Information Security Risk Analyst

7 days ago


Bengaluru, India Equiniti Full time

Management Level

G

Core Duties/Responsibilities

Assist and conduct comprehensive risk assessments to identify potential cybersecurity threats and vulnerabilities across EQ’s infrastructure, data, applications, mobile and networks. Assist in conducting comprehensive security risk assessments for internal systems, third-party services, and cloud-based infrastructure. Review cloud architecture, deployment models, and services to identify gaps against industry best practices (e.g., CIS Benchmarks, NIST, ISO 27001). Utilise security tools and threat modelling techniques to evaluate the likelihood and impact of various security risks and identify the top priorities. Collaborate with DevOps and Cloud Engineering teams to advise on security controls and risk mitigation strategies in AWS, Azure. Analyse security data from multiple sources (including technical security documents, penetration testing results and code scans) to provide insights into potential risks and security gaps. Assist in designing and recommending risk mitigation strategies based on assessment findings, including updates to policies, security controls and technical solutions. Maintain Risk records and Risk Acceptances regarding IT, Information or Cyber Security in the Company’s Risk Register/GRC tool. Research, identify and interpret, with the help of legal and compliance team, cyber security requirements and standards (e.g. GDPR, NIST, ISO27001, SOX, AI Act, DORA). Stay up-to-date with evolving cybersecurity regulations and legal requirements at local, national and international levels in which EQ operates. Assist in compliance assessment and gap analysis to determine EQ’s adherence to relevant cybersecurity regulations and frameworks. Ensure that these are incorporated into the Risk Process so that they are rigorously applied, where necessary, to new and changed IT systems and applications. Conduct Risk Analysis of existing and new third-parties playing a significant role in the Company’s supply chain and with access to Company or customer data or the Company’s systems Track any significant risk issues arising to completion over agreed timescales. Assist by collecting and organising data, helping to identify potential risks across various business units and prepare appropriate metrics and reports. Support in the creation of regular and ad-hoc reports for Executives and senior management teams Engage with various developers and stakeholders across the business in selecting tailored security training on the training platform. Engage in knowledge sharing sessions on emerging threats and security risk trends. Assist the Information Security Risk Manager in developing and maintaining the EQ Security Risk Process. Assist in developing and implement risk management strategies. Collaborate with IT and security teams to implement technical measures like firewalls, encryption, and MFA. Analysis and improvement of existing information security policies guidelines and procedures, creating new ones where required Define best practice in the design and coding of proprietary systems developed by the Company and support the development teams in adhering to such practices with advice, education and provision of dynamic and static application security testing tools.

We are committed to equality of opportunity for all staff and applications from individuals are encouraged regardless of age, disability, sex, gender reassignment, sexual orientation, pregnancy and maternity, race, religion or belief and marriage and civil partnerships. Please note any offer of employment is subject to satisfactory pre-employment screening checks.



  • Bengaluru, India NXP Semiconductors Full time

    Job Description - Monitoring incoming third-party Information Security risk assessments - Carrying out third party Information Security risk analyses and identifying appropriate mitigation actions using Information Security controls - Actively following identified third-party mitigation actions to closure - Formulating and discussing appropriate Information...


  • Bengaluru, India Rubrik Security Cloud Full time

    About the team: The Information Security (InfoSec) organization advances the overall state of security at Rubrik through critical initiatives and coordination of large security projects. Information Security builds technologies, tools, and processes to better enable teams at Rubrik to develop secure software and protect data and systems with appropriate...


  • Bengaluru, Karnataka, India Rubrik Security Cloud Full time ₹ 5,00,000 - ₹ 8,00,000 per year

    About the team:The Information Security (InfoSec) organization advances the overall state of security at Rubrik through critical initiatives and coordination of large security projects. Information Security builds technologies, tools, and processes to better enable teams at Rubrik to develop secure software and protect data and systems with appropriate...


  • Bengaluru, India Ionic Wealth Full time

    Job Description The Information Security Analyst will be responsible for supporting and enhancing the organization's cybersecurity posture through comprehensive risk management, compliance, incident handling, and proactive threat monitoring. This role demands a proactive mindset, analytical capability, and the ability to collaborate across teams to ensure...


  • Bengaluru, Karnataka, India Infosys Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Analyst Information Security12.1. Knowledge of Cloud Security shared responsibility model Knowledge of various cloud environments, cloud security stack and cloud deployment models Evaluate the security offerings related to cloud security and recommend appropriate controls Working experience on Amazon web services, Azure and other related cloud...


  • Bengaluru, India Skyworks Full time

    If you are looking for a challenging and exciting career in the world of technology, then look no further. Skyworks is an innovator of high performance analog semiconductors whose solutions are powering the wireless networking revolution. At Skyworks, you will find a fast-paced environment with a strong focus on global collaboration, minimal layers of...


  • Bengaluru, India Skyworks Full time

    If you are looking for a challenging and exciting career in the world of technology, then look no further. Skyworks is an innovator of high performance analog semiconductors whose solutions are powering the wireless networking revolution. At Skyworks, you will find a fast-paced environment with a strong focus on global collaboration, minimal layers of...


  • Bengaluru, India Deutsche Bank Full time

    Job Description Information Security Analyst, AVP Position Overview Job Title: Information Security Analyst, AVP Location: Bangalore, India Role Description The Risk Lead Function covering Chief Security Office (CSO) CTO, IS Threat Operations and Office of the CSO is looking for an Information Security Specialist who will support the Risk Lead in...


  • Bengaluru, India Skyworks Solutions, Inc. Full time

    If you are looking for a challenging and exciting career in the world of technology, then look no further. Skyworks is an innovator of high performance analog semiconductors whose solutions are powering the wireless networking revolution. At Skyworks, you will find a fast-paced environment with a strong focus on global collaboration, minimal layers of...


  • Bengaluru, Karnataka, India Skyworks Solutions, Inc. Full time US$ 1,25,000 - US$ 1,75,000 per year

    If you are looking for a challenging and exciting career in the world of technology, then look no further. Skyworks is an innovator of high performance analog semiconductors whose solutions are powering the wireless networking revolution. At Skyworks, you will find a fast-paced environment with a strong focus on global collaboration, minimal layers of...