HamburgerMenu
hirist

VAPT Infra Lead - Cyber Security

Leading Banking Client
Mumbai
4 - 11 Years

Posted on: 06/03/2026

Job Description

Description :

Role Overview :

As the VAPT Infra Lead, you will be responsible for leading and managing the Vulnerability Assessment and Penetration Testing (VAPT) infrastructure for a leading bank in Mumbai. You will work closely with the IT Security team, application development teams, and infrastructure teams to ensure the bank's systems and applications are secure and resilient against cyber threats. This role is critical in safeguarding the bank's assets and maintaining customer trust by proactively identifying and mitigating vulnerabilities.

Key Responsibilities :

- Develop and maintain the VAPT strategy and roadmap, aligning it with the bank's overall security objectives.

- Manage and oversee the execution of VAPT activities, ensuring timely and effective identification of vulnerabilities.

- Collaborate with application development and infrastructure teams to remediate identified vulnerabilities, reducing the bank's attack surface.

- Conduct regular security assessments of the bank's infrastructure, applications, and systems, providing actionable recommendations for improvement.

- Stay abreast of the latest security threats and vulnerabilities, proactively identifying and mitigating potential risks to the bank.

- Manage and mentor a team of VAPT professionals, fostering a culture of continuous learning and improvement.

- Develop and maintain VAPT-related policies, procedures, and standards, ensuring compliance with regulatory requirements.

- Report on VAPT activities and findings to senior management, providing insights into the bank's security posture.

Required Skillset :

- Demonstrated ability to design, implement, and manage VAPT programs within a large enterprise environment.

- Proven expertise in conducting vulnerability assessments and penetration testing across various platforms and technologies.

- Strong understanding of security principles, frameworks, and best practices, including OWASP, NIST, and ISO 27001.

- Excellent communication and interpersonal skills, with the ability to effectively communicate technical information to both technical and non-technical audiences.

- Bachelor's degree in Computer Science, Information Security, or a related field. Relevant certifications such as CISSP, CISM, CEH, or OSCP are highly desirable.

- Ability to work effectively in a fast-paced, demanding environment, adapting to changing priorities and requirements.


info-icon

Did you find something suspicious?

Similar jobs that you might be interested in