Security Risk Management

1 week ago


Bengaluru, Karnataka, India Rubrik Full time

Job Summary

Information Security - Who We Are

The Information Security (InfoSec) organization advances the overall state of security at Rubrik through critical initiatives and coordination of large security projects. Information Security builds technologies, tools, and processes to better enable teams at Rubrik to develop secure software and protect data and systems with appropriate security controls. Information Security also develops systems to monitor and respond to attacks against our systems, provides awareness education to teams on security best practices for data protection, and ensures data sharing relationships with third parties in order to securely protect Rubrik information.

What You'll Do

We are looking for a senior information security risk and compliance analyst to be a part of our security risk management team, which focuses on building and supporting a security risk oversight function. Help us elevate and accelerate the maturity of our risk management and compliance capabilities by leading prioritized activities related to our security risk management strategy. The successful candidate will need to build and maintain strong cross-functional relationships across the company. To achieve this you must have excellent leadership, communication, and decision making skills.

Responsibilities:

Lead the collection and in-depth analysis of security risk data, employing advanced quantitative and qualitative techniques. Strategize and implement comprehensive risk analysis frameworks using real-world security data, advanced analytics, and systems automation. Regularly document and present sophisticated security risk analyses, fostering collaboration across all organizational levels, including executive leadership. Drive the enhancement of the security program, identifying and integrating cutting-edge opportunities to apply advanced security principles and technologies. Oversee and evaluate the security configurations of new or existing applications, software, or utilities, providing high-level risk management recommendations. Spearhead strategic and technical initiatives, conduct comprehensive Operational Risk Assessments, oversee Risk Acceptance processes, and develop strategic risk posture and remediation plans. Monitor, assess, and enhance security measures to protect against advanced threats or hazards to information privacy, security, or integrity. Lead the risk and compliance team, building robust cross-functional relationships across the company to achieve consensus, set expectations, and promote continuous process improvement. Direct the production and refinement of security governance, risk, and compliance analysis and reporting, ensuring superior content quality and timely delivery. Own and lead the remediation of complex technical security and compliance risks with cross-functional teams, orchestrating meetings, assigning and tracking tasks, and generating comprehensive reports.

Preferred Qualifications:

7+ years of experience in Information Security Governance, Risk and Compliance (GRC) or relevant high-level compliance roles, preferably in the technology sector. Proven leadership in managing comprehensive security and/or operational risk frameworks in organizations with sophisticated risk oversight functions. Expertise in designing and operationalizing risk & control assessments, with a deep understanding of various information levels and assessment strategies. Proficient in managing risk registers and prioritizing security-related initiatives. Capable of designing and executing strategic solutions, operational plans, and roadmaps to achieve organizational goals. Experience in implementing and leveraging agile methodologies within a GRC technology framework. Demonstrated executive presence, with a track record of representing visions and building consensus among diverse stakeholders. Advanced skills in estimating work efforts and fostering team skill development to meet objectives. In-depth knowledge of security risks, vulnerabilities, and threats, with the ability to lead discussions on risk treatment and management. Comprehensive understanding of prominent information security frameworks, regulatory compliance requirements, and risk management methodologies. Expertise in risk quantification, with experience in FAIR or similar models for risk analysis and reporting. Advanced proficiency in data analytics and business intelligence tools, along with agile project management platforms. Exceptional problem-solving skills, with an ability to grasp the larger context while managing detailed technical issues. Quick learner with the capacity to adapt to new technologies and methodologies with minimal transition time. Effective communicator, capable of discussing technical and business issues with varied audiences. Experience in fast-paced, high-growth environments is desirable. Advanced degree in Security, Computer Science, Management Information Systems, or a related field is preferred. Experience in SaaS and data management industries is a plus. Professional certifications in Information Security or Risk Management (e.g., CISA, CISM, CRISC, CGEIT, CSX-P, CISSP, CCSK) are strongly preferred.

  • Bengaluru, Karnataka, India Cepheid Full time

    The Information Security Risk & Controls Architect is responsible for managing and maintaining Cepheid's Information Security Risk Management Processes. This role will help define the approach, tools, and processes, which assess and protects the organization's most sensitive and critical information assets.:***: This position is part of the Information...


  • Bengaluru, Karnataka, India eliterecruitments Full time

    Information Security Risk Assessor (ISRA):We are looking for an Information Security Risk Assessor (ISRA) to join our client's team. In this role, you will play a crucial part in securing our projects by design through the delivery of Information Security Assurance Plans based on ISO Risk Management principles.Location - Pune/BangaloreExperience - 4 To 10...


  • Bengaluru, Karnataka, India Take-Two Interactive Software Full time

    About the PositionJob Title:Information Security Risk AnalystWho We Are:Take-Two Interactive Software, Inc. is a leading developer, publisher, and marketer of interactive entertainment for consumers around the globe. For more than 25 years, our development teams have created some of the most critically acclaimed and commercially successful entertainment...


  • Bengaluru, Karnataka, India Take-Two Interactive Full time

    Job Title: Information Security Risk AnalystWho We Are:Take-Two Interactive Software, Inc. is a leading developer, publisher, and marketer of interactive entertainment for consumers around the globe. For more than 25 years, our development teams have created some of the most critically acclaimed and commercially successful entertainment experiences,...

  • IT Risk Management

    2 weeks ago


    Bengaluru, Karnataka, India TD Newton Full time

    Role: IT Risk ManagementExperience: 5+ YearsLocation: BangaloreHybrid ModelAs a Risk Manager you will identify risks to IT systems, -infrastructure and computerized equipment, evaluate system architecture and identify controls needed to mitigate the risk. This includes performing an IT risk assessment and managing IT risks throughout the operational...

  • IT Risk Management

    2 weeks ago


    Bengaluru, Karnataka, India TD Newton Full time

    Job Role: IT Risk Management Location: Bengaluru Experience: 5+ years Work Mode: Hybrid (3 days work from office) Job Description: As a Risk Manager you will identify risks to IT systems, -infrastructure and computerised equipment, evaluate system architecture and identify controls needed to mitigate the risk. This includes performing an IT risk assessment...


  • Bengaluru, Karnataka, India NorthClan Full time

    Job Title: Information Security Governance Specialist at a leading IT company Responsibilities: Develop and finalize policies, procedures, and guidelines related to IT and Infosec domains following industry best practices such as ISO 27001 and ITIL. Align internal IT and Infosec processes with RBI IT and security guidelines. Assist IT and Infosec Team in...


  • Bengaluru, Karnataka, India timesjobs Full time

    Job Summary: This role will undertake and deliver security projects effectively and efficiently with enhanced business requirements as well as ensuring compliance to security standards and policies.This role provides operational and conformance checking of information security implemented. The role will undertake specific security tasks directly and will...


  • Bengaluru, Karnataka, India timesjobs Full time

    Job Summary: This role will undertake and deliver security projects effectively and efficiently with enhanced business requirements as well as ensuring compliance to security standards and policies.This role provides operational and conformance checking of information security implemented. The role will undertake specific security tasks directly and will...


  • Bengaluru, Karnataka, India Archer Integrated Risk Management Full time

    Title: Manager - Software Engineering Location: Bangalore, India Archer Technologies helps organizations manage risk in the digital era – uniting stakeholders, integrating technologies and transforming risk into reward.As true pioneers in Integrated Risk Management (IRM) software, Archer remains solely dedicated to helping customers manage risk and...


  • Bengaluru, Karnataka, India Paradise Placement Consultancy Full time

    Job Description: Job Title: Infosec Lead Department: IT Level/Designation Manager/Sr. Manager Position Type: Full Time Job Overview This role is responsible for implementing processes such as GRC to automate and continuously monitor the information security controls, risks, etc. Evaluates the firm to ensure compliance with security standards...


  • Bengaluru, Karnataka, India Paradise Placement Consultancy Full time

    Job Description:Job Title:Infosec LeadDepartment:ITLevel/DesignationManager/Sr. ManagerPosition Type:Full TimeJob OverviewThis role is responsible for implementing processes such as GRC to automate and continuously monitor the information security controls, risks, etc. Evaluates the firm to ensure compliance with security standards andrelevance with industry...


  • Bengaluru, Karnataka, India Archer Integrated Risk Management Full time

    Title: Manager - Software EngineeringLocation: Bangalore, IndiaArcher Technologies helps organizations manage risk in the digital era – unitingstakeholders, integrating technologies and transforming risk into reward. As true pioneers inIntegrated Risk Management (IRM) software, Archer remains solely dedicated to helpingcustomers manage risk and compliance...


  • Bengaluru, Karnataka, India Archer Integrated Risk Management Full time

    Title: Manager 2 - Software EngineeringLocation: Bangalore, IndiaArcher Technologies helps organizations manage risk in the digital era – unitingstakeholders, integrating technologies and transforming risk into reward. As true pioneers inIntegrated Risk Management (IRM) software, Archer remains solely dedicated to helpingcustomers manage risk and...


  • Bengaluru, Karnataka, India Archer Integrated Risk Management Full time

    Title: Manager - Software Engineering Location: Bangalore, India Archer Technologies helps organizations manage risk in the digital era – uniting stakeholders, integrating technologies and transforming risk into reward. As true pioneers in Integrated Risk Management (IRM) software, Archer remains solely dedicated to helping customers manage risk and...


  • Bengaluru, Karnataka, India Archer Integrated Risk Management Full time

    Title: Manager - Software EngineeringLocation: Bangalore, IndiaArcher Technologies helps organizations manage risk in the digital era – unitingstakeholders, integrating technologies and transforming risk into reward. As true pioneers inIntegrated Risk Management (IRM) software, Archer remains solely dedicated to helpingcustomers manage risk and compliance...


  • Bengaluru, Karnataka, India Whatfix Full time

    Position Summary: The Security Compliance Specialist is responsible for managing all compliance related activities within the Whatfix platform and supporting other global compliance related initiatives. Compliance activities will include coordinating internal and external assessments/audits, contributing to policy and standards updates, developing...


  • Bengaluru, Karnataka, India RSA Security Full time

    Responsibilities Work on any number of security and identity related areas and products Build systems for detecting anomalous activities within the product Develops and administers software engineering procedures and training for vulnerability scans and static code analysis Analyse vulnerability report of various SCA and SAST scan tools like, Black Duck,...


  • Bengaluru, Karnataka, India Unity Full time

    Role DescriptionThe opportunityUnity understands the significance of a solid Security Program. The Security Program is key to maintaining customer confidence in our products and is the pathway to a well-tuned, functional Information Security Management System, Compliance and Program. This will be a chance to work on real security problems in a fast-paced...


  • Bengaluru, Karnataka, India PeopleLogic Business Solutions Full time

    Role/Job Description*** 2. Control and report on the Landing Zone security as described and the security controls for example NIST cloud controls 3. Control and report (with the support public Cloud CSRO lead) on the security of CSP service on the Group Catalog.*** 4. Handle security alerts (Skynet) or incident. Manage IT risk and SSI compliance**: Frame...