Senior Information Security Analyst
4 days ago
Job Description
**Every career journey is personal. That's why we empower you with the tools and support to create your own success story.*
Be challenged. Be heard. Be valued. Be you ... be here.
*Job Summary
The Sr. Analyst, Info Sec is responsible for overseeing and managing multiple risks, audits, and controls within the Information Technology Domain. This person is expected to be a strategic partner to control owners, second line of defense, and privacy leaders. The position reports to the Manager, Information Security and works closely with other Information Security Domain Champions.
Essential Job Functions
- Audit coordination and evidence collection – Facilitate the collection of evidence for various audit and control activities such as PCIDSS, NIST CSF, GLBA 501-B, Sarbanes Oxley, etc. Review evidence for appropriateness and adequacy. Track and report on all evidence requests to ensure request deadlines are met. Coordinate and facilitate audit and/or control interviews as well as necessary follow up meetings between control owners and internal/external auditors. Publish meeting minutes and track action items to completion. Utilizes planning and organization tools to develop project/action plans. Meets deliverable deadlines as directed.
- Payment Card Industry (PCI) Annual Audit - Possess in-depth knowledge of the PCI-DSS. Test PCI controls and work with control owners to resolve control design or operating effectiveness issues ahead of and during annual Company PCI Audit. Partner with external Qualified Security Assessor (QSA) to reduce scope and control testing where possible. Use knowledge of General IT Computing Controls and Cyber Security Tools to create PCI Compensating Control Matrices when required.
- Control Coaching, Consulting, and Collaboration – Partner with IT Control Owners to identify, resolve, mitigate, or compensate for control failures identified through risk assessments, internal/external audits, or cyber security tools and processes. Develop proactive risk and control assessment strategies to stay ahead of emerging risks and regulatory requirements. Collaborate with the IT Risk Second Line of Defense and Privacy Partners when formulating strategies to maximize coverage and work paper reuse.
- General Information Technology - Foundational to intermediate knowledge of IT tools and practices including, but not limited to: Networking, LDAP Directories, Vulnerability/Patch Management, Change Management, Incident Management, Server and Desktop Management, Mainframe Technologies, Encryption and Key Management, Cloud Architecture and Computing, Software Application General Computing Controls, Business Continuity/Disaster Recovery, Software Development Lifecycle, Access Management, and Cyber Security Tooling.
- Metrics and Presentation Skills – Ability to produce meaningful and actionable metrics through data analysis. Conduct data analysis exercises using Excel Pivot Tables, Microsoft Access Queries, and other data driven analysis tools. Produces presentations at various levels of abstraction dependent on intended audience using Microsoft Power Point, Microsoft Visio, or equivalent tools. Intermediate to expert English writing skills expected.
- Human Relations – Ability to diffuse problematic situations and manage through conflict resolution. Utilizes soft skills such as: Selective Agreement, Reflective Listening, Voice Inflection, and Empathy. Ability to take complex concepts and break down into laymen's terms or analogies that help with other's understanding. Viewed as an enabling partner that provides options or information when saying no to business or IT requests. Seen by leadership and peers as creditable, trustworthy and respectful. Utilizes subject matter expertise to guide and coach less experienced team members.
Reports to:
Manager, IT Security Admin/Lead
Working Conditions/ Physical Requirements:
Normal office environment. As the need of the business continue to evolve, this role may be asked to work an on-call rotation to include evenings or weekends.
Direct Reports:
None
Work Shift Required
: Normal Office
Work Timings:
11am to 8pm IST or 1pm to 10pm IST / Flexible to work in shifts as needed
Minimum Qualifications
- Bachelors Degree
- Six or more years in Risk Management, Audit, Compliance, Information Technology
Preferred Experience
- Graduate or Post Graduate in Computer Science, Networking or Information Technology
- Certifications: One or more relevant professional technical certifications (examples: CISSP, CISA, CISM, OR Security+)
Other Duties
This job description is illustrative of the types of duties typically performed by this job. It is not intended to be an exhaustive listing of each and every essential function of the job. Because job content may change from time to time, the Company reserves the right to add and/or delete essential functions from this job at any time.
About Bread Financial
At Bread Financial, you'll have the opportunity to grow your career, give back to your community, and be part of our award-winning culture. We've been consistently recognized as a best place to work nationally and in many markets and we're proud to promote an environment where you feel appreciated, accepted, valued, and fulfilled—both personally and professionally. Bread Financial supports the overall wellness of our associates with a diverse suite of benefits and offers boundless opportunities for career development and non-traditional career progression.
Bread Financial (NYSE: BFH) is a tech-forward financial services company that provides simple, personalized payment, lending, and saving solutions to millions of U.S consumers. Our payment solutions, including Bread Financial general purpose credit cards and savings products, empower our customers and their passions for a better life. Additionally, we deliver growth for some of the most recognized brands in travel & entertainment, health & beauty, jewelry and specialty apparel through our private label and co-brand credit cards and pay-over-time products providing choice and value to our shared customers.
To learn more about Bread Financial, our global associates and our sustainability commitments, visit or follow us on Instagram and LinkedIn.
- All job offers are contingent upon successful completion of credit and background checks.
- Bread Financial is an Equal Opportunity Employer.
Job Family
Information Technology
Job Type
Regular
-
Senior Information Security Analyst
2 days ago
Bengaluru, Karnataka, India Graebel Full timeJOB SUMMARY:The Senior Information Security Analyst is responsible for identifying, assessing, and mitigating information security risks across networks, systems, and applications. This role involves conducting vulnerability analysis, implementing remediation strategies, and ensuring environmental security hardening. Additionally, the analyst supports client...
-
Sr Information Security Analyst
3 days ago
Bengaluru, Karnataka, India Graebel Companies, Inc. Full timeAre you ready to open a world of opportunity in talent mobility? Our clients include some of the largest and most recognized brands in the world. They're innovators and leaders in their industries, making life-enhancing breakthroughs every day. We help them tap into those opportunities by placing their exceptional people where they need to be, anywhere in...
-
Information Security Analyst
2 weeks ago
Bengaluru, Karnataka, India Ionic Wealth Full time ₹ 12,00,000 - ₹ 36,00,000 per yearThe Information Security Analyst will be responsible for supporting and enhancing the organization's cybersecurity posture through comprehensive risk management, compliance, incident handling, and proactive threat monitoring. This role demands a proactive mindset, analytical capability, and the ability to collaborate across teams to ensure robust security...
-
Sr Analyst, Information Security, SOC
2 days ago
Bengaluru, Karnataka, India Lowe's Home Improvement Full timeInnovate in BengaluruThis position is based at our on-site office in Bengaluru. Lowe's offers an ultramodern work environment, complete with cutting-edge technology, collaborative workspaces, an on-site gym and clinic, and other perks to enhance your work experience.About Lowe'sLowe's Companies, Inc. (NYSE: LOW) is a FORTUNE 50 home improvement company...
-
Senior Information Security Analyst
4 days ago
Bengaluru, Karnataka, India Bread Financial Full time**Every career journey is personal. That's why we empower you with the tools and support to create your own success story.*Be challenged. Be heard. Be valued. Be you ... be here.*Job SummaryThe Sr. Analyst, Info Sec is responsible for overseeing and managing multiple risks, audits, and controls within the Information Technology Domain. This person is...
-
Information Security Analyst II
1 week ago
Bengaluru, Karnataka, India Infoblox Full timeDescriptionAt Infoblox, every breakthrough begins with a bold "what if."What if your ideas could ignite global innovation?What if your curiosity could redefine the future?We invite you to step into the next exciting chapter of your career journey. Bring your creativity, drive, your daring spirit, and feel what it's like to thrive on a team big enough to make...
-
Senior Security Analyst
4 days ago
Bengaluru, Karnataka, India Oracle Full timeJob DescriptionOracle is seeking a Security Operations Center (SOC) analyst with experience protecting critical infrastructure to help us defend Oracle cloud infrastructure. Our team is skilled in threat hunting, analyzing indicators of compromise (IOCs), investigating adverse security events, security incident management, and digital forensics across LaaS,...
-
Security Analyst
1 week ago
Bengaluru, Karnataka, India Encora Full timeSummary:The Senior Security Analyst – II performs the critical role of monitoring for attempted intrusion, as well as performing security assessments on IT assets. A Security analyst should have a willingness to learn on the job while demonstrating an understanding of malicious indicators of compromise. The ideal candidate will also have strong knowledge...
-
Senior Security Analyst
3 weeks ago
Bengaluru, Karnataka, India, Karnataka ColorTokens Inc. Full timeAbout ColorTokensColorTokens specializes in advanced security solutions designed to safeguard organizations' assets and critical systems from cyber threats. Our flagship product, Xshield Enterprise Microsegmentation platform, empowers organizations to prevent initial compromises from escalating into damaging crises. By emphasizing proactive security...
-
Security Analyst
4 days ago
Bengaluru, Karnataka, India Oracle Full timeOracle is seeking a Security Operations Center (SOC) analyst with experience protecting critical infrastructure to help us defend Oracle cloud infrastructure. Our team is skilled in threat hunting, analyzing indicators of compromise (IOCs), investigating adverse security events, security incident management, and digital forensics across LaaS, PaaS and SaaS...