
IT Security Lead
24 hours ago
About us
Join RamSoft ), a collaborative and innovative SaaS medical software company that is developing and selling novel cloud and cloud-native RIS/PACS software platforms for radiologists worldwide. We're a global business with 200+ employees located worldwide, and we are growing quickly.
Job Summary
We are seeking a proactive and technically strong Information Security Lead to drive our enterprise-wide cloud and infrastructure security operations, focused on Azure Security, SOC operations, threat intelligence, breach readiness, and regulatory compliance. This role plays a critical part in improving cyber defence maturity, ensuring resilience against attacks, and enabling audit readiness, while working closely with MDR/MSSP vendors, internal IT teams, and governance functions. The scope excludes application and DevSecOps security, focusing purely on infrastructure and operations security domains.
Key Responsibilities
Cloud Security (Azure Focus)
- Lead improvements in Azure security posture using Microsoft Secure Score, Azure Policy, and Azure Defender for Cloud.
- Implement and manage Azure-native security controls, including Key Vault, Azure Firewall, NSGs/ASGs, Sentinel, and Microsoft Defender XDR.
- Enforce Azure Security Benchmark and contribute to Azure Well-Architected Framework (Security Pillar)assessments and remediation.
Security Operations & Incident Response
- Oversee day-to-day SOC operations in collaboration with MDR/MSSP vendors, ensuring timely triage, escalation, and remediation.
- Improve MTTA/MTTR through playbook automation, detection rule tuning, and optimised incident workflows.
- Lead root cause analysis, forensics, and incident post-mortems for infrastructure and cloud-related security events.
Cyber Threat Intelligence and Blue Teaming
- Integrate actionable Cyber Threat Intelligence (CTI) feeds and threat actor TTPs into the detection pipeline.
- Run regular phishing simulations, blue teaming, and breach and attack simulations (BAS) to validate defence readiness.
- Conduct and support infrastructure threat modelling using MITRE ATT&CK and STRIDE frameworks.
IT Security & Patch Compliance
- Ensure IT infrastructure security, including laptops, servers, printers, and internal systems.
- Define and enforce enterprise patch management policies, track patch compliance for OS, firmware, and software.
- Monitor for vulnerable configurations and outdated software across end-user and server endpoints.
Active Directory & Identity Security
- Secure and monitor Active Directory (AD) and Azure AD for privilege escalations, misconfigurations, and abuse patterns.
- Implement conditional access policies, multi-factor authentication (MFA), and role-based access control (RBAC).
- Ensure alignment with SC-300 Microsoft Identity & Access best practices.
Network Security
- Define and enforce network segmentation, firewall rule reviews, secure VPN configurations, and zero-trust policies.
- Perform network threat analysis and work with IT/network teams to detect anomalies, lateral movement, or exfiltration risks.
- Monitor and harden edge devices (routers, firewalls, IDS/IPS).
Governance, Risk & Compliance (GRC)
- Ensure cloud and infra environments are compliant with standards (ISO 27001, SOC 2, NIST CSF).
- Support internal/external audits and maintain audit readiness for controls involving cloud and IT security.
- Drive Security BCP and DR testing exercises; document findings and track mitigation.
Vendor Management and Operations
- Act as primary liaison for MDR/MSSP providers, managing SLAs, escalations, tuning requests, and playbook improvements.
- Own contracts, performance metrics, and quarterly service reviews with security vendors.
Security Metrics and Reporting
- Track and improve metrics like Microsoft Secure Score, patch SLAs, threat detection coverage, MTTA/MTTR, phishing susceptibility, and audit gaps.
- Maintain and publish security dashboards and operational health reports to leadership.
Qualifications
Education
- Bachelor's or Master's in Information Security, Computer Science, or a related technical discipline.
Experience
- 6+ years of hands-on experience in Information Security, including:
- 3+ years in Azure Security and SOC operations
- Proven exposure to IT infrastructure, AD security, and network hardening
- Leading incident response, audit preparation, and GRC collaboration
Certifications (Highly Preferred)
- AZ-500: Microsoft Azure Security Engineer Associate
- SC-200: Microsoft Security Operations Analyst
- SC-300: Microsoft Identity and Access Administrator
- SC-100: Microsoft Cybersecurity Architect
- Optional: CISSP, CISM, ISO 27001 LA, or GIAC certifications (e.g., GCIA, GCIH)
Skills & Competencies
- Deep expertise in Azure-native security, SIEM/XDR/EDR tooling
- Strong grasp of network protocols, firewall rules, Active Directory, and endpoint hardening
- Familiarity with cyber kill chain, threat intelligence, and detection engineering
- Proficient in KQL, PowerShell, or scripting to support security automation
- Clear communicator able to translate technical risk into business impact
-
Senior Security Engineer
23 hours ago
Bengaluru, Karnataka, India Skyhigh Security Full time US$ 1,25,000 - US$ 1,75,000 per yearJob Title:Senior Security EngineerAbout Skyhigh Security:Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world's data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency.Since 2011, organizations have...
-
Elytra Security
4 days ago
Bengaluru, Karnataka, India Elytra Security Private limited Full timeJob Description: Senior Manager - Sales Location: Bangalore, India (Hybrid)Employment Type: Full-timeDepartment: Sales & Business DevelopmentReports To: Director - Sales & PartnershipsAbout Elytra SecurityElytra Security is a Bangalore-based cybersecurity firm building next-generation security and compliance solutions for enterprises, BFSI, healthcare,...
-
Metron Security
1 day ago
Bengaluru, Karnataka, India Metron Security Private Limited Full timeWe are looking for passionate developers with 2-5 years of experience in software development to join the Metron Security team as a Software Engineer.Metron Security provides automation and integration services to leading cybersecurity companies. Our engineering team works on leading security platforms, including Splunk, IBMs QRadar, ServiceNow, Crowdstrike,...
-
Security Lead
1 day ago
Bengaluru, Karnataka, India Borderless Access Full time ₹ 1,04,000 - ₹ 1,30,878 per yearKey ResponsibilitiesSecurity lead will be responsible for Microsoft 365, Azure Cloud and End Point security operations.Oversee the day-to-day security operations – monitoring, incident reporting and logging.Develop and implement security end point solutions for anti-malware, anti-virus and endpoint detection.Develop and enforce endpoint security policies...
-
Senior Information Security Analyst
7 hours ago
Bengaluru, Karnataka, India Rubrik Security Cloud Full time ₹ 5,00,000 - ₹ 8,00,000 per yearAbout the team:The Information Security (InfoSec) organization advances the overall state of security at Rubrik through critical initiatives and coordination of large security projects. Information Security builds technologies, tools, and processes to better enable teams at Rubrik to develop secure software and protect data and systems with appropriate...
-
Security Lead
6 days ago
Bengaluru, Karnataka, India 157 Careers Full timeDetailsLocation – Pune (Hybrid)Working closely with CTO, CEO and Engineering TeamExperience Level: 5-7 yrs.Department: Security & ComplianceIn one sentenceWe are seeking a hands-on Security & Compliance Lead to own and execute our end-to-end security audits and compliance initiatives across applications, infrastructure, and organizational processes. This...
-
Information Security Lead
2 days ago
Bengaluru, Karnataka, India Narayana Health Full timeJob DescriptionAbout the Role:The Information Security Lead will be responsible for developing and implementing the organizations information security framework to safeguard patient data, clinical systems, and enterprise IT infrastructure. This role ensures compliance with healthcare regulations, international standards, and hospital group policies, while...
-
Product Security Lead
4 days ago
Bengaluru, Karnataka, India beBeeSecurity Full time ₹ 9,00,000 - ₹ 12,00,000We're seeking a seasoned Security Architect to lead our product security initiatives.This is a key role in ensuring the security of our products and services throughout their entire lifecycle. The successful candidate will be responsible for designing and implementing secure architectural patterns, leading threat modeling and security design reviews, and...
-
DevOps & Security Lead
23 hours ago
Bengaluru, Karnataka, India VAYUZ Technologies Full time ₹ 15,00,000 - ₹ 20,00,000 per yearJob SummaryWe are seeking a skilled and strategic DevOps & Security Lead to oversee our infrastructure, DevOps practices, and cybersecurity posture. This leadership role combines deep technical expertise with a strong security mindset to ensure high availability, scalability, and security across our cloud-based environments. The ideal candidate will drive...
-
Lead Security Engineer
2 weeks ago
Bengaluru, Karnataka, India interface Full timeWho We AreAt interface.ai, we're redefining the future of banking with AI. Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.Our mission :To make banking effortless, intelligent, and profitable—enhancing user...