Information Security Compliance Analyst

4 weeks ago


Bangalore, Karnataka, India Sumeru Global Technologies Full time

Job Brief :

- Compliance Analyst.

Responsibilities :

What you'll do :

- Assist with the implementation and management of Clients common/unified controls framework.

- Work as a subject matter expert on the process to interpret compliance regulations such as ISO27001, SOC1, SOC2, NIST 800-53 and NIST800-171 into actionable controls, with corresponding processes, policies, oversight.

- Ability to deep dive into the various Client control environments to develop technical understanding of control implementation, and articulate compliance implications to internal control owners and external audit functions.

- Build capabilities for automation of evidence and integration into GRC platforms.

- Work with external auditors on regulatory and compliance program audits and assessments.

- GRC and automation tooling API Integration: Collaborate with cross-functional teams to identify integration requirements and design solutions that connect our Technical Compliance platforms with third-party services, ensuring seamless data flow and functionality.

- Assist in the continuous effort of implementing and executing continuous monitoring activities to maintain a real time conformance view for Client SaaS environments.

- Assess: Seek out opportunities to improve verification of controls compliance, such as through automation of tests.

- Assess: Evaluate, document, and communicate business risk in the context of control designs and gaps.

- Assess: Evaluate and assess the effectiveness of management, operational, and technical security controls.

- Assess: Conducting walkthroughs and audits to assess the adequacy of controls for adherence to established policies, procedures, business practices, and compliance with the Client Unified Controls Framework.

- Assess: Obtaining and reviewing evidence, ensuring audit conclusions are well documented and based on a complete understanding of the processes and risks.

- Monitor compliance-led initiatives against KPIs, managing project risks, stakeholders, and excellent project delivery.

Requirements :

What we're looking for :

- Strong familiarity with risk management methodologies and common security controls frameworks, such as OX, ISO 27001, SOC I & II, NIST, CMMC, FedRamp, etc.

- Experience with security compliance monitoring tools/solutions offered natively in AWS, SIEM tools, GRC platforms, vulnerability scanning tools and log analysis, PAM (Privileged Access Management), and other infrastructure security tools.

- Ability to clearly communicate technical issues to non-technical audiences and others with varying backgrounds.

- Experience in performing and/or participating in technical assessments in direct support of other I.

- Security and Management Standards (such as, NIST 800-53, FedRAMP/StateRAMP, SOC 2).

- Relevant professional certifications, such as CISA, CISM, CISSP, GCCC, ISO 27001 Auditor.

- Experience in cloud technologies, cloud deployment models (IaaS/PaaS/SaaS), and audit of cloud environments.

- Bachelor's degree in Engineering, Information Systems, Business or related disciplines; Masters preferred with 2+ years of experience at a Big 4 consulting firms or similar.

- 5+ years as a technical compliance specialist, preferably at a late-stage tech startup/newly-public company; along with 5+ years of experience as a technical manager preferred.

- Self-sufficient and self-motivated; capable of working with ambiguity in a dynamic environment.

- Outstanding written and verbal communication skills will need to document policies and procedures, and articulate them well across all levels at Client.

- Strong collaboration and negotiation skills and demonstrated ability to manage multiple projects and priorities.

- Creative, business first approach to GRC with CISA, CISM, CISSP and other certifications a plus.

- A detailed understanding of evaluating the design and effectiveness of IT controls and experience working with auditors/regulators for these types of assessments.

Must Haves :

- 5+ experience.

(ref:hirist.tech)

  • Bangalore, Karnataka, India Allime Tech Solutions Full time

    Job Summary :Privacy Compliance Analyst with experience in data security technologies such as Classification, DLP, DRM along with exposure to implementation of data privacy and security frameworks.A continuous learner who is self-driven, team player and zeal to bring security transformation by reducing the exposure surface.Key Responsibilities :- Lead the...


  • Bangalore, Karnataka, India Dimiour Full time

    A Security Analyst, also known as an Information Security Analyst or Cybersecurity Analyst, is a professional responsible for protecting an organization's computer systems and networks. This role involves identifying and mitigating potential security threats, managing security tools, and ensuring compliance with security policies and regulations. Below...


  • Bangalore, Karnataka, India NetSysCon Full time

    We are looking for a Director Information Security for our client which is a VC funded Fintech PlatformJob Profile :- Ensure effective functioning of the Information Security function - managing policies & procedures, hardening of infrastructure and SDLC processes- Develop and maintain an information security strategy and roadmap aligned with organizational...


  • Bangalore, Karnataka, India Yo HR Consultancy Full time

    Role : Director - Information SecurityExperience : 5-8 yearsLocation : BangaloreMust have : - Experience working in a fast-paced B2B startup environment with an engineering team that has seen scale.- Prior experience in running or managing a SOC- Prior experience with global compliances across US, EU and UAE- ISO 27001- PCI DSSJob Description :Skills :- A...


  • Bangalore, Karnataka, India Navi Full time

    Job description :About the role :Navi is looking for an Associate Information Security to be part of the information security program at the Group Level ensuring cybersecurity compliance to the requirements put forth by regulators - RBI, IRDAI & SEBI.Key responsibilities :As Navi operates in the regulatory space, this role requires interpreting and helping...


  • Bangalore, Karnataka, India SignDesk Full time

    Job Title : Information Network & Security Officers. Location : Bangalore. Company Profile : SignDesk is a workflow automation and documentation product aimed at assisting businesses in digitizing and automating their documentation processes, We call it paperless Nirvana!. SignDesk's products constitute an end-to-end documentation system designed to...


  • Bangalore, Karnataka, India SDNA Global Full time

    PREFERRED EXPERIENCE :- Proven experience in leading the information security portfolio in large-scale enterprise- Minimum 15+ years of experience working with strong expertise in leading the Security function- Strong people leader with deep team management experience - Capable of driving a culture of high performance, ownership, and inclusion across the...


  • Bangalore, Karnataka, India IT Full time

    Job Overview :We are looking for an experienced IT Security Analyst with a strong background in vendor risk assessments, gap assessments, and information security audits. The ideal candidate will have at least 4 years of IT security experience and possess excellent communication skills. This role requires a proactive approach to identifying and mitigating...


  • Bangalore, Karnataka, India Domniclewis Full time

    IS Technical Analyst II - SAP Security and GRCDomnic Lewis is been mandated to hire IS Technical Analyst II - SAP Security and GRC for the Bangalore location.Position Overview:We are seeking a skilled professional to join our team in a role focusing on SAP Security, GRC, and project delivery. The successful candidate will collaborate with our US-led project...


  • Bangalore, Karnataka, India Zyoin group Full time

    Experience: 20+ YearsMandate Skills: HIPAA, NIST, CISSP or CISM, Cyber security management, privacy policies, PCI-DSS, CIS, procedures.Essential Functions: - Global Cybersecurity Strategy Alignment: Collaborate with both the India and US cybersecurity teams to align their strategies and initiatives. - Ensure that the goals and actions of both teams are...


  • Bangalore, Karnataka, India Prasanth Recruitment Services Full time

    ABOUT THE ROLE :This job requires you to be an IC as well as a leader who will be involved in all infosec aspects of Open, both for our banking clients and internal.ROLES & RESPONSIBILITIES :- Implement, manage, and maintain information security related compliances such as ISO 27001, GDPR, SOC 2 & 3, PCIDSS, etc.- Conduct periodic risk assessments and...

  • ISMS Implementator

    4 weeks ago


    Bangalore, Karnataka, India Aeroteck Manpower India Pvt Ltd Full time

    Role : ISMS ImplementerJob Description :- Responsible for implementation of ISO 27001, ISO 27701, ISO 22301 and ISO 20000.- Co-ordination with internal and external stakeholders, identifying gaps and remediation.- Ensure audit readiness and successful audits for all the required certifications.- Ensure adherence to customer requirements and any regulatory /...


  • Bangalore, Karnataka, India IT Full time

    Job Title : Data Security Specialist- .Experience Required : - 4+ years of experience in Data Security.Job Description : We are seeking a skilled Data Security Specialist with expertise in implementing and maintaining data security solutions. The ideal candidate will have hands-on experience with Varonis, Microsoft Data Loss Prevention (DLP), Insider Risk...


  • Bangalore, Karnataka, India Cephas Consultancy Services Private Limited Full time

    Job Description :We are seeking a highly motivated and security-conscious Allscripts SCM Security Analyst to join our team. In this role, you will be responsible for implementing and maintaining application security controls for Allscripts SCM, ensuring compliance with client policies and local regulations. You will also play a key role in documenting...

  • Security Analyst

    3 weeks ago


    Bangalore, Karnataka, India HeadPro Consulting LLP Full time

    Job Title : Security Analyst Vulnerability Management operationsLocation : BangaloreExp - 3 - 8 YearsBudget - 12.5LPA - 22.5LPAMandatory skills:1. Minimum 3 Years of experience in Vulnerability Management 2. Candidate should have experience working with internal stake holders with US Team3. Must have worked closely with Patch Management Team to process.4....


  • Bangalore, Karnataka, India Connectio IT Pvt Ltd Full time

    Role & Responsibilities: - Lead the development, implementation, and maintenance of the company's ISMS based on the ISO 27001 framework.- Conduct regular risk assessments to identify and prioritize security threats and vulnerabilities.- Develop and implement security policies, procedures, and standards to mitigate identified risks.- Manage and maintain...


  • Bangalore, Karnataka, India One Degree North HR Services Full time

    Flexible for rotational shiftsWork location : Bangalore.Summary :Lumen is a Global communications provider to enterprise customers. With customers in more than 60 countries and an intense focus on the customer experience, Lumen strives to be the world's best networking company by solving customers' increased demand for reliable and secure...

  • Cloud Analyst

    4 weeks ago


    Bangalore, Karnataka, India Growel Softech Pvt. Ltd. Full time

    Job Description :We are currently seeking a talented Cloud Analyst with 6 to 8 years of experience to join our team. The Cloud Analyst will play a crucial role in supporting our cloud infrastructure, optimizing cloud resources, and ensuring the reliability and security of our cloud-based systems.Responsibilities :- Cloud Infrastructure Management : Manage...


  • Bangalore, Karnataka, India Akal Information Systems Ltd Full time

    About role :Client : Unique Identification Authority of India (UIDAI)Payroll company : Akal Information Systems LimitedPosition : Specialist Security Devices and Networks / Senior Manager - Security OperationLocation : UIDAI HQ, New DelhiEducation Qualification : B.E/B.Tech/BCA/MCA/MTech or in relevant fieldExperience : 10+ years in network security and SOC...


  • Bangalore, Karnataka, India Grownex HR Solution Full time

    Title : Information Security / Data Privacy Consultant Base Location : Bengaluru Experience : 8-10 YearsKey Requirement : Should be willing to travel to Middle East for assignments.Role Brief : The consultant will be responsible for providing expert guidance, support, and advisory services to clients in implementing robust information security and data...