Security Lead

1 week ago


Bengaluru, Karnataka, India Photon Full time

Job Title: Security Lead

About Photon: At Photon, we're dedicated to innovation and excellence in the food and beverage market. Our team is passionate about delivering top-notch software solutions that meet the highest security standards.

Job Description:

We're seeking a highly skilled and experienced Security Lead to join our team. This individual will play a crucial role in ensuring our software and development processes adhere to industry security standards and those defined by our company. The role requires a blend of hands-on technical expertise in vulnerability assessment and penetration testing, as well as experience in defining and implementing new security controls and processes.

Key Responsibilities:

  • Perform periodic vulnerability assessments across web and mobile applications; define the scope, prepare a test plan with timelines, create test cases for business logic testing, and obtain sign-off for deliverables.
  • Assist with scoping, coordination, and operation of routine third-party penetration testing activities.
  • Validate and prepare vulnerability assessment and penetration testing results for remediation, ensuring the development team is aware of their significance.
  • Manage the remediation of security vulnerabilities with the relevant development teams, following through from notification and support to completion.
  • Prepare development teams for annual PCI-DSS audit, collecting relevant documentation and evidence as necessary.
  • Provide training sessions and workshops to educate cross-functional development teams on security standards and processes that must be followed.
  • Establish and maintain security processes throughout the software development lifecycle, and ensure that these are well implemented into DevOps security practices and CI/CD pipelines.
  • Assist with development and implementation of new security controls to protect software systems from threats.
  • Lead the response to any security incidents that may arise within the software development environment.

Requirements:

  • Bachelor's or Master's degree in Computer Science, Information Security, Cybersecurity, or a related field.
  • Having a certification background in any one of GCIH, GCIA, GPEN, OSCP, or other relevant certifications within Cyber Security is highly advantageous.
  • Several years of experience in software security and experience of securing cloud-based services/environments (GCP, AWS, Azure), technologies, and providers (SaaS, IaaS, PaaS) that expand at a rapid scale.
  • Demonstrated experience using a variety of security tools and processes to perform vulnerability assessments such as Nmap, Metasploit, Kali Linux, Burp Suite.
  • Ability to perform vulnerability assessments against iOS and Android applications and when new product designs are implemented. Experience in iOS and Android development is advantageous.
  • Must have knowledge of detecting attacks through jailbreaking, resource encryption, checksumming, debugger detection, swizzle detection, hook detection, and other means.
  • Experience identifying application attack vectors and strong knowledge of common vulnerabilities (OWASP Top 10).
  • Strong understanding of defending applications against compromise via a range of techniques including advanced obfuscation, pre-damage, string encryption, symbol stripping, renaming, debug info, call hiding.
  • Proficiency with security tools and technologies such as web application firewalls, intrusion detection systems, encryption, and vulnerability scanning tools.
  • Good understanding of security operations, network security, threat intelligence, and incident response.
  • Strong technical knowledge across a range of server and gateway platforms, including Linux/Unix/Windows/Mac.
  • Demonstrable knowledge and experience of scripting/programming tools such as PowerShell, Python, SQL.
  • Ability to perform analysis of log files from multiple devices and environments and identify indicators of security threats. Strong understanding of parsing and analyzing web, system, and security logs is desired.
  • Familiarity with security frameworks and standards (NIST, ISO 27001, OWASP, and PCI DSS).
  • Experience in defining and implementing security controls and processes, ideally within application and software development. Experience in proactive issue detection, tool creation, development of best practices and procedures, and policy development.
  • Excellent verbal and written communication skills; able to explain the significance of technical vulnerability assessment and penetration testing findings to non-security team members; experience in documenting new process and policies.
  • Ability to offer security guidance to product teams as they build new mobile products and features.
  • Must be able to effectively work with and interact with teams of various backgrounds and maintain positive relationships; be able to work in a collaborative team environment.

  • RSA Security Engineer

    3 weeks ago


    Bengaluru, Karnataka, India RSA Security Full time

    Job Title: RSA Security Engineer - Application Security ExpertJob Summary: We are seeking a highly skilled Application Security Engineer to join our team at RSA Security. As an Application Security Engineer, you will be responsible for designing and implementing secure software development lifecycle (SDLC) processes, identifying and mitigating security...


  • Bengaluru, Karnataka, India RSA Security Full time

    Job Title: RSA - Application Security EngineerJob Summary:RSA is seeking an experienced Application Security Engineer to join our team. As a key member of our security team, you will be responsible for designing and implementing secure software development practices, identifying and mitigating security risks, and collaborating with cross-functional teams to...


  • Bengaluru, Karnataka, India RSA Security Full time

    Job OverviewAs a Senior Cloud Security Expert at RSA Security, you will play a pivotal role in shaping the architecture and technology strategy for our hybrid cloud and on-premise products. You will leverage your extensive experience in microservices design and backend services to drive innovation, lead complex projects, and mentor junior engineers.About the...


  • Bengaluru, Karnataka, India RSA Security Full time

    About RSA SecurityRSA Security is a leading provider of mission-driven security solutions that empower organizations to manage digital risk. Our solutions deliver integrated visibility, automated insights, and coordinated actions to help organizations detect and respond to advanced threats, manage user access control, and reduce business risk, fraud, and...

  • Lead Security Analyst

    4 weeks ago


    Bengaluru, Karnataka, India Nielsen Full time

    Job Title: Lead Security AnalystAt Nielsen, we're committed to fostering a culture of innovation and excellence. As a Lead Security Analyst, you'll play a critical role in shaping our security strategy and ensuring the integrity of our global operations.Key Responsibilities:Lead a team of security analysts in monitoring and responding to security incidents...

  • Secure Design Lead

    1 week ago


    Bengaluru, Karnataka, India HCLSoftware Full time

    Job Title: Secure Design LeadHCLSoftware seeks a highly skilled Secure Design Lead to lead and manage secure design reviews and threat modeling for applications.Key Responsibilities:Develop and implement comprehensive security strategies to safeguard application systems.Define security best practices and standards and lead secure software development...


  • Bengaluru, Karnataka, India Swiggy Full time

    Job Profile: Security Engineering Lead - SwiggyAbout the Role:Develop and implement security strategies to protect Swiggy's infrastructure and applications.Lead a team of security engineers to ensure compliance with industry standards and regulations.Collaborate with developers to integrate security into the software development lifecycle.Conduct regular...

  • Security Tech Lead

    3 weeks ago


    Bengaluru, Karnataka, India Flipkart Full time

    About the Role:The Security Tech Lead at Flipkart plays a pivotal role in safeguarding digital assets and sensitive information. This position involves developing and implementing comprehensive security strategies, leading incident response efforts, and conducting security assessments to identify vulnerabilities. The role also includes promoting security...


  • Bengaluru, Karnataka, India Guidewire Full time

    Job Title: IT Infra Lead Security EngineerJob Summary:We are seeking an experienced IT Infra Lead Security Engineer to join our team at Guidewire. The successful candidate will be responsible for leading the security efforts for our IT infrastructure, ensuring the security and integrity of our systems and data.Key Responsibilities:Partner with Security:...

  • Security Tech Lead

    2 weeks ago


    Bengaluru, Karnataka, India Flipkart Full time

    About the Role:The Security Tech Lead at Flipkart plays a pivotal role in safeguarding digital assets and sensitive information. This position involves developing and implementing comprehensive security strategies, leading incident response efforts, and conducting security assessments to identify vulnerabilities. The role also includes promoting security...


  • Bengaluru, Karnataka, India Arting Digital Private Limited Full time

    Job Title: Lead– Security OperationsArting Digital Private Limited is seeking a highly skilled and experienced Lead– Security Operations professional to join our team.Job Summary:We are looking for a seasoned security expert to lead our Security Operations team. The successful candidate will be responsible for managing and guiding a team of senior and...


  • Bengaluru, Karnataka, India [24]7 Full time

    Job Title: Tech LeadJob Summary:We are seeking a highly skilled Tech Lead to join our team at [24]7. The successful candidate will be responsible for leading our Information Security team and overseeing the implementation of security measures to protect our organization's assets.Key Responsibilities:Lead the development and implementation of security...

  • Cyber Security Lead

    4 weeks ago


    Bengaluru, Karnataka, India Societe Generale Global Solution Centre Full time

    Job DescriptionWe are seeking a highly skilled Cyber Security Lead to join our team at Societe Generale Global Solution Centre. As a key member of our Global Cybersec Capability Centre (G3C) team, you will be responsible for leading our pentest practice and contributing to the development of our global security capabilities.Key ResponsibilitiesPerform manual...

  • Cyber Security Lead

    1 week ago


    Bengaluru, Karnataka, India FICO Full time

    The OpportunityFICO, a leading global analytics software company, seeks a highly skilled Cyber Security Lead to shape the next generation of security for its platform.As a key member of the team, you will address cutting-edge security challenges in cloud and microservices-driven environments.Provide full-stack security architecture design from cloud...


  • Bengaluru, Karnataka, India Sampoorna Consultants Pvt. Ltd Full time

    Job Title: Security Operations LeadJob Summary:We are seeking a highly skilled Security Operations Lead to join our team at Sampoorna Consultants Pvt. Ltd. The successful candidate will be responsible for leading individual incident response activities, analyzing security alerts, and coordinating responses.Key Responsibilities:Owns and leads individual...

  • Cyber Security Lead

    4 weeks ago


    Bengaluru, Karnataka, India Societe Generale Global Solution Centre Full time

    Job Title: Cyber Security LeadWe are seeking a highly skilled Cyber Security Lead to join our team at Societe Generale Global Solution Centre. As a key member of our Global Cybersec Capability Centre (G3C), you will be responsible for leading our pentest practice and contributing to the development of our global security capabilities.Responsibilities:Perform...

  • Product Security Lead

    2 weeks ago


    Bengaluru, Karnataka, India Pocket FM Full time

    About the Role:At Pocket FM, we are seeking an experienced Product Security Lead to champion security throughout the entire product development lifecycle. This role requires collaboration with engineering, product management, and other stakeholders to identify and mitigate security risks, ensuring our products are built with security and compliance in...


  • Bengaluru, Karnataka, India Arting Digital Private Limited Full time

    Job Title: Lead– Security OperationsAt Arting Digital Private Limited, we are seeking a highly skilled and experienced Lead– Security Operations to join our team. As a key member of our security operations team, you will be responsible for managing and guiding a team of senior and junior security engineers who perform operational and project tasks during...

  • Cloud Security Lead

    4 weeks ago


    Bengaluru, Karnataka, India 5100 Kyndryl Solutions Private Limited Full time

    Job Title: Cloud Security LeadAt 5100 Kyndryl Solutions Private Limited, we are seeking a highly skilled Cloud Security Lead to join our team. As a Cloud Security Lead, you will play a crucial role in enabling and securing our customer organizations, cultures, and ecosystems.Responsibilities:Configure, monitor, and manage the performance of networks to...

  • Lead Security Officer

    3 weeks ago


    Bengaluru, Karnataka, India AMEX Full time

    Job SummaryWe are seeking a highly experienced Lead Security Officer to join our Global Safety and Security Team at Wayfair. This is an exciting opportunity to lead a dynamic team and contribute to the development of a world-class safety and security program.Key ResponsibilitiesLead the daily operations of the Wayfair Technology Center in Bangaluru, India,...