Jobs in India

Vulnerability Management Engineer in India

25 active opportunities · Updated October 2026

Explore current vulnerability management engineer jobs across India. Filter by work mode, employment type, experience, department, date posted and distance.

C
📍 India· Full-time
✓ High-confidence listing

$30K – $35K/yr

Quick readStrong listing-quality and freshness signals

SPECIFIC JOB RESPONSIBILITIES Defensive Operations (SecOps): Design and automate the Security Incident Response (SIR) and Vulnerability Response (VR) lifecycles. Build playbooks in Flow Designer to automate threat containment and remediation. Offensive Operations: Develop custom scoped applications to track penetration testing results, manage red-team engagement lifecycles, and automate the ingestion of reconnaissance data. Compliance & GRC: Configure and customize Integrated Risk Management (IRM) modules to map technical controls to frameworks like SOC2, ISO 27001, HIPAA, and FedRAMP. Integrations & Orchestration: Build robust, secure integrations (REST/SOAP, IntegrationHub , MID Servers) with our XDR, SIEM (Splunk/Sentinel), and cloud-native services (AWS/Azure/GCP). Multi-Tenancy & MSSP Architecture: Architect a scalable, multi-tenant environment that ensures strict data isolation between clients while allowing for unified " ClickOps " and Terraform-driven automation. AI & Innovation: Explore and implement Now Assist (GenAI) and AI-heavy workflows to automate security reporting and incident summarization. Defensive Operations (SecOps): Design and automate the Security Incident Response (SIR) and Vulnerability Response (VR) lifecycles. Build playbooks in Flow Designer to automate threat containment and remediation. Offensive Operations: Develop custom scoped applications to track penetration testing results, manage red-team engagement lifecycles, and automate the ingestion of reconnaissance data. Compliance & GRC: Configure and customize Integrated Risk Management (IRM) modules to map technical controls to frameworks like SOC2, ISO 27001, HIPAA, and FedRAMP. Integrations & Orchestration: Build robust, secure integrations (REST/SOAP, IntegrationHub , MID Servers) with our XDR, SIEM (Splunk/Sentinel), and cloud-native services (AWS/Azure/GCP)

AWSAzureGCPLinux
PE
📍 India· Full-time
✓ Quality checked

About Us: Paytm is India’s largest digital payments and financial services platform, leading the mobile QR revolution. We power millions of businesses and individuals, and we’re building scalable, resilient systems to serve half a billion Indians and beyond. Here at Paytm, technology isn't just about keeping up, it's about building the future. We believe the next generation of engineers must not only scale systems to billions but also leverage AI and GPT tools to accelerate innovation. Role Overview: We are seeking an experienced Senior Information Security Manager to lead our security initiatives and ensure the integrity, confidentiality, and availability of our systems and data. This role is crucial in safeguarding our digital assets and maintaining compliance with industry standards. 1. Should take care of Infosec functions by coordinating with various stakeholders 2. Lead and manage Vulnerability Assessment (VA) and Penetration Testing (PT) programs end to end. 3. Should have technical hands-on knowledge on different VAPT tools, like Qualys, Tenable, BurpSuite, Checkmarx etc. 4. Ensure all cyber security compliance and audits directions issued from time to time by the regulator like SEBI, RBI etc. 5. Coordination with SOC, Technology team to follow up the incidents till closure 6. Follow escalation matrix for delayed issues 7. Assist in Internal and External Audits (Regulatory) and work towards closure of observations if any 8. Should have project management espouse, to run the security PMO for ensuring the multiple initiatives with internal / external teams, vendors, and regulators. 9. Prepare and review new/existing policies, procedures, and secure configure/ hardening documents. 10. Should possess technical skills and knowledge to handle/manage security solutions if required 11. Should have understanding of data protection technologies & laws, including DLP, DSPM, DPDPA, IT Act and international regulations like GDPR 12. Exposure to Cloud Environment & Appl

C
📍 India· Full-time
✓ High-confidence listing
Quick readStrong listing-quality and freshness signals

POSITION SUMMARY The Consultant is responsible for supporting the Consulting Services Team in delivering cybersecurity, privacy, and compliance services across a diverse portfolio of client engagements. This role operates as a flexible, deployable resource, contributing to multiple concurrent or sequential engagements based on business needs. This role requires proactive initiative to study, ask questions, and rapidly learn the organization’s solutions, methodologies, and delivery standards. Consultants must be comfortable transitioning between engagements, adapting quickly to new client environments, and delivering value immediately. Consultants focus on executing client deliverables, enhancing service quality, and improving project efficiency under the guidance of senior team members. They are expected to develop broad subject matter expertise, contribute to process improvements, and build trusted relationships across a variety of clients and internal teams. SPECIFIC JOB RESPONSIBILITIES Serve as a deployable consulting resource, supporting multiple client engagements across varying industries, with a focus on healthcare. Adapt quickly to new client environments, priorities, and team structures while maintaining high-quality delivery. Support the execution of cybersecurity and compliance consulting engagements under senior leadership guidance. Work closely with clients to collect data, conduct risk assessments, gap analyses, and document findings. Assist in evaluating client security postures, including vulnerability management, compliance alignment, and risk exposure. Develop and contribute to recommendations aligned with industry frameworks such as NIST, ISO 27001, CIS Controls, and HIPAA. Support clients in designing and implementing security controls, policies, and procedures.

AIRustExcelProject Management
PE
📍 India· Full-time
✓ Quality checked

Role Summary We are seeking an experienced SOC / Security Operations Lead to oversee and strengthen the organization's Security Operations Center (SOC), threat detection, incident response, vulnerability management, data protection, and security monitoring capabilities. The ideal candidate will possess extensive experience in managing enterprise security operations, SIEM/SOAR platforms, threat hunting, incident response, DLP, endpoint security, and vulnerability management programs. The role requires leadership of a multi-functional security operations team responsible for protecting critical business systems, customer data, and digital assets while ensuring compliance with RBI regulations and industry security standards. Key Responsibilities Security Operations Center (SOC) Management -Lead and manage 24x7 Security Operations Center (SOC) functions. -Establish and enhance SOC processes, playbooks, escalation procedures, and operational metrics. -Ensure timely detection, triage, investigation, containment, and remediation of security incidents. -Develop SOC maturity roadmaps aligned with industry best practices and regulatory expectations. -Monitor security KPIs, SLAs, MTTR, MTTD, and incident response effectiveness. SIEM, XSIAM & Threat Detection -Lead implementation, administration, and optimization of: -Palo Alto Cortex XSIAM -SIEM Platforms -SOAR Platforms -UEBA Solutions -Threat Intelligence Platforms -Develop and tune correlation rules, detection logic, and analytics use cases. -Enhance detection coverage across cloud, endpoints, applications, networks, and third-party environments. -Drive threat hunting and proactive security monitoring initiatives. Incident Response & Threat Management -Lead enterprise cyber incident response activities. -Develop and maintain incident response plans, runbooks, and communication procedures. -Coordinate investigations involving malware, ransomware, phishing, insider threats, account compromise, fraud, and adv

PE
📍 India· Full-time
✓ Quality checked

About the role We are seeking an experienced and detail-oriented Information Security and Cloud Security Auditor to join our team. The ideal candidate will have 3-7 years of expertise in data security and privacy control implementation, internal auditing, third-party risk management, cybersecurity governance, and cloud security (banking sector preferred). This role will be responsible for conducting comprehensive IT and cloud security audits, ensuring compliance with regulatory requirements, and enhancing our information security policies and procedures. Key Responsibilities -Conduct IT and cloud security audits across various domains, including IT General Controls (ITGC), Information Security Controls, Cloud Security, Network Security, Vulnerability Management, and Vendor Risk Assessments. -Assess compliance with relevant laws, regulations, industry standards, and organizational policies across both on-premises and cloud environments. -Develop and enhance information security and cloud security policies and procedures in alignment with industry best practices. -Maintain thorough documentation of audit findings, risk assessments, security measures, working papers, audit program checklists, and evidence for internal and external reporting. -Validate ITGC, cloud security, and application-specific controls and manage audit documentation, risk assessments, evidence gathering, and control testing. -Follow up on audit findings and ensure timely closure of non-compliance and security issues identified during audits. -Manage and oversee third-party risk assessments and audits, ensuring robust security controls are implemented across traditional and cloud-based service providers. -Lead and participate in the development, migration, and implementation of security controls and policies for network and cloud security solutions. -Conduct risk-based security assessments of internal, vendor, and third-party hosted environments, covering both traditional IT infrastructure and cloud

AWSAzureGCPGit
AG
📍 Ahmedabad, Gujarat, India· Full-time
✓ Quality checkedCompany trend -82.5%

The OT Cybersecurity Specialist is responsible for supporting the implementation, monitoring, and management of cybersecurity measures for the organization’s Operational Technology (OT) systems. This role involves securing industrial control systems (ICS), SCADA systems, and other OT assets from cyber threats, conducting vulnerability assessments, monitoring networks for anomalies, and responding to security incidents. The OT Cybersecurity Specialist will work closely with other IT and cybersecurity teams to ensure a robust and secure OT environment. Source: Adani Group | Job ID: 45584

AG
📍 Ahmedabad, Gujarat, India· Full-time
✓ Quality checkedCompany trend -82.5%

The VAPT Lead will be responsible for leading the vulnerability assessment and penetration testing (VAPT) initiatives across the organization. This role involves managing the entire VAPT process, from planning and scoping assessments to executing and reporting on findings. The VAPT Lead will collaborate with other cybersecurity teams to identify, assess, and mitigate vulnerabilities in the organization’s infrastructure, applications, and network environments. The VAPT Lead is a key player in improving the security posture of the organization by providing in-depth security testing and actionable insights to prevent potential cyber threats. Source: Adani Group | Job ID: 56580

DC
📍 India· Full-time
✓ High-confidence listing
Quick readStrong listing-quality and freshness signals

Join Delphi - Where Innovation meets transformation At Delphi, we believe in creating an environment where our people thrive. Our hybrid work model empowers you to choose where you work—whether it's from the office, your home, or a mix of both—so you can prioritize what matters most. We are committed to supporting your personal goals, family, and overall well-being while driving transformative results for our clients. We welcome exceptional talent from anywhere across the globe. Interviews and onboarding are conducted virtually, reflecting our digital-first mindset. Rooted in the region, we specialize in delivering tailored, impactful solutions in Data, Advanced Analytics and AI, Infrastructure, Cloud Security, and Application Modernization. Whether it’s enabling predictive analytics , transforming operations with automation, or driving customer engagement with intelligent platforms, we are the trusted partner for organizations ready to embrace a smarter, more efficient future. We are looking for a highly skilled and detail-oriented Consultant – Quality Assurance to ensure the delivery of high-quality, secure, and reliable software solutions. The ideal candidate will have strong expertise in test strategy, automation frameworks, security testing, and AI-driven QA practices. This role requires close collaboration with cross-functional teams to drive quality across the SDLC while implementing modern automation and security standards. What You’ll Do: • Design, develop, and execute comprehensive test strategies, test plans, and test cases • Perform functional, regression, integration, system, and UAT testing • Lead and implement test automation frameworks to improve efficiency and coverage • Conduct Vulnerability Assessment & Penetration Testing (VAPT) – Expert Level (Preferred) to identify security risks • Integrate AI/ML-driven testing solutions for pre

AzureCI/CDGitRest
G
📍 India· Full-time
✓ High-confidence listingCompany trend +15.4%
Quick readStrong listing-quality and freshness signals

Location Details: India, Remote At GoDaddy the future of work looks different for each team. Some teams work in the office full-time; others have a hybrid arrangement (they work remotely some days and in the office some days) and some work entirely remotely.​ This is a remote position, so you’ll be working remotely from your home. You may occasionally visit a GoDaddy office to meet with your team for events or meetings. Join Our Team... GEDE (Global Edge and Domains Engineering) keeps GoDaddy's domains, edge, and aftermarket platforms running for millions of customers. Within GEDE, the Reliability Engineering team (Domains Production Engineering) is the group that gets the call when something breaks — and, more importantly, builds the systems that mean it breaks less often. We own the monitoring, compliance, and patching toolchain for the whole Domains infrastructure footprint, provide advanced incident support, and are actively modernizing how the org detects, diagnoses, and even auto-remediates issues with AI-assisted tooling! What you'll get to do... Build and evolve observability using Prometheus/Mimir, the Grafana LGTM stack, Elastic/OTEL, and Site24x7 — closing gaps across the org. Steer our cloud migration journey and bolster our efforts to keep the services reliable and performant. Own patching compliance and vulnerability remediation at scale across a mixed on-prem + AWS fleet, hitting hard SLA targets. Operate and extend our multi-tenant Kubernetes/ArgoCD platform, including the migration of core services. Contribute to our AI/automation initiatives: auto-generating runbooks from Prometheus alerts, ServiceNow change-risk scoring, and other tooling that reduces toil for the whole team Consult with partner dev teams on metrics, alert thresholds, and monitoring standards — this is a platform-enablement role, not just a ticket queue. Mentor other engineers on the team and help mature our operational practices. Your experience should include

PythonSQLPostgreSQLMySQL
O
📍 India· Full-time
✓ Quality checkedCompany trend -68.5%

Secure Every Identity, from AI to Human Identity is the key to unlocking the potential of AI. Okta secures AI by building the trusted, neutral infrastructure that enables organizations to safely embrace this new era. This work requires a relentless drive to solve complex challenges with real-world stakes. We are looking for builders and owners who operate with speed and urgency and execute with excellence. This is an opportunity to do career-defining work. We're all in on this mission. If you are too, let's talk. At Okta, our motto is "Always On" and nowhere do we embrace that more than in Technical Operations. We strive to build the most reliable and performant systems on the planet through the skillful use of automation. If you like to be challenged and have a passion for solving large-scale automation, testing, and tuning problems, we would love to hear from you. The ideal candidate is someone who exemplifies the ethics of, “If you have to do something more than once, automate it” and who can rapidly self-educate on new concepts and tools. You will work on: ● Mentoring, managing, and leading a team of SRE’s with a broad range of expertise and experience. ● Being an evangelist and advocate for security best practices, leading initiatives and projects to strengthen our security posture for our most critical infrastructure. ● Responding to production incidents, driving us to remediation as quickly as possible and determining how we can prevent them in the future. ● Triaging and troubleshooting complex production issues to ensure reliability and performance. ● Working closely with our stakeholders across the organization to ensure our new capabilities are aligned to our competing constraints of reliability, security, and delivery velocity. ● Partnering directly with recruiting and people ops to hire and retain the best talent in the world. ● Keep sharp eyes on our metrics, including vulnerability scanning and security posture,&nbsp

JavaAWSCI/CDLinux
🔔

Get new vulnerability management engineer jobs in India by email

Daily job updates · Unsubscribe anytime