Cloud security engineer

Delhi, Delhi Aquanow

Posted today

Job Viewed

Tap Again To Close

Job Description

permanent
Aquanow, a leading infrastructure and liquidity provider that provides institutional and enterprise application platforms for digital assets, is looking for a Cloud Security Engineer to join our technology team in Vancouver or Toronto. This is a unique opportunity to work alongside a highly-experienced team and contribute to the development of a high-growth trading and technology company.If you want to have your name in the success story of a globalizing company, we look forward to receiving your application to the winning Aquanow team!What You’ll Do:Perform security assessments and audits of our infrastructure, identifying and mitigating security gaps and weaknesses.Proven expertise in using Terraform and other infrastructure as code tools, managing vulnerabilities, policies and implementing best practices.Partner with Aquanow engineering teams to understand and resolve security incidents that arise on their services.Conduct in-depth security reviews of application code, working closely with developers to code securely from the outset and address issues early during coding and testing phases.Experience with SAST, SCA, and DAST, with the ability to address real-world challenges in these areas.Implement and manage security tools within the CI/CD pipeline, focusing on Dev Sec Ops practicesMonitor and analyze logs, events, and metrics to identify security incidents, potential breaches, and emerging threats.Understand runtime security, image scanning, network security, access control, host OS hardening, and vulnerability management in the container lifecycle.Develop and maintain incident response plans, procedures, and playbooks for effective handling of security incidents and breaches.Design, implement, and maintain security measures for our cloud infrastructure, including VPCs, security groups, IAM roles, and access controls.Maintaining security hardening configurations and guidance for the diverse set of services available across our cloud environments.You’ll Need to Have:5+ years of Security Engineering experience preferably in AWS Cloud and at least 2 of the following areas: cloud security, web application security, incident response, threat hunting, and cyber security operations.Bachelor's degree in Computer Science, Information Security, or a related field. Equivalent work experience may be considered.Strong knowledge of security principles, best practices, and common vulnerabilities (e.g., OWASP Top 10)Familiar with SAST, DAST, Fuzzing, and other tools.Experience with Wiz, Prisma Cloud, Jira, Confluence & Terraform / Cloud Formation (Infrastructure as a code)Familiarity with CI/CD tools such as Git Hub Actions, Jenkins or Circle CI. Experience with security technologies, such as firewalls, IDS/IPS, SIEM, DLP, antivirus, and vulnerability scanners.Good understanding of cloud security architecture, security assessments, audit standards for the Cloud, security threats in the cloud.Solid understanding of network protocols, TCP/IP, and network security concepts.Ability to work independently and problem solve. We’d Love to See:Automation experience with AWS. Relevant certifications such as AWS Certified Security - Specialty, CISSP, CEH are highly desirable.Experience in a global fast moving environment covering multiple time zones.Passion in all things security.Stay updated with the latest security trends & AI technologies.
This advertiser has chosen not to accept applicants from your region.

Cloud Security Engineer

Narela, Delhi Aquanow

Posted 12 days ago

Job Viewed

Tap Again To Close

Job Description

Aquanow, a leading infrastructure and liquidity provider that provides institutional and enterprise application platforms for digital assets, is looking for a Cloud Security Engineer to join our technology team in Vancouver or Toronto . This is a unique opportunity to work alongside a highly-experienced team and contribute to the development of a high-growth trading and technology company.


If you want to have your name in the success story of a globalizing company, we look forward to receiving your application to the winning Aquanow team!


What You’ll Do:


  • Perform security assessments and audits of our infrastructure, identifying and mitigating security gaps and weaknesses.
  • Proven expertise in using Terraform and other infrastructure as code tools, managing vulnerabilities, policies and implementing best practices.
  • Partner with Aquanow engineering teams to understand and resolve security incidents that arise on their services.
  • Conduct in-depth security reviews of application code, working closely with developers to code securely from the outset and address issues early during coding and testing phases.
  • Experience with SAST, SCA, and DAST, with the ability to address real-world challenges in these areas.
  • Implement and manage security tools within the CI/CD pipeline, focusing on DevSecOps practices
  • Monitor and analyze logs, events, and metrics to identify security incidents, potential breaches, and emerging threats.
  • Understand runtime security, image scanning, network security, access control, host OS hardening, and vulnerability management in the container lifecycle.
  • Develop and maintain incident response plans, procedures, and playbooks for effective handling of security incidents and breaches.
  • Design, implement, and maintain security measures for our cloud infrastructure, including VPCs, security groups, IAM roles, and access controls.
  • Maintaining security hardening configurations and guidance for the diverse set of services available across our cloud environments.


You’ll Need to Have:

  • 5+ years of Security Engineering experience preferably in AWS Cloud and at least 2 of the following areas: cloud security, web application security, incident response, threat hunting, and cyber security operations.
  • Bachelor's degree in Computer Science, Information Security, or a related field. Equivalent work experience may be considered.
  • Strong knowledge of security principles, best practices, and common vulnerabilities (e.g., OWASP Top 10)
  • Familiar with SAST, DAST, Fuzzing, and other tools.
  • Experience with Wiz, Prisma Cloud, Jira, Confluence & Terraform / CloudFormation (Infrastructure as a code)
  • Familiarity with CI/CD tools such as GitHub Actions, Jenkins or CircleCI.
  • Experience with security technologies, such as firewalls, IDS/IPS, SIEM, DLP, antivirus, and vulnerability scanners.
  • Good understanding of cloud security architecture, security assessments, audit standards for the Cloud, security threats in the cloud.
  • Solid understanding of network protocols, TCP/IP, and network security concepts.
  • Ability to work independently and problem solve.

We’d Love to See:

  • Automation experience with AWS. Relevant certifications such as AWS Certified Security - Specialty, CISSP, CEH are highly desirable.
  • Experience in a global fast moving environment covering multiple time zones.
  • Passion in all things security.
  • Stay updated with the latest security trends & AI technologies.
This advertiser has chosen not to accept applicants from your region.

Cloud Security Engineer

New Delhi, Delhi Aquanow

Posted 12 days ago

Job Viewed

Tap Again To Close

Job Description

Aquanow, a leading infrastructure and liquidity provider that provides institutional and enterprise application platforms for digital assets, is looking for a Cloud Security Engineer to join our technology team in Vancouver or Toronto . This is a unique opportunity to work alongside a highly-experienced team and contribute to the development of a high-growth trading and technology company.


If you want to have your name in the success story of a globalizing company, we look forward to receiving your application to the winning Aquanow team!


What You’ll Do:


  • Perform security assessments and audits of our infrastructure, identifying and mitigating security gaps and weaknesses.
  • Proven expertise in using Terraform and other infrastructure as code tools, managing vulnerabilities, policies and implementing best practices.
  • Partner with Aquanow engineering teams to understand and resolve security incidents that arise on their services.
  • Conduct in-depth security reviews of application code, working closely with developers to code securely from the outset and address issues early during coding and testing phases.
  • Experience with SAST, SCA, and DAST, with the ability to address real-world challenges in these areas.
  • Implement and manage security tools within the CI/CD pipeline, focusing on DevSecOps practices
  • Monitor and analyze logs, events, and metrics to identify security incidents, potential breaches, and emerging threats.
  • Understand runtime security, image scanning, network security, access control, host OS hardening, and vulnerability management in the container lifecycle.
  • Develop and maintain incident response plans, procedures, and playbooks for effective handling of security incidents and breaches.
  • Design, implement, and maintain security measures for our cloud infrastructure, including VPCs, security groups, IAM roles, and access controls.
  • Maintaining security hardening configurations and guidance for the diverse set of services available across our cloud environments.


You’ll Need to Have:

  • 5+ years of Security Engineering experience preferably in AWS Cloud and at least 2 of the following areas: cloud security, web application security, incident response, threat hunting, and cyber security operations.
  • Bachelor's degree in Computer Science, Information Security, or a related field. Equivalent work experience may be considered.
  • Strong knowledge of security principles, best practices, and common vulnerabilities (e.g., OWASP Top 10)
  • Familiar with SAST, DAST, Fuzzing, and other tools.
  • Experience with Wiz, Prisma Cloud, Jira, Confluence & Terraform / CloudFormation (Infrastructure as a code)
  • Familiarity with CI/CD tools such as GitHub Actions, Jenkins or CircleCI.
  • Experience with security technologies, such as firewalls, IDS/IPS, SIEM, DLP, antivirus, and vulnerability scanners.
  • Good understanding of cloud security architecture, security assessments, audit standards for the Cloud, security threats in the cloud.
  • Solid understanding of network protocols, TCP/IP, and network security concepts.
  • Ability to work independently and problem solve.

We’d Love to See:

  • Automation experience with AWS. Relevant certifications such as AWS Certified Security - Specialty, CISSP, CEH are highly desirable.
  • Experience in a global fast moving environment covering multiple time zones.
  • Passion in all things security.
  • Stay updated with the latest security trends & AI technologies.
This advertiser has chosen not to accept applicants from your region.

Cloud Security Engineer

Delhi, Delhi Aquanow

Posted 12 days ago

Job Viewed

Tap Again To Close

Job Description

Aquanow, a leading infrastructure and liquidity provider that provides institutional and enterprise application platforms for digital assets, is looking for a Cloud Security Engineer to join our technology team in Vancouver or Toronto . This is a unique opportunity to work alongside a highly-experienced team and contribute to the development of a high-growth trading and technology company.


If you want to have your name in the success story of a globalizing company, we look forward to receiving your application to the winning Aquanow team!


What You’ll Do:


  • Perform security assessments and audits of our infrastructure, identifying and mitigating security gaps and weaknesses.
  • Proven expertise in using Terraform and other infrastructure as code tools, managing vulnerabilities, policies and implementing best practices.
  • Partner with Aquanow engineering teams to understand and resolve security incidents that arise on their services.
  • Conduct in-depth security reviews of application code, working closely with developers to code securely from the outset and address issues early during coding and testing phases.
  • Experience with SAST, SCA, and DAST, with the ability to address real-world challenges in these areas.
  • Implement and manage security tools within the CI/CD pipeline, focusing on DevSecOps practices
  • Monitor and analyze logs, events, and metrics to identify security incidents, potential breaches, and emerging threats.
  • Understand runtime security, image scanning, network security, access control, host OS hardening, and vulnerability management in the container lifecycle.
  • Develop and maintain incident response plans, procedures, and playbooks for effective handling of security incidents and breaches.
  • Design, implement, and maintain security measures for our cloud infrastructure, including VPCs, security groups, IAM roles, and access controls.
  • Maintaining security hardening configurations and guidance for the diverse set of services available across our cloud environments.


You’ll Need to Have:

  • 5+ years of Security Engineering experience preferably in AWS Cloud and at least 2 of the following areas: cloud security, web application security, incident response, threat hunting, and cyber security operations.
  • Bachelor's degree in Computer Science, Information Security, or a related field. Equivalent work experience may be considered.
  • Strong knowledge of security principles, best practices, and common vulnerabilities (e.g., OWASP Top 10)
  • Familiar with SAST, DAST, Fuzzing, and other tools.
  • Experience with Wiz, Prisma Cloud, Jira, Confluence & Terraform / CloudFormation (Infrastructure as a code)
  • Familiarity with CI/CD tools such as GitHub Actions, Jenkins or CircleCI.
  • Experience with security technologies, such as firewalls, IDS/IPS, SIEM, DLP, antivirus, and vulnerability scanners.
  • Good understanding of cloud security architecture, security assessments, audit standards for the Cloud, security threats in the cloud.
  • Solid understanding of network protocols, TCP/IP, and network security concepts.
  • Ability to work independently and problem solve.

We’d Love to See:

  • Automation experience with AWS. Relevant certifications such as AWS Certified Security - Specialty, CISSP, CEH are highly desirable.
  • Experience in a global fast moving environment covering multiple time zones.
  • Passion in all things security.
  • Stay updated with the latest security trends & AI technologies.
This advertiser has chosen not to accept applicants from your region.

Senior Cloud Security Engineer - DevSecOps

110001 Delhi, Delhi ₹1800000 Annually WhatJobs

Posted 2 days ago

Job Viewed

Tap Again To Close

Job Description

full-time
Our client is seeking a highly motivated and experienced Senior Cloud Security Engineer specializing in DevSecOps to join their fully remote engineering team. In this critical role, you will be responsible for embedding security best practices throughout the entire software development lifecycle (SDLC) within cloud environments. You will design, implement, and manage automated security controls, conduct vulnerability assessments, and collaborate with development and operations teams to ensure the security posture of our cloud-native applications.

Responsibilities:
  • Design, implement, and maintain security solutions for cloud platforms (AWS, Azure, GCP).
  • Integrate security tools and processes into CI/CD pipelines to automate security testing and compliance checks (SAST, DAST, SCA).
  • Develop and enforce security policies, standards, and procedures for cloud environments.
  • Conduct regular vulnerability assessments, penetration testing, and security audits of cloud infrastructure and applications.
  • Respond to security incidents, conduct forensic analysis, and implement remediation measures.
  • Collaborate closely with development and operations teams to promote a DevSecOps culture and ensure secure coding practices.
  • Implement and manage identity and access management (IAM) solutions for cloud resources.
  • Monitor cloud security alerts and logs, performing threat detection and analysis.
  • Automate security tasks and workflows using scripting languages (e.g., Python, Bash) and infrastructure-as-code tools (e.g., Terraform, CloudFormation).
  • Stay current with emerging security threats, vulnerabilities, and cloud security best practices, particularly as they relate to the tech ecosystem around **Delhi, Delhi, IN**, while operating remotely.

Qualifications:
  • Bachelor's degree in Computer Science, Cybersecurity, or a related field; Master's degree preferred.
  • 5+ years of experience in information security, with a strong focus on cloud security and DevSecOps.
  • Proven experience with major cloud providers (AWS, Azure, GCP) and their security services.
  • Hands-on experience with CI/CD tools (e.g., Jenkins, GitLab CI, CircleCI) and integrating security testing.
  • Proficiency in scripting languages (Python, Bash) and infrastructure-as-code tools.
  • Strong understanding of network security, cryptography, threat modeling, and vulnerability management.
  • Experience with container security (Docker, Kubernetes) and serverless security.
  • Excellent problem-solving, analytical, and communication skills.
  • Ability to work independently and effectively in a fully remote team environment.
  • Relevant security certifications (e.g., CISSP, CCSP, AWS Certified Security - Specialty) are a plus.

This is an exciting opportunity to play a vital role in securing cutting-edge cloud applications for a forward-thinking company, offering the full benefits of remote work.
This advertiser has chosen not to accept applicants from your region.

Sr. Information Security Engineer

New Delhi, Delhi ACL Digital

Posted 23 days ago

Job Viewed

Tap Again To Close

Job Description

Experience:- 8 years to 17 years.


- Location: All (Remote working)

- Experience: 8 to 14 years in the Security Domain

Notice Period:- Immediate Joiner only



Interview Rounds:-

1. Tech 1 round internal

2. Client Round 1

3. Client Round 2


Please find below updated details for Arlo Sr Security Requirement.


Arlo requirements we need to look for candidates with over 10 years of experience in SOC, VAPT, application security, compliance, and documentation.

2. The ideal candidate should be hands-on with L2 and L3 level tasks and have experience managing stakeholders with direct communication. rotating Shift 1 from 8 AM to 4 PM and Shift 2 from 2 PM to 11 PM.

Roles and Responsibilities

Candidate will work as a member of the Corporate Security Team and assist in various day to day operational activities such as:

  • Analyze findings from vulnerability scans and penetration tests, work with stakeholders to prioritize and remediate issues.
  • Develop and maintain custom testing scripts and tools to simulate real-world attack scenarios.
  • Oversee security architecture and implement advanced security controls to mitigate identified threats.
  • Conduct email security risk assessments and manage email security solutions (e.g., Proofpoint, Mimecast, Microsoft Defender, Cisco Email Security).
  • Monitor, detect, and respond to phishing, spoofing, and email-based attacks.
  • Manage and tune SIEM, EDR, DLP, and other security technologies.
  • Guide the organization's incident response efforts and participate in forensic investigations.
  • Conduct risk assessments and security reviews for infrastructure and applications, both on-prem and in cloud environments.
  • Ensure compliance with industry regulations and security standards (e.g., ISO 27001, NIST, PCI-DSS, GDPR).
  • Contribute to secure SDLC practices by integrating security into CI/CD pipelines.
  • Support vulnerability lifecycle management and recommend remediation strategies to IT and DevOps teams.
  • Mentor junior staff and drive security awareness programs organization wide.
  • Drive Corporate Security Program based on the NIST CSF – Identify, Detect, Protect, Respond and Recover.
  • Develops, publishes, and maintains a comprehensive organization-wide information privacy and security plans, policies, procedures, and guidelines.
  • Function as primary liaison with auditors, internal teams and vendors and be the resident expert on systems and services in use for PCI compliance and reporting
  • Responsible for managing all aspects of the Vulnerability Risk Management Program including vulnerability identification, analysis, remediation coordination and reporting.
  • Lead the development, implementation, and maintenance of security policies, standards, and guidelines.
  • Identify and Monitor Corporate Networks to determine if there have been any attacks. Analyze network traffic to identify anomalies and test information security controls for weaknesses.
  • Design and implement safeguards to protect the system with the help of network engineers and other members of the Technology Services team.
  • Respond to threats by taking mitigating actions to contain the activity and minimize damage. Participate in risk assessments and breach readiness exercises for incident management.
  • Facilitate forensics analysis to determine the source of the threat. Document lessons learned as well as identify process improvements.
  • Communicate security issues to management via reports, dashboards. Provide weekly metrics on overall security posture.
  • Research emerging threats and work with the Security Operations Center (SOC).
  • Drive the Third-party vendor security evaluation.
  • Participate in the security toll-gates on SSDLC projects.
  • Implement innovative solutions to scale the program with emphasis on automation where applicable.

Qualifications

Basic Qualifications:

  • Bachelor's Degree in Business, Computer Science or in a STEM major (Science, Technology, Engineering, or Math).
  • Minimum of 8 years of experience in Information Security
  • Experience in at least one full lifecycle supporting PCI compliance is a must have
  • Experience in managing and maintaining a vulnerability management program using Qualys is a must have
  • Experience in developing content in Splunk – searches, alerts (including POC and tuning), dashboards, Apps.
  • Experience of Security Incident and Event Management (SIEM) tools (Splunk) – ingesting data (Forwarders, HTTP Event Collectors, add-ons), troubleshooting Splunk Installation.
  • Experience in Endpoint security (EDR) – Detection and Response. Help create policies and SOP for Response workflow. Experience in Cortex XDR preferred.
  • Experience in Security evaluation of third-party tools.
  • Experience in Email Security and running phishing campaign
  • Experience in Incident Management
  • Experience in system and network security.
  • Experience in Network Penetration testing.
  • Knowledge of software development, computer networks and Internet threat activity.
  • Programming experience in python, Perl and HTML/JS
  • Previous enterprise or platform/cloud vulnerability management experience and Cloud Security is a plus
  • Excellent written and verbal communication skills, including experience engaging with executive and technical audiences.
  • Must be able to work in a fast paced, high profile environment.
This advertiser has chosen not to accept applicants from your region.

Sr. Information Security Engineer

Narela, Delhi ACL Digital

Posted 23 days ago

Job Viewed

Tap Again To Close

Job Description

Experience:- 8 years to 17 years.


- Location: All (Remote working)

- Experience: 8 to 14 years in the Security Domain

Notice Period:- Immediate Joiner only



Interview Rounds:-

1. Tech 1 round internal

2. Client Round 1

3. Client Round 2


Please find below updated details for Arlo Sr Security Requirement.


Arlo requirements we need to look for candidates with over 10 years of experience in SOC, VAPT, application security, compliance, and documentation.

2. The ideal candidate should be hands-on with L2 and L3 level tasks and have experience managing stakeholders with direct communication. rotating Shift 1 from 8 AM to 4 PM and Shift 2 from 2 PM to 11 PM.

Roles and Responsibilities

Candidate will work as a member of the Corporate Security Team and assist in various day to day operational activities such as:

  • Analyze findings from vulnerability scans and penetration tests, work with stakeholders to prioritize and remediate issues.
  • Develop and maintain custom testing scripts and tools to simulate real-world attack scenarios.
  • Oversee security architecture and implement advanced security controls to mitigate identified threats.
  • Conduct email security risk assessments and manage email security solutions (e.g., Proofpoint, Mimecast, Microsoft Defender, Cisco Email Security).
  • Monitor, detect, and respond to phishing, spoofing, and email-based attacks.
  • Manage and tune SIEM, EDR, DLP, and other security technologies.
  • Guide the organization's incident response efforts and participate in forensic investigations.
  • Conduct risk assessments and security reviews for infrastructure and applications, both on-prem and in cloud environments.
  • Ensure compliance with industry regulations and security standards (e.g., ISO 27001, NIST, PCI-DSS, GDPR).
  • Contribute to secure SDLC practices by integrating security into CI/CD pipelines.
  • Support vulnerability lifecycle management and recommend remediation strategies to IT and DevOps teams.
  • Mentor junior staff and drive security awareness programs organization wide.
  • Drive Corporate Security Program based on the NIST CSF – Identify, Detect, Protect, Respond and Recover.
  • Develops, publishes, and maintains a comprehensive organization-wide information privacy and security plans, policies, procedures, and guidelines.
  • Function as primary liaison with auditors, internal teams and vendors and be the resident expert on systems and services in use for PCI compliance and reporting
  • Responsible for managing all aspects of the Vulnerability Risk Management Program including vulnerability identification, analysis, remediation coordination and reporting.
  • Lead the development, implementation, and maintenance of security policies, standards, and guidelines.
  • Identify and Monitor Corporate Networks to determine if there have been any attacks. Analyze network traffic to identify anomalies and test information security controls for weaknesses.
  • Design and implement safeguards to protect the system with the help of network engineers and other members of the Technology Services team.
  • Respond to threats by taking mitigating actions to contain the activity and minimize damage. Participate in risk assessments and breach readiness exercises for incident management.
  • Facilitate forensics analysis to determine the source of the threat. Document lessons learned as well as identify process improvements.
  • Communicate security issues to management via reports, dashboards. Provide weekly metrics on overall security posture.
  • Research emerging threats and work with the Security Operations Center (SOC).
  • Drive the Third-party vendor security evaluation.
  • Participate in the security toll-gates on SSDLC projects.
  • Implement innovative solutions to scale the program with emphasis on automation where applicable.

Qualifications

Basic Qualifications:

  • Bachelor's Degree in Business, Computer Science or in a STEM major (Science, Technology, Engineering, or Math).
  • Minimum of 8 years of experience in Information Security
  • Experience in at least one full lifecycle supporting PCI compliance is a must have
  • Experience in managing and maintaining a vulnerability management program using Qualys is a must have
  • Experience in developing content in Splunk – searches, alerts (including POC and tuning), dashboards, Apps.
  • Experience of Security Incident and Event Management (SIEM) tools (Splunk) – ingesting data (Forwarders, HTTP Event Collectors, add-ons), troubleshooting Splunk Installation.
  • Experience in Endpoint security (EDR) – Detection and Response. Help create policies and SOP for Response workflow. Experience in Cortex XDR preferred.
  • Experience in Security evaluation of third-party tools.
  • Experience in Email Security and running phishing campaign
  • Experience in Incident Management
  • Experience in system and network security.
  • Experience in Network Penetration testing.
  • Knowledge of software development, computer networks and Internet threat activity.
  • Programming experience in python, Perl and HTML/JS
  • Previous enterprise or platform/cloud vulnerability management experience and Cloud Security is a plus
  • Excellent written and verbal communication skills, including experience engaging with executive and technical audiences.
  • Must be able to work in a fast paced, high profile environment.
This advertiser has chosen not to accept applicants from your region.
Be The First To Know

About the latest Cloud security engineer Jobs in Delhi !

Sr. Information Security Engineer

Delhi, Delhi ACL Digital

Posted 23 days ago

Job Viewed

Tap Again To Close

Job Description

Experience:- 8 years to 17 years.


- Location: All (Remote working)

- Experience: 8 to 14 years in the Security Domain

Notice Period:- Immediate Joiner only



Interview Rounds:-

1. Tech 1 round internal

2. Client Round 1

3. Client Round 2


Please find below updated details for Arlo Sr Security Requirement.


Arlo requirements we need to look for candidates with over 10 years of experience in SOC, VAPT, application security, compliance, and documentation.

2. The ideal candidate should be hands-on with L2 and L3 level tasks and have experience managing stakeholders with direct communication. rotating Shift 1 from 8 AM to 4 PM and Shift 2 from 2 PM to 11 PM.

Roles and Responsibilities

Candidate will work as a member of the Corporate Security Team and assist in various day to day operational activities such as:

  • Analyze findings from vulnerability scans and penetration tests, work with stakeholders to prioritize and remediate issues.
  • Develop and maintain custom testing scripts and tools to simulate real-world attack scenarios.
  • Oversee security architecture and implement advanced security controls to mitigate identified threats.
  • Conduct email security risk assessments and manage email security solutions (e.g., Proofpoint, Mimecast, Microsoft Defender, Cisco Email Security).
  • Monitor, detect, and respond to phishing, spoofing, and email-based attacks.
  • Manage and tune SIEM, EDR, DLP, and other security technologies.
  • Guide the organization's incident response efforts and participate in forensic investigations.
  • Conduct risk assessments and security reviews for infrastructure and applications, both on-prem and in cloud environments.
  • Ensure compliance with industry regulations and security standards (e.g., ISO 27001, NIST, PCI-DSS, GDPR).
  • Contribute to secure SDLC practices by integrating security into CI/CD pipelines.
  • Support vulnerability lifecycle management and recommend remediation strategies to IT and DevOps teams.
  • Mentor junior staff and drive security awareness programs organization wide.
  • Drive Corporate Security Program based on the NIST CSF – Identify, Detect, Protect, Respond and Recover.
  • Develops, publishes, and maintains a comprehensive organization-wide information privacy and security plans, policies, procedures, and guidelines.
  • Function as primary liaison with auditors, internal teams and vendors and be the resident expert on systems and services in use for PCI compliance and reporting
  • Responsible for managing all aspects of the Vulnerability Risk Management Program including vulnerability identification, analysis, remediation coordination and reporting.
  • Lead the development, implementation, and maintenance of security policies, standards, and guidelines.
  • Identify and Monitor Corporate Networks to determine if there have been any attacks. Analyze network traffic to identify anomalies and test information security controls for weaknesses.
  • Design and implement safeguards to protect the system with the help of network engineers and other members of the Technology Services team.
  • Respond to threats by taking mitigating actions to contain the activity and minimize damage. Participate in risk assessments and breach readiness exercises for incident management.
  • Facilitate forensics analysis to determine the source of the threat. Document lessons learned as well as identify process improvements.
  • Communicate security issues to management via reports, dashboards. Provide weekly metrics on overall security posture.
  • Research emerging threats and work with the Security Operations Center (SOC).
  • Drive the Third-party vendor security evaluation.
  • Participate in the security toll-gates on SSDLC projects.
  • Implement innovative solutions to scale the program with emphasis on automation where applicable.

Qualifications

Basic Qualifications:

  • Bachelor's Degree in Business, Computer Science or in a STEM major (Science, Technology, Engineering, or Math).
  • Minimum of 8 years of experience in Information Security
  • Experience in at least one full lifecycle supporting PCI compliance is a must have
  • Experience in managing and maintaining a vulnerability management program using Qualys is a must have
  • Experience in developing content in Splunk – searches, alerts (including POC and tuning), dashboards, Apps.
  • Experience of Security Incident and Event Management (SIEM) tools (Splunk) – ingesting data (Forwarders, HTTP Event Collectors, add-ons), troubleshooting Splunk Installation.
  • Experience in Endpoint security (EDR) – Detection and Response. Help create policies and SOP for Response workflow. Experience in Cortex XDR preferred.
  • Experience in Security evaluation of third-party tools.
  • Experience in Email Security and running phishing campaign
  • Experience in Incident Management
  • Experience in system and network security.
  • Experience in Network Penetration testing.
  • Knowledge of software development, computer networks and Internet threat activity.
  • Programming experience in python, Perl and HTML/JS
  • Previous enterprise or platform/cloud vulnerability management experience and Cloud Security is a plus
  • Excellent written and verbal communication skills, including experience engaging with executive and technical audiences.
  • Must be able to work in a fast paced, high profile environment.
This advertiser has chosen not to accept applicants from your region.

Information security analyst

Delhi, Delhi Advantmed India LLP

Posted today

Job Viewed

Tap Again To Close

Job Description

permanent
Job Description – Information Security Analyst (Compliance & Stakeholder Engagement Focus)Location: RemoteDepartment: ComplianceEmployment Type: Full-TimeReports To: Manager / Sr Manager - Compliance TeamAbout UsWe are a HITRUST-certified Business Associate (BA) operating in the healthcare space, committed to securing sensitive health data and ensuring full compliance with HIPAA Security, Privacy, and Breach Notification Rules. Our Information Security & Compliance team plays a critical role in protecting data, building trust with clients, and supporting regulatory adherence across the organization.Job SummaryThis role is ideal for a people-oriented, proactive communicator who enjoys collaborating with diverse teams, coordinating training and onboarding sessions, and being the bridge between compliance, IT, and business stakeholders. While a foundational understanding of information security and compliance is expected, strong communication, facilitation, and stakeholder engagement skills are the true keys to success in this position.Fresh graduates with an interest in cybersecurity, compliance, and stakeholder coordination are encouraged to apply. Full training, mentorship, and hands-on project involvement will be provided.Key ResponsibilitiesFacilitate security awareness and compliance training sessions during employee onboarding and ongoing engagements.Act as a point of contact for internal teams and external clients regarding compliance-related queries.Help coordinate meetings, compliance walkthroughs, and documentation reviews across IT, HR, Legal, and client teams.Assist in client assessments, RFPs, RFIs, and security questionnaires by working closely with SMEs.Collaborate with IT and operations to ensure Change Management and Access Control practices are followed and well-documented.Support the incident response process, including maintaining logs and facilitating communication between teams.Help manage internal documentation: policies, procedures, training materials, and reports.Track changes in industry regulations and communicate implications to relevant stakeholders in a clear, understandable manner.Participate in internal and external audits by organizing evidence, facilitating interviews, and ensuring preparedness.Required QualificationsBachelor’s degree in Information Security, Computer Science, IT, Engineering, or a related field.Strong interest in compliance, data privacy, communication, and cross-functional collaboration.Excellent verbal and written communication skills; ability to convey technical concepts to non-technical audiences.Comfortable conducting presentations, hosting sessions, and coordinating with multiple stakeholders.Detail-oriented with a proactive, organized approach to work.Willingness to work the 4:00 PM – 1:30 AM IST shift to support U. S.-based clients.Preferred QualificationsFamiliarity with HIPAA, HITRUST, ISO 27001, or NIST frameworks.Exposure to GRC tools, IT controls, or compliance documentation (preferred, not mandatory).27001:2022 Lead Auditor certification is a plus, but not required.Why Join Us?Be the communication hub for a fast-paced, compliance-driven team working in the healthcare sector.Gain real-world experience in HITRUST, HIPAA, and global cybersecurity frameworks.Collaborate with IT, Legal, HR, and client teams on meaningful projects that protect sensitive data.Work in a supportive, learning-focused environment with clear career growth opportunities in compliance, training, and stakeholder engagement
This advertiser has chosen not to accept applicants from your region.

Information Security Manager

Delhi, Delhi CryptoMize

Posted today

Job Viewed

Tap Again To Close

Job Description

Responsibilities

END -->

Our Principles

These are some of the principles that we strongly believe in, preach and actually follow as well.

Commitments

We clearly commit what we can do, by when can we do it and how we would do it, And then we do it.

Confidentiality

We are extremely paranoid about protecting the confidentiality of what we do, for whom and how we do it.

Comfortability

We ensure comfortability of you and your team with ours, which can only come from complete transparency.

Capability

We keep improving our already awesome capabilities by investing all resources at our disposal.

Information Security Manager Jobs

Information Security Manager Career Path

Information Security Manager Responsibilities


• Creating and managing security strategies
• Oversee information security audits, whether performed by organization or third-party personnel
•Manage security team members and all other information security personnel
• Provide training to information security personnel during onboarding
• Evaluate department budget and costs associated with technological training
• Assess current technology architecture for vulnerabilities, weaknesses and for possible upgrades or improvement
• Implement and oversee technological upgrades, improvements and major changes to the information security environment
• Serve as a focal point of contact for the information security team and the customer or organization
• Manage and configure physical security, disaster recovery and data backup systems
• Communicate information security goals and new programs effectively with other department managers within the organization

Information Security Manager Required Skills


• Bachelor’s degree
•Excellent communication skills.
• Strong communication skills with a collaborative spirit
• Good leadership and ability to organize.
• Organized, deadline-driven, and detail-focused.

Our Services Know More About Us

Perception Perfection

CryptoMize is dedicated to ensure a prominent progress to how the world perceives you. We help you to establish your perception to the extent of perfection with our devised strategic plan and techniques.

Reputation

  • Reputation Analysis
  • Damage Control
  • Review Optimization
  • Threat Analysis
  • Crisis Management
  • Reputation Monitoring
  • Sentiment

  • Digital Listening
  • Sentiment Analysis
  • Dialogue Control
  • Review Management
  • Trend Management
  • Search Management
  • Promotional Parlance

    CryptoMize introduces you to Promotional Parlance which not only promotes your cause but provides a personalized-edge. Our solutions are tailored in a strategic way that attracts the audience in a way that they are most receptive to.

    Marketing

  • Buzz Marketing
  • Content Marketing
  • Local Business Marketing
  • Search Engine Marketing
  • Social Media Marketing
  • Black Hat Marketing
  • Outreach

  • Trend Analysis
  • Viral Maketing
  • Link Building
  • Website Traffic
  • SEO
  • Social Media Management
  • Public Relations

    CryptoMize formulates a proactive strategy to amplify your Media Outreach without compromising your reputation. CryptoMize assists you in communicating with your intended audience to achieve a global outreach.

    Brand

  • Brand Analysis
  • Brand Monitoring
  • Brand Protection
  • Brand Augmentation
  • Competitor Analysis
  • Competition Management
  • Media

  • Content Creation
  • Media Monitoring
  • Local Visibility
  • Mass Communication
  • Influencer Marketing
  • Identity Management
  • Political Catalysis

    We bring efficiency to governance operations through intelligence and strategic thinking. By integrating digital approaches, CryptoMize seeks to improve Campaign Strategies and governance in general.

    Politics

  • Demography Derivation
  • Constituency Profileration
  • Party Propulsion
  • Candidate Supremacy
  • Competition Management
  • Voter Enticement
  • Consultancy

  • Media Consultancy
  • Marketing Consultancy
  • Political Consultancy
  • IT Consultancy
  • Privacy Consultancy
  • Security Consultancy
  • Policing Phronesis

    CryptoMize, with the help of its special mix of Forensics and Consultancy, aims to handle all sorts of cyber crimes affecting your organisation and provide you with the best guidance for such situations.

    Intelligence

  • Governance Support
  • Open Source Intelligence
  • Big Data Mining
  • Stretegic Intelligence
  • Operational Intelligence
  • Tactical Intelligence
  • Forensics

  • Mobile Forensics
  • Network Forensics
  • Data Recovery
  • Reverse Engineering
  • Cyber Forensics
  • Cyber Crime Investigation
  • Privacy Enforcement

    CryptoMize is driven by the belief that none of your valuable data should go unprotected. Our experts put concerted effort to preserve your privacy in order to minimize the impact of cybercrime.

    Privacy

  • Encryption
  • Anonymity
  • Data Privacy
  • Infrastructure Privacy
  • Information Privacy
  • Communication Privacy
  • Security

  • Communication Security
  • Data Security
  • Security Training
  • Website Security
  • Penetration Testing
  • Vulnerability Assessment
  • What Makes Us Different?

    CryptoMize offers a full spectrum of elite services derived with preemptive analysis and strategic planning to our clients. We work efficiently with our proficient and proactive team by utilising extraordinary tools.

    Collaboration with Dignitaries

    We collaborate with highly influential and prominent personalities around the world. Being transcendental and visionary has its own benefits, our supremacy of being omnipresent empowers us to command, control and maneuver information from the internet.

    01

    Powerful Team

    CryptoMize is the combination of a powerful team that works on a supportive, transparent and encouraging platform. With spontaneity and dedication to the advancement of technology, we aspire to be better at what we do for people who trust us with their information and projects.

    02

    Triple-Proof Approach

    We execute a triple-proof approach from conducting thorough research, developing strong strategies, to guaranteeing information security. This proves beneficial for our clients to reach their desired goal.

    03

    Our Core Values

    Trust

    We seek to connect and build relationships with our clients.That is our core principle of our work ethic which we fully-abide to. We works on 3 principles: Respect, Honesty and Transparency.

    Reliability

    Commitment is an act, not a word. We believe in delivering and living up to your expectations. We have grown into a global agency only through our commitment to deliver and our reliability factor.

    Safety

    We are extremely paranoid about protecting our client’s safety of what we do, for whom and how we do it. We maintain absolute non disclosure and confidentiality to ensure that nothing sensitive goes out.

    Passion

    Our passion generates enthusiasm for what we do and how we do it. We inspire, find creative ways and nurture ideas with passion. We strategize based on audience attention.

    Innovation

    We believe in innovation, change and risk taking. With technology, we reinvent ourselves. Innovation is the reason how we are able to eliminate obstacles for cultivating growth.

    Excellence

    We ensure to maintain your eminence by reinventing ourselves with our core values that inspire excellence. We strive for quality in everything we do.

    OUR PRESENCE

    Our Journey So Far

    Our presence is all across the globe. Our impact can be seen in 03+ continents and 30+ countries, we know how to shape people's digital lives. We have a vast range of projects, from running political campaigns, shaping people's perceptions to enforcing privacy, we work with a futuristic approach and always look ahead of time. We never restrict ourselves to specific sectors rather make sure that our services are requisites for any and everybody in the world. With our elite clientele we show supremacy of work and build trustworthy relationships. We believe intelligence is the future and aim towards collective good and growth of all! 3+ Our Presence

    Successfully establishing ourselves globally in 3+ continents.

    70+ Our Services

    Giving us an edge over everyone else who is trying to solve similar problems.

    10+ Years of Experience

    Serving great value to our clients since the past decade.

    NEVERENDING OPPORTUNITIES FOR YOU

    Our Vision

    In the days of yore, gathering intelligence was a matter of sending out spies. Today the world has changed, and intelligence is as much about technology as it is about people. We are redefining what it means to truly protect you and your business. From network security, to cloud recovery, to data recovery, CryptoMize focuses on your technology’s vulnerabilities so you can avoid pitfalls and stay ahead.

  • We have a singular vision – to be the ultimate ‘go-to’ company for digital reputation management. Our approach is holistic, covering reputation management, social media management, and crisis management.
  • We uncover security flaws in your technology, identify new threats, and create proactive measures to protect you.
  • We provide innovative IT solutions to clients of all sizes. Our expertise is in all levels of the information technology stack, including network architecture and cybersecurity.
  • This advertiser has chosen not to accept applicants from your region.
     

    Nearby Locations

    Other Jobs Near Me

    Industry

    1. request_quote Accounting
    2. work Administrative
    3. eco Agriculture Forestry
    4. smart_toy AI & Emerging Technologies
    5. school Apprenticeships & Trainee
    6. apartment Architecture
    7. palette Arts & Entertainment
    8. directions_car Automotive
    9. flight_takeoff Aviation
    10. account_balance Banking & Finance
    11. local_florist Beauty & Wellness
    12. restaurant Catering
    13. volunteer_activism Charity & Voluntary
    14. science Chemical Engineering
    15. child_friendly Childcare
    16. foundation Civil Engineering
    17. clean_hands Cleaning & Sanitation
    18. diversity_3 Community & Social Care
    19. construction Construction
    20. brush Creative & Digital
    21. currency_bitcoin Crypto & Blockchain
    22. support_agent Customer Service & Helpdesk
    23. medical_services Dental
    24. medical_services Driving & Transport
    25. medical_services E Commerce & Social Media
    26. school Education & Teaching
    27. electrical_services Electrical Engineering
    28. bolt Energy
    29. local_mall Fmcg
    30. gavel Government & Non Profit
    31. emoji_events Graduate
    32. health_and_safety Healthcare
    33. beach_access Hospitality & Tourism
    34. groups Human Resources
    35. precision_manufacturing Industrial Engineering
    36. security Information Security
    37. handyman Installation & Maintenance
    38. policy Insurance
    39. code IT & Software
    40. gavel Legal
    41. sports_soccer Leisure & Sports
    42. inventory_2 Logistics & Warehousing
    43. supervisor_account Management
    44. supervisor_account Management Consultancy
    45. supervisor_account Manufacturing & Production
    46. campaign Marketing
    47. build Mechanical Engineering
    48. perm_media Media & PR
    49. local_hospital Medical
    50. local_hospital Military & Public Safety
    51. local_hospital Mining
    52. medical_services Nursing
    53. local_gas_station Oil & Gas
    54. biotech Pharmaceutical
    55. checklist_rtl Project Management
    56. shopping_bag Purchasing
    57. home_work Real Estate
    58. person_search Recruitment Consultancy
    59. store Retail
    60. point_of_sale Sales
    61. science Scientific Research & Development
    62. wifi Telecoms
    63. psychology Therapy
    64. pets Veterinary
    View All Cloud Security Engineer Jobs View All Jobs in Delhi