Analyst II, Risk and Compliance

10 hours ago


Gurugram, India Cvent Full time

Overview: We are seeking a proactive, technically skilled AI Risk Analyst to join our Information Security Risk & Compliance team in Gurgaon. Ideal candidates have 1–3 years of experience and will primarily lead and mature Cvent’s AI risk assessment program covering model and system risk reviews, data and privacy considerations, and secure enablement of AI use cases. You will also provide secondary support across broader Governance, Risk and Compliance (GRC) activities, including Third Party Risk Management (TPRM) collaboration and audit readiness, partnering with cross-functional teams to enable timely risk decisions and strengthen our overall posture. This is a hands-on role with significant stakeholder engagement and an opportunity to drive measurable impact. In This Role, You Will: Conduct comprehensive technical risk assessments for internal systems, projects, process improvements, AI initiatives, and vendor/product integrations, identifying risks, establishing mitigation plans, and collaborating with cross-functional teams to support effective risk treatment and mitigation. Actively participate in the third-party risk management program by conducting vendor security assessments, focusing on evaluating technical security controls, integration risks, and compliance requirements, including evaluating AI features and risks. Support in enhancing the third- party risk assessment program by maturing assessment approach, monitoring processes, re-evaluation criteria, and adopting a customized, AI-driven vendor security scorecard. Identify, document, and monitor risks, recommend technical treatment plans, and manage follow through closure and reporting. Support certification audits for ISO 27001 and 27701, SOC 2, PCI DSS, TX-RAMP, HIPAA, and ITGC SOX, assisting with evidence collection, remediation tracking, and automated data aggregation workflows. Conduct access control reviews to validate user permissions and enforce least privilege principles. Leverage security automation tools to monitor compliance metrics, detect anomalies, and generate reports for stakeholders. Contribute to the development, refinement, and implementation of security policies, standards, and procedures, emphasizing automation-driven workflows, actionable reporting, and incorporation of AI governance guidelines. Support the organization’s AI initiatives by engaging in AI solution development and adoption. Provide daily operational support for compliance initiatives, ensuring timely execution of projects and alignment with organizational security objectives Here's What You Need: Bachelor’s degree in computer science, Information Technology, Cybersecurity, or a related field (master’s preferred). 1-3 years of experience in development and risk engineering and AI security 1 - 3 years of demonstrable experience in security risk management, auditing and compliance, with a focus on supporting security risk assessments and security audit and compliance activities. Good interpersonal communication skills with experience and confidence in collaborating with internal and external partners and stakeholders to develop productive relationships and achieve positive security risk management outcomes. Ability to learn quickly with a willingness to take ownership for new projects and learning new technologies and methodologies. Understanding of risk assessment methodologies and best practices. Ability and willingness to produce and maintain documentation and reports, specifically developing policies, standards, risk assessment reports, and other forms of Security Risk Management Program documentation. Proficiency with productivity and collaboration tools, such as Microsoft Office, Slack, Box, and Zoom. Excellent presentation and written communications skills and a team-focused attitude. Must have Understanding of AI/ML concepts, including model development, training, and deployment. Familiarity with Generative AI (GenAI) risks, such as prompt injection, data leakage, model bias, and adversarial attacks. Experience with AI guardrails, including input/output sanitization, audit trail logging, and model vulnerability scanning. Knowledge of cloud security frameworks (e.g., AWS, Azure, GCP) for securing AI/ML deployments. Experience integrating AI-powered tools into existing security and compliance workflows. Ability to design scalable, automation-driven processes to reduce manual overhead. Conduct comprehensive technical risk assessments for internal systems, projects, process improvements, AI initiatives, and vendor/product integrations, identifying risks, establishing mitigation plans, and collaborating with cross-functional teams to support effective risk treatment and mitigation. Actively participate in the third-party risk management program by conducting vendor security assessments, focusing on evaluating technical security controls, integration risks, and compliance requirements, including evaluating AI features and risks. Support in enhancing the third- party risk assessment program by maturing assessment approach, monitoring processes, re-evaluation criteria, and adopting a customized, AI-driven vendor security scorecard. Identify, document, and monitor risks, recommend technical treatment plans, and manage follow through closure and reporting. Support certification audits for ISO 27001 and 27701, SOC 2, PCI DSS, TX-RAMP, HIPAA, and ITGC SOX, assisting with evidence collection, remediation tracking, and automated data aggregation workflows. Conduct access control reviews to validate user permissions and enforce least privilege principles. Leverage security automation tools to monitor compliance metrics, detect anomalies, and generate reports for stakeholders. Contribute to the development, refinement, and implementation of security policies, standards, and procedures, emphasizing automation-driven workflows, actionable reporting, and incorporation of AI governance guidelines. Support the organization’s AI initiatives by engaging in AI solution development and adoption. Provide daily operational support for compliance initiatives, ensuring timely execution of projects and alignment with organizational security objectives Bachelor’s degree in computer science, Information Technology, Cybersecurity, or a related field (master’s preferred). 1-3 years of experience in development and risk engineering and AI security 1 - 3 years of demonstrable experience in security risk management, auditing and compliance, with a focus on supporting security risk assessments and security audit and compliance activities. Good interpersonal communication skills with experience and confidence in collaborating with internal and external partners and stakeholders to develop productive relationships and achieve positive security risk management outcomes. Ability to learn quickly with a willingness to take ownership for new projects and learning new technologies and methodologies. Understanding of risk assessment methodologies and best practices. Ability and willingness to produce and maintain documentation and reports, specifically developing policies, standards, risk assessment reports, and other forms of Security Risk Management Program documentation. Proficiency with productivity and collaboration tools, such as Microsoft Office, Slack, Box, and Zoom. Excellent presentation and written communications skills and a team-focused attitude. Must have Understanding of AI/ML concepts, including model development, training, and deployment. Familiarity with Generative AI (GenAI) risks, such as prompt injection, data leakage, model bias, and adversarial attacks. Experience with AI guardrails, including input/output sanitization, audit trail logging, and model vulnerability scanning. Knowledge of cloud security frameworks (e.g., AWS, Azure, GCP) for securing AI/ML deployments. Experience integrating AI-powered tools into existing security and compliance workflows. Ability to design scalable, automation-driven processes to reduce manual overhead.


  • Lead Analyst, Risk

    11 hours ago


    Gurugram, India Cvent Full time

    Overview: We are seeking a proactive, technically skilled Lead Analyst to join our Information Security Risk & Compliance team in Gurgaon. Ideal candidates have 6–8 years of experience in information security risk management and will primarily lead and mature Cvent’s Third-Party Risk (TPRM) program end-to-end. You will also provide secondary support...

  • Lead Analyst, Risk

    4 weeks ago


    Gurugram, Gurugram, India Cvent Full time

    Job Description Overview We are seeking a proactive, technically skilled Lead Analyst to join our Information Security Risk & Compliance team in Gurgaon. Ideal candidates have 6-8 years of experience in information security risk management and will primarily lead and mature Cvent's Third-Party Risk (TPRM) program end-to-end. You will also provide secondary...


  • Gurugram, India Antal International Full time

    Job Description The Supply Chain Analyst II role will be heavily focused on data extraction and analysis supporting all aspects of Global Procurement’s Design & Transformation digitalization strategy. The role will enable Procurement in delivering KPIs associated with supplier performance, supply chain risk mitigation, margin recovery, volume growth,...


  • Gurugram, India Antal International Full time

    Job Description The Supply Chain Analyst II role will be heavily focused on data extraction and analysis supporting all aspects of Global Procurement’s Design & Transformation digitalization strategy. The role will enable Procurement in delivering KPIs associated with supplier performance, supply chain risk mitigation, margin recovery, volume growth,...


  • Gurugram, India McCormick Full time

    Supply Chain Analyst II GURGAON, IN, At McCormick, we bring our passion for flavor to work each day. We encourage growth, respect everyone's contributions and do what's right for our business, our people, our communities and our planet. Join us on our quest to make every meal and moment better. Founded in Baltimore, MD in 1889 in a room and a cellar by...

  • Vendor Management

    11 hours ago


    Gurugram, India Sago Full time

    Sago is seeking a detail-oriented and proactive Vendor Management & Compliance Analyst to support our third-party risk management and compliance efforts. The role is responsible for managing the full lifecycle of vendor relationships-from onboarding and due diligence to contract reviews and ongoing compliance monitoring-ensuring all vendors meet internal...


  • Gurugram, India DXC Technology Full time

    Job Description: Job Title: Analyst II Controllership Job Role: Record to Report Analyst Location: Chennai/Bangalore/NCR KEY ACCOUNTABILITIES & RESPONSIBILITIES Perform the Month End Complex Journals in accordance with the Finance Close Schedules Apprehend the closing Journals (like Revenue Accruals, Deferred Revenue, Tax and VAT) and ensure the...


  • gurugram, India RBS Full time

    Join us as a Risk Market Data AnalystWe'll look to you to take responsibility for market data processes, capturing and maintaining high quality market data and remediation work in relation to market and counterparty credit riskWorking directly with risk managers, you'll determine suitable sources of data, and suitable proxies where no such source existsThis...

  • Analyst-Compliance

    22 hours ago


    gurugram, India American Express Full time

    At American Express, our culture is built on a 175-year history of innovation, shared values and Leadership Behaviors, and an unwavering commitment to back our customers, communities, and colleagues. As part of Team Amex, you'll experience this powerful backing with comprehensive support for your holistic well-being and many opportunities to learn new...

  • Risk Reporting Analyst

    14 hours ago


    gurugram, India Citi Full time

    The Risk Reporting Analyst I is a trainee professional role. Requires a good knowledge of the range of processes, procedures and systems to be used in carrying out assigned tasks and a basic understanding of the underlying concepts and principles upon which the job is based. Good understanding of how the team interacts with others in accomplishing the...