
IT Security Lead
1 week ago
Job Summary
We are seeking a proactive and technically strong Information Security Lead to drive our enterprise-wide cloud and infrastructure security operations, focused on Azure Security, SOC operations, threat intelligence, breach readiness, and regulatory compliance. This role plays a critical part in improving cyber defence maturity, ensuring resilience against attacks, and enabling audit readiness, while working closely with MDR/MSSP vendors, internal IT teams, and governance functions. The scope excludes application and DevSecOps security, focusing purely on infrastructure and operations security domains.
Key Responsibilities
Cloud Security (Azure Focus)
- Lead improvements in Azure security posture using Microsoft Secure Score, Azure Policy, and Azure Defender for Cloud.
- Implement and manage Azure-native security controls, including Key Vault, Azure Firewall, NSGs/ASGs, Sentinel, and Microsoft Defender XDR.
- Enforce Azure Security Benchmark and contribute to Azure Well-Architected Framework (Security Pillar)assessments and remediation.
Security Operations & Incident Response
- Oversee day-to-day SOC operations in collaboration with MDR/MSSP vendors, ensuring timely triage, escalation, and remediation.
- Improve MTTA/MTTR through playbook automation, detection rule tuning, and optimised incident workflows.
- Lead root cause analysis, forensics, and incident post-mortems for infrastructure and cloud-related security events.
Cyber Threat Intelligence and Blue Teaming
- Integrate actionable Cyber Threat Intelligence (CTI) feeds and threat actor TTPs into the detection pipeline.
- Run regular phishing simulations, blue teaming, and breach and attack simulations (BAS) to validate defence readiness.
- Conduct and support infrastructure threat modelling using MITRE ATT&CK and STRIDE frameworks.
IT Security & Patch Compliance
- Ensure IT infrastructure security, including laptops, servers, printers, and internal systems.
- Define and enforce enterprise patch management policies, track patch compliance for OS, firmware, and software.
- Monitor for vulnerable configurations and outdated software across end-user and server endpoints.
Active Directory & Identity Security
- Secure and monitor Active Directory (AD) and Azure AD for privilege escalations, misconfigurations, and abuse patterns.
- Implement conditional access policies, multi-factor authentication (MFA), and role-based access control (RBAC).
- Ensure alignment with SC-300 Microsoft Identity & Access best practices.
Network Security
- Define and enforce network segmentation, firewall rule reviews, secure VPN configurations, and zero-trust policies.
- Perform network threat analysis and work with IT/network teams to detect anomalies, lateral movement, or exfiltration risks.
- Monitor and harden edge devices (routers, firewalls, IDS/IPS).
Governance, Risk & Compliance (GRC)
- Ensure cloud and infra environments are compliant with standards (ISO 27001, SOC 2, NIST CSF).
- Support internal/external audits and maintain audit readiness for controls involving cloud and IT security.
- Drive Security BCP and DR testing exercises; document findings and track mitigation.
Vendor Management and Operations
- Act as primary liaison for MDR/MSSP providers, managing SLAs, escalations, tuning requests, and playbook improvements.
- Own contracts, performance metrics, and quarterly service reviews with security vendors.
Security Metrics and Reporting
- Track and improve metrics like Microsoft Secure Score, patch SLAs, threat detection coverage, MTTA/MTTR, phishing susceptibility, and audit gaps.
- Maintain and publish security dashboards and operational health reports to leadership.
Qualifications
Education
- Bachelor's or Master's in Information Security, Computer Science, or a related technical discipline.
Experience
- 6+ years of hands-on experience in Information Security, including:
- 3+ years in Azure Security and SOC operations
- Proven exposure to IT infrastructure, AD security, and network hardening
- Leading incident response, audit preparation, and GRC collaboration
Certifications (Highly Preferred)
- AZ-500: Microsoft Azure Security Engineer Associate
- SC-200: Microsoft Security Operations Analyst
- SC-300: Microsoft Identity and Access Administrator
- SC-100: Microsoft Cybersecurity Architect
- Optional: CISSP, CISM, ISO 27001 LA, or GIAC certifications (e.g., GCIA, GCIH)
Skills & Competencies
- Deep expertise in Azure-native security, SIEM/XDR/EDR tooling
- Strong grasp of network protocols, firewall rules, Active Directory, and endpoint hardening
- Familiarity with cyber kill chain, threat intelligence, and detection engineering
- Proficient in KQL, PowerShell, or scripting to support security automation
- Clear communicator able to translate technical risk into business impact
-
Lead Cyber Security Analyst
7 days ago
Bengaluru, Karnataka, India SMARTWORK IT SERVICES Full timePosition : Cyber Security Lead Analyst Risk & ComplianceExperience : 9+ YearsLocation : BangaloreOpen Positions : 2Job Summary : We are seeking a highly experienced Cyber Security Lead Analyst with 9+ years of hands-on experience in risk management and compliance. The ideal candidate will be responsible for leading cybersecurity risk assessments within...
-
Senior Security Engineer
2 weeks ago
Bengaluru, Karnataka, India Skyhigh Security Full time US$ 1,25,000 - US$ 1,75,000 per yearJob Title:Senior Security EngineerAbout Skyhigh Security:Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world's data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency.Since 2011, organizations have...
-
Elytra Security
2 weeks ago
Bengaluru, Karnataka, India Elytra Security Private limited Full timeJob Description: Senior Manager - Sales Location: Bangalore, India (Hybrid)Employment Type: Full-timeDepartment: Sales & Business DevelopmentReports To: Director - Sales & PartnershipsAbout Elytra SecurityElytra Security is a Bangalore-based cybersecurity firm building next-generation security and compliance solutions for enterprises, BFSI, healthcare,...
-
IT Security Lead
2 weeks ago
Bengaluru, Karnataka, India RAMSOFT Full time US$ 1,25,000 - US$ 1,75,000 per yearAbout usJoin RamSoft ), a collaborative and innovative SaaS medical software company that is developing and selling novel cloud and cloud-native RIS/PACS software platforms for radiologists worldwide. We're a global business with 200+ employees located worldwide, and we are growing quickly.Job SummaryWe are seeking a proactive and technically strong...
-
Metron Security
2 weeks ago
Bengaluru, Karnataka, India Metron Security Private Limited Full timeWe are looking for passionate developers with 2-5 years of experience in software development to join the Metron Security team as a Software Engineer.Metron Security provides automation and integration services to leading cybersecurity companies. Our engineering team works on leading security platforms, including Splunk, IBMs QRadar, ServiceNow, Crowdstrike,...
-
Security Lead
2 weeks ago
Bengaluru, Karnataka, India Borderless Access Full time ₹ 1,04,000 - ₹ 1,30,878 per yearKey ResponsibilitiesSecurity lead will be responsible for Microsoft 365, Azure Cloud and End Point security operations.Oversee the day-to-day security operations – monitoring, incident reporting and logging.Develop and implement security end point solutions for anti-malware, anti-virus and endpoint detection.Develop and enforce endpoint security policies...
-
IT & Security Lead
4 days ago
Bengaluru, Karnataka, India Bark Full time ₹ 70,000 - ₹ 1,20,000 per yearAbout BarkBark is revolutionising the way people find professionals in over 1,000 unique categories. As the UK's largest and fastest-growing services marketplace, we're on a mission to make finding the right professional quick and easy. With a presence in eleven countries and plans for further expansion, joining us at this genuinely exciting time will be a...
-
Senior Information Security Analyst
2 weeks ago
Bengaluru, Karnataka, India Rubrik Security Cloud Full time ₹ 5,00,000 - ₹ 8,00,000 per yearAbout the team:The Information Security (InfoSec) organization advances the overall state of security at Rubrik through critical initiatives and coordination of large security projects. Information Security builds technologies, tools, and processes to better enable teams at Rubrik to develop secure software and protect data and systems with appropriate...
-
Information security lead
4 days ago
Bengaluru, Karnataka, India Narayana Health Full timeAbout the Role:The Information Security Lead will be responsible for developing and implementing the organization's information security framework to safeguard patient data, clinical systems, and enterprise IT infrastructure. This role ensures compliance with healthcare regulations, international standards, and hospital group policies, while building a...
-
Information Security Lead
2 weeks ago
Bengaluru, Karnataka, India Narayana Health Full timeJob DescriptionAbout the Role:The Information Security Lead will be responsible for developing and implementing the organizations information security framework to safeguard patient data, clinical systems, and enterprise IT infrastructure. This role ensures compliance with healthcare regulations, international standards, and hospital group policies, while...