Information Security Analyst

9 hours ago


Bengaluru, Karnataka, India Gallagher Full time ₹ 12,00,000 - ₹ 36,00,000 per year

Position Summary

This information security Analyst will be providing technical assistance in the-coordination of global ISO27001 internal audits. Reporting locally to the India Business Information Security Officer (BISO)this role will liaise with the various global divisions in guiding participants in answering Internal audit questions. This role will work closely with global colleagues in collating questions, gathering evidence, reviewing answers and recording compliance in the global auditing tool. . The Analyst may be called upon to help the India BISO in other technical areas - data loss prevention (DLP) escalations, overseeing penetration testing activities, etc.

Primary Responsibilities

Working as part of the Core Global ISMS team, assisting the HGI and ISMS Internal Audit Program Manager to deliver the ISMS Internal Audit function in compliance with ISO27001 Clause 9.2.

Assist the HGI and the Cyber Risk Manager in determining the audit criteria and scope for each audit. The ISMS standard requires a sampling of the ISO controls are assessed each year. All controls must be assessed over a three year cycle.

Working with the Business Information Security Officer (BISO) for each division to determine the division auditees to participate in each year's audit cycle.

Liaising with the Cyber Risk Manager and the Cyber Compliance Lead in the use of the AuditBoard tool to manage gap analysis questionnaires, internal audits, evidence collection.

Ensure compliance with ISO 27001 standards and regulations

Provide technical guidance to maintain and update the organization's Information Security Management Systems (ISMS)

Guide the ISO Internal Audit team in the construction of technical questions

Provide guidance to audit participants in understanding the technical questions

Analyse the technical evidence provided by internal audit participants

Carry out others technical duties as directed by the India BISO. Examples: 

planning, execution, and reporting of penetration testing activities,

Collaborate with internal and external security experts to identify vulnerabilities.

Prioritize and address critical vulnerabilities in a timely manner

Additional Responsibilities

As available and during the periods of the year when audits are not scheduled, this role will:

Work with the US based Cyber Risk Manager and the Cyber Compliance Lead to maximise AuditBoard features and efficiency. This is likely to include expanding this role's remit into a wider audit responsibilities and controls for audits beyond ISO27001 (e.g. NYDFS/DORA/NIST/SOC2 etc)

Advise and assist global BISOs in division improvements to remediate poor internal audit findings.

Assist the India BISO in other cyber security related investigations.

Assist the HGI with document updates to policies and standards to align more closely to ISO27001, and preparation for external audit activities.

Work closely with global SOC and CSIRT teams in threat detection and vulnerability management.

Skills and Competencies

Good written and verbal communication skills with both Indian and overseas personnel.

Experience in training and mentoring staff in security audit practices.

A strong understanding of the ISO27001 clauses and controls.

Excellent scheduling skills where calendar invites will be needed across multiple time zones.

Qualifications

Minimum Qualifications

Certificates

Current or previous ISO27001 lead auditor certification

Work Experience

7.0 Years min ISO27001 lead auditor experience

years' experience in information security leadership role.

Experience with security and control standards, frameworks, risk management methodologies and international regulatory requirements (e.g. ISO 27001, NIST, GDPR etc).

CISA, CISM, CISSP or equivalent IT security related certification (or willingness to pursue).

Ability to manage multiple complex priorities and competing agendas.

Ability to interpret and apply policies and regulations across a large, complex business



  • Bengaluru, Karnataka, India Bizaccen Knnect Full time ₹ 6,00,000 - ₹ 12,00,000 per year

    Information Security Analyst / SpecialistWe are looking for a detail-oriented Information Security Analyst/Specialist to join our InfoSec team. The ideal candidate will ensure compliance with industry standards, strengthen security operations, manage risks, and collaborate across teams to safeguard our systems and data.ResponsibilitiesInformation Security...


  • Bengaluru, Karnataka, India Ionic Wealth Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    The Information Security Analyst will be responsible for supporting and enhancing the organization's cybersecurity posture through comprehensive risk management, compliance, incident handling, and proactive threat monitoring. This role demands a proactive mindset, analytical capability, and the ability to collaborate across teams to ensure robust security...


  • Bengaluru, Karnataka, India Graebel Companies, Inc. Full time ₹ 1,00,00,000 - ₹ 2,00,00,000 per year

    Are you ready to open a world of opportunity in talent mobility? Our clients include some of the largest and most recognized brands in the world. They're innovators and leaders in their industries, making life-enhancing breakthroughs every day. We help them tap into those opportunities by placing their exceptional people where they need to be, anywhere in...

  • SOC Manager

    2 weeks ago


    Bengaluru, Karnataka, India Sisa Information Security Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    Roles and Responsibilities:Serve as an escalation point for all Threat Analysts on shift for complex/unusual alerts/cases/requests/incidents.Daily review of security alerts/logs with follow-up on any suspicious activity.Basic understanding of Forensics / hands on experience of sandboxingHands on experience and rule revisions of security solutions on phishing...


  • Bengaluru, Karnataka, India Bizom Full time ₹ 5,00,000 - ₹ 12,00,000 per year

    Information Security Analyst / SpecialistWe are looking for a detail-oriented Information Security Analyst/Specialist to join our InfoSec team. The ideal candidate will ensure compliance with industry standards, strengthen security operations, manage risks, and collaborate across teams to safeguard our systems and data.ResponsibilitiesInformation Security...


  • Bengaluru, Karnataka, India Lowe's Companies, Inc. Full time ₹ 10,00,000 - ₹ 25,00,000 per year

    About Lowe'sLowe's is a FORTUNE 100 home improvement company serving approximately 16 million customer transactions a week in the United States. With total fiscal year 2024 sales of more than $83 billion, Lowe's operates over 1,700 home improvement stores and employs approximately 300,000 associates. Based in Mooresville, N.C., Lowe's supports the...


  • Bengaluru, Karnataka, India FirstHive Full time ₹ 12,00,000 - ₹ 25,00,000 per year

    Job Designation: Information Security AnalystJob Location: BangaloreWhat is the role?The role requires the candidate to be proactive and spearhead our efforts to protect our assets and mitigate security risks.Key Responsibilities:Security Leadership:Provide strategic direction and leadership in all aspects of information security, including risk management,...


  • Bengaluru, Karnataka, India f8817da3-0893-42a0-8a82-a80d9de8b2c6 Full time ₹ 4,00,000 - ₹ 8,00,000 per year

    Zee Entertainment Enterprises Limited - Technology - Information Security - Content Security - Identity & Content SecurityBangalore

  • Security Analyst

    5 days ago


    Bengaluru, Karnataka, India Oracle Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Oracle is seeking a Security Operations Center (SOC) analyst with experience protecting critical infrastructure to help us defend Oracle cloud infrastructure. Our team is skilled in threat hunting, analyzing indicators of compromise (IOCs), investigating adverse security events, security incident management, and digital forensics across LaaS, PaaS and SaaS...


  • Bengaluru, Karnataka, India Bread Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Job Description**Every career journey is personal. That's why we empower you with the tools and support to create your own success story.*Be challenged. Be heard. Be valued. Be you ... be here.*Job SummaryThe Sr. Analyst, Info Sec is responsible for overseeing and managing multiple risks, audits, and controls within the Information Technology Domain. This...