Security Lead

6 days ago


Bengaluru Chennai Pune, India Photon Full time ₹ 1,04,000 - ₹ 1,30,878 per year

About The Role  

Key Responsibilities: 

Lead Threat Modeling Efforts: 

- Own and lead the threat modeling process, including identifying threats, vulnerabilities, and mitigations for cloud-based applications and systems hosted on GCP.
- Collaborate with architects, engineers, and product teams to design secure, resilient systems by incorporating threat modeling early in the design phase.
- Conduct threat assessments for new and existing GCP services and applications, identifying risk areas and recommending controls to mitigate identified threats.

Security Frameworks & Best Practices: 

- Develop and implement security frameworks and threat modeling methodologies (e.g., STRIDE, PASTA) specific to cloud-based systems.
- Establish and promote best practices for applying threat modeling across all stages of the software development lifecycle (SDLC).
- Drive the adoption of threat modeling tools and automation, integrating them with existing CI/CD pipelines and security workflows.

Cross-Functional Collaboration: 

- Work closely with the Cloud Security, DevOps, and Engineering teams to ensure that threat modeling is integrated into the architecture review and deployment processes.
- Support incident response and vulnerability management teams by conducting post-mortem threat assessments following security incidents and breaches.

Security Risk Assessment & Mitigation: 

- Identify potential attack vectors, misconfigurations, and design flaws in GCP resources and cloud-native architectures.
- Recommend actionable security improvements based on threat analysis and provide guidance on implementing mitigation strategies.
- Conduct risk assessments for third-party integrations, APIs, and other cloud service components that could expose security vulnerabilities.

Security Training & Awareness: 

- Lead training sessions to educate internal teams on threat modeling techniques, security design principles, and secure cloud development practices.
- Mentor junior security team members and foster a culture of security-first thinking across the organization.

Continuous Improvement & Innovation: 

- Stay current with emerging threats, vulnerabilities, and attack techniques targeting cloud environments, particularly on GCP.
- Continuously refine and improve threat modeling processes, tools, and methodologies to stay ahead of evolving security challenges.

Skills & Qualifications: 

Required: 

Threat Modeling Expertise: 

- Extensive experience in threat modeling, risk assessment, and vulnerability analysis, with a deep understanding of common threat modeling methodologies (e.g., STRIDE, PASTA, ATT&CK).
- Proven ability to conduct threat assessments on complex cloud architectures and applications, identifying threats and developing mitigation strategies.

In-Depth Knowledge of GCP: 

- Strong experience with Google Cloud Platform (GCP) , including core GCP services such as Compute Engine, Kubernetes Engine (GKE), Cloud Storage, BigQuery, IAM, VPC, Cloud Functions, and others.
- Understanding of GCP-specific security risks, controls, and compliance frameworks (e.g., CIS benchmarks, SOC 2, HIPAA, etc.).

Cloud Security Best Practices: 

- In-depth knowledge of cloud-native security principles, including least privilege access, defense-in-depth, secure configurations, and infrastructure-as-code security.
- Familiarity with cloud security tools and frameworks for vulnerability management, identity and access management (IAM), and threat detection in GCP.

Collaboration & CommunicationSkills:
- Excellent communication skills with the ability to explain complex security concepts to both technical and non-technical stakeholders.
- Strong leadership and collaboration skills, with a track record of working across functional teams to influence and drive security initiatives.

Security Certifications: 

- Relevant certifications such as Google Cloud Professional Cloud Security Engineer , CISSP , CCSP , or similar are strongly preferred.

Preferred: 

Application Security Experience: 

- Experience with application security practices, such as static analysis (SAST), dynamic analysis (DAST), and secure code reviews.

Security Tools & Automation: 

- Familiarity with threat modeling tools (e.g., Microsoft Threat Modeling Tool, Threat Dragon), security testing tools (e.g., Burp Suite, Checkmarx), and cloud security posture management tools (e.g., Prisma Cloud, Aqua Security).

Incident Response & Forensics: 

- Experience in supporting security incident response and conducting forensic investigations in cloud environments.

Programming / ScriptingSkills:
- Proficiency in at least one programming or scripting language (e.g., Python, Go, Shell) for security automation and tooling is a plus.



  • Bengaluru, Karnataka, India Skyhigh Security Full time US$ 1,25,000 - US$ 1,75,000 per year

    Job Title:Senior Security EngineerAbout Skyhigh Security:Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world's data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency.Since 2011, organizations have...


  • Chennai, Tamil Nadu, India Jaguar Security Services Full time ₹ 1,04,000 - ₹ 1,30,878 per year

    Security Shift Supervisor will be responsible for managing end-to-end security operations of the shift and will be responsible for the safety & security of employees and assets at the site.Security Shift Supervisor will report to Security Site Lead and Corporate Security Agent/ Corporate Security Agent Manager.Experience Required:Minimum graduate with 5+...


  • Chennai, India Jaguar Security Services Full time

    Security Shift Supervisor will be responsible for managing end-to-end security operations of the shift and will be responsible for the safety & security of employees and assets at the site. Security Shift Supervisor will report to Security Site Lead and Corporate Security Agent/ Corporate Security Agent Manager. Experience Required: Minimum graduate with 5+...


  • Pune, Maharashtra, India Jaguar Security Services Full time ₹ 5,00,000 - ₹ 8,00,000 per year

    The role of a security supervisor typically involves overseeing and managing a team of security personnel to ensure the safety and security of an organization or facility. Here are some common roles and responsibilities of a security supervisor:Roles & Responsibilities:Managing Security Operations: Responsible for overseeing and managing the day-to-day...

  • Security Lead

    3 weeks ago


    Hyderabad, Bengaluru, Chennai, India PHOTON Full time

    Job DescriptionJob descriptionLead Threat Modeling Efforts:- Own and lead the threat modeling process, including identifying threats, vulnerabilities, and mitigations for cloud-based applications and systems hosted on GCP.- Collaborate with architects, engineers, and product teams to design secure, resilient systems by incorporating threat modeling early in...


  • Chennai, Tamil Nadu, India NMT Security | Simplifying Cybersecurity Full time ₹ 15,00,000 - ₹ 20,00,000 per year

    AWS Security Specialist Location: Noida | Type: Full-time | Experience: 5+ years NMT Security is building a next-gen cybersecurity platform. We're looking for an AWS Security Specialist to ensure our serverless application is built and maintained using the highest security standards aligned with AWS best practices and compliance frameworks like NIST. What...


  • Pune, Maharashtra, India 157 Industries Full time

    Details : Location Pune (Hybrid). Working closely with CTO, CEO and Engineering Team. Experience Level : 5-7 yrs. Department : Security & Compliance.In one sentence : We are seeking a hands-on Security & Compliance Lead to own and execute our end-to-end security audits and compliance initiatives across applications, infrastructure, and organizational...


  • Bengaluru, Karnataka, India Menlo Security Full time

    Menlo Security's mission is enabling the world to connect, communicate and collaborate securely without compromise. COVID-19 has made our mission all the more real. We support customers across various enterprises including Fortune 500 companies, 9/10 of the largest global banks and the Department of Defense. Menlo is well-funded for growth and our investors...

  • Security Officer

    7 days ago


    Gummidipoondi, Chennai, Tamil Nadu, India Bharath Security Services Full time

    **Job Title**: Security Officer **Department**: Operations - Manned Guarding **Reports To**: Site In-charge / Assignment Manager / Branch Operations Manager **Company**: BHARATH SECURITY SERVICES **Position Summary**: The **Security Officer** acts as the operational lead at the site level, responsible for implementing security procedures, supervising guard...

  • Security Lead

    2 weeks ago


    Pune, Maharashtra, India 157 Careers Full time ₹ 15,00,000 - ₹ 20,00,000 per year

    DetailsLocation – Pune (Hybrid)Working closely with CTO, CEO and Engineering TeamExperience Level: 5-7 yrs.Department: Security & ComplianceIn one sentenceWe are seeking a hands-on Security & Compliance Lead to own and execute our end-to-end security audits and compliance initiatives across applications, infrastructure, and organizational processes. This...