Staff InfoSec Risk and Compliance Analyst
1 day ago
Position Summary:
As a Staff InfoSec Risk and Compliance Analyst (SAP GRC Specialist) at Illumina, you will utilize your application security skills to plan and implement security measures on a variety of SAP systems including ECC, Solution Manager, GRC, APO, IBP, EWM, GTS and Fiori. You will be primarily responsible for assessing access impacts and ensuring these SAP systems are integrated with SAP's GRC platform to ensure proper segregations of duties are established not only within the applications themselves, but across multiple applications as well. Lastly, if SAP doesnt supply an out of the box GRC ruleset, youll be asked to develop one by understanding the functions tied with the application and working with risk owners to define which functions should not be combined.
Additionally, you will project lead for quarterly, and weekly releases by attending project meetings to gather requirements, provide guidance for role builds, and any utilization of custom transaction codes.
Responsibilities:
SAP Security Administration:
- Support Audit Activities (Internal, External, SOX and FDA)
- Support other SAP functions in implementing security measures
- Assess access impacts, including but not limited to role definition, updates, provisioning, de-provisioning, and user maintenance
- Ruleset maintenance for new transactions, functions, risks, and mitigation controls using SAP GRC
- Perform GRC updates when new risks are identified via partnership with Internal Audit
- Coordinate support pack upgrades, and security note implementation
- Implement workflows to support SAP GRC processes
- Implement GRC FIORI applications to enhance customer experience
- Maintain SAP vulnerability management program
- SAP Role/Group maintenance for SAP cloud products (IBP, Ariba)
- SAP Role creation/maintenance for S4/HANA products
- Implement security designs based on industrys best practice recommendations
People Leadership:
- For Bangaluru location, you will be team lead for reports under the GRC Application Security Team.
- Ensure policies and procedures are followed by direct reports
- Ensure attendance and work performance goals are achieved
- Work with onshore leads for new or altering work assignments
Documentation:
- Policies, Work Instructions and Process Flows for business process
- Conduct training to SAP Security stakeholders on best practices and risk assessment for new functionality
Project Support:
- Work with SAP Role/Risk owners to provide security solutions for new or existing functionality
- Partner with functional teams to design and implement access controls for new functionality
Requirements:
- Minimum of 5 years Application Security experience (Application or Database Administration)
- Knowledge of access provisioning and de-provisioning, role administration, CUA implementation/support and licensing controls.
- Experience with implementation of SoX and FDA audit controls. Minimum of 4 audit cycles preferred
- Setting up GRC ruleset for an application where a default ruleset was not provided by SAP, including S/4HANA services and applications.
- Experience with security administration/risk management of SAP systems including but not limited to ECC, GRC, Solution Manager, Fiori, IBP, GTS, APO, EWM, HANA DB preferred.
Education:
- Bachelor's Degree preferred
Scope of Responsibilities:
- Applies advanced wide-ranging experience and professional knowledge to provide solutions in creative and effective ways.
- Directs the application of existing principles and guides development of new policies and ideas. Understands the interrelationships of different disciplines.
- Works on complex assignments where problem solving requires in-depth evaluation of varying factors and practices/procedures must be determined.
- Enhances internal and external working relationships and networks with key contacts outside area of expertise.
- Adapts style to differing audiences and frequently advises others on complex matters that relate to the wider business and require persuasion.
- May train and mentor junior level staff.
- Work is reviewed upon completion and is consistent with departmental objectives.
- Exercises judgment in selecting methods, techniques, and evaluation criteria for obtaining results.
Experience / Education:
- Typically requires a minimum of 8 years of related experience with a Bachelors degree; or 6 years and a Masters degree; or a PhD with 3 years of experience; or equivalent experience.
-
InfoSec Quality and Compliance Analyst
1 day ago
Bengaluru, Karnataka, India Leading-Biotechnology-Company Full timeAs an InfoSec Quality and Compliance Analyst (IT SOX Analyst) at Illumina, you will utilize your IT SOX analyst skills to execute logical security controls such as provisioning, de-provisioning, password parameters, periodic and privileged access reviews on SoX governed applications.Additionally, you will be attending project meetings to assess the impact on...
-
Senior Information Security Specialist
1 month ago
Bengaluru, Karnataka, India KreditBee Full timeJob SummaryKreditBee is seeking a highly skilled Information Security Analyst to join our team. As an Information Security Analyst, you will be responsible for ensuring compliance with regulatory requirements, identifying and developing InfoSec policies, and monitoring compliance with InfoSec policies and regulatory requirements.Key ResponsibilitiesEnsure...
-
Bengaluru, Karnataka, India KreditBee Full timeJob SummaryKreditBee is seeking a highly skilled Security Risk and Regulatory Compliance Specialist to join our team. As a key member of our organization, you will be responsible for ensuring compliance with regulatory requirements and industry benchmarks.Key ResponsibilitiesDevelop and implement InfoSec policies, processes, and procedures to ensure...
-
Infosec Governance Expert
4 weeks ago
Bengaluru, Karnataka, India Nexthire Full timeJob Title: Infosec Governance ExpertWe are looking for an experienced Infosec Governance Expert to join our team at Nexthire.Key Responsibilities:Develop and finalize policies, procedures, and guidelines related to IT and Infosec domains in alignment with industry best practices (ISO 27001 , GDPR and SOC 2).Align internal IT and Infosec processes as per ISO...
-
Senior Staff InfoSec Engineer
1 month ago
Bengaluru, Karnataka, India Illumina Full timeAbout the RoleIllumina is seeking a highly skilled Senior Staff InfoSec Engineer to join our team. As a key member of our Information Security team, you will play a critical role in protecting our company's data and ensuring the security of our systems.Key ResponsibilitiesParticipate in the deployment and support of controls and processes that protect our...
-
Bengaluru, Karnataka, India Leading-Biotechnology-Company Full timeThe Staff IT Security, Risk & Compliance Analyst will work within the security certifications team to support and mature a strong security certifications and third-party risk management (TPRM) program, with an immediate goal to provide operation support in maintaining ISO:27001 and SOC 2 certifications for Illuminas cloud-based analytics products. The role...
-
Risk Management and Compliance Analyst
4 weeks ago
Bengaluru, Karnataka, India Titan Company Full timeJob Description:The Titan Company is seeking a skilled Risk Management and Compliance Analyst to join its team. The role is responsible for developing and implementing a robust system to identify potential risks or irregularities related to compliance with laws and regulations, as well as internal control procedures.Key Responsibilities:Development and...
-
Risk Management and Compliance Data Analyst
2 days ago
Bengaluru, Karnataka, India Titan Company Full timeJob Title: Risk Management and Compliance Data AnalystOverview: At Titan Company, we are seeking a highly skilled Data Analyst to join our team in the Jewellery Division. As a key member of our commercial operations team, you will play a vital role in identifying potential risks and irregularities related to compliance with laws and regulations.About You: We...
-
Compliance Risk Analyst
4 weeks ago
Bengaluru, Karnataka, India Goldman Sachs Full timeJob DescriptionWe are seeking a highly skilled Compliance Risk Analyst to join our Business Unit Compliance team. As a key member of the team, you will be responsible for identifying and mitigating compliance, regulatory, and reputational risk across the firm.The ideal candidate will have a strong analytical mindset, excellent communication skills, and the...
-
Infosec Specialist
1 month ago
Bengaluru, Karnataka, India VCATCH Full timeAbout VCATCHWe are a leading BPO company based in Bangalore, India, operating on Six-Sigma standards. Our goal is to help businesses achieve growth in their return on investment.Job OverviewWe are seeking an experienced Infosec Professional to ensure the security of our systems, networks, and data. This mid-level position requires 1 to 3 years of experience...
-
InfoSec Quality and Compliance Analyst
1 day ago
Bengaluru, Karnataka, India Leading-Biotechnology-Company Full timeAs an InfoSec Quality and Compliance Analyst (SAP Cloud Security Specialist) at Illumina, you will utilize your application security skills to plan and implement security measures on a variety of SAP systems including S/4HANA cloud, IBP, BTP, IAS, CPI, Ariba. You will be primarily responsible for implementing access controls following securitys best practice...
-
Lead InfoSec Professional
3 weeks ago
Bengaluru, Karnataka, India Transak Full timeAbout TransakTransak is a leading cryptocurrency payment gateway serving over 8 million users worldwide. We partner with top companies like Coinbase, Metamask, and Trust Wallet to provide seamless access to cryptocurrencies. We seek a skilled Lead InfoSec/IT Engineer to lead our InfoSec/IT function as we scale globally.Job OverviewWe are looking for a highly...
-
Regulatory Compliance Risk Analyst
1 day ago
Bengaluru, Karnataka, India Goldman Sachs Full timeAt Goldman Sachs, we're dedicated to upholding the highest standards of compliance and integrity in our business practices.OverviewWe're seeking a highly skilled Regulatory Compliance Risk Analyst to join our team in Bengaluru. As a key member of our Global Compliance Division, you'll play a critical role in ensuring that our firm operates in full compliance...
-
Lead InfoSec Manager
1 month ago
Bengaluru, Karnataka, India Transak Full timeAbout Transak:Transak is a leading cryptocurrency payment gateway, serving over 8 million users worldwide. We work with top partners like Coinbase, Metamask, and Trust Wallet, providing seamless access to cryptocurrencies. We are seeking a highly skilled individual to lead our InfoSec/IT function as we scale globally.Job Overview:We are looking for a...
-
Lead InfoSec Engineer
2 weeks ago
Bengaluru, Karnataka, India Transak Full timeAbout Transak:Transak is a leading cryptocurrency payment gateway serving millions of users worldwide.Job Overview:We are seeking a highly skilled and experienced InfoSec/IT Engineer to manage our IT infrastructure and security.Key Responsibilities:Design, implement, and manage MDM solutions to secure and control devices across the organization.Establish and...
-
InfoSec Specialist Astuto Technologies
4 weeks ago
Bengaluru, Karnataka, India Astuto Technologies Private Limited Full timeAbout Astuto TechnologiesWe are a Cloud FinOps startup focused on helping businesses save Cloud costs, improve efficiency, and optimize ROI on Cloud Spend. Our vision is to build OneLens as an industry-leading Cloud FinOps platform.We have the backing of a global institutional investor and raised pre-seed funding.Role Overview:We are seeking a highly skilled...
-
Senior Security Analyst
1 month ago
Bengaluru, Karnataka, India Epifi Full timeAbout EpifiWe're a FinTech startup on a mission to help our users demystify their finances, maximize their savings, and spend intelligently. Our team is passionate about creating delightful user experiences and doing the right thing. We're looking for exceptional, innovative people who share our values and are hungry to impact millions.Job SummaryThe Senior...
-
Compliance Risk Specialist
4 weeks ago
Bengaluru, Karnataka, India Thomson Reuters Full timeAbout the Compliance Analyst RoleThe Compliance Analyst is a key member of the Enterprise Risk & Compliance program within Thomson Reuters Operations & Technology organization. This role supports various compliance activities, working closely with colleagues across the compliance team and other Thomson Reuters departments.Key ResponsibilitiesMonitor product...
-
Cyber Risk Analyst
3 weeks ago
Bengaluru, Karnataka, India Thomson Reuters Full timeAbout the RoleAs a Vendor Cyber Risk Analyst at Thomson Reuters, you will play a critical role in ensuring the security and compliance of our third-party vendors and partners.ResponsibilitiesConduct thorough risk assessments of third-party vendors and partners to identify potential security, compliance, and operational risks.Review and analyze third-party...
-
Strategic Risk Data Analyst Leader
3 weeks ago
Bengaluru, Karnataka, India WELLS FARGO BANK Full timeWe are seeking a highly skilled Strategic Risk Data Analyst Leader to join our team at Wells Fargo Bank. This is an exceptional opportunity for someone with expertise in risk analytics and leadership skills to make a meaningful impact.About the RoleThis role requires you to lead or participate in moderately complex initiatives, delivering insight and...