Senior Information Security Analyst

1 day ago


India Bread Financial Full time

Job Description Every career journey is personal. That's why we empower you with the tools and support to create your own success story. Be challenged. Be heard. Be valued. Be you ... be here. Job Summary The Sr. Analyst, Info Sec is responsible for overseeing and managing multiple risks, audits, and controls within the Information Technology Domain. This person is expected to be a strategic partner to control owners, second line of defense, and privacy leaders. The position reports to the Manager, Information Security and works closely with other Information Security Domain Champions. Essential Job Functions - Audit coordination and evidence collection Facilitate the collection of evidence for various audit and control activities such as PCIDSS, NIST CSF, GLBA 501-B, Sarbanes Oxley, etc. Review evidence for appropriateness and adequacy. Track and report on all evidence requests to ensure request deadlines are met. Coordinate and facilitate audit and/or control interviews as well as necessary follow up meetings between control owners and internal/external auditors. Publish meeting minutes and track action items to completion. Utilizes planning and organization tools to develop project/action plans. Meets deliverable deadlines as directed. - Payment Card Industry (PCI) Annual Audit - Possess in-depth knowledge of the PCI-DSS. Test PCI controls and work with control owners to resolve control design or operating effectiveness issues ahead of and during annual Company PCI Audit. Partner with external Qualified Security Assessor (QSA) to reduce scope and control testing where possible. Use knowledge of General IT Computing Controls and Cyber Security Tools to create PCI Compensating Control Matrices when required. - Control Coaching, Consulting, and Collaboration Partner with IT Control Owners to identify, resolve, mitigate, or compensate for control failures identified through risk assessments, internal/external audits, or cyber security tools and processes. Develop proactive risk and control assessment strategies to stay ahead of emerging risks and regulatory requirements. Collaborate with the IT Risk Second Line of Defense and Privacy Partners when formulating strategies to maximize coverage and work paper reuse. - General Information Technology - Foundational to intermediate knowledge of IT tools and practices including, but not limited to: Networking, LDAP Directories, Vulnerability/Patch Management, Change Management, Incident Management, Server and Desktop Management, Mainframe Technologies, Encryption and Key Management, Cloud Architecture and Computing, Software Application General Computing Controls, Business Continuity/Disaster Recovery, Software Development Lifecycle, Access Management, and Cyber Security Tooling. - Metrics and Presentation Skills Ability to produce meaningful and actionable metrics through data analysis. Conduct data analysis exercises using Excel Pivot Tables, Microsoft Access Queries, and other data driven analysis tools. Produces presentations at various levels of abstraction dependent on intended audience using Microsoft Power Point, Microsoft Visio, or equivalent tools. Intermediate to expert English writing skills expected. - Human Relations Ability to diffuse problematic situations and manage through conflict resolution. Utilizes soft skills such as: Selective Agreement, Reflective Listening, Voice Inflection, and Empathy. Ability to take complex concepts and break down into laymen's terms or analogies that help with other's understanding. Viewed as an enabling partner that provides options or information when saying no to business or IT requests. Seen by leadership and peers as creditable, trustworthy and respectful. Utilizes subject matter expertise to guide and coach less experienced team members. Reports to: Manager, IT Security Admin/Lead Working Conditions/ Physical Requirements: Normal office environment. As the need of the business continue to evolve, this role may be asked to work an on-call rotation to include evenings or weekends. Direct Reports: None Work Shift Required: Normal Office Work Timings: 11am to 8pm IST or 1pm to 10pm IST / Flexible to work in shifts as needed Minimum Qualifications - Bachelors Degree - Six or more years in Risk Management, Audit, Compliance, Information Technology Preferred Experience - Graduate or Post Graduate in Computer Science, Networking or Information Technology - Certifications: One or more relevant professional technical certifications (examples: CISSP, CISA, CISM, OR Security+) Other Duties This job description is illustrative of the types of duties typically performed by this job. It is not intended to be an exhaustive listing of each and every essential function of the job. Because job content may change from time to time, the Company reserves the right to add and/or delete essential functions from this job at any time. About Bread Financial At Bread Financial, you'll have the opportunity to grow your career, give back to your community, and be part of our award-winning culture. We've been consistently recognized as a best place to work nationally and in many markets and we're proud to promote an environment where you feel appreciated, accepted, valued, and fulfilledboth personally and professionally. Bread Financial supports the overall wellness of our associates with a diverse suite of benefits and offers boundless opportunities for career development and non-traditional career progression. Bread Financial (NYSE: BFH) is a tech-forward financial services company that provides simple, personalized payment, lending, and saving solutions to millions of U.S consumers. Our payment solutions, including Bread Financial general purpose credit cards and savings products, empower our customers and their passions for a better life. Additionally, we deliver growth for some of the most recognized brands in travel & entertainment, health & beauty, jewelry and specialty apparel through our private label and co-brand credit cards and pay-over-time products providing choice and value to our shared customers. To learn more about Bread Financial, our global associates and our sustainability commitments, visit breadfinancial.com or follow us on Instagram and LinkedIn. - All job offers are contingent upon successful completion of credit and background checks. - Bread Financial is an Equal Opportunity Employer. Job Family Information Technology Job Type Regular



  • India, Chennai BNY Full time

    Senior Associate, Information Security Analyst  At BNY, our culture allows us to run our company better and enables employees’ growth and success. As a leading global financial services company at the heart of the global financial system, we influence nearly 20% of the world’s investible assets. Every day, our teams harness cutting-edge AI and...


  • Mohali, India TAC Security Full time

    Job Description Job Summary: TAC Security is looking for a passionate and motivated Cyber Security Intern to join our team in Mohali. The intern will assist in identifying security vulnerabilities, conducting research on emerging threats, and supporting ongoing cybersecurity projects. This internship offers hands-on experience in a global cybersecurity...


  • Anywhere in India/Multiple Locations Scrut Automation Full time ₹ 1,80,000 - ₹ 6,00,000 per year

    About the job Job Description : Information Security Analyst Location : Remote / Bangalore Shift : US Time Zone Employment Type : Full-Time About Scrut Automation : Scrut Automation is a leading security and compliance automation platform, helping organizations streamline compliance and strengthen their security posture across frameworks like ISO...


  • Pune - Business Bay, India Deutsche Bank Full time ₹ 40,00,000 - ₹ 1,20,00,000 per year

    I&A On-boarding Information Security Analyst Job Description: Job Title: I&A On-boarding Information Security Analyst Corporate Title: Associate Location: Pune, India Role DescriptionAs "I&A On-boarding Information Security Analyst" you will be part of Access Lifecycle On-boarding global family which includes access management for application...


  • Bengaluru, India cloudrho Full time

    Job Description Company Description Headquartered in Texas, USA, cloudrho is an engineering-led Business Consulting and Cloud Engineering company. We specialize in aligning technology with business goals through architecture-led solutions, cloud optimization, and platform modernization. We enable digital transformation across industries. Role Description The...


  • Bangalore Velankani ISC, India Deutsche Bank Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    Information Security Analyst, AVP Job Description: Job Title: Information Security Analyst, AVP Location: Bangalore, India Role Description The Risk Lead Function covering Chief Security Office (CSO) CTO, IS Threat Operations and Office of the CSO is looking for an Information Security Specialist who will support the Risk Lead in managing the...


  • India Information Security Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    (Senior) Cloud DevOps Engineer - Persistent ABOUT UTIMACOUtimaco is a worldwide supplier of professional cyber-security solutions and is based in Aachen, Germany. Since 1983, Utimaco develops hardware security modules and compliance solutions for telecommunication provider regulations. Utimaco is a world-market leader in both segments. Customers and parters...

  • Security Analyst

    2 weeks ago


    IND-Pune-Equifax Analytics-PTEC, India Equifax Credit Information Services Pvt Ltd Full time ₹ 40,000 - ₹ 80,000 per year

    Security Analyst A/NZ Equifax is where you can power your possible. If you want to achieve your true potential, chart new paths, develop new skills, collaborate with bright minds, and make a meaningful impact, we want to hear from you. SUMMARY OF ROLE HERE Equifax is searching for a Security Analyst to join the A/NZ Security Enablement & Readiness...


  • Bengaluru, Karnataka, India, Karnataka Bizom Full time

    Information Security Analyst / SpecialistWe are looking for a detail-oriented Information Security Analyst/Specialist to join our InfoSec team. The ideal candidate will ensure compliance with industry standards, strengthen security operations, manage risks, and collaborate across teams to safeguard our systems and data.ResponsibilitiesInformation Security...


  • India NOMURA Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Nomura Overview:Nomura is a global financial services group with an integrated network spanning approximately 30 countries and regions. By connecting markets East & West, Nomura services the needs of individuals, institutions, corporates and governments through its three business divisions: Wealth Management, Investment Management, and Wholesale (Global...