2+ IT security assessment Jobs in Bangalore (Bengaluru) | IT security assessment Job openings in Bangalore (Bengaluru)
Apply to 2+ IT security assessment Jobs in Bangalore (Bengaluru) on CutShort.io. Explore the latest IT security assessment Job opportunities across top companies like Google, Amazon & Adobe.
Job Description
Department: Information Technology
Location: Bangalore (with travel to other locations as required)
Reporting To: Head – Information Technology / CISO
Experience: 7–8 Years
Employment Type: Full-time
About Connect & Heal
Connect & Heal (CNH) is one of India's leading integrated healthcare organizations, delivering technology-enabled healthcare solutions across primary care, home healthcare, diagnostics, wellness, emergency response, and enterprise healthcare services. We are committed to building secure, scalable, and resilient digital infrastructure to support our rapidly growing healthcare ecosystem.
Position Summary
The IT Security & Network Administrator is responsible for ensuring the confidentiality, integrity, and availability of Connect & Heal's IT infrastructure. The role will manage enterprise network operations, cybersecurity controls, cloud and endpoint security, identity and access management, vulnerability management, and regulatory compliance.
The incumbent will play a key role in strengthening the organization's cyber resilience while supporting business continuity, healthcare operations, and information security initiatives aligned with ISO 27001, ISO 27701, and applicable healthcare data privacy regulations.
Key Responsibilities
Information Security
- Implement and administer enterprise information security controls across all business locations.
- Manage endpoint security, antivirus, EDR/XDR, email security, and Data Loss Prevention (DLP) solutions.
- Monitor and respond to security incidents, alerts, and vulnerabilities.
- Conduct vulnerability assessments, penetration testing coordination, and remediation tracking.
- Support cybersecurity awareness and phishing simulation programs.
- Maintain identity and access management (IAM), including MFA, privileged access, and user lifecycle management.
- Monitor security logs and coordinate incident response with internal and external stakeholders.
- Ensure secure configuration baselines for servers, endpoints, and network devices.
Network Administration
- Administer enterprise LAN, WAN, SD-WAN, VPN, Wi-Fi, firewalls, switches, routers, and internet connectivity.
- Configure and maintain Cisco, Fortinet, Sophos, Palo Alto, or equivalent network security appliances.
- Monitor network performance and proactively resolve connectivity issues.
- Manage network segmentation and secure remote access.
- Maintain network documentation, IP addressing, topology, and disaster recovery configurations.
- Support cloud networking for Azure and AWS environments.
Cloud & Infrastructure Security
- Secure Microsoft 365, Azure AD (Microsoft Entra ID), Exchange Online, and SharePoint environments.
- Implement Conditional Access Policies and Zero Trust principles.
- Support cloud backup and disaster recovery strategies.
- Monitor cloud security posture using Microsoft Defender and related security tools.
Compliance & Governance
- Support ISO 27001, ISO 27701, ISMS, and Privacy Information Management System (PIMS) implementation and audits.
- Ensure compliance with the Digital Personal Data Protection Act, 2023, and healthcare-specific data protection requirements.
- Maintain security documentation, policies, risk registers, and audit evidence.
- Participate in internal and external security audits.
Business Continuity
- Maintain backup schedules and disaster recovery plans.
- Participate in DR drills and business continuity exercises.
- Ensure high availability of critical business systems.
Vendor & Asset Management
- Coordinate with OEMs, ISPs, cloud providers, and security vendors.
- Manage IT security renewals, certificates, licenses, and warranties.
- Maintain inventory of network and security assets.
Monitoring & Reporting
- Generate monthly dashboards on:
- Security incidents
- Vulnerability status
- Endpoint compliance
- Patch compliance
- Firewall health
- Network uptime
- SLA performance
- Present periodic security posture reports to IT leadership.
Technical Skills
Networking
- TCP/IP
- DNS
- DHCP
- VLAN
- VPN
- Routing & Switching
- SD-WAN
- Wi-Fi Administration
- Firewall Management
Security
- Endpoint Detection & Response (EDR/XDR)
- SIEM Monitoring
- Identity & Access Management (IAM)
- MFA
- DLP
- Email Security
- Vulnerability Management
- Patch Management
- Zero Trust Security
- Incident Response
Cloud
- Microsoft Azure
- Microsoft 365 Administration
- Azure AD (Microsoft Entra ID)
- AWS (preferred)
Operating Systems
- Windows Server
- Linux (preferred)
- Active Directory
- Group Policy
Tools
- Microsoft Defender
- Fortinet
- Sophos
- Palo Alto
- Cisco Meraki
- CrowdStrike
- SentinelOne
- Nessus
- Qualys
- SolarWinds
- ManageEngine
Preferred Certifications
- CEH (Certified Ethical Hacker)
- CompTIA Security+
- Cisco CCNA / CCNP
- Microsoft Certified: Azure Administrator Associate
- Microsoft Certified: Security Administrator Associate
- Fortinet NSE
- ISO 27001 Lead Implementer / Internal Auditor
- Certified Information Systems Security Professional (CISSP) (preferred)
Qualifications
- Bachelor's degree in Computer Science, Information Technology, or a related field.
- 7–8 years of experience in IT infrastructure, network administration, and information security.
- Experience supporting multi-location enterprise environments.
- Experience in healthcare, HealthTech, SaaS, or regulated industries is preferred.
Key Competencies
Functional
- Network Administration
- Cybersecurity Operations
- Cloud Security
- Infrastructure Management
- IT Compliance
- Risk Assessment
- Incident Response
- Business Continuity
Behavioral
- Analytical thinking
- Attention to detail
- Problem-solving
- Ownership and accountability
- Collaboration
- Customer orientation
- Communication skills
- Continuous learning
Key Performance Indicators (KPIs)
KPITargetNetwork Availability≥ 99.9%Critical Security IncidentsZero unresolved incidentsPatch Compliance≥ 98%Endpoint Security Compliance100%Vulnerability Remediation (Critical)Within 15 daysMFA Adoption100%Backup Success Rate≥ 99%Audit Compliance Score≥ 95%DR Drill Success100%
Success Measures (First 12 Months)
- Achieve 99.9% infrastructure uptime across all locations.
- Strengthen enterprise cybersecurity posture and reduce high-risk vulnerabilities.
- Ensure successful completion of internal and external security audits.
- Improve endpoint compliance and identity security across the organization.
- Implement proactive monitoring and reporting dashboards.
- Enhance cyber awareness and security best practices among employees.
Why Join Connect & Heal?
- Be part of one of India's fastest-growing integrated healthcare organizations.
- Work on enterprise-scale cybersecurity and digital transformation initiatives.
- Contribute to building a secure, technology-enabled healthcare ecosystem.
- Collaborate with cross-functional teams in a mission-driven environment focused on innovation, resilience, and patient trust.
- Threat and vulnerability analysis.
- Investigating, documenting, and reporting on any information security (InfoSec) issues as well as emerging trends.
- Analysis and response to previously unknown hardware and software vulnerabilities.
- Preparing disaster recovery plans.
SOC analysts are considered the last line of defense and they usually work as part of a large security team, working alongside security managers and cybersecurity engineers. Typically, SOC analysts report to the company’s chief information security officer (CISO).
SOC analysts need to be detail oriented because they are responsible for monitoring many aspects simultaneously. They need to watch the protected network and respond to threats and events. The level of responsibility typically depends on the size of the organization.


