Cyber security engineer
4 weeks ago
Position: Cyber Security Engineer Experience Range: 3 to 5 yrs Job Location: Bangalore Work Mode: Hybrid (3 days in the office, 2 days remote) Job Summary Anumana is seeking a skilled and motivated Cybersecurity Engineer to ensure the security, integrity, and compliance of our Software as a Medical Device (Saa MD) products. This position is critical in maintaining our adherence to global security standards and regulations, specifically ISO/IEC 27001, ISO/IEC 27002, and ISO 13485. You will play a key role in implementing and monitoring security controls throughout the software development lifecycle while ensuring that our systems meet the highest standards of security and quality. Additionally, you will support audits, create threat models, conduct penetration testing, and produce comprehensive reports. Key Responsibilities: Security Control Implementation Design, implement, and monitor security controls within the Saa MD development lifecycle. Ensure security controls align with ISO/IEC 27001, 27002, and ISO 13485 standards. Collaborate with software development teams to integrate security best practices throughout the development pipeline. Provide guidance on secure coding practices, vulnerability management, and secure software development principles. Maintain a risk-based approach to security, identifying potential threats and vulnerabilities early in the development lifecycle. Compliance & Audit Support Provide evidence of implemented controls and participate in internal and external audits for ISO/IEC 27001 and 27002. Collaborate with Quality and Regulatory teams to ensure ongoing compliance with ISO 13485. Develop and maintain documentation, policies, and procedures to demonstrate compliance with relevant standards. Implement and manage a robust change management and documentation process to align with audit requirements. Threat Modeling & Penetration Testing Create, maintain, and refine threat models to identify security vulnerabilities, using tools like Lucid Chart. Conduct penetration testing and security assessments using tools such as Burp Suite, nmap, Wireshark, and Deptrack. Regularly perform static and dynamic analysis to identify potential vulnerabilities in the software. Vulnerability Management Conduct vulnerability scans and assessments using tools like Grype, Dockle, and Trivy. Work with development teams to triage and prioritize vulnerabilities for remediation. Track and document vulnerabilities through their lifecycle from identification to resolution. Develop and maintain a comprehensive vulnerability management process, including reporting metrics and key performance indicators (KPIs). Reporting & Communication Create detailed security assessment and penetration testing reports, including actionable remediation recommendations. Communicate findings and collaborate with cross-functional teams to ensure vulnerabilities are addressed. Provide regular updates to management on security posture, vulnerability trends, and remediation efforts. Security Awareness & Training Contribute to the development and delivery of security awareness training for software development teams. Advocate for a culture of security within the organization, promoting adherence to security best practices. Preferred: Professional certifications such as CISSP, CEH, OSCP, CISM, or ISO/IEC 27001 Lead Implementer. Experience in security in highly regulated environments, especially Saa MD or healthcare applications. Knowledge of risk management frameworks (NIST, HITRUST) and cybersecurity standards. Experience with Continuous Integration/Continuous Deployment (CI/CD) pipelines and Dev Ops environments. Required Qualification: Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent experience). 3+ years of experience in cybersecurity engineering, preferably within the medical device or healthcare sector. In-depth knowledge of ISO/IEC 27001, 27002, and ISO 13485 standards and requirements. Experience with threat modeling and penetration testing methodologies and tools (e.g., Burp Suite, nmap, Wireshark, Lucid Chart). Hands-on experience with vulnerability assessment tools such as Grype, Dockle, Trivy, and Deptrack. Strong understanding of secure software development practices, including secure coding and Dev Sec Ops principles. Experience in providing evidence for security audits and ensuring regulatory compliance. Familiarity with cloud security best practices, container security, and modern development environments (e.g., Docker, Kubernetes).
-
Cyber Security Engineer
2 days ago
bangalore, India Tata Consultancy Services Full timeJob Title : Cyber Security & Infrastructure Engineer - Multiple Roles Experience : 6 to 15+ Years Locations : Mumbai, Chennai, Bangalore, Hyderabad Employment Type : Full-time We are hiring experienced professionals across various domains in Cyber Security, Identity & Access Management (IAM), Cloud Security, and Infrastructure Architecture. This is an...
-
Cyber Security Engineer
1 week ago
bangalore, India Tata Consultancy Services Full timeJob Title: Cyber Security & Infrastructure Engineer - Multiple RolesExperience: 6 to 15+ YearsLocations: Mumbai, Chennai, Bangalore, HyderabadEmployment Type: Full-timeWe are hiring experienced professionals across various domains in Cyber Security, Identity & Access Management (IAM), Cloud Security, and Infrastructure Architecture. This is an excellent...
-
Cyber security/ product security engineer
3 weeks ago
Bangalore, India FICO Full timeFICO (NYSE: FICO) is a leading global analytics software company, helping businesses in 100+ countries make better decisions. As a Product Security Engineer II in Cyber Security, you will be supporting security governance for a wide set of customer-facing products and services across full product development lifecycles. Your role focuses on executing...
-
Cyber Security Engineer
7 days ago
Bangalore, India Nexoria Techworks Inc. Full timeJob Description: Cybersecurity Engineer Location : Remote / Bangalore Employment Type : Full-time Department : Security & Risk Management Industry : IT Services & Consulting Role Category : Cybersecurity, Information Security, Threat Management Role & Responsibilities : As a Cybersecurity Engineer , you will play a critical role in safeguarding our systems,...
-
Cyber Security Engineer
2 weeks ago
bangalore, India Nexoria Techworks Inc. Full timeJob Description: Cybersecurity Engineer Location : Remote / Bangalore Employment Type : Full-time Department : Security & Risk Management Industry : IT Services & Consulting Role Category : Cybersecurity, Information Security, Threat ManagementRole & Responsibilities :As a Cybersecurity Engineer , you will play a critical role in safeguarding our systems,...
-
Cyber Security Architect
2 weeks ago
bangalore, India Resillion Full timeJob Title: Cyber Security Manager / Architect Experience range: 13-18 Years Location: Bangalore (Hybrid Mode) Company Description:Resillion is the only Total Quality solutions company combining quality engineering, cyber security, conformance and interoperability, and content quality control. We are a strategic partner, ensuring digital resilience and...
-
Cyber Security Internship
2 weeks ago
bangalore, India Bexomi Technologies Private Limited Full timeCompany DescriptionBexomi Technologies Private Limited is a predictive cybersecurity company dedicated to building the world’s first Digital Immune System for Smart Cities. By leveraging Digital Twins, AI-driven anomaly detection, Blockchain logs, and Smart Contracts, we protect IoT ecosystems before cyber attacks occur. Our innovative solutions ensure...
-
Ics/ot cyber security
3 weeks ago
Bangalore, India Mindsprint Full timeFactory(ICS/OT) Lead Engineer- Cybersecurity Job Summary The Factory (ICS/ OT ) Security Lead Engineer will be responsible for the Security Risk assessment and implementation of Factory Security Program and Practices for Mindsprint Customers. This position requires a strong understanding of both IT and OT systems, as well as expertise in cybersecurity...
-
Cyber Security Architect
4 days ago
Bangalore, India NAZZTEC Full timeRole Overview We are hiring an experienced Cyber Security Architect - PSAP to join a prestigious client in Riyadh, Saudi Arabia. This senior-level position involves leading the design, implementation, and governance of cybersecurity architecture and frameworks in alignment with national regulatory requirements, especially SAMA Cybersecurity Framework and NCA...
-
Cyber Security Analyst
6 days ago
Bangalore, Karnataka, India Varite Full timeCompany Name VARITE India Private Limited About The Client An Indian multinational information technology IT consulting company headquartered in Noida The company has offices in 52 countries and over 225 944 employees The Client is a global IT services and consulting company that offers a wide range of services and products across various industries like IT...