Senior Security Analyst

3 weeks ago


Pune, India Energy Exemplar Full time
About the Position
Energy Exemplar is looking for a Senior Security Compliance Analyst who will perform duties related to compliance certifications, continuous monitoring of the controls and operational security administration, analysis of security related incidents, vulnerabilities and events that may affect Energy Exemplar and its clients.
Candidate Requirements & Qualifications
- Minimum 6 years of related experience in Compliance and information security.
- Well versed in technologies like Windows, Antivirus, Data loss prevention (DLP).
- Must have experience in Firewalls, Cloud platforms and content filtering solutions.
- Must have experience in the creating and maintaining security policy documents.
- Good to have experience with regular vulnerability and web application scanning methodologies.
- Crisis management (Incident Management) identification and reporting.
- Network and cloud-based penetration testing experience required
- Incident response experience and prepare relevant security metrics dashboards
- 2-4 years’ experience with Firewall, Network, Anti-Virus, DLP, Azure, AWS, and Desktop security administration
- Proficiency with security tools and platforms (e.g., SIEMs, vulnerability scanners, and malware analyzers)
- Familiarity with IDS/IPS systems and endpoint Antivirus and EDR products
- Insider Threat Hunting and Analysis
- 2 + years of professional experience focused on ITIL standards and practices.
- Knowledge of current security standards, including ISO 27001, ISO 9001, SOC2, SOC 1, FERC, CEII, GDPR
- Ability to understand enterprise business computing operations/requirements, and cloud-based cybersecurity services.
- Working knowledge DevOps concepts (e.g., Infrastructure as Code, Deployment Pipelines)
- Must have a general hands-on IT background with the capability and enthusiasm of delving into new technologies.
- Must be willing to work in different time zones.
- Good communication, presentation, documentation skills.
- Collaborate closely with Clous Ops, IT and Other function as a first line security point of contact within the GRC team.
Key Responsibilities
- Provide compliance guidance to cloud security offering business units and product teams
- Support Internal/External ISO 27001/9001, SOC 2, SOC 1 and any new regional assessments requirements (e.g. IRAP) to support business growth.
- Work effectively as part of a geographically distributed team
- Develop and maintain security operations processes & documentation (e.g., runbooks, operating procedures, Cyber Incidence response)
- Maintain event collection environment through health monitoring and logs from Fire Walls, VPN, Email protection, Network Analytics, access control cards system and CCTV.
- Interact with various security products and platforms, including: O365, MimeCast, WorkspaceOne, Fortinet, Cloud Hosting Providers (Azure, AWS) and others.
- Provide support for implementation and maintenance of SIEM, DLP, endpoint protection, and other security tool alerts.
- Provide hands on based input of vendor proposals and emerging security technologies and systems.
- Coordinate, track and Manage CEII compliance.
- Provide technical expertise and support to IT management and staff in the implementation of security/protection technologies and network systems/applications.
- Assist with penetration testing and vulnerability management efforts.
- Participate in customer audits and respond to infosec questionnaires as part of the RFP process.
- Participate in incident management activities which include associated investigations, ticket response, communications including periodic tabletop exercises..
- Assist in Risk Management, Vendor Management, and governance of Information Security policies across the company.
- Continuously improve our security practices and processes and keep company and customer data safe across our services and infrastructure.
- Design and build metrics and dashboards to track security incidents, vulnerabilities, risks, and awareness
- Perform continuous monitoring of the controls including but not limited to:
- Track and Monitor ISO and SOC 2, SOC 1 and overall common control framework, gather and review evidences.
- Vulnerability and hardening compliance scan monitoring, reporting and reviews
- Driving vulnerability remediations within prescribed timeframes
- Inventory management and reporting
- Vulnerability deviation request processing, tracking and reviews
- Plan of Action & Milestones (POA&M) updates and submissions
- System Security Status reporting
- Monthly Continuous-Monitoring Metrics reporting
- Compliance review of Significant change requests
Desired but not required (not needed for every position)
- Good to have experience with regular vulnerability and web application scanning methodologies.
- Project Management knowledge and experience are a strong plus.
Energy Exemplar is an equal opportunities employer and we value your unique identity and perspective. We are fully committed to providing and fostering a workplace that reflects the diversity of society. Bring your authentic self and help us build an inclusive world together To support you in being the best version of yourself during the application and interview process, please let us know if you have any specific requirements.

  • Pune, Maharashtra, India Western Union Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    Senior Analyst, Security (SOC Analyst)– Pune, IndiaWant to work on global strategic initiatives with a FinTech company that is poised to revolutionize the industry? Are you excited to work within the Cyber Security space? Join the team and help shape our company's digital capabilities and revolutionize an industry Join Western Union as a Information...

  • Security Analyst

    19 hours ago


    Pune, Maharashtra, India VME Vhire Solutions Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    Skills: ISO 27001, Information Security, Microsoft ToolsThe Senior Information Security Analyst within the Information Security division isresponsible for identifying, analysing, managing risks and providing assurance toAllianz Technology services. The Security analyst will act as a contact person for theService Managers/Third Party vendors and is working in...


  • Pune, India Exela Technologies Full time

    Enterprise Risk & Compliance - Security Analyst will play a significant role in our SOX Compliance department to standardize and operationalize our Regulatory and internal Compliance framework. Job Details: Role: Enterprise Risk & Compliance – Security Analyst Work Location: Pune Work Type: Work From Office Responsibilities: Collaborate with internal...


  • Pune, India Exela Technologies Full time

    Enterprise Risk & Compliance - Security Analyst will play a significant role in our SOX Compliancedepartment to standardize and operationalize our Regulatory and internal Compliance framework.Job Details:- Role: Enterprise Risk & Compliance – Security Analyst- Work Location: Pune- Work Type: Work From OfficeResponsibilities:- Collaborate with internal...


  • Pune, India Exela Technologies Full time

    Enterprise Risk & Compliance - Security Analyst will play a significant role in our SOX Compliance department to standardize and operationalize our Regulatory and internal Compliance framework. Job Details: Role: Enterprise Risk & Compliance – Security Analyst Work Location: Pune Work Type: Work From Office Responsibilities: Collaborate with internal...


  • Pune, India Exela Technologies Full time

    Enterprise Risk & Compliance - Security Analyst will play a significant role in our SOX Compliance department to standardize and operationalize our Regulatory and internal Compliance framework. Job Details: - Role: Enterprise Risk & Compliance – Security Analyst - Work Location: Pune - Work Type: Work From Office Responsibilities: - Collaborate with...


  • Pune, India Exela Technologies Full time

    Enterprise Risk & Compliance - Security Analyst will play a significant role in our SOX Compliance department to standardize and operationalize our Regulatory and internal Compliance framework. Job Details: Role: Enterprise Risk & Compliance – Security Analyst Work Location: Pune Work Type: Work From Office Responsibilities: Collaborate with internal...


  • Pune, India Exela Technologies Full time

    Enterprise Risk & Compliance - Security Analyst will play a significant role in our SOX Compliancedepartment to standardize and operationalize our Regulatory and internal Compliance framework.Job Details:- Role: Enterprise Risk & Compliance – Security Analyst- Work Location: Pune- Work Type: Work From OfficeResponsibilities:- Collaborate with internal...


  • Pune, India Snowflake Full time

    Where Data Does More. Join the Snowflake team. Snowflake is looking for a Senior Security Risk Analyst to join our Global Security Compliance & Risk team and help manage and improve on the existing program for assessing the risk of third party tools and services in use by Snowflake. You will be responsible for managing the intake process, working with...


  • Pune, India Snowflake Full time

    Where Data Does More. Join the Snowflake team. Snowflake is looking for a Senior Security Risk Analyst to join our Global Security Compliance & Risk team and help manage and improve on the existing program for assessing the risk of third party tools and services in use by Snowflake. You will be responsible for managing the intake process, working with...