Information Security Analyst

4 days ago


india Infosys Full time

Responsibilities:


  • Responsible for effective Cyber Security Governance & Roadmap across Infosys group of companies (“Infosys” or “Organization” or “Company”) & it’s Subsidiaries.
  • Liaison with all internal (ISG) and external (non-ISG) Managers to meet Cyber Security Governance objectives including Subsidiary point of contacts.
  • Institutionalize a robust Cyber Security Governance Framework which includes a best-in-class Cyber Security Strategy and its associated roadmap towards achieving its objectives.
  • Analyze and implement the Cyber Security Strategy to leverage new technology and threat vectors.
  • Follow up with Program Management Office to ensure all critical Cyber Security Programs and Projects are tracked closely and progress reported on a periodic basis.
  • Institutionalize and execute a comprehensive Cyber Security Metrics Program in line with industry best practices such as, ISO 27004 or Information Security Forum (ISF) with on-demand as well as periodic reporting.
  • Suggest the managers and relevant stakeholders on pertinent Cyber Security Risks identified from the Information Security Metrics program.
  • Attend the various Cyber Security Council’s Governance Frameworks and Terms of References (ToR).
  • Follow the Cyber Security RACI in consultation with relevant stakeholders for effective Cyber Security Governance in the organization.
  • Disbursal of minutes of meetings (MoM) of various meetings with Information Security Team involvement and track action items closely and progress is reported on periodic basis.
  • If required, be able to interface with the Client counterparts and their Leadership to provide the right assurance with regards to Infosys’ Information Security Practices safeguarding their data.
  • Ensure multi-faceted, business-focused Security strategies are implemented which would bridge the gap between technical and business functions while ensuring Security at the same time.


Skills and knowledge expectations:


Possess cross-domain knowledge in various areas of Cyber Security such as, but not limited to,

11.1 Information Security Forum (ISF) Standards of Good Practice (SoGP)

11.2 Information Security Management System (ISMS) based on ISO 27001 and ISO 27002 standards and very strong skills in writing and disbursing of Cyber Security Policies, Processes, Procedures, Standards and Guidelines

11.3 Information Security measurement and monitoring based on ISO 27004 wherein strong skills in Microsoft Office suit products are heavily utilized

11.4 Information Security Audits

11.5 NIST Cyber Security Framework (CSF)

11.6 Cyber Security Strategy

11.7 Cyber Security Maturity Models

11.8 Adept in Information Security Risk Management with good experience on various Risk Management practices in either of the following,

11.8.1 ISO 27005 Information Security Risk Management Standard

11.8.2 ISO 31000 Risk Management Standard

11.8.3 NIST and ISF Risk Management best practices

11.9 A good understanding or working knowledge of,

11.9.1 Vulnerability assessments and penetration testing

11.9.2 Application security source code reviews

11.9.3 Incident management and investigations life cycle

11.9.4 Security Architecture design principles and its applications in real-world scenarios

11.10 Working knowledge of various other Best Practices, Standards, Regulatory and Statutory frameworks such as, but not limited to, SSAE-16 / 18, PCI DSS, HIPAA, GLBA, SoX, SANS Critical Security Controls (CSC), Privacy in general but General Data Protection Regulation (GDPR) in particular

11.11 Stay abreast with the fast-changing world of Information Technology and Cyber Security; and liaison with leading Industry bodies / forums and CxO community to share and learn ideas, and adopt best practices where possible

11.12 ISO 27001 Lead Auditor (LA) or Lead Implementer (LI) Certification Mandatory



  • India Marken Full time

    Description Job Title: Information Security Operations Analyst Location: Pune Main Purpose: The Information Security (InfoSec) Operations Analyst will be a critical member of the Information Security Operations team responsible for operational security activities and support for multi-vendor security platforms. You will actively...


  • india Marken Full time

    Description Job Title:  Information Security Operations Analyst Location: Pune Main Purpose: The Information Security (InfoSec) Operations Analyst will be a critical member of the Information Security Operations team responsible for operational security activities and support for multi-vendor security platforms. You will...


  • india Marken Full time

    Description Job Title:  Information Security Operations Analyst Location: Pune Main Purpose: The Information Security (InfoSec) Operations Analyst will be a critical member of the Information Security Operations team responsible for operational security activities and support for multi-vendor security platforms. You will...


  • India IQ-EQ Full time

    Job Description Outline of responsibilities We are hiring an Information Security Analyst to work in our growing IT Security team. You will monitor our digital environment for security issues, respond to security requests, install and operate security software, and document any security issues or breaches you find. To do well in this role you should...


  • india IQ-EQ Full time

    Job Description Outline of responsibilities We are hiring an Information Security Analyst to work in our growing IT Security team. You will monitor our digital environment for security issues, respond to security requests, install and operate security software, and document any security issues or breaches you find. To do well in this role you...


  • india Snaphunt Full time

    The Offer Flexible working options Leadership Role Fantastic work culture The Job Your responsibilities will include: Monitoring and analyzing network and system activity Investigating and responding to security incidents Escalating security incidents and alerts Installing and configuring security software and hardware Performing security audits and...


  • India Snaphunt Full time

    The Offer Flexible working options Leadership Role Fantastic work culture The Job Your responsibilities will include: Monitoring and analyzing network and system activity Investigating and responding to security incidents Escalating security incidents and alerts Installing and configuring security software and hardware Performing security audits and...


  • India Total Shape Full time

    Your Compass in the Health & Fitness Journey Total Shape is a community dedicated to making the pursuit of a healthier lifestyle both achievable and straightforward. At Total Shape, we pride ourselves on delivering comprehensive information tailored to your health and fitness journey. Our mission is to help you make informed decisions that expedite your...


  • india Total Shape Full time

    Your Compass in the Health & Fitness Journey Total Shape is a community dedicated to making the pursuit of a healthier lifestyle both achievable and straightforward. At Total Shape, we pride ourselves on delivering comprehensive information  tailored to your health and fitness journey. Our mission is to help you make informed decisions  that expedite...


  • india Total Shape Full time

    Your Compass in the Health & Fitness Journey Total Shape is a community dedicated to making the pursuit of a healthier lifestyle both achievable and straightforward. At Total Shape, we pride ourselves on delivering comprehensive information  tailored to your health and fitness journey. Our mission is to help you make informed decisions  that expedite...


  • india CryptoMize Full time

    Responsibilities END --> Our Principles These are some of the principles that we strongly believe in, preach and actually follow as well. Commitments We clearly commit what we can do, by when can we do it and how we would do it, And then we do it. Confidentiality We are extremely paranoid about protecting the...


  • india CryptoMize Full time

    Responsibilities END --> Our Principles These are some of the principles that we strongly believe in, preach and actually follow as well. Commitments We clearly commit what we can do, by when can we do it and how we would do it, And then we do it. Confidentiality We are extremely paranoid about protecting the...

  • Product Analyst

    2 weeks ago


    India Flexi Analyst Full time

    Company DescriptionFlexi Analyst helps businesses build community through the power of Analyst.Role DescriptionThis is a full-time remote role for a Product Analyst at Flexi Analyst. The Product Analyst will be responsible for daily tasks related to product management, data analytics, and business analysis. They will collaborate with cross-functional teams...

  • Product Analyst

    2 weeks ago


    india Flexi Analyst Full time

    Company Description Flexi Analyst helps businesses build community through the power of Analyst. Role Description This is a full-time remote role for a Product Analyst at Flexi Analyst. The Product Analyst will be responsible for daily tasks related to product management, data analytics, and business analysis. They will collaborate with cross-functional...

  • Product Analyst

    2 weeks ago


    India Flexi Analyst Full time

    Company DescriptionFlexi Analyst helps businesses build community through the power of Analyst.Role DescriptionThis is a full-time remote role for a Product Analyst at Flexi Analyst. The Product Analyst will be responsible for daily tasks related to product management, data analytics, and business analysis. They will collaborate with cross-functional teams...


  • india Nike Full time

    Rejoignez l'équipe NIKE, Inc. Loin de se contenter d'équiper les plus grands athlètes mondiaux, NIKE, Inc. explore les potentiels, abolit les frontières et repousse les limites du possible. L'entreprise recherche des personnes capables d'évoluer, de réfléchir, de rêver et de créer. L'épanouissement de sa culture repose sur son ouverture à la...


  • india Emurgo Full time

    Who we are: EMURGO is the official commercial and venture arm of the Cardano Blockchain, a smart contract platform with advanced security assurance - Currently Top 3 of decentralized smart contract platforms and Top 10 of all cryptocurrencies on CoinMarketCap. As a founding member of the Cardano protocol, EMURGO develops, supports,...


  • India EMURGO Full time

    Who we are:EMURGO is the official commercial and venture arm of the Cardano Blockchain, a smart contract platform with advanced security assurance - Currently Top 3 of decentralized smart contract platforms and Top 10 of all cryptocurrencies on CoinMarketCap.As a founding member of the Cardano protocol, EMURGO develops, supports, and incubates commercial...


  • india EMURGO Full time

    Who we are: EMURGO is the official commercial and venture arm of the Cardano Blockchain, a smart contract platform with advanced security assurance - Currently Top 3 of decentralized smart contract platforms and Top 10 of all cryptocurrencies on CoinMarketCap. As a founding member of the Cardano protocol, EMURGO develops, supports, and incubates commercial...


  • india Goldcoast Recruitment Ltd Full time

    Job Description This is a remote position. Full job description Job Advert Information Security GRC Analyst Remote based role with travel as required  to Nuneaton or Oxford £35,000 per annum, plus 22 days holiday rising, pension, life assurance, employee assistance programme, wellbeing support, and flexible benefits scheme About the Job ...