TymblHub

© 2026 TymblHub

Information Security Manager

Good co India
Posted on

Experience
5 - 10 yrs
Salary (CTC)
₹17L - ₹32L
Job Location
India
Vacancy
1
Designation
Information Security Manager
Job Type
Not specified

Job Description

Role & responsibilities

  • Monitor, analyze, and respond to security incidents and cyber threats.
  • Perform Vulnerability Assessment and Penetration Testing (VAPT) and ensure timely remediation.
  • Manage and monitor SIEM solutions (Splunk, Microsoft Sentinel, QRadar) for threat detection and log analysis.
  • Conduct security audits, risk assessments, and compliance reviews aligned with ISO 27001, NIST, PCI DSS, and other regulatory standards.
  • Implement and manage endpoint, network, cloud, and application security controls.
  • Configure and maintain firewalls, IDS/IPS, VPNs, EDR/XDR, and other security solutions.
  • Perform incident response, root cause analysis, digital forensics, and threat hunting activities.
  • Manage Identity and Access Management (IAM), Privileged Access Management (PAM), and user access reviews.
  • Secure cloud environments (AWS, Azure, GCP) and implement cloud security best practices.
  • Collaborate with IT, DevOps, and development teams to integrate security into the SDLC and DevSecOps processes.
  • Conduct security awareness training and recommend improvements to strengthen the organization's security posture.
  • Develop, review, and maintain information security policies, standards, procedures, and documentation.
  • Automate security operations using Python, PowerShell, or Bash scripting.
  • Stay updated on emerging cyber threats, vulnerabilities, and industry best practices.

Preferred candidate profile

  • 5 to 10 years of experience in Information Security, Cyber Security, or SOC Operations.
  • Bachelor's degree in Computer Science, Information Technology, Cyber Security, Electronics, or a related field (MCA/M.Tech preferred).
  • Strong hands-on experience with SIEM, VAPT, Incident Response, Threat Hunting, and Security Operations.
  • Expertise in firewalls, IDS/IPS, EDR/XDR, IAM, and cloud security (AWS/Azure/GCP).
  • Good knowledge of ISO 27001, NIST, CIS Controls, PCI DSS, SOC 2, and security governance.
  • Experience with tools such as Splunk, Microsoft Sentinel, QRadar, Nessus, Qualys, Burp Suite, Wireshark, Metasploit, and Nmap.
  • Proficiency in Linux, Windows Server, networking concepts (TCP/IP, DNS, VPN), and scripting (Python, PowerShell, Bash).
  • Strong analytical, troubleshooting, documentation, and communication skills.
  • Industry certifications such as CISSP, CISM, CEH, CompTIA Security+, CCSP, OSCP, or equivalent are highly preferred.
  • Ability to work independently, manage multiple priorities, and collaborate effectively with cross-functional teams.