
IT Security Lead
1 week ago
About us
Join RamSoft ), a collaborative and innovative SaaS medical software company that is developing and selling novel cloud and cloud-native RIS/PACS software platforms for radiologists worldwide. We're a global business with 200+ employees located worldwide, and we are growing quickly.
Job Summary
We are seeking a proactive and technically strong Information Security Lead to drive our enterprise-wide cloud and infrastructure security operations, focused on Azure Security, SOC operations, threat intelligence, breach readiness, and regulatory compliance. This role plays a critical part in improving cyber defence maturity, ensuring resilience against attacks, and enabling audit readiness, while working closely with MDR/MSSP vendors, internal IT teams, and governance functions. The scope excludes application and DevSecOps security, focusing purely on infrastructure and operations security domains.
Key Responsibilities
Cloud Security (Azure Focus)
- Lead improvements in Azure security posture using Microsoft Secure Score, Azure Policy, and Azure Defender for Cloud.
- Implement and manage Azure-native security controls, including Key Vault, Azure Firewall, NSGs/ASGs, Sentinel, and Microsoft Defender XDR.
- Enforce Azure Security Benchmark and contribute to Azure Well-Architected Framework (Security Pillar)assessments and remediation.
Security Operations & Incident Response
- Oversee day-to-day SOC operations in collaboration with MDR/MSSP vendors, ensuring timely triage, escalation, and remediation.
- Improve MTTA/MTTR through playbook automation, detection rule tuning, and optimised incident workflows.
- Lead root cause analysis, forensics, and incident post-mortems for infrastructure and cloud-related security events.
Cyber Threat Intelligence and Blue Teaming
- Integrate actionable Cyber Threat Intelligence (CTI) feeds and threat actor TTPs into the detection pipeline.
- Run regular phishing simulations, blue teaming, and breach and attack simulations (BAS) to validate defence readiness.
- Conduct and support infrastructure threat modelling using MITRE ATT&CK and STRIDE frameworks.
IT Security & Patch Compliance
- Ensure IT infrastructure security, including laptops, servers, printers, and internal systems.
- Define and enforce enterprise patch management policies, track patch compliance for OS, firmware, and software.
- Monitor for vulnerable configurations and outdated software across end-user and server endpoints.
Active Directory & Identity Security
- Secure and monitor Active Directory (AD) and Azure AD for privilege escalations, misconfigurations, and abuse patterns.
- Implement conditional access policies, multi-factor authentication (MFA), and role-based access control (RBAC).
- Ensure alignment with SC-300 Microsoft Identity & Access best practices.
Network Security
- Define and enforce network segmentation, firewall rule reviews, secure VPN configurations, and zero-trust policies.
- Perform network threat analysis and work with IT/network teams to detect anomalies, lateral movement, or exfiltration risks.
- Monitor and harden edge devices (routers, firewalls, IDS/IPS).
Governance, Risk & Compliance (GRC)
- Ensure cloud and infra environments are compliant with standards (ISO 27001, SOC 2, NIST CSF).
- Support internal/external audits and maintain audit readiness for controls involving cloud and IT security.
- Drive Security BCP and DR testing exercises; document findings and track mitigation.
Vendor Management and Operations
- Act as primary liaison for MDR/MSSP providers, managing SLAs, escalations, tuning requests, and playbook improvements.
- Own contracts, performance metrics, and quarterly service reviews with security vendors.
Security Metrics and Reporting
- Track and improve metrics like Microsoft Secure Score, patch SLAs, threat detection coverage, MTTA/MTTR, phishing susceptibility, and audit gaps.
- Maintain and publish security dashboards and operational health reports to leadership.
Qualifications
Education
- Bachelor's or Master's in Information Security, Computer Science, or a related technical discipline.
Experience
- 6+ years of hands-on experience in Information Security, including:
- 3+ years in Azure Security and SOC operations
- Proven exposure to IT infrastructure, AD security, and network hardening
- Leading incident response, audit preparation, and GRC collaboration
Certifications (Highly Preferred)
- AZ-500: Microsoft Azure Security Engineer Associate
- SC-200: Microsoft Security Operations Analyst
- SC-300: Microsoft Identity and Access Administrator
- SC-100: Microsoft Cybersecurity Architect
- Optional: CISSP, CISM, ISO 27001 LA, or GIAC certifications (e.g., GCIA, GCIH)
Skills & Competencies
- Deep expertise in Azure-native security, SIEM/XDR/EDR tooling
- Strong grasp of network protocols, firewall rules, Active Directory, and endpoint hardening
- Familiarity with cyber kill chain, threat intelligence, and detection engineering
- Proficient in KQL, PowerShell, or scripting to support security automation
- Clear communicator able to translate technical risk into business impact
-
Security Operations Lead
2 days ago
Bengaluru, Karnataka, India Princeton IT America Full time ₹ 6,56,000 - ₹ 20,56,876 per yearJob Title: Security Operations LeadExperience: 15+ years total, with 7+ years in Security Operations LeadershipLocation: [Specify – e.g., Dubai / Hybrid / Remote]Key Responsibilities:Lead and manage end-to-end Security Operations Center (SOC) activities, covering Tier 1 to Tier 3 operations.Oversee threat intelligence, monitoring, detection, and incident...
-
Lead Cyber Security Analyst
4 weeks ago
Bengaluru, Karnataka, India SMARTWORK IT SERVICES Full timePosition : Cyber Security Lead Analyst Risk & ComplianceExperience : 9+ YearsLocation : BangaloreOpen Positions : 2Job Summary : We are seeking a highly experienced Cyber Security Lead Analyst with 9+ years of hands-on experience in risk management and compliance. The ideal candidate will be responsible for leading cybersecurity risk assessments within...
-
Senior Security Engineer
1 week ago
Bengaluru, Karnataka, India Skyhigh Security Full time US$ 1,25,000 - US$ 1,75,000 per yearJob Title:Senior Security EngineerAbout Skyhigh Security:Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world's data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency.Since 2011, organizations have...
-
Security Lead
1 week ago
Bengaluru, Karnataka, India Borderless Access Full time ₹ 20,00,000 - ₹ 25,00,000 per yearKey ResponsibilitiesSecurity lead will be responsible for Microsoft 365, Azure Cloud and End Point security operations.Oversee the day-to-day security operations – monitoring, incident reporting and logging.Develop and implement security end point solutions for anti-malware, anti-virus and endpoint detection.Develop and enforce endpoint security policies...
-
Senior Information Security Analyst
1 week ago
Bengaluru, Karnataka, India Rubrik Security Cloud Full time ₹ 5,00,000 - ₹ 8,00,000 per yearAbout the team:The Information Security (InfoSec) organization advances the overall state of security at Rubrik through critical initiatives and coordination of large security projects. Information Security builds technologies, tools, and processes to better enable teams at Rubrik to develop secure software and protect data and systems with appropriate...
-
IT & Security Lead
2 hours ago
Bengaluru, Karnataka, India Bark Full time ₹ 12,00,000 - ₹ 36,00,000 per yearAbout BarkBark is revolutionising the way people find professionals in over 1,000 unique categories. As the UK's largest and fastest-growing services marketplace, we're on a mission to make finding the right professional quick and easy. With a presence in eleven countries and plans for further expansion, joining us at this genuinely exciting time will be a...
-
Security testing Lead
2 weeks ago
Bengaluru, Karnataka, India L&T Finance Full time ₹ 15,00,000 - ₹ 25,00,000 per yearCompany DescriptionL&T Finance is one of the leading NBFCs offering a range of loans across Rural, Housing, Two-Wheeler, and Personal & Business (SME). The company is promoted by Larsen and Toubro Ltd. (L&T), one of the largest conglomerates in India. L&T Finance is publicly listed on both the BSE and NSE exchanges in India and complies with NBFC-CIC...
-
Information Security Lead
2 weeks ago
Bengaluru, Karnataka, India TalentOye Full time ₹ 15,00,000 - ₹ 25,00,000 per yearInformation Security LeadLocation : Bangalore, IndiaExperience : 6 to 15 yearsJob Title : Information Security LeadLocation : Bangalore (WFO)Experience : 615 yearsAbout the Role : We are looking for an experienced Information Security Lead to establish and drive our security and compliance programs. The role will focus heavily on building and...
-
Security Engineer
2 days ago
Bengaluru, Karnataka, India YO IT CONSULTING Full time ₹ 15,00,000 - ₹ 25,00,000 per yearJob Title : Security Engineer - Vulnerability, Cyber Security, DnsExperience : 3-5 yrsLocation : BangaloreWork Mode : 3 days WFO (hybrid)Job Summary : We are seeking a skilled Software Engineer with 3-5 years of experience to join our dynamic team. The ideal candidate will independently develop high-quality, error-free code, automate infrastructure...
-
Information Security Lead
4 weeks ago
Bengaluru, Karnataka, India Narayana Health Full timeAbout the Role:The Information Security Lead will be responsible for developing and implementing the organization's information security framework to safeguard patient data, clinical systems, and enterprise IT infrastructure. This role ensures compliance with healthcare regulations, international standards, and hospital group policies, while building a...