Cybersecurity Career Opportunity | InfoSec Tech Lead Role in Bangalore
Job Title: InfoSec Tech Lead
Date Posted: March 11, 2025
Location: Bangalore, Karnataka, India
Company: [24]7.ai
Department: Global Information Security (InfoSec)
Reporting to: Information Security Manager
Position Type: Full-time
About the Role
[24] 7.ai is seeking a highly skilled InfoSec Tech Lead to join our Global Information Security (InfoSec) team in Bangalore, India. This role requires expertise in information security, compliance, and risk management across product applications and infrastructure. As an InfoSec Tech Lead, you will collaborate with various teams to identify, implement, and maintain security protocols to safeguard our global operations.
If you are passionate about cybersecurity, risk mitigation, and penetration testing, and have extensive experience in vulnerability assessment, this is an excellent opportunity to advance your career in a challenging and rewarding environment.
Qualifications & Experience
To be considered for this role, you must meet the following minimum qualifications and work experience criteria:
Education Requirements:
- Bachelor’s or Master’s degree in Computer Engineering, Information Science, or a related field.
Preferred Certifications:
Possessing one or more of the following certifications is highly preferred:
- OSCP (Offensive Security Certified Professional)
- OSCE (Offensive Security Certified Expert)
- ECSA|LPT (Certified Security Analyst | Licensed Penetration Tester)
- CPT (Certified Penetration Tester)
- CEH (Certified Ethical Hacker)
Experience Requirements:
- 5-7 years of hands-on experience in vulnerability management, cloud security, mobile security, secure code review, and IoT security.
- Prior experience in penetration testing, security audits, and application security assessments.
- Experience in identifying and resolving security threats for infrastructure, networks, and cloud applications.
- Strong knowledge of threat modeling and application security frameworks.
Location & Travel Requirements:
- Based in Bangalore, India.
- May involve occasional domestic and international travel.
Key Competencies & Technical Skills
The ideal candidate should possess deep technical expertise in the following areas:
Security Assessments & Testing:
- Conducting network, web, and cloud-based security assessments.
- Proficiency in threat modeling, vulnerability scanning, and penetration testing.
- Hands-on experience with security bug classification frameworks (CVSS, DREAD).
- Web service vulnerability assessments and mobile application security testing (iOS/Android).
Security Tools & Technologies:
- Expertise in web application security tools (Acunetix, BurpSuite Pro, NTO Spider, WebInspect, Core Impact).
- Experience with network penetration testing tools (Kali Linux, Qualys Guard, Nessus, Nexpose, Nmap, Metasploit, SAINT).
- Static code review using Checkmarx, HP Fortify, and IBM AppScan Source.
- Hands-on proficiency in at least two scripting languages (Python, Perl, PHP, Ruby, etc.).
Security Methodologies & Standards:
- Strong understanding of OWASP, OSSTMM, CESG, CREST, NIST, ISSAF, and PTES security frameworks.
- Familiarity with standard SDLC practices and experience working in Agile development environments.
- Deep understanding of PCI DSS, SOC, and GDPR compliance requirements.
Programming & Operating Systems:
- Experience with high-level programming languages (Java, C, C++, .NET, C#, VB).
- Understanding of Dynamic Application Security Testing (DAST) and Secure Code Reviews.
- Hands-on experience with Windows, Linux, UNIX (IBM AIX, Sun Solaris, HP UX), and networking equipment.
Leadership & Collaboration:
- Ability to provide technical guidance and mentorship to junior security professionals.
- Capable of leading and managing security projects under tight deadlines.
- Strong communication skills to present findings to technical teams and executive leadership.
- Customer-facing experience with the ability to review security requirements with clients.
Key Responsibilities
As an InfoSec Tech Lead at [24]7.ai, you will play a crucial role in ensuring the security and integrity of our global information infrastructure. Your responsibilities will include:
Security Assessments & Vulnerability Management:
- Perform manual and automated security testing to detect vulnerabilities.
- Conduct vulnerability assessments and penetration testing for infrastructure, web applications, APIs, and cloud environments.
- Execute configuration audits on network devices, servers, and other critical infrastructure.
- Develop proof-of-concepts (POCs) to demonstrate security threats.
Code Review & Secure Development:
- Perform static code analysis across multiple programming languages.
- Provide recommendations for secure coding best practices.
- Assist development teams in identifying and mitigating security flaws.
Security Policy & Compliance:
- Ensure security measures align with PCI DSS, SOC, GDPR, and industry best practices.
- Support internal teams with secure software development lifecycle (SDLC) practices.
- Evaluate security products and recommend optimal solutions.
Security Advisory & Risk Management:
- Advise on secure coding standards and security best practices.
- Collaborate with various teams to enhance process design for security architecture.
- Investigate security incidents and recommend corrective actions.
Training & Team Leadership:
- Conduct training sessions on security best practices for internal teams.
- Act as a technical mentor to junior security professionals.
- Provide technical oversight to maintain engagement quality across security projects.
Additional Requirements
- Strong ethical values and commitment to maintaining the highest security standards.
- Excellent written and verbal communication skills in English.
- Ability to document and present security findings professionally.
- Comfortable working in high-pressure environments with tight deadlines.
Why Join [24]7.ai?
At [24]7.ai, we are committed to creating a secure and innovative environment that protects our clients, data, and infrastructure. By joining our team, you will:
- Work with industry-leading security professionals.
- Gain exposure to cutting-edge security tools and methodologies.
- Be a key player in protecting global enterprise-level applications and networks.
- Experience a collaborative work culture with continuous learning opportunities.
If you are a security expert passionate about cybersecurity, risk management, and security architecture, we invite you to apply for this exciting opportunity!
How to Apply
Interested candidates can submit their resumes through our official careers portal or contact our HR team.
[24]7.ai is an equal opportunity employer and welcomes applicants from diverse backgrounds.