Staff InfoSec Risk and Compliance Analyst

1 day ago


Bengaluru, Karnataka, India Leading-Biotechnology-Company Full time

Position Summary:

As a Staff InfoSec Risk and Compliance Analyst (SAP GRC Specialist) at Illumina, you will utilize your application security skills to plan and implement security measures on a variety of SAP systems including ECC, Solution Manager, GRC, APO, IBP, EWM, GTS and Fiori. You will be primarily responsible for assessing access impacts and ensuring these SAP systems are integrated with SAP's GRC platform to ensure proper segregations of duties are established not only within the applications themselves, but across multiple applications as well. Lastly, if SAP doesnt supply an out of the box GRC ruleset, youll be asked to develop one by understanding the functions tied with the application and working with risk owners to define which functions should not be combined.

Additionally, you will project lead for quarterly, and weekly releases by attending project meetings to gather requirements, provide guidance for role builds, and any utilization of custom transaction codes.

Responsibilities:

SAP Security Administration:

  • Support Audit Activities (Internal, External, SOX and FDA)
  • Support other SAP functions in implementing security measures
  • Assess access impacts, including but not limited to role definition, updates, provisioning, de-provisioning, and user maintenance
  • Ruleset maintenance for new transactions, functions, risks, and mitigation controls using SAP GRC
  • Perform GRC updates when new risks are identified via partnership with Internal Audit
  • Coordinate support pack upgrades, and security note implementation
  • Implement workflows to support SAP GRC processes
  • Implement GRC FIORI applications to enhance customer experience
  • Maintain SAP vulnerability management program
  • SAP Role/Group maintenance for SAP cloud products (IBP, Ariba)
  • SAP Role creation/maintenance for S4/HANA products
  • Implement security designs based on industrys best practice recommendations

People Leadership:

  • For Bangaluru location, you will be team lead for reports under the GRC Application Security Team.
  • Ensure policies and procedures are followed by direct reports
  • Ensure attendance and work performance goals are achieved
  • Work with onshore leads for new or altering work assignments

Documentation:

  • Policies, Work Instructions and Process Flows for business process
  • Conduct training to SAP Security stakeholders on best practices and risk assessment for new functionality

Project Support:

  • Work with SAP Role/Risk owners to provide security solutions for new or existing functionality
  • Partner with functional teams to design and implement access controls for new functionality

Requirements:

  • Minimum of 5 years Application Security experience (Application or Database Administration)
  • Knowledge of access provisioning and de-provisioning, role administration, CUA implementation/support and licensing controls.
  • Experience with implementation of SoX and FDA audit controls. Minimum of 4 audit cycles preferred
  • Setting up GRC ruleset for an application where a default ruleset was not provided by SAP, including S/4HANA services and applications.
  • Experience with security administration/risk management of SAP systems including but not limited to ECC, GRC, Solution Manager, Fiori, IBP, GTS, APO, EWM, HANA DB preferred.

Education:

  • Bachelor's Degree preferred

Scope of Responsibilities:

  • Applies advanced wide-ranging experience and professional knowledge to provide solutions in creative and effective ways.
  • Directs the application of existing principles and guides development of new policies and ideas. Understands the interrelationships of different disciplines.
  • Works on complex assignments where problem solving requires in-depth evaluation of varying factors and practices/procedures must be determined.
  • Enhances internal and external working relationships and networks with key contacts outside area of expertise.
  • Adapts style to differing audiences and frequently advises others on complex matters that relate to the wider business and require persuasion.
  • May train and mentor junior level staff.
  • Work is reviewed upon completion and is consistent with departmental objectives.
  • Exercises judgment in selecting methods, techniques, and evaluation criteria for obtaining results.

Experience / Education:

  • Typically requires a minimum of 8 years of related experience with a Bachelors degree; or 6 years and a Masters degree; or a PhD with 3 years of experience; or equivalent experience.


  • Bengaluru, Karnataka, India Leading-Biotechnology-Company Full time

    As an InfoSec Quality and Compliance Analyst (IT SOX Analyst) at Illumina, you will utilize your IT SOX analyst skills to execute logical security controls such as provisioning, de-provisioning, password parameters, periodic and privileged access reviews on SoX governed applications.Additionally, you will be attending project meetings to assess the impact on...


  • Bengaluru, Karnataka, India KreditBee Full time

    Job SummaryKreditBee is seeking a highly skilled Information Security Analyst to join our team. As an Information Security Analyst, you will be responsible for ensuring compliance with regulatory requirements, identifying and developing InfoSec policies, and monitoring compliance with InfoSec policies and regulatory requirements.Key ResponsibilitiesEnsure...


  • Bengaluru, Karnataka, India KreditBee Full time

    Job SummaryKreditBee is seeking a highly skilled Security Risk and Regulatory Compliance Specialist to join our team. As a key member of our organization, you will be responsible for ensuring compliance with regulatory requirements and industry benchmarks.Key ResponsibilitiesDevelop and implement InfoSec policies, processes, and procedures to ensure...


  • Bengaluru, Karnataka, India Nexthire Full time

    Job Title: Infosec Governance ExpertWe are looking for an experienced Infosec Governance Expert to join our team at Nexthire.Key Responsibilities:Develop and finalize policies, procedures, and guidelines related to IT and Infosec domains in alignment with industry best practices (ISO 27001 , GDPR and SOC 2).Align internal IT and Infosec processes as per ISO...


  • Bengaluru, Karnataka, India Illumina Full time

    About the RoleIllumina is seeking a highly skilled Senior Staff InfoSec Engineer to join our team. As a key member of our Information Security team, you will play a critical role in protecting our company's data and ensuring the security of our systems.Key ResponsibilitiesParticipate in the deployment and support of controls and processes that protect our...


  • Bengaluru, Karnataka, India Leading-Biotechnology-Company Full time

    The Staff IT Security, Risk & Compliance Analyst will work within the security certifications team to support and mature a strong security certifications and third-party risk management (TPRM) program, with an immediate goal to provide operation support in maintaining ISO:27001 and SOC 2 certifications for Illuminas cloud-based analytics products. The role...


  • Bengaluru, Karnataka, India Titan Company Full time

    Job Description:The Titan Company is seeking a skilled Risk Management and Compliance Analyst to join its team. The role is responsible for developing and implementing a robust system to identify potential risks or irregularities related to compliance with laws and regulations, as well as internal control procedures.Key Responsibilities:Development and...


  • Bengaluru, Karnataka, India Titan Company Full time

    Job Title: Risk Management and Compliance Data AnalystOverview: At Titan Company, we are seeking a highly skilled Data Analyst to join our team in the Jewellery Division. As a key member of our commercial operations team, you will play a vital role in identifying potential risks and irregularities related to compliance with laws and regulations.About You: We...


  • Bengaluru, Karnataka, India Goldman Sachs Full time

    Job DescriptionWe are seeking a highly skilled Compliance Risk Analyst to join our Business Unit Compliance team. As a key member of the team, you will be responsible for identifying and mitigating compliance, regulatory, and reputational risk across the firm.The ideal candidate will have a strong analytical mindset, excellent communication skills, and the...

  • Infosec Specialist

    1 month ago


    Bengaluru, Karnataka, India VCATCH Full time

    About VCATCHWe are a leading BPO company based in Bangalore, India, operating on Six-Sigma standards. Our goal is to help businesses achieve growth in their return on investment.Job OverviewWe are seeking an experienced Infosec Professional to ensure the security of our systems, networks, and data. This mid-level position requires 1 to 3 years of experience...


  • Bengaluru, Karnataka, India Leading-Biotechnology-Company Full time

    As an InfoSec Quality and Compliance Analyst (SAP Cloud Security Specialist) at Illumina, you will utilize your application security skills to plan and implement security measures on a variety of SAP systems including S/4HANA cloud, IBP, BTP, IAS, CPI, Ariba. You will be primarily responsible for implementing access controls following securitys best practice...


  • Bengaluru, Karnataka, India Transak Full time

    About TransakTransak is a leading cryptocurrency payment gateway serving over 8 million users worldwide. We partner with top companies like Coinbase, Metamask, and Trust Wallet to provide seamless access to cryptocurrencies. We seek a skilled Lead InfoSec/IT Engineer to lead our InfoSec/IT function as we scale globally.Job OverviewWe are looking for a highly...


  • Bengaluru, Karnataka, India Goldman Sachs Full time

    At Goldman Sachs, we're dedicated to upholding the highest standards of compliance and integrity in our business practices.OverviewWe're seeking a highly skilled Regulatory Compliance Risk Analyst to join our team in Bengaluru. As a key member of our Global Compliance Division, you'll play a critical role in ensuring that our firm operates in full compliance...

  • Lead InfoSec Manager

    1 month ago


    Bengaluru, Karnataka, India Transak Full time

    About Transak:Transak is a leading cryptocurrency payment gateway, serving over 8 million users worldwide. We work with top partners like Coinbase, Metamask, and Trust Wallet, providing seamless access to cryptocurrencies. We are seeking a highly skilled individual to lead our InfoSec/IT function as we scale globally.Job Overview:We are looking for a...

  • Lead InfoSec Engineer

    2 weeks ago


    Bengaluru, Karnataka, India Transak Full time

    About Transak:Transak is a leading cryptocurrency payment gateway serving millions of users worldwide.Job Overview:We are seeking a highly skilled and experienced InfoSec/IT Engineer to manage our IT infrastructure and security.Key Responsibilities:Design, implement, and manage MDM solutions to secure and control devices across the organization.Establish and...


  • Bengaluru, Karnataka, India Astuto Technologies Private Limited Full time

    About Astuto TechnologiesWe are a Cloud FinOps startup focused on helping businesses save Cloud costs, improve efficiency, and optimize ROI on Cloud Spend. Our vision is to build OneLens as an industry-leading Cloud FinOps platform.We have the backing of a global institutional investor and raised pre-seed funding.Role Overview:We are seeking a highly skilled...


  • Bengaluru, Karnataka, India Epifi Full time

    About EpifiWe're a FinTech startup on a mission to help our users demystify their finances, maximize their savings, and spend intelligently. Our team is passionate about creating delightful user experiences and doing the right thing. We're looking for exceptional, innovative people who share our values and are hungry to impact millions.Job SummaryThe Senior...


  • Bengaluru, Karnataka, India Thomson Reuters Full time

    About the Compliance Analyst RoleThe Compliance Analyst is a key member of the Enterprise Risk & Compliance program within Thomson Reuters Operations & Technology organization. This role supports various compliance activities, working closely with colleagues across the compliance team and other Thomson Reuters departments.Key ResponsibilitiesMonitor product...

  • Cyber Risk Analyst

    3 weeks ago


    Bengaluru, Karnataka, India Thomson Reuters Full time

    About the RoleAs a Vendor Cyber Risk Analyst at Thomson Reuters, you will play a critical role in ensuring the security and compliance of our third-party vendors and partners.ResponsibilitiesConduct thorough risk assessments of third-party vendors and partners to identify potential security, compliance, and operational risks.Review and analyze third-party...


  • Bengaluru, Karnataka, India WELLS FARGO BANK Full time

    We are seeking a highly skilled Strategic Risk Data Analyst Leader to join our team at Wells Fargo Bank. This is an exceptional opportunity for someone with expertise in risk analytics and leadership skills to make a meaningful impact.About the RoleThis role requires you to lead or participate in moderately complex initiatives, delivering insight and...