Lead Engineer - Security Consultant

Esyasoft Holding Ltd

Kolkata Metropolitan Area

On-site

INR 4,000,000 - 7,000,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Esyasoft Technologies Private Limited is seeking a Senior Lead Engineer - Security Consultant in Joka, India. The role focuses on designing, implementing, and maintaining information security controls across enterprise systems and cloud environments.

Responsibilities include risk management, secure architecture, application and infrastructure security, compliance, and security awareness. Requires 8–13 years in information security and relevant certifications are preferred.

Qualifications

  • Bachelor's degree in CS/IT/Cyber Security or related field.
  • 8–13 years of experience in information security or cyber security consulting.
  • Strong knowledge of cyber security principles, tools, and frameworks.
  • Experience with vulnerability assessment and penetration testing tools.
  • Experience in application, infrastructure, and cloud security.
  • Understanding of networking, operating systems, and databases.
  • Excellent documentation and stakeholder communication skills.

Responsibilities

  • Architect enterprise-wide AppSec programs and embed security into CI/CD pipelines.
  • Design and review secure architectures for apps, cloud, and on-prem systems.
  • Support SAST, DAST, API security testing and secure coding reviews.
  • Lead SIEM deployments from design to operations.
  • Ensure compliance with ISO 27001, NIST, GDPR; prepare audits.
  • Provide security guidance to development and operations teams.

Skills

service component architecture
systems development

Education

Bachelor’s degree in CS/IT/Cyber Security

Job description

Esyasoft Technologies Private Limited | Full time

Senior Lead Engineer - Security Consultant
  • Relevant Experience (Years) 10 to 12 years
  • Required Skills
    • service component archite...
    • systems development
    • +22
  • Country India
  • City Joka
Job Description

The Security Consultant is responsible for assessing, designing,implementing, and maintaining information security controls to protectorganizational systems, networks, and data. The role ensures compliance withsecurity standards, manages cyber risks, and supports secure digitaltransformation initiatives.

Key Responsibility:

1. Security Assessment & Risk Management

  • Architectenterprise-wide Application Security (AppSec) programs across complex,distributed enterprise environments—embedding SAST, DAST, and SCA intoCI/CD pipelines to enable secure-by-design architecture and reducevulnerabilities.
  • Definesecure architecture patterns and guardrails, integrating AppSec controlsinto DevSecOps pipelines to standardize risk management acrossdistributed engineering teams.
  • Collaboratedwith Customer Security teams to embed security architecture principlesto produce secure project environment.
  • Experience in Application Security governance frameworks,aligning with NIST, ISO 27001, and PCI DSS to achieve compliance postureand audit readiness
  • Conductsecurity risk assessments, vulnerability assessments, and threatmodeling across applications, infrastructure, and networks.
  • Identifysecurity gaps and provide risk-based mitigation recommendations.
  • Performperiodic security posture reviews and maturity assessments.

2. Security Architecture & Solution Design

  • Designand review secure architecture for applications, cloud, and on-premisesystems.
  • Ensuresecurity-by-design principles are embedded in system development andintegration.
  • Reviewtechnical designs to ensure alignment with security standards and bestpractices.

3. Application & Infrastructure Security

  • Supportand define application security testing (SAST, DAST, API securitytesting).
  • Supportsecure coding practices and review source code for vulnerabilities.
  • Assessinfrastructure security including servers, databases, networks, andendpoints.
  • Implementand review cloud security controls for AWS, Azure, or GCP environments.
  • Integratesecurity tools into CI/CD pipelines (DevSecOps).
  • Lead full-lifecycleSIEM deployments, from HLD/LLD design through to steady-stateoperations.
  • Produce detailedsolution proposals, policies, and procedures to support secure, reliableSIEM services
  • Ensure secure configuration,identity access management, and logging in cloud platforms.

5. Security Operations & Incident Management

  • Supportsecurity incident detection, response, and investigation activities.
  • Performroot cause analysis and recommend corrective and preventive actions.
  • Coordinatewith SOC, IT, and business teams during security incidents.

6. Compliance & Governance

  • Ensurecompliance with security frameworks and regulations (ISO 27001, NIST,GDPR, etc.).
  • Supportinternal and external security audits and risk assessments.
  • Developand maintain security policies, standards, and procedures.

7. Awareness & Stakeholder Engagement

  • Providesecurity guidance to development, infrastructure, and business teams.
  • Conductsecurity awareness sessions and training programs.
  • Actas a trusted advisor on security best practices and emerging threats.
  • Stayupdated with latest cyber security threats, vulnerabilities, and trends.
  • Preparesecurity assessment reports, dashboards, and risk summaries formanagement.
  • Recommendcontinuous improvements to enhance organizational security posture.
Requirements

Qualification: Bachelor’s degree in Computer Science, Information Technology, Cyber Security, or related field.

Professional Certificate Preferred:

  • CISSP (Certified Information SystemsSecurity Professional).
  • CISM (Certified Information SecurityManager).
  • CEH (Certified Ethical Hacker).
  • ISO/IEC 27001 Lead Implementer or LeadAuditor.
  • AWS / Azure / GCP Security Certification.
  • CompTIA Security+ (added advantage).
Years of Exp: 8-13 years of experience in information security, cyber securityconsulting, or related roles

Job Specific Skill:

  • Strong knowledge of cyber securityprinciples, tools, and frameworks.
  • Hands-on experience with vulnerabilityassessment and penetration testing tools.
  • Experience in application, infrastructure,and cloud security.
  • Knowledge of security compliance andregulatory standards.
  • Understanding of networking, operatingsystems, and databases.
  • Strong documentation, reporting, andstakeholder communication skills.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead Engineer - Cyber Security
Lead Engineer - Cyber Security

Mphasis • Bengaluru

On-site
INR 3,500,000 - 7,000,000
Senior Engineer - Cyber Security
Senior Engineer - Cyber Security

Adani Group • Mumbai

On-site
INR 1,200,000 - 2,000,000
Cybersecurity Engineer / Lead
Cybersecurity Engineer / Lead

Talent Inspire Consulting • Mumbai

On-site
INR 800,000 - 1,500,000
Lead Security Engineer
Lead Security Engineer

Crossbow Cybersecurity • Bengaluru

On-site
INR 2,500,000 - 4,500,000
Competitive salary and benefits
Medical Insurance
Parental Support – Maternity Leave & Paternity Leave
+3
Security Architect
Security Architect

JUARA IT SOLUTIONS • Chennai District

On-site
INR 3,500,000 - 5,500,000
SOC Engineer
SOC Engineer

Mintskill HR Solutions LLP • Mumbai

On-site
INR 600,000 - 1,000,000
Senior Information Security Engineer
Senior Information Security Engineer

Imagine Learning • Bengaluru

On-site
INR 1,500,000 - 2,500,000
Sr. Information Security Engineer
Sr. Information Security Engineer

GBB • Mumbai

On-site
INR 1,200,000 - 1,500,000
Cyber Security Architect
Cyber Security Architect

Good co India • India

On-site
INR 2,400,000 - 4,800,000
Senior Security Engineer
Senior Security Engineer

Cynosure Corporate Solutions • Chennai District

On-site
INR 1,800,000 - 2,800,000