Senior Information Security Analyst

4 days ago


Bengaluru, Karnataka, India Bread Full time

Job Description
**Every career journey is personal. That's why we empower you with the tools and support to create your own success story.*
Be challenged. Be heard. Be valued. Be you ... be here.
*Job Summary
The Sr. Analyst, Info Sec is responsible for overseeing and managing multiple risks, audits, and controls within the Information Technology Domain. This person is expected to be a strategic partner to control owners, second line of defense, and privacy leaders. The position reports to the Manager, Information Security and works closely with other Information Security Domain Champions.

Essential Job Functions

  • Audit coordination and evidence collection – Facilitate the collection of evidence for various audit and control activities such as PCIDSS, NIST CSF, GLBA 501-B, Sarbanes Oxley, etc. Review evidence for appropriateness and adequacy. Track and report on all evidence requests to ensure request deadlines are met. Coordinate and facilitate audit and/or control interviews as well as necessary follow up meetings between control owners and internal/external auditors. Publish meeting minutes and track action items to completion. Utilizes planning and organization tools to develop project/action plans. Meets deliverable deadlines as directed.
  • Payment Card Industry (PCI) Annual Audit - Possess in-depth knowledge of the PCI-DSS. Test PCI controls and work with control owners to resolve control design or operating effectiveness issues ahead of and during annual Company PCI Audit. Partner with external Qualified Security Assessor (QSA) to reduce scope and control testing where possible. Use knowledge of General IT Computing Controls and Cyber Security Tools to create PCI Compensating Control Matrices when required.
  • Control Coaching, Consulting, and Collaboration – Partner with IT Control Owners to identify, resolve, mitigate, or compensate for control failures identified through risk assessments, internal/external audits, or cyber security tools and processes. Develop proactive risk and control assessment strategies to stay ahead of emerging risks and regulatory requirements. Collaborate with the IT Risk Second Line of Defense and Privacy Partners when formulating strategies to maximize coverage and work paper reuse.
  • General Information Technology - Foundational to intermediate knowledge of IT tools and practices including, but not limited to: Networking, LDAP Directories, Vulnerability/Patch Management, Change Management, Incident Management, Server and Desktop Management, Mainframe Technologies, Encryption and Key Management, Cloud Architecture and Computing, Software Application General Computing Controls, Business Continuity/Disaster Recovery, Software Development Lifecycle, Access Management, and Cyber Security Tooling.
  • Metrics and Presentation Skills – Ability to produce meaningful and actionable metrics through data analysis. Conduct data analysis exercises using Excel Pivot Tables, Microsoft Access Queries, and other data driven analysis tools. Produces presentations at various levels of abstraction dependent on intended audience using Microsoft Power Point, Microsoft Visio, or equivalent tools. Intermediate to expert English writing skills expected.
  • Human Relations – Ability to diffuse problematic situations and manage through conflict resolution. Utilizes soft skills such as: Selective Agreement, Reflective Listening, Voice Inflection, and Empathy. Ability to take complex concepts and break down into laymen's terms or analogies that help with other's understanding. Viewed as an enabling partner that provides options or information when saying no to business or IT requests. Seen by leadership and peers as creditable, trustworthy and respectful. Utilizes subject matter expertise to guide and coach less experienced team members.

Reports to:
Manager, IT Security Admin/Lead

Working Conditions/ Physical Requirements:
Normal office environment. As the need of the business continue to evolve, this role may be asked to work an on-call rotation to include evenings or weekends.

Direct Reports:
None

Work Shift Required
: Normal Office

Work Timings:
11am to 8pm IST or 1pm to 10pm IST / Flexible to work in shifts as needed

Minimum Qualifications

  • Bachelors Degree
  • Six or more years in Risk Management, Audit, Compliance, Information Technology

Preferred Experience

  • Graduate or Post Graduate in Computer Science, Networking or Information Technology
  • Certifications: One or more relevant professional technical certifications (examples: CISSP, CISA, CISM, OR Security+)

Other Duties
This job description is illustrative of the types of duties typically performed by this job. It is not intended to be an exhaustive listing of each and every essential function of the job. Because job content may change from time to time, the Company reserves the right to add and/or delete essential functions from this job at any time.

About Bread Financial
At Bread Financial, you'll have the opportunity to grow your career, give back to your community, and be part of our award-winning culture. We've been consistently recognized as a best place to work nationally and in many markets and we're proud to promote an environment where you feel appreciated, accepted, valued, and fulfilled—both personally and professionally. Bread Financial supports the overall wellness of our associates with a diverse suite of benefits and offers boundless opportunities for career development and non-traditional career progression.

Bread Financial (NYSE: BFH) is a tech-forward financial services company that provides simple, personalized payment, lending, and saving solutions to millions of U.S consumers. Our payment solutions, including Bread Financial general purpose credit cards and savings products, empower our customers and their passions for a better life. Additionally, we deliver growth for some of the most recognized brands in travel & entertainment, health & beauty, jewelry and specialty apparel through our private label and co-brand credit cards and pay-over-time products providing choice and value to our shared customers.

To learn more about Bread Financial, our global associates and our sustainability commitments, visit or follow us on Instagram and LinkedIn.

  • All job offers are contingent upon successful completion of credit and background checks.
  • Bread Financial is an Equal Opportunity Employer.

Job Family
Information Technology

Job Type
Regular



  • Bengaluru, Karnataka, India Graebel Full time

    JOB SUMMARY:The Senior Information Security Analyst is responsible for identifying, assessing, and mitigating information security risks across networks, systems, and applications. This role involves conducting vulnerability analysis, implementing remediation strategies, and ensuring environmental security hardening. Additionally, the analyst supports client...


  • Bengaluru, Karnataka, India Graebel Companies, Inc. Full time

    Are you ready to open a world of opportunity in talent mobility? Our clients include some of the largest and most recognized brands in the world. They're innovators and leaders in their industries, making life-enhancing breakthroughs every day. We help them tap into those opportunities by placing their exceptional people where they need to be, anywhere in...


  • Bengaluru, Karnataka, India Ionic Wealth Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    The Information Security Analyst will be responsible for supporting and enhancing the organization's cybersecurity posture through comprehensive risk management, compliance, incident handling, and proactive threat monitoring. This role demands a proactive mindset, analytical capability, and the ability to collaborate across teams to ensure robust security...


  • Bengaluru, Karnataka, India Lowe's Home Improvement Full time

    Innovate in BengaluruThis position is based at our on-site office in Bengaluru. Lowe's offers an ultramodern work environment, complete with cutting-edge technology, collaborative workspaces, an on-site gym and clinic, and other perks to enhance your work experience.About Lowe'sLowe's Companies, Inc. (NYSE: LOW) is a FORTUNE 50 home improvement company...


  • Bengaluru, Karnataka, India Bread Financial Full time

    **Every career journey is personal. That's why we empower you with the tools and support to create your own success story.*Be challenged. Be heard. Be valued. Be you ... be here.*Job SummaryThe Sr. Analyst, Info Sec is responsible for overseeing and managing multiple risks, audits, and controls within the Information Technology Domain. This person is...


  • Bengaluru, Karnataka, India Infoblox Full time

    DescriptionAt Infoblox, every breakthrough begins with a bold "what if."What if your ideas could ignite global innovation?What if your curiosity could redefine the future?We invite you to step into the next exciting chapter of your career journey. Bring your creativity, drive, your daring spirit, and feel what it's like to thrive on a team big enough to make...


  • Bengaluru, Karnataka, India Oracle Full time

    Job DescriptionOracle is seeking a Security Operations Center (SOC) analyst with experience protecting critical infrastructure to help us defend Oracle cloud infrastructure. Our team is skilled in threat hunting, analyzing indicators of compromise (IOCs), investigating adverse security events, security incident management, and digital forensics across LaaS,...

  • Security Analyst

    1 week ago


    Bengaluru, Karnataka, India Encora Full time

    Summary:The Senior Security Analyst – II performs the critical role of monitoring for attempted intrusion, as well as performing security assessments on IT assets. A Security analyst should have a willingness to learn on the job while demonstrating an understanding of malicious indicators of compromise. The ideal candidate will also have strong knowledge...


  • Bengaluru, Karnataka, India, Karnataka ColorTokens Inc. Full time

    About ColorTokensColorTokens specializes in advanced security solutions designed to safeguard organizations' assets and critical systems from cyber threats. Our flagship product, Xshield Enterprise Microsegmentation platform, empowers organizations to prevent initial compromises from escalating into damaging crises. By emphasizing proactive security...

  • Security Analyst

    4 days ago


    Bengaluru, Karnataka, India Oracle Full time

    Oracle is seeking a Security Operations Center (SOC) analyst with experience protecting critical infrastructure to help us defend Oracle cloud infrastructure. Our team is skilled in threat hunting, analyzing indicators of compromise (IOCs), investigating adverse security events, security incident management, and digital forensics across LaaS, PaaS and SaaS...