What Information Security Specialist Jobs are in India?
Showing 2984 Information Security Specialist jobs in India
The Principal Information Security Specialist, Threat Intelligence
Posted 5 days ago
Job Viewed
Job Description
Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion - it's a place where you can grow, belong and thrive.
**Your day at NTT DATA**
The Principal Information Security Incident Response Analyst is a highly skilled subject matter exper, responsible for providing an escalation path for Level 1 and 2 workflows for high-risk incidents.
Additionally, this role facilitates proactive security measures through analytics and threat hunting processes and is responsible for detecting and monitoring escalated threats and suspicious activity affecting company technology domain (servers, networks, appliances and all infrastructure supporting production applications for the enterprise, as well as development environments).
This role is responsible to manage critical and high-risk exposures in the daily operation of real-time threat management activities.
This senior technical resource facilitates problem resolution and mentoring for the overall team. This includes operational security tasks such as performance and availability monitoring, log monitoring, security incident detection and response, security event reporting, and content maintenance (tuning).
**Key responsibilities:**
+ Manages weekly sprints in Threat Hunting analytics.
+ Manages the processing of security alerts, events, and notifications (e.g. via email, ticketing, virus warning, intelligence feeds, workflow, etc.).
+ Manages the notification of internal and/or external teams according to agreed alert priority levels, and escalation trees.
+ Monitors events for suspicious events, investigation, and escalate where applicable.
+ Maintains an understanding of current and emerging threats, vulnerabilities, and trends.
+ Prioritizes threat analysis based on risks associated with each threat and working with the appropriate teams to ensure related communications are in line with company best practice and recommendations.
+ Acts as the primary technical lead for the Computer Incident Response Team (CIRT), coordinating the work of technical staff from various departments, as well as the work of third-party technical experts.
+ Ties third party attack monitoring services and threat reporting services, into internal CIRT communications systems, so as to better alert CIRT team members about what's coming, and what preparations to undertake before production systems at NTT Ltd are damaged (and what remedial actions to take after damage has taken place).
+ Regularly reviews the current configurations of NTT Ltd production information systems and networks, with an eye towards the steps that attackers must take to break through existing defenses, and recommends configuration changes, system setting changes, network topology changes, and other modifications that would enhance the overall level of security.
+ Designs, specifies, programs, deploys, and fine-tunes custom software which analyses the vast amount of log, audit trail, and other recorded activity information that modern systems record, so as to be able to immediately detect unauthorized activity, most importantly intrusion by unauthorized parties and the execution of unauthorized software.
+ Designs automated scripts, automated contingency plans, and other programmed responses which are launched when an attack against company systems has been detected.
+ Designs, specifies, programs, debugs, and oversees the work of others related to middleware, and other system integration tools, which tie multiple security monitoring systems together so as to better meet company information security needs.
+ Performs post-mortem analyze with logs, network traffic flows, and other recorded information to identify intrusions by unauthorized parties, as well as unauthorized activities of authorized users.
+ Reviews incident and problem management reports to identify potential security weaknesses and perform an impact and risk analysis, developing recommendations for highlighted risks, ensuring that these risks and solutions are presented to the relevant stakeholders.
+ Ensures that security service audit schedules are developed, scoped, discussed and agreed with the business.
+ Reviews access authorization for compliance with policy, administration security controls for effectiveness, security on the operational systems and verify that security monitoring is working.
**To thrive in this role, you need to have:**
+ Ability to remain calm and focused during stressful situations.
+ Ability to listen and adapt to changing situations.
+ Ability to recognize potential problems and take steps to fix the issues.
+ Extended understanding of complex inter-relationships in an overall system or process.
+ Extended knowledge of technological advances within the information security arena.
+ Demonstrates analytical thinking and a proactive approach.
+ Displays consistent client focus and orientation.
+ Extended knowledge of information security management and policies.
+ Extended understanding of current and emerging threats, vulnerabilities, and trends.
+ Extended understanding of malware forensics, network forensics, and computer forensics also highly desirable.
+ Ability to statically and dynamically analyze malware to determine target and intention.
+ Ability to uncover and document tools, techniques, procedures used by cyber adversaries in attacking managed infrastructure.
+ Sound decision making abilities with demonstrate teamwork and collaboration skills.
+ Displays good planning and organizing ability.
**Academic qualifications and certifications:**
+ Bachelor's degree or equivalent in Information Technology, Computer Science or related field.
+ SANS GIAC Security Essentials (GSEC) or equivalent preferred.
+ SANS GIAC Certified Intrusion Analyst (GCIA) or equivalent preferred.
+ SANS GIAC Certified Incident Handler (GCIH) or equivalent preferred.
+ Industry certifications such as CISSP, CISM, CISA, CEH, CHFI preferred.
+ Information Technology / ITILSM / ICT Security / ITIL v3 preferred.
**Required experience:**
+ Extended experience in a Technology Information Security Industry.
+ Extended experience working in a SOC/CSIRT.
+ Extended experience or knowledge of SIEM and IPS technologies.
+ Extended experience with Wireshark, tcpdump, Remnux, decoders for conducting payload analysis.
+ Extended experience in building SIEM rules and/or indicators of compromise for threat detection.
**Workplace type** **:**
Hybrid Working
**About NTT DATA**
NTT DATA is a $30+ billion business and technology services leader, serving 75% of the Fortune
Global 100. We are committed to accelerating client success and positively impacting society through
responsible innovation. We are one of the world's leading AI and digital infrastructure providers, with
unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers and
application services. Our consulting and industry solutions help organizations and society move
confidently and sustainably into the digital future. As a Global Top Employer, we have experts in more
than 70 countries. We also offer clients access to a robust ecosystem of innovation centers as well as
established and start-up partners. NTT DATA is part of NTT Group, which invests over $3 billion each
year in R&D.
**Equal Opportunity Employer**
NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today.
**Third parties fraudulently posing as NTT DATA recruiters**
NTT DATA recruiters will never ask job seekers or candidates for payment or banking information during the recruitment process, for any reason. Please remain vigilant of third parties who may attempt to impersonate NTT DATA recruiters whether in writing or by phone in order to deceptively obtain personal data or money from you. All email communications from an NTT DATA recruiter will come from an **@nttdata.com** email address. If you suspect any fraudulent activity, please contact us ( ) .
Is this job a match or a miss?
Information Security Specialist
Posted 5 days ago
Job Viewed
Job Description
- Assisting in the implementation and maintenance of security controls.
- Monitoring systems for security breaches and suspicious activities.
- Conducting regular security audits and checks.
- Supporting incident response activities.
- Maintaining security documentation and records.
- Assisting with security awareness training initiatives.
- Implementing and enforcing security policies and procedures.
- Performing vulnerability assessments and reporting findings.
- Collaborating with IT staff on security-related projects.
- Staying informed about current cybersecurity threats and trends.
- Bachelor's degree in Computer Science, Information Technology, or a related field.
- 1-3 years of experience in information security or a related IT role.
- Basic understanding of network security, firewalls, and anti-virus solutions.
- Familiarity with security best practices and principles.
- Good analytical and problem-solving skills.
- Effective written and verbal communication skills.
- Ability to work collaboratively in a hybrid team setting.
- Basic knowledge of security compliance standards is a plus.
- Eagerness to learn and grow in the cybersecurity field.
- Attention to detail and a proactive approach to security.
- Annual salary of ₹.
- Health and wellness benefits.
- Paid time off and holidays.
- Opportunities for training and skill development.
- Hybrid work flexibility.
- Exposure to various aspects of information security.
- Mentorship from experienced security professionals.
- Supportive team environment.
- Retirement savings options.
- Company-sponsored professional development.
Is this job a match or a miss?
Job Description
- Develop, implement, and maintain information security policies, standards, and procedures.
- Conduct risk assessments and develop mitigation strategies for identified risks.
- Ensure compliance with relevant regulations and industry standards (e.g., ISO 27001, GDPR, HIPAA).
- Manage and coordinate internal and external security audits.
- Develop and deliver security awareness training programs.
- Monitor and report on the effectiveness of the organization's security controls.
- Assist in the development and maintenance of business continuity and disaster recovery plans.
- Manage vendor risk assessments and ensure third-party compliance.
- Stay updated on GRC best practices, emerging threats, and regulatory changes.
- Collaborate with various departments to integrate security and compliance requirements into business processes.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Minimum of 3 years of experience in information security, with a focus on GRC.
- Solid understanding of GRC frameworks, risk management methodologies, and compliance requirements.
- Experience in developing security policies and procedures.
- Knowledge of information security controls and best practices.
- Strong analytical, problem-solving, and documentation skills.
- Excellent communication and interpersonal skills.
- Ability to work independently and as part of a team.
- Familiarity with security audit processes.
- Relevant certifications such as CompTIA Security+, CRISC, or CISA are a plus.
Is this job a match or a miss?
Information Security Specialist - Penetration Tester
Posted 5 days ago
Job Viewed
Job Description
- Conduct comprehensive penetration tests on web applications, network infrastructure, and APIs.
- Identify, analyze, and document security vulnerabilities, providing detailed explanations and evidence.
- Develop and execute exploitation strategies to demonstrate the impact of identified vulnerabilities.
- Perform vulnerability scanning and utilize various security tools (e.g., Nessus, Burp Suite, Metasploit).
- Collaborate with development and operations teams to provide actionable recommendations for vulnerability remediation.
- Stay up-to-date with the latest penetration testing techniques, tools, and emerging threats.
- Assist in developing and refining security testing methodologies and processes.
- Participate in security code reviews to identify potential flaws early in the development lifecycle.
- Communicate findings clearly and concisely to technical and non-technical stakeholders.
- Contribute to the overall security posture enhancement of the organization.
- Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent practical experience.
- Minimum of 3 years of hands-on experience in penetration testing and vulnerability assessment.
- Proven experience with common penetration testing tools and frameworks (e.g., Kali Linux, Metasploit, Nmap, Burp Suite).
- Strong understanding of web application security principles (OWASP Top 10) and network protocols.
- Experience in scripting languages such as Python, Bash, or PowerShell is highly beneficial.
- Excellent analytical, problem-solving, and reporting skills.
- Ability to work effectively in a team environment and communicate findings clearly.
- Passion for cybersecurity and a proactive approach to security testing.
- Willingness to work full-time at our **Visakhapatnam, Andhra Pradesh** office.
Is this job a match or a miss?
Information Security Specialist - Endpoint Protection
Posted 5 days ago
Job Viewed
Job Description
Our client, a rapidly growing e-commerce enterprise, is seeking a dedicated Information Security Specialist with a focus on Endpoint Protection to join their dedicated security team in Jaipur, Rajasthan . This role is vital for safeguarding the company's endpoints (laptops, desktops, servers) against a wide range of cyber threats. You will be responsible for deploying, configuring, managing, and optimizing endpoint security solutions, including Antivirus, EDR (Endpoint Detection and Response), and data loss prevention (DLP) tools. The ideal candidate will possess a strong technical understanding of endpoint security principles, experience with common endpoint security platforms, and the ability to analyze endpoint-level threats. You will work closely with IT operations and other security teams to ensure comprehensive protection and rapid response to any endpoint-related security incidents. This is an exciting opportunity to contribute to the security posture of a dynamic organization in the vibrant city of Jaipur, Rajasthan .
Key Responsibilities- Deploy, configure, and manage endpoint security solutions (Antivirus, EDR, DLP, HIPS).
- Monitor endpoint security logs and alerts for suspicious activities and potential threats.
- Investigate and respond to endpoint security incidents, including malware infections and unauthorized access.
- Perform regular health checks and performance tuning of endpoint security agents and management consoles.
- Develop and implement policies and procedures for endpoint security best practices.
- Stay up-to-date with the latest endpoint threats, vulnerabilities, and security technologies.
- Collaborate with IT operations to ensure timely patching and vulnerability management of endpoints.
- Assist in the development and delivery of endpoint security awareness training.
- Troubleshoot endpoint security issues and provide technical support to end-users.
- Contribute to the overall information security strategy and roadmap.
- Bachelor's degree in Computer Science, Information Technology, or a related field.
- Minimum of 3 years of experience in information security, with a strong focus on endpoint security management.
- Hands-on experience with leading endpoint security solutions (e.g., CrowdStrike, Microsoft Defender for Endpoint, Carbon Black, Symantec, McAfee).
- Understanding of endpoint operating systems (Windows, macOS, Linux) and their security features.
- Knowledge of common malware, attack vectors, and remediation techniques.
- Experience with scripting for automation (e.g., PowerShell, Python) is a plus.
- Familiarity with data loss prevention (DLP) concepts and technologies.
- Strong analytical and problem-solving skills.
- Excellent communication and interpersonal skills.
- Relevant certifications such as CompTIA Security+, CySA+, or vendor-specific endpoint security certifications are advantageous.
Our client offers a competitive salary, comprehensive health benefits, and opportunities for professional development and training. This role is based in Jaipur, Rajasthan , providing a great work environment within a growing company. Access to modern endpoint security tools and technologies. A collaborative team culture focused on proactive security. Generous paid time off and retirement benefits. Our client is an equal opportunity employer.
Is this job a match or a miss?
Information Security Specialist - Data Protection
Posted 5 days ago
Job Viewed
Job Description
Is this job a match or a miss?
Information Security Specialist (Threat Intelligence)
Posted 5 days ago
Job Viewed
Job Description
- Collect, analyze, and synthesize threat intelligence from open-source, commercial, and governmental sources.
- Develop and maintain profiles of threat actors, their tactics, techniques, and procedures (TTPs).
- Assess the relevance and potential impact of identified threats on the organization's assets and operations.
- Produce timely and actionable threat intelligence reports and briefings for various stakeholders.
- Collaborate with security operations, incident response, and vulnerability management teams to integrate threat intelligence.
- Develop and refine threat hunting methodologies based on intelligence findings.
- Manage and utilize threat intelligence platforms (TIPs) and tools.
- Monitor the dark web and other adversarial channels for relevant threat information.
- Contribute to the continuous improvement of the organization's threat intelligence program.
- Bachelor's degree in Computer Science, Cybersecurity, Intelligence Studies, or a related field.
- 3-5 years of experience in information security, with a specific focus on threat intelligence or security analysis.
- Demonstrated understanding of global threat actors, motivations, and TTPs.
- Proficiency in using various threat intelligence sources and tools.
- Strong analytical and critical thinking skills.
- Excellent written and verbal communication skills, with the ability to present complex information clearly.
- Experience with data analysis and visualization techniques.
- Knowledge of security frameworks and standards is beneficial.
- Familiarity with security operations center (SOC) environments.
- Prior experience in Indore, Madhya Pradesh is a plus.
Is this job a match or a miss?
Information Security Specialist - Vulnerability Management
Posted 5 days ago
Job Viewed
Job Description
Our client, a major player in the manufacturing sector, is seeking a dedicated Information Security Specialist focused on Vulnerability Management. This role operates on a hybrid model, offering a balance of remote work and on-site presence in Coimbatore, Tamil Nadu, IN . You will be instrumental in identifying, assessing, and prioritizing security vulnerabilities across our IT infrastructure and applications. Your work will be crucial in reducing our attack surface and strengthening our overall security posture against potential threats. You will collaborate closely with IT operations, system administrators, and development teams to ensure timely remediation of discovered vulnerabilities.
Key Responsibilities- Plan, schedule, and execute regular vulnerability scans across the organization's network, systems, and applications.
- Analyze scan results to identify and validate security vulnerabilities, distinguishing between true positives and false positives.
- Prioritize vulnerabilities based on severity, asset criticality, and potential impact.
- Work with relevant teams to track remediation efforts and verify the effectiveness of implemented fixes.
- Develop and maintain comprehensive reports on vulnerability status, trends, and remediation progress for management.
- Contribute to the continuous improvement of the vulnerability management program, including tool selection and process optimization.
- Stay informed about emerging threats and vulnerabilities relevant to the organization's technology stack.
- Assist in security assessments and penetration testing activities as needed.
- Bachelor's degree in Computer Science, Information Security, or a related field.
- 2-4 years of experience in information security, with a specific focus on vulnerability assessment and management.
- Hands-on experience with vulnerability scanning tools (e.g., Nessus, Qualys, Rapid7).
- Understanding of common vulnerabilities (e.g., OWASP Top 10) and exploitation techniques.
- Knowledge of network protocols, operating systems (Windows, Linux), and application security concepts.
- Strong analytical and problem-solving skills, with attention to detail.
- Excellent communication and collaboration skills to work effectively with various technical teams.
- Experience with reporting and tracking remediation efforts using ticketing systems is a plus.
- Ability to thrive in a hybrid work environment, demonstrating strong self-management skills.
Our client offers a competitive salary, comprehensive medical benefits, paid vacation, and retirement planning assistance. This hybrid role provides flexibility while ensuring team cohesion and collaboration. Opportunities for professional development, training, and certifications are available to enhance your skills. Join a stable and growing company in the manufacturing sector and make a significant impact on our cybersecurity defenses.
Is this job a match or a miss?
Job Description
**Job Description** This position will be working collaboratively with many teams across Pearson and Pearson Professional Assessments, including Development, Global Business Solutions, Business Development, Global Business Assurance and Program Management. The specialist, Information Security, provides internal subject matter expertise with regard to Pearson Security Services and supports the operational execution of departmental strategies
PRIMARY RESPONSIBILITIES (Listed in order of importance with estimated amount of time spent on each task)
60% Web Monitoring and Data Forensics
+ Serve as the primary security point of contact for assigned clients, owning day-to-day security communications, leading client discussions, creating client-facing reports, and responding to ad-hoc security inquiries and escalations.
+ Liaise with program management, other functional areas within Pearson, clients, external security consultants and investigative firms as needed.
+ Conduct web monitoring services for assigned client including online investigation and cyber intelligence gathering.
+ Perform data forensics services for assigned client and conduct investigations related to data forensics.
+ Produce/provide reporting to assigned client for web monitoring and data forensics.
+ Provide internal and external consulting with regard to our information security policies, standards and procedures.
40% Responding to client requests, video reviews, and candidate misconduct investigations
+ Respond to ad hoc client security requests in desired timeframes.
+ Conduct investigations related to candidate misconduct incidents.
+ Review testing session videos in relation to candidate misconduct incident and produce reporting related to review.
+ Manages boilerplate library and ensures all security templates reflect Pearson VUE's current practices and technology.
5% Other duties as assigned
+ All employees have a responsibility to co-operate in promoting and maintaining a safe and healthy working environment, and to take reasonable care of their own health and safety at work and that of all other staff that may be affected by their acts or omissions
Qualifications
Education and Experience:
+ Bachelor Degree or equivalent experience in related fields
+ 5 years Investigations or data analysis experience
+ Experience in a client-facing role requiring regular direct interaction with customers and stakeholders
+ Consulting, Big 4 or Public Accounting experience preferred
+ Experience in a Computer-Based Testing industry
Preferred Skills, Knowledge, and Abilities:
+ Ability to work collaboratively across international teams
+ Ability to follow detailed procedures and ensure a high level of accuracy in documentation and data presentation.
+ High ethical standards, with deep commitment to maintaining organizational integrity and continuous improvement.
+ Strong proficiency in Microsoft Excel, including data analysis and reporting.
+ Excellent written and verbal communication skills.
+ Ability to work independently.
+ Ability to provide effective training and education to others.
+ Ability to systematically and creatively solve problems.
+ Results-oriented with strong commitment to tasks.
+ Excellent time management and priority setting skills.
+ Attention to detail and quality oriented.
+ Ability to handle stressful situations.
+ Demonstrated ability to communicate effectively with external clients in English.
+ Knowledgeable of practices and standards applied in the Computer-Based Testing
Location and hours:
This role is based in Noida, India. It is primarily remote, with a requirement to work from the office two days per month. The position supports global clients, primarily in the U.S., with standard working hours from 3:00 PM to midnight IST. Earlier hours may be worked on in-office days.
**Who we are:**
At Pearson, our purpose is simple: to help people realize the life they imagine through learning. We believe that every learning opportunity is a chance for a personal breakthrough. We are the world's lifelong learning company. For us, learning isn't just what we do. It's who we are. To learn more: We are Pearson.
Pearson is an Equal Opportunity Employer and a member of E-Verify. Employment decisions are based on qualifications, merit and business need. Qualified applicants will receive consideration for employment without regard to race, ethnicity, color, religion, sex, sexual orientation, gender identity, gender expression, age, national origin, protected veteran status, disability status or any other group protected by law. We actively seek qualified candidates who are protected veterans and individuals with disabilities as defined under VEVRAA and Section 503 of the Rehabilitation Act.
If you are an individual with a disability and are unable or limited in your ability to use or access our career site as a result of your disability, you may request reasonable accommodations by emailing
**Job:** Security
**Job Family:** TECHNOLOGY
**Organization:** Assessment & Qualifications
**Schedule:** FULL\_TIME
**Workplace Type:** Hybrid
**Req ID:** 24902
Is this job a match or a miss?
Information Security Specialist - Data Privacy & Governance
Posted 5 days ago
Job Viewed
Job Description
- Develop, implement, and maintain data privacy policies and procedures in line with global regulations.
- Conduct Data Protection Impact Assessments (DPIAs) for new projects and systems.
- Manage data subject access requests (DSARs) and ensure timely responses.
- Oversee data classification, data retention, and data disposal processes.
- Conduct privacy training and awareness programs for employees.
- Monitor compliance with data privacy regulations and internal policies.
- Investigate and respond to data breaches and privacy incidents.
- Collaborate with legal, IT, and business units to ensure data privacy is embedded in business processes.
- Stay informed about evolving data privacy laws and best practices.
- Contribute to the development of data governance frameworks and strategies.
- Bachelor's degree in Law, Information Security, Computer Science, or a related field.
- Minimum of 3 years of experience in data privacy, information security, or compliance roles.
- In-depth knowledge of global data privacy regulations (e.g., GDPR, CCPA, India's DPDP Act).
- Experience with privacy impact assessments and data governance principles.
- Strong analytical, problem-solving, and organizational skills.
- Excellent written and verbal communication skills, with the ability to explain complex legal and technical concepts.
- Ability to work independently and manage multiple priorities in Jaipur, Rajasthan .
- Relevant certifications such as CIPP/E, CIPP/US, CIPM, or CIPT are highly desirable.
- Experience in the retail sector is a plus.
Is this job a match or a miss?