor and...