Information Security Manager
2 days ago
Role: Information Security Manager
Base location: Bangalore, Chennai, Mumbai, Pune & Hyderabad
Key Responsibilities:
Security Architecture Review & Threat Modeling:
- Conduct
security architecture reviews
for applications, cloud environments, and IT systems to identify risks. - Perform
threat modeling (e.g., STRIDE, PASTA, MITRE ATT&CK, DREAD)
to assess potential attack vectors and weaknesses. - Analyze
authentication, encryption, and access control mechanisms
within application and system architectures. - Review security controls against industry standards and organizational policies (e.g.,
NIST, ISO 27001, OWASP, CIS Controls, TISAX
). - Provide
secure design recommendations
to mitigate identified risks.
Application & Cloud Security Assessment:
- Assess
web, mobile, and cloud-based applications
for security risks and misconfigurations. - Evaluate
API security, microservices architectures, and containerized environments
for vulnerabilities. - Validate implementation of
IAM, Zero Trust, network segmentation, and encryption standards
.
Security Risk & Compliance Evaluation:
- Identify
security gaps in applications and infrastructure
and recommend compensating controls. - Ensure compliance with
GDPR, SOC 2, PCI-DSS, ISO 27001, TISAX, and other relevant security frameworks
.
Collaboration & Reporting:
- Create
comprehensive reports
detailing identified
risks, mitigation strategies
,
cloud specific controls
,
data flow diagram, trust zones
, and
improvement recommendations. - Collaborate with stakeholders to develop and refine the
enterprise security architecture and threat modeling strategies.
Requirements
Qualifications & Experience:
- Bachelor's or Master's degree
in Cybersecurity, Computer Science, Information Technology, or a related field. - Over 9
Years of experience, including
3+ years
of experience in security architecture review, threat modeling, and risk assessment. - Strong expertise in
threat modeling frameworks
such as
STRIDE, PASTA, MITRE ATT&CK, OWASP ASVS
. - Knowledge of
cloud security (AWS, Azure, GCP), API security, and microservices architecture
. - Familiarity with
IAM, Zero Trust, MFA, RBAC, PAM, and network security principles
. - Experience in
secure SDLC, DevSecOps, and security assessment
. - Hands-on experience with
security assessment tools
(e.g., Microsoft Threat modeling, Microsoft Visio). - Understanding of
penetration testing methodologies, security misconfigurations, and application security risks
.
Preferred Certifications:
- CISSP (Certified Information Systems Security Professional)
- CSSLP (Certified Secure Software Lifecycle Professional)
- CCSP (Certified Cloud Security Professional)
- AWS/Azure Security Certifications
- CEH (Certified Ethical Hacker) or OSCP (Offensive Security Certified Professional)
-
Information Security Consultant
1 week ago
Bangalore, Karnataka, India Eurofins Full timeCompany Description Eurofins Scientific is an international life sciences company providing a unique range of analytical testing services to clients across multiple industries to make life and the environment safer healthier and more sustainable From the food you eat to the medicines you rely on Eurofins works with the biggest companies in the world to...
-
Information Technology Security Specialist
5 days ago
north delhi, India BLS International Full timeKEY ROLES AND RESPONSIBILITIES We are seeking a highly skilled and experienced Head of Information Security to lead our information security efforts and safeguard our company's data and infrastructure. This role is crucial in ensuring that our information security policies, procedures, and technologies effectively protect against cyber threats and...
-
Senior Manager – Information Security
3 weeks ago
Bangalore, Karnataka, India GENPACT Full timeReady to shape the future of work At Genpact we don t just adapt to change we drive it AI and digital innovation are redefining industries and we re leading the charge Genpact s our industry-first accelerator is an example of how we re scaling advanced technology solutions to help global enterprises work smarter grow faster and transform at scale From...
-
Information Security Engineer
4 weeks ago
Bangalore, Karnataka, India Zscaler Full timeAbout Zscaler Serving thousands of enterprise customers around the world including 45 of Fortune 500 companies Zscaler NASDAQ ZS was founded in 2007 with a mission to make the cloud a safe place to do business and a more enjoyable experience for enterprise users As the operator of the world s largest security cloud Zscaler accelerates digital transformation...
-
Information Security Consultant
7 days ago
Bangalore, Karnataka, India Endava Full timeCompany Description Technology is our how And people are our why For over two decades we have been harnessing technology to drive meaningful change By combining world-class engineering industry expertise and a people-centric mindset we consult and partner with leading brands from various industries to create dynamic platforms and intelligent digital...
-
Principal Information Security Analyst
18 hours ago
Bangalore, Karnataka, India Skyworks Full timeDivision Information Technology Employment Status Exempt Salary Grade 108 Shift Requisition ID 76498 Please be aware that if you are selected to formally interview for an internal position you will be required to notify your current manager Please refer to the Employee Transfers Guidelines posted on Skylink Description Responsibilities PRIMARY RESPONSIBILITY...
-
Program Manager
5 days ago
bangalore, India Navi Full timeAbout the Team At Navi, the InfoSec team safeguards our digital ecosystem - ensuring the confidentiality, integrity, and availability of critical systems and data. We lead the charge on cyber risk management, regulatory compliance, and data protection, while championing a security-first culture across all teams. Our mission: Protect what powers Navi -...
-
Senior Information Security Engineer
18 hours ago
Bangalore, Karnataka, India WiseTech Global Full timeAbout WiseTech Global At WiseTech Global our technology powers the world s supply chains From the largest freight forwarders to thousands of logistics companies across 180 countries our systems keep trade moving With our recent acquisition of e2Open we re expanding that impact - and with it our responsibility to protect critical systems on a global scale...
-
Information Security Specialist
1 week ago
bangalore, India NTT Ltd. Full timeMake an impact with NTT DATAJoin a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it's a place where you can grow, belong and thrive. Your day at NTT DATAThe Information...
-
AI Cyber Security
2 days ago
Bangalore North Rural, Karnataka, India EmbarkGCC Full time ₹ 20,00,000 - ₹ 25,00,000 per yearRoles & Responsibility· Develop and execute strategies to safeguard AI systems against cyber threats.· Investigate emerging AI security technologies and assess their efficacy.· Collaborate with stakeholders to ensure the secure deployment of AI solutions.· Keep current with the latest AI security principles and best practices.· Perform AI system...