Cutshort logo
For Employers
vaaragonenterprisescom logo
Manager - Information Security (UK Client)
Manager - Information Security (UK Client)

Manager - Information Security (UK Client) at vaaragonenterprisescom · Gurugram · 8 - 12 years · ₹20L - ₹30L / yr · Bootstrapped · Posted 11 Jun 2026

vaaragonenterprisescom's logo

Manager - Information Security (UK Client)

satish agrawal's profile picture
Posted by satish agrawal
8 - 12 yrs
₹20L - ₹30L / yr
Gurugram
Skills
Information security
GRC
Cyber Security
cloud security
CISM
CISA
CISSP
ISO 27001 LA
ISO/IEC 27001:2005
CyberArk

Position: Manager – Information Security

Experience: 8+ years (with minimum 3 years in leadership roles)

Location: Gurgaon

Qualification: Bachelors in IT/Computer Science; Preferred: MBA, CISSP, CISM, CISA, ISO 27001/27701 Lead Auditor and Lead Implementor


Key Responsibilities:

? Lead the design, implementation, and continuous improvement of the enterprise-wide ISMS and PIMS programs.

? Develop and manage the InfoSec strategy aligned with business goals and regulatory requirements (ISO 27001:2022, ISO 27701:2019, DPDPA, IT Act, CERT-In).

? Oversee security risk assessments, audits, and remediation plans across IT and business units.

? Manage a team of security professionals; mentor, coach, and evaluate performance.

? Collaborate with Legal, Compliance, IT, and Business stakeholders to ensure security by design.

? Lead incident response, RCA, and post-mortem reviews.

? Drive security awareness and training programs across the organization.

? Manage security budgets, vendor relationships, and contract negotiations.


Technical Skills:

? Strong knowledge of IBM QRadar SIEM, GTB DLP, CyberArk PAM, Wiz CNAPP, Sentinel One EDR, Qualys VA and other PT tools.

? Experience in cloud security governance (Preferred on AWS and Azure; Good to have GCP).

? Experience of MITRE ATT&CK, NIST CSF, CIS Controls, OWASP Top 10.




mail updated resume with salary details-

email: etalenthire[at]gmail[dot]com

satish: 88O 27 49 743


website: www.glansolutions.com

Read more
Users love Cutshort
Read about what our users have to say about finding their next opportunity on Cutshort.
Shubham Vishwakarma's profile image

Shubham Vishwakarma

Full Stack Developer - Averlon
I had an amazing experience. It was a delight getting interviewed via Cutshort. The entire end to end process was amazing. I would like to mention Reshika, she was just amazing wrt guiding me through the process. Thank you team.
Companies hiring on Cutshort
companies logos

About vaaragonenterprisescom

Founded :
2023
Type :
Services
Size :
0-20
Stage :
Bootstrapped

About

N/A

Company social profiles

N/A

Similar jobs (10)

Gurugram
11 - 18 yrs
₹20L - ₹38L / yr
IT Infrastructure & Security
IT infrastructure
IT security
Palo Alto
cyberark
+9 more

Job Title: Chief Manager – IT Infrastructure & Security

Location: Gurgaon

Experience: 12+ year in same

Qualification: B.Tech/MCA

Preferred Certifications: Palo Alto PCCSE, CyberArk, Nutanix NCP, VMware VCP, CCNP.

Must have exp in Server, network, firewall, edr, virtualization system (vm-ware, dutanix)

Technical Experience Required:

  • AWS (Amazon Web Services) and/or Microsoft Azure
  • VMware ESX / ESXi
  • Windows Server
  • Active Directory (AD)
  • Kaseya
  • DNS & DHCP
  • Forcepoint / Websense
  • Kaspersky AV
  • Cisco networking
  • SAN (Storage Area Network)
  • Core Networking Tech: VoIP (Voice over IP), VPN (Virtual Private Network), TCP/IP, WAN/LAN/WLAN routing, and switching protocols.

Key Deliverables

Infrastructure Architecture & Operations

  • Own the scoping, architecture and design of new infrastructure that will support the business.
  • Administer HP Infrastructure, Nutanix HCI, Dell VxRail, VMware, Windows and Linux environments.
  • Architect, monitor and maintain Active Directory services, File Services, Server Infrastructure and WAN/LAN/WLAN supporting business-critical systems.
  • Be responsible for server, storage, network, security and monitoring hardware, software and services, ensuring they are optimised for availability, stability, integrity, performance and scalability.
  • Forecast demand for storage, computing and network capacity, and take appropriate action before capacity limits are reached.
  • Maintain IT hardware and software — including servers, peripherals, network nodes, terminals and wiring — manage equipment inventory and the hardware life cycle.

Network & End-User Computing

  • Manage LAN/WAN, VPN, Cisco routing/switching and Cisco Meraki WiFi environments.
  • Troubleshoot and quickly resolve network issues.
  • Oversee end-user computing — laptops, desktops, printers, AV devices, iOS devices/iPad, MDM and endpoint management — and end-user support operations across Head Office, Stores and Warehouse. Security, Identity & Compliance
  • Manage Palo Alto firewalls, SentinelOne EDR/XDR, CyberArk PAM, GTB DLP and Forcepoint/ForceScout security platforms.
  • Perform regular security monitoring to identify any possible intrusions.
  • Manage certificate/PKI and domain/DNS services, including issuance, renewal, rotation and revocation.
  • Establish and maintain corporate IT infrastructure standards for configuration and security.
  • Ensure IT governance, audit and compliance requirements are met.

Continuity, Backup & Performance

  • Define, implement, test and maintain data back-up and recovery protocols to ensure availability.
  • Drive business continuity, backup, disaster recovery and infrastructure modernisation projects.
  • Be accountable for measuring and optimising application and infrastructure performance, and lead recovery actions after system failures.
  • Monitor and maintain infrastructure stability against defined KPIs.

Leadership, Vendor & Governance

  • Provide support to, manage and train the IT Infrastructure team.
  • Manage vendor relationships, budgets, SLAs and team performance.
  • Project-plan with clear and concise communication methods.
  • Prepare and maintain documentation of the IT infrastructure.

Additional Technical Competencies

The candidate must have experience in one or more of the following areas:

Network & Infrastructure Engineering

  • Proficient understanding of IP networking: Cisco, TCP/IP, Window Server, Network Security, Cloud Servers that includes technical and functional understanding of network security, VOIP, WAN, LAN, and internet routing and switching protocols, wireless and VPN capabilities.
  • Demonstrated Data Center/Server Room build out experience (Power, Network, Cooling, etc...).
  • Expertise in VMware ESX, SAN, Monitoring tools, and Operating Systems (strong understanding of Windows).
  • Experience in managing VMware environment.
  • Experience in managing cloud-based infrastructure like AWS/Azure.
  • Expertise in windows environment in domain/Forrest/DNS/DHCP. System Administration & Maintenance
  • Install new / rebuild existing servers and configure hardware, peripherals, services, settings, directories, storage, etc. in accordance with standards and project/operational requirements.
  • Use of system management tool Kaseya and development of new scripts in this tool for deployment of policies.
  • Apply OS patches and upgrades on a regular basis, and upgrade administrative tools and utilities. Configure / add new services as necessary.
  • Manage processes to Create, change, and delete user accounts per request from HR.
  • Repair and recover from hardware or software failures. Coordinate and communicate with impacted constituencies.

Security, Backups & Data Protection

  • Skilled in managing websense/forcepoint DLP/Web security.
  • Experience in managing Kaspersky antivirus system.
  • Perform regular security monitoring to identify any possible intrusions.
  • Perform daily backup operations, ensuring all required file systems and system data are successfully backed up to the appropriate media, recovery tapes or disks are created, and media is recycled and sent off site as necessary.
  • Closely monitoring and developing the procedures for backups of the servers.
  • Perform regular file archival and purge as necessary.

Monitoring, Testing & Troubleshooting

  • Perform daily system monitoring, verifying the integrity and availability of all hardware, server resources, systems and key processes, reviewing system and application logs, and verifying completion of scheduled jobs such as backups.
  • Daily monitor the Server Event Logs, Firewall and other security equipment logs and also the logs of scheduled archival software.
  • Test the operating system software, the networking software and also the computer hardware.
  • Must possess the initiative to resolve issues before they become critical.

Project Management & Documentation

  • To assist IT Head for technical issues on various projects such as support on testing, rolling out and execution of projects.
  • Strong written communication skills including documentation.

mail updated resume with salary details-

email: etalenthire[at]gmail[dot]com

satish: 88O 27 49 743

Read more
Resources Valley
at Resources Valley
1 recruiter
Manind Gupta
Posted by Manind Gupta
Jaipur
1 - 4 yrs
₹2L - ₹8L / yr
Cyber Security
cyber

Cyber Security Expert


We are seeking a highly skilled Cyber Security Expert with strong expertise in AI-driven

security tools and ethical hacking techniques. The ideal candidate will safeguard our digital

infrastructure, proactively identify vulnerabilities, and design intelligent defense mechanisms

against evolving cyber threats.

Key Responsibilities

• Threat Analysis: Identify, assess, and mitigate potential risks across systems and

networks.

• AI Security Tools: Deploy and manage AI-based solutions for intrusion detection,

anomaly monitoring, and predictive threat modelling.

• Ethical Hacking: Conduct penetration testing, simulate cyber-attacks, and recommend

remediation strategies.

• Incident Response: Lead investigations, contain breaches, and implement recovery

measures.

• Compliance & Governance: Ensure adherence to data protection laws, industry

standards, and organizational policies.

• Training & Awareness: Educate employees on best practices and emerging threats.


Required Skills & Qualifications

• Proven hands-on experience with AI-powered security platforms (e.g., SIEM, SOAR,

ML-based anomaly detection).

• Strong knowledge of ethical hacking tools (Metasploit, Burp Suite, Kali Linux, etc.).

• Expertise in network security, firewalls, IDS/IPS, and endpoint protection.

• Familiarity with cloud security (AWS, cloud platform).

• Proficiency in scripting languages (Python, Bash, PowerShell) for automation.

• Solid understanding of cryptography, authentication protocols, and secure coding

practices.



Read more
Mumbai
5 - 7 yrs
₹8L - ₹15L / yr
ISO/IEC 27001:2005
Information security governance
Compliance
Risk Management
Stakeholder management

We are seeking an experienced Governance, Risk & Compliance (GRC) Lead to spearhead the

design, implementation, and maintenance of our ISO 27001 Information Security Management

System (ISMS). This is a hands-on leadership role responsible for establishing a robust security

governance framework, achieving ISO 27001 certification, and embedding a culture of

continuous security improvement across the organization.

Key Responsibilities

● ISMS Implementation & Certification: Lead end-to-end ISO 27001 implementation

from gap analysis through to successful Stage 1 and Stage 2 certification audits;

manage external auditor relationships

● Risk Management: Develop and operationalize the information security risk

management framework; conduct risk assessments, treatment planning, and risk

acceptance processes.

● Policy & Governance : Author, approve, and maintain the Statement of Applicability

(SoA), information security policies, standards, and procedures aligned with ISO 27001

Annex A controls.

● Control Implementation: Translate ISO 27001 Annex A controls into operational

security measures; coordinate with IT, Accounts, HR, Backoffice, and business units to

implement and validate controls.

● Compliance Monitoring: Establish continuous monitoring, internal audit programs, and

KPIs/KRIs to measure ISMS effectiveness; manage non-conformities and corrective

actions.

● Third-Party Risk: Oversee vendor security assessments and ensure supply chain

security controls meet organizational and ISO 27001 standards.

● Stakeholder Management: Report ISMS performance, risks, and compliance status to

senior leadership and the board; act as primary liaison for external auditors and

regulators.

Required Qualifications

● 5+ years of experience in information security governance, risk, and compliance

● Proven track record of leading at least one full ISO 27001:2022 certification cycle (gap

analysis → certification)

● Deep expertise in ISO 27001:2022 standard, Annex A controls, and ISMS

documentation requirements

● Strong understanding of risk assessment methodologies (e.g., ISO 27005, NIST RMF,

OCTAVE, FAIR)

● Familiarity with internal audit practices and managing external certification bodies

● Excellent stakeholder management and ability to influence across technical and non-

technical teams

● Strong documentation and communication skills — able to translate complex standards

into actionable guidance

Preferred Qualifications

● Experience implementing ISMS in fintech, healthcare, or regulated industries

● Experience with SOC 2, GDPR, NIST CSF, PCI-DSS, or other compliance frameworks

● Background in cloud security (AWS, Azure, GCP) and DevSecOps environments

● Knowledge of automation for compliance evidence collection and control testing

● Certifications: CISM, CRISC, CISA, ISO 27001 Lead Auditor, or ISO 27001 Lead

Implementer

Why Join Us

● Opportunity to build the security governance function from the ground up

● High-visibility role with direct impact on customer trust and market differentiation

● Collaborative environment that values security as a business enabler, not a blocker

Company Profile:

We are a one-stop financial services shop, widely known for quality of its advice, personalized

service and cutting-edge technology. We started our journey in 2008. Currently we are serving

more than 50,000 investors with a team of 100 members. Our core product offering is mutual

fund, FD, Govt. Bonds, Debenture, etc.



Read more
P99soft
icon

The recruiter has not been active on this job recently. You may apply but please expect a delayed response.

Dubai
4 - 10 yrs
₹25L - ₹39L / yr
ISO/IEC 27001:2005
Web3js

IT Compliance Manager – Web3 & Digital Assets

📍 Location: Dubai, UAE

💼 Employment Type: Full-Time

🏢 Department: Technology / Compliance

📊 Experience: 5+ Years

🌐 Industry: FinTech / Web3 / Digital Assets


About the Role

We are looking for an experienced IT Compliance Manager – Web3 & Digital Assets to lead technology compliance, IT governance, risk management, and cybersecurity controls within a regulated FinTech and digital-asset environment.

The ideal candidate will have strong experience in IT GRC, technology risk, cybersecurity governance, Web3/blockchain, digital assets, and regulatory compliance, with UAE regulatory experience being highly preferred.


Key Responsibilities

  • Manage IT governance, compliance frameworks, policies, procedures, and technology risk assessments.
  • Support compliance with UAE virtual asset and financial-services regulations, including VARA, DFSA, FSRA, and UAE Central Bank requirements, where applicable.
  • Assess technology risks across blockchain infrastructure, crypto wallets, custody, APIs, cloud platforms, databases, smart contracts, and dApps.
  • Review controls related to crypto deposits, withdrawals, transfers, wallet operations, and transaction monitoring.
  • Develop and monitor controls aligned with ISO 27001, SOC 2, NIST, PCI DSS, and relevant regulatory requirements.
  • Coordinate IT audits, regulatory audits, compliance assessments, evidence collection, and remediation activities.
  • Maintain technology risk registers, control assessments, compliance reports, and management dashboards.
  • Partner with Engineering, Product, Security, Legal, Risk, AML/KYC, Finance, and Operations teams.
  • Embed compliance and technology-risk requirements into product development, system changes, and technology architecture.
  • Support regulatory licensing, assessments, and ongoing compliance requirements for digital-asset services.


Requirements

  • Bachelor's degree in IT, Computer Science, Cybersecurity, Finance, Risk Management, or a related discipline.
  • 5+ years of experience in IT Compliance, IT GRC, Technology Risk, Cybersecurity Governance, or a related field.
  • Experience in FinTech, banking, payments, cryptocurrency, blockchain, digital assets, or financial services.
  • Strong understanding of Web3, blockchain networks, crypto wallets, digital-asset transactions, custody, and smart-contract risks.
  • Hands-on experience with IT governance, risk assessments, control testing, audits, and compliance frameworks.
  • Strong knowledge of ISO 27001, SOC 2, NIST, PCI DSS, ITGC, or similar frameworks.
  • Experience working with auditors, regulators, and cross-functional technology teams.
  • Strong analytical, documentation, communication, and stakeholder-management skills.

UAE / Web3 Experience – Preferred

  • Experience with VARA, DFSA, FSRA, UAE Central Bank, or other UAE financial regulators.
  • Experience supporting VASP licensing or regulatory approvals.
  • Previous experience in crypto exchanges, digital-asset platforms, blockchain companies, Web3 startups, or FinTech organizations.
  • Understanding of AML/KYC, transaction monitoring, custody, wallet security, and digital-asset controls.

Preferred Certifications

  • CISA
  • CISM
  • CISSP
  • CRISC
  • ISO 27001 Lead Auditor / Lead Implementer
  • CAMS

Key Skills

IT GRC | IT Compliance | Technology Risk | Web3 Governance | Blockchain Risk | Digital Asset Compliance | VASP Licensing | UAE Regulatory Compliance | ITGC | Cybersecurity Governance | ISO 27001 | SOC 2 | NIST | PCI DSS | IT Audit | Risk Assessment | Crypto Transaction Monitoring | Stakeholder Management


Read more
Pentabay Softwares
at Pentabay Softwares
1 recruiter
Sandhiya M
Posted by Sandhiya M
Chennai
1 - 5 yrs
₹2L - ₹8L / yr
ISO9001
ISO27001
Security Information and Event Management (SIEM)
Cyber Security
skill iconAmazon Web Services (AWS)
+4 more

Hi Folks, we are currently Hiring for Security Engineer.

Gemini said


Hiring: Security Engineer

Company : Pentabay Softwares

Location : Anna salai, Mount Road

Mode: Fulltime


Pentabay Softwares INC is looking for a proactive Security Engineer (2–7 Years Exp) to fortify our global digital solutions. As we scale our footprint in the Healthcare IT sector, you will play a critical role in safeguarding sensitive data (ePHI) and ensuring our cloud-native architectures are resilient against evolving threats.


The Mission

You will be the architect of our defense, bridging the gap between high-speed development and rigorous security standards. Your day-to-day will involve "shifting security left" by embedding DevSecOps practices into our CI/CD pipelines and leading our compliance efforts for SOC 2, ISO 27001, and HIPAA.


Key Responsibilities


Defense & Architecture: Design and maintain secure cloud (AWS/Azure/GCP) and on-prem environments. Implement IAM policies, Zero Trust frameworks, and robust secrets management.

Offensive Testing: Conduct regular vulnerability assessments (VAPT), penetration testing, and code reviews using tools like Burp Suite and Nessus.

DevSecOps & Automation: Integrate SAST/DAST/SCA scanning into engineering workflows. Automate security tasks using Python or Bash.

Incident Response: Monitor SIEM tools (Splunk/CrowdStrike), respond to threats, and develop risk mitigation strategies.

Healthcare Compliance (Plus): Ensure data integrity for HL7/FHIR APIs and maintain HIPAA/HITECH audit readiness for healthcare clients.


What You Bring


Experience: 2–7 years in Information/Application Security with a strong grasp of the OWASP Top 10 and threat modeling (STRIDE).

Technical Depth: Proficiency in network/endpoint security, PKI, encryption standards (TLS/SSL), and container security (Docker/Kubernetes).

Compliance Knowledge: Familiarity with NIST, GDPR, and SOC 2 frameworks.

Tools: Hands-on experience with Metasploit, Wireshark, and Infrastructure-as-Code (Terraform).

Bonus Points: Industry certifications like OSCP, CISSP, or CEH, and experience in Healthcare IT workflows.

Auditing space like ISO27001 , ISO9001 prefered


Why Pentabay?

At Pentabay, we offer more than just a job; we offer a security-first engineering culture.

Growth: A dedicated learning budget for certifications and conferences.

Impact: Work on cutting-edge Healthcare projects that demand the highest levels of data privacy.


Send resumes to : sandhiya.m at pentabay.com

Read more
Risosu Consulting LLP
at Risosu Consulting LLP
1 candid answer
Vandana Saxena
Posted by Vandana Saxena
Pune, Bengaluru (Bangalore), Noida, Hyderabad, Chennai, trivendam, Chandigarh, Kolkata, Mumbai
5 - 8 yrs
₹12L - ₹18L / yr
Vulnerability assessment
Vulnerability management
Burp suite
Fortify
sonarqube
+2 more

Responsibilities

  • Execute and support application vulnerability assessments (SAST, DAST, SCA, and manual code review), ensuring findings are accurate, actionable, and relevant to application risk.
  • Validate scanner results, perform false-positive analysis, and track findings through remediation, including retesting to confirm effective fixes.
  • Manage multiple application security initiatives concurrently while meeting strict timelines in a fast‑paced environment.
  • Prioritize vulnerabilities based on business impact, exploitability, exposure, and likelihood, using industry best practices (e.g., CVSS scoring).
  • Develop and maintain dashboards and reports tracking vulnerability metrics such as severity distribution, remediation SLAs, and mean time to remediation (MTTR).
  • Support the integration of security scanning and vulnerability workflows into CI/CD pipelines, leveraging existing tooling and automation.
  • Facilitate remediation planning by providing actionable recommendations and coordinating root cause analysis.
  • Support threat modeling and application risk assessments, with a focus on discovering insecure design patterns.
  • Participate in high‑severity or zero‑day vulnerability response activities, including impact analysis and coordinated remediation efforts, as needed.
  • Provide input into policies and standards related to application and cloud security controls.


Qualifications and Education Requirements

  • Bachelor’s degree in information technology, Cybersecurity, Computer Science, or related discipline—or equivalent professional experience.
  • 5-7 years of relevant experience in application security and/or vulnerability management.
  • Solid understanding of common vulnerability classes (e.g., OWASP Top 10) and secure architecture principles.
  • Proficiency in using Burp Suite for manual security testing of web applications and APIs, including validation of automated findings and identification of complex authentication, authorization, and business‑logic vulnerabilities.
  • Hands-on experience with tools such as Burp Suite, Fortify, Checkmarx, SonarQube, Black Duck, Tenable, and common network discovery tools (e.g., Nmap).
  • Familiarity with NIST, MITRE ATT&CK, and CIS benchmarks.
  • Programming/scripting proficiency in languages such as Python, Java, .NET, or similar.
  • Excellent documentation, communication, and stakeholder engagement skills.


Desired Skills

  • Professional certifications (e.g., Security+, SSCP, GWAPT, or pursuing CISSP, OSCP).
  • Experience using the ServiceNow platform for vulnerability or incident tracking.
  • Proficiency in Azure cloud and Azure DevOps environments.
  • Experience using Power BI or similar tools to visualize vulnerability metrics and remediation trends for technical and non-technical stakeholders.
Read more
One of our US based Client
One of our US based Client
Agency job
via HyrHub by Shwetha Naik
Remote only
4 - 8 yrs
Best in industry
IT security
IT security audit
GDPR

The Security Analyst assists the Data Security team to help ensure the security of the company and its clients. Looking for immediate joiners.


 KEY RESPONSIBILITIES

 All employees are expected to use good business judgment and appropriate discretion and decision making while performing responsibilities of the position, and to incorporate EVA’s Core Beliefs in their daily work.

  • Performs daily health checks as documented by the IT Security team.
  • Supports the Security team by documenting and performing support tasks.
  • Participates in change management, incident management, audit and business continuity processes.
  • Plans and implements security policies and procedures to protect computer systems, networks and data from unauthorized access.
  • Participates in internal and external compliance (SOC 2) audits.
  • Recommends security enhancements.

Job specifics:

  • Familiarity with standard security concepts, practices and procedures.
  • Knowledge of Windows operating systems.
  • Strong Documentation, communication skills and attention to detail.
  • Able to work independently and as a part of a team to deliver completed projects on-time.
  • Identifies ways to continuously improve own and/or company performance.
  • Knowledge of security toolsets
  • Knowledge of compliance activities (GDPR, SOC 2, ISO:27001).
  • Knowledge of database security.
  • Knowledge of SIEM technology and security event correlation and monitoring.
  • Experience with AWS.             
  • Proficient with computer software including Salesforce 


 EDUCATION & EXPERIENCE  

  • Bachelor’s Degree in computer science, mathematics, Information Systems or equivalent experience preferred.
  • Minimum of 3 years of hands-on IT Security & Audit experience.
  • Professional IT Security Certifications are strongly preferred, such as Security+, CISSP, CISM, CISA, GSEC, etc.


Read more
Ampera Technologies
Bengaluru (Bangalore), Chennai
5 - 15 yrs
Best in industry
DevOps
skill iconAmazon Web Services (AWS)

DevOps & Cloud Security Specialist to architect enterprise-grade AWS networking, implement strict IAM security boundaries (HIPAA/GDPR compliance), automate infrastructure via IaC, and maintain crystal-clear technical documentation.


1. Primary Must-Have Competencies (Core Priorities)


A. AWS Networking & VPC Topology (Top Priority)

  • Advanced VPC Architecture: Mastery in designing multi-VPC topologies, isolated subnets, custom Route Tables, NAT Gateways, Transit Gateways, and Cross-Region VPC Peering.
  • Private Network Security: Extensive experience using VPC Endpoints (Gateway & Interface/PrivateLink) to keep internal AWS traffic completely off the public internet.
  • Traffic Ingestion & Edge Security: Expertise in AWS WAF (custom rules, bot control, rate limiting), API Gateway throttling, ALB configuration, and Route 53 global routing.


B. AWS Security, IAM Architecture & Compliance

  • Enterprise IAM Governance: Expertise in AWS Organizations, IAM Identity Center (SSO), Permission Boundaries, Service Control Policies (SCPs), and temporary role assumption across multi-account setups.
  • Data Protection & Key Management: Deep knowledge of AWS KMS (customer-managed keys, envelope encryption at rest and in transit) and AWS Secrets Manager.
  • Audit & Compliance: Setting up centralized logging pipelines (CloudTrail, GuardDuty, AWS Config, CloudWatch Audit Logs) for strict HIPAA/GDPR compliance.


C. Infrastructure as Code (IaC) & Containerization

  • Terraform / AWS CDK: Must write production-grade, modular IaC templates from scratch—enforcing network topology and security guardrails directly in code.
  • Container Orchestration: Hands-on setup and management of AWS ECS (Fargate) or EKS (Kubernetes) and automated CI/CD pipelines (GitHub Actions, GitLab CI).


D. Architecture Documentation & Systems Mapping

  • Technical Documentation: Ability to author clean, standardized architecture diagrams (e.g., C4 model, Draw.io, Lucidchart) and maintain comprehensive runbooks, incident response plans, and compliance documentation.


2. Secondary Competency (Strong Advantage, Not Mandatory)

  • Backend Software Development: Hands-on experience or a background in writing/debugging backend code in Node.js, Python, or Go.
  • Note: The primary responsibility is cloud infrastructure, security, and automation. However, the ability to read backend code, debug API bottlenecks, or assist developers with microservice integrations is a major bonus.

 

Read more
Optimo Capital
at Optimo Capital
2 candid answers
Ajinkya Pokharkar
Posted by Ajinkya Pokharkar
Bengaluru (Bangalore)
3 - 8 yrs
₹5.5L - ₹12L / yr
System Administration
IT security
MDM
Endpoint protection
Sophos
+15 more


About the role


We’re hiring an IT Systems Administrator for an NBFC to secure endpoints, SaaS, and networks across ~50 branches, ~250+ field staff, and ~50+ office users.

This is primarily an IT Admin + Security role, with secondary exposure to AWS cloud ops + light DevOps + basic DB access management.


If you’re an IT Admin aiming to break into AWS Cloud Ops + DevOps, this role is a strong next step — you’ll own core IT/security and get hands-on exposure to cloud operations and deployments.


Key responsibilities (Primary: IT Admin + Security)

  • Manage endpoint security for laptops and mobiles (policies, patching, encryption, antivirus/EDR); drive MDM implementation now/future (e.g., Intune/Jamf).
  • Administer Google Workspace (Gmail/Drive/Calendar): users, groups, permissions, SSO, MFA, sharing controls.
  • Own joiner–mover–leaver lifecycle: provisioning/deprovisioning, access controls, periodic access reviews.
  • Secure branch connectivity: VPN, internal Wi-Fi, internet usage controls; coordinate troubleshooting and standardization across branches.
  • Manage HO security stack: firewall operations, rule changes with change control, monitoring/log review (basic but consistent).
  • Secure SaaS tools (CRM/HRMS/comms like Slack/Zoom): role-based access, MFA enforcement, offboarding, integration/OAuth controls.
  • Maintain IT asset inventory: procurement coordination, issuance/return, audits, warranty/AMC, license renewals; remote lock/wipe for lost devices.
  • Handle security incidents: phishing, account compromise, device loss/theft — contain, investigate, recover, and prevent recurrence.
  • Run backups and basic DR testing; maintain SOPs/documentation and train staff on cyber hygiene.
  • Provide hands-on user support: laptop builds, software installs, Outlook/Excel issues, VPN/Wi-Fi troubleshooting, escalations and vendor coordination.


Secondary responsibilities (AWS + DevOps + DB ops support)

  • Support AWS administration: IAM users/roles/policies, MFA, access key hygiene, basic log review (e.g., CloudTrail).
  • Manage AWS access controls: security groups/firewall rules, IP allowlists/whitelisting (admin tools, databases, vendor access).
  • Assist engineering with DevOps operations:
  • CI/CD support (deployment coordination, rollbacks, environment configuration)
  • Secrets/credentials management and rotation (no shared creds)
  • DNS + SSL/TLS certificates, basic monitoring/alerting coordination
  • Bonus: Docker/Kubernetes and Terraform exposure
  • Basic database operations (admin-lite):
  • DB user creation, roles/permissions, least-privilege access
  • IP allowlisting/whitelisting for DB access via VPN/approved sources
  • Backup/restore verification coordination and basic monitoring signals (connections/storage)


Requirements

  • 3+ years in IT security / systems administration (BFSI or branch-heavy org preferred).
  • Hands-on with Google Workspace or Microsoft 365 administration.
  • Must have hands-on experience leading or executing an email suite migration (e.g., Google Workspace ↔ Microsoft 365), including mailbox migration, DNS cutover, MX/SPF/DKIM/DMARC reconfiguration, and user transition management.
  • Strong endpoint/security fundamentals: encryption, patching, AV/EDR, remote support, device compliance.
  • Comfortable with networks: VPN/Wi-Fi/LAN troubleshooting; firewall basics and change discipline.
  • Strong operational discipline: asset tracking, vendor management, documentation, ticketing, user communication.
  • Practical AWS familiarity (IAM, access controls, logging) and ability to support DevOps workflows.


Nice to have

  • Experience implementing MDM at scale (Intune/Jamf/SureMDM).
  • Exposure to SOC2 / ISO27001 evidence, controls, and audit workflows.
  • Scripting for automation (PowerShell/Bash/Python).
  • Familiarity with managed databases and secure access patterns.


Read more
 A premier technology firm
A premier technology firm
Agency job
via Luminite HR Services by Ankita Ghosh
Mumbai
7 - 12 yrs
₹25L - ₹30L / yr
Sales
Identity management
Encryption

Position Overview:

We are seeking a high-impact Senior Sales Manager to lead the Data Protection solution sales in the India for a premier technology firm specializing in cybersecurity, data protection, and cloud

infrastructure solutions.

This is a strategic, client-facing role that demands a deep understanding of enterprise security

challenges and a proven ability to sell complex, consultative solutions across sectors such as Banking,

Fintech, Healthcare, Pharmaceuticals, and Technology.

Core Responsibilities:

• Drive new business acquisition and revenue growth for solutions including Encryption, Cloud Key

Management, Secrets Management, IAM, IGA, and Certificate Lifecycle Management

• Engage directly with CxOs, CISOs, Infrastructure Managers, and technical decision-makers to

position Federate as a trusted advisor

• Develop and execute a go-to-market strategy, pipeline, and sales forecasts for the region

• Lead the full sales cycle: prospecting, needs assessment, solutioning, proposals, and closures

• Collaborate cross-functionally with pre-sales, marketing, delivery, and technology partners

• Keep abreast of industry trends, competitive landscape, and evolving compliance mandates

(GDPR, HIPAA, RBI)

Who You Are:

• A senior sales professional with 10+ years of enterprise IT or cybersecurity solution sales

experience

• Demonstrated success in closing high-value deals in India’s regulated sectors

• Deep domain knowledge of data protection technologies and the enterprise security stack

• Strong network and proven relationships with CxO and Director-level stakeholders

• A self-driven, consultative, and strategic seller with exceptional communication and negotiation

skills

• Engineering or technical degree required; MBA preferred

Why Join Us:

• Work at the forefront of enterprise security innovation

• Partner with leading technology vendors and solution providers

• Competitive base salary + performance-based incentives

• Opportunity to shape a fast-growing practice with regional leadership potential

Read more
Why apply to jobs via Cutshort
people_solving_puzzle
Personalized job matches
Stop wasting time. Get matched with jobs that meet your skills, aspirations and preferences.
people_verifying_people
Verified hiring teams
See actual hiring teams, find common social connections or connect with them directly.
ai_chip
Move faster with AI
We use AI to get you faster responses, recommendations and unmatched user experience.
Did not find a job you were looking for?
icon
Search for relevant jobs from 10000+ companies such as Google, Amazon & Uber actively hiring on Cutshort.
companies logo
companies logo
companies logo
companies logo
companies logo
Get to hear about interesting companies hiring right now
Company logo
Company logo
Company logo
Company logo
Company logo
Linkedin iconFollow Cutshort
Users love Cutshort
Read about what our users have to say about finding their next opportunity on Cutshort.
Shubham Vishwakarma's profile image

Shubham Vishwakarma

Full Stack Developer - Averlon
I had an amazing experience. It was a delight getting interviewed via Cutshort. The entire end to end process was amazing. I would like to mention Reshika, she was just amazing wrt guiding me through the process. Thank you team.
Companies hiring on Cutshort
companies logos