Lead Cybersecurity Engineer

6 days ago


Gurgaon, Haryana, India Delhivery Full time ₹ 12,00,000 - ₹ 36,00,000 per year

About Delhivery

We are India's largest fully integrated logistics provider. We aim to build the operating system for commerce through a combination of world-class infrastructure, logistics operations of the highest quality and cutting-edge engineering and technology capabilities. Since its inception in 2011, our team has successfully fulfilled over 2 billion orders across India. We have built a nation-wide network with a presence in every state, servicing over 18,600 pin codes. 24 automated sort centres, 94 gateways, 2880 direct delivery centres, and a team of over 57,000 people make it possible for us to deliver 24 hours a day, 7 days a week, 365 days a year.

Vision

We aim to build the operating system for commerce through a combination of world- class infrastructure, logistics operations of the highest quality, and cutting-edge engineering and technology capabilities.

We're looking for a Lead Cyber Security Engineer who will manage and drive the technical execution of our core cybersecurity programs across our digital ecosystem. In this critical, hands-on role, you'll manage security assessment programs including in-depth Vulnerability Assessment and Penetration Testing (VAPT) of applications, network infrastructure, cloud environments, and APIs. You'll be instrumental in the shift-left security paradigm, assisting in the development and implementation of DevSecOps practices, securing our CI/CD pipelines, and embedding security throughout the SDLC. You'll also manage our proactive defenses through Red Teaming exercises and lead our reactive capabilities via Incident Response and Threat Intelligence.

Roles and Responsibilities

  • Lead Security Assessment and VAPT:
    Own, plan, and execute comprehensive Vulnerability Assessment and Penetration Testing (VAPT) across all key domains: Applications (Web/Mobile), Network Infrastructure, Cloud Environments, and APIs.
  • Vendor Management (VAPT, Assessments, & Red Teaming):
    Manage external security vendors and stakeholders responsible for performing VAPT, security assessments, penetration testing, and Red Teaming exercises, ensuring high-quality execution, scope adherence, and timely delivery of actionable reports.
  • Network Penetration Testing:
    Specifically scope, lead, and conduct advanced network pentesting to identify critical flaws in segmentation, configuration, and architecture.
  • Red Teaming:
    Design and lead periodic Red Teaming and sophisticated attack simulation exercises to test the resilience of our security controls, detection capabilities, and incident response procedures.
  • Coordinate with stakeholders to prioritize and drive the remediation of all identified security vulnerabilities, misconfigurations, and flaws.
  • Leverage AI, machine learning, and security automation principles to increase program efficiency, standardize processes, and automate repetitive security tasks.
  • SDLC Security & DevSecOps:
    Drive the integration of security controls and automation throughout the Software Development Life Cycle (SDLC), promoting a secure-by-design culture.
  • Assist with DevSecOps & CI/CD Security:
    Directly assist in implementing and improving DevSecOps practices, focusing on securing the CI/CD pipelines and configuration management.
  • Implement and manage security tools like SAST, DAST, and IAST, ensuring seamless integration into developer workflows.
  • Cloud Security:
    Drive cloud security initiatives by implementing infrastructure-as-code security, configuration best practices, and compliance frameworks across cloud environments (e.g., AWS, Azure, GCP).
  • Incident Response & Threat Intel:
    Oversee the entire Incident Response (IR) lifecycle, including threat hunting, forensics, mitigation, and post-incident analysis.
  • SOC:
    Oversee the performance of external Security Operations Center (SOC) vendors or MSSPs, ensuring alignment with internal IR processes and effective threat monitoring.
  • Continuously enhance the organization's threat landscape understanding by leveraging and operationalizing threat intelligence and managing the external attack surface.
  • Vulnerability Management:
    Own the end-to-end technical vulnerability management program, including scanning, prioritization (leveraging threat intelligence), reporting, and tracking remediation efforts across the infrastructure and application portfolio.

Experience & Skills

  • 5+ years of progressive experience in cybersecurity roles, with a proven track record in managing complex security initiatives.
  • Minimum of 1-2 years of proven team handling or technical leadership experience mentoring engineers, defining project tasks, and managing team workload.
  • Expert-level, hands-on experience managing and executing VAPT for applications, networks, cloud infrastructure, and APIs.
  • Deep experience in technical Vulnerability Management, including managing scanning tools, driving prioritization, and tracking remediation at scale.
  • Proven experience managing external vendors for critical security services, including VAPT, Security Assessments, SOC, and Red Teaming.
  • Proven experience in offensive security, including leading or significantly contributing to Red Teaming or complex adversary emulation exercises.
  • Deep understanding and practical experience in implementing DevSecOps principles and securing CI/CD pipelines.
  • Strong practical experience with Incident Response and leveraging Threat Intelligence for proactive defense and analysis.
  • Experience/knowledge of leveraging AI for security automation and program management.
  • Relevant technical certifications like OSCP, GPEN, OSWE, Cloud Security Specialty etc are preferred.
  • Excellent communication, technical advisory, and stakeholder management skills.


  • Gurgaon, Haryana, India Aon Corporation Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Job Title- Cybersecurity Operation LeadPosition type- Full Time       Work Location-GurugramWorking style- RemotePeople Manager role: NoRequired education and certifications critical for the role- Any Graduate or Post-Graduate (full time)Required years of experience – Minimum 10+ years of relevant experienceAre you a Cyber Security professional with...


  • Gurgaon, Haryana, India Fluidech Full time ₹ 12,00,000 - ₹ 30,00,000 per year

    Title:Vice President – Cybersecurity (IT Systems)Location:Onsite – Gurugram, Haryana, IndiaDuration:Full-Time RoleCompany: Fluidech IT Services Private LimitedCompany Overview:FLUIDECH, an ESCONET group company and a deemed public company, is a technology consulting and managed services firm specialising in cybersecurity.Founded in 2014 and headquartered...

  • Cybersecurity Analyst

    2 weeks ago


    Gurgaon, Haryana, India Enerture Technologies Pvt Ltd Full time ₹ 5,00,000 - ₹ 15,00,000 per year

    Location:Gurugram, HaryanaExperience:2–4 YearsDepartment:Information Security / IT InfrastructureAbout the Role:We are looking for a detail-oriented and proactiveCybersecurity Analystto join our growing technology and infrastructure team in Gurugram. In this role, you will be responsible for monitoring, analyzing, and responding to security incidents and...


  • Gurgaon, Haryana, India R1 RCM Full time ₹ 2,00,00,000 - ₹ 2,50,00,000 per year

    R1 is the leading provider of technology-driven solutions that transform the patient experience and financial performance of hospitals, health systems and medical groups. We are the one company that combines the deep expertise of a global workforce of revenue cycle professionals with the industry's most advanced technology platform, encompassing...


  • Gurgaon, Haryana, India R1 RCM Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    R1 is the leading provider of technology-driven solutions that transform the patient experience and financial performance of hospitals, health systems and medical groups. We are the one company that combines the deep expertise of a global workforce of revenue cycle professionals with the industry's most advanced technology platform, encompassing...


  • Gurgaon, Haryana, India Eduplex services private limited Full time ₹ 35,00,000 - ₹ 3,50,00,000 per year

    Email Security Engineer – Proofpoint Specialist.Location: Udyog Vihar, Sector 20, Gurugram, Haryana 122016Experience: 4–8 YearsSalary: Up to ₹35 LPAJob Type: Full-Time | General ShiftDomain: Cybersecurity / Email Security / Threat ProtectionAbout the RoleWe are expanding our dedicated Proofpoint Implementation Practice as an official Proofpoint Service...


  • Gurgaon, Haryana, India AIONOS Full time ₹ 15,00,000 - ₹ 60,00,000 per year

    Company DescriptionAIONOS is a next-generation AI- led digital transformation company launched in April 2024 as a joint venture between InterGlobe Enterprises and Assago Ventures. Headquartered in Singapore with delivery hubs in Gurgaon, Noida, and Hyderabad, we serve Fortune 500 clients across India, the US, Europe, the Middle East, and Southeast Asia. Our...


  • Gurgaon, Haryana, India NIIT Limited Full time ₹ 1,04,000 - ₹ 1,30,878 per year

    About the RoleWe are seeking a strategic and entrepreneurial product leader to spearhead our Cyber GTM Office at NIIT. This role blends market-facing product leadership with internal orchestration across NIIT's cybersecurity offerings.Your charter is to craft value-driven learning pathways, define commercial solution bundles, and drive business outcomes by...


  • Gurgaon, Haryana, India Moody's Corporation Full time ₹ 30,00,000 - ₹ 45,00,000 per year

    At Moody's, we unite the brightest minds to turn today's risks into tomorrow's opportunities. We do this by striving to create an inclusive environment where everyone feels welcome to be who they are—with the freedom to exchange ideas, think innovatively, and listen to each other and customers in meaningful ways. Moody's is transforming how the world sees...


  • Gurgaon, Haryana, India osto Full time ₹ 10,00,000 - ₹ 15,00,000 per year

    About OstoOsto is a protection-first, all-in-one cybersecurity platform that makes startups enterprise-ready in minutes - securing cloud, apps, APIs, devices, and data with real enforcement, no security engineer required.Role OverviewWe're looking for aGrowth Marketing Leadto own Osto's marketing engine for theUS startup ecosystem- driving awareness,...