Senior Security and Compliance Analyst

4 days ago


New Delhi Mumbai Bangalore Chennai Hyderabad Ahmedabad, India Certify Full time ₹ 1,04,000 - ₹ 1,30,878 per year
About Certify: At CertifyOS, we're building the infrastructure that powers the next generation of provider data products, making healthcare more efficient, accessible, and innovative. Our platform is the ultimate source of truth for provider data, offering unparalleled ease and trust while making data easily accessible and actionable for the entire healthcare ecosystem
What sets us apart? Our cutting-edge, API-first, UI-agnostic, end-to-end provider network management platform automates licensing, enrollment, credentialing, and network monitoring like never before. With direct integrations into hundreds of primary sources, we have an unbeatable advantage in enhancing visibility into the entire provider network management process. Plus, our team brings over 25 years of combined experience building provider data systems at Oscar Health, and we're backed by top-tier VC firms who share our bold vision of creating a one-of-a-kind healthcare cloud that eliminates friction surrounding provider data
But it's not just about the technology; it's about the people behind it. At Certify, we foster a meritocratic environment where every voice is heard, valued, and celebrated. We're founded on the principles of trust, transparency, and accountability, and we're not afraid to challenge the status quo at every turn. We're looking for purpose-driven individuals like you to join us on this exhilarating ride as we redefine healthcare data infrastructure
About the role:
The Senior Security and Compliance Analyst will be responsible for driving security initiatives, managing risk assessments, ensuring compliance with regulatory frameworks, and supporting audits. This role requires a strong background in security governance, risk, and compliance (GRC), along with hands-on experience implementing security controls across cloud and enterprise environments. Security & Risk Management
Perform risk assessments, vendor due diligence, and control gap analysis. Develop and enforce security policies, standards, and procedures. Collaborate with engineering, IT, and business teams to remediate security risks.
Compliance & Audit
Support internal and external audits (System and Organization Controls 2 – SOC 2, International Organization for Standardization – ISO 27001, Health Insurance Portability and Accountability Act – HIPAA, Health Information Trust Alliance – HITRUST, General Data Protection Regulation – GDPR, California Consumer Privacy Act – CCPA).
Maintain evidence repositories and ensure timely submission for audits using tools like Drata (compliance automation platform). Track and close compliance gaps and audit findings.
Governance & Awareness
Monitor and report on compliance posture to management. Conduct security awareness training for employees. Drive third-party risk management activities.
Cloud & Technical Security Work with IT and Cloud teams to implement and validate security controls across Amazon Web Services (AWS), Microsoft Azure, and Google Cloud Platform (GCP) using security centers (e.g., Google Cloud Security Command Center). Monitor Identity and Access Management (IAM), Data Loss Prevention (DLP), and Security Information and Event Management (SIEM) systems. Review security configurations and provide recommendations for improvement. Manage workflows and remediation tasks via tools like Jira (issue and project tracking). Qualifications Bachelor's degree in Information Security, Computer Science, or related field (or equivalent experience). 5–8 years of experience in information security, risk management, or compliance. Strong knowledge of security frameworks: National Institute of Standards and Technology Cybersecurity Framework (NIST CSF), ISO 27001, Center for Internet Security Controls (CIS Controls), SOC 2. Experience with regulatory compliance requirements: HIPAA, GDPR, CCPA, HITRUST. Hands-on experience with security tools (SIEM, DLP, IAM, Cloud Access Security Broker – CASB). Excellent communication and documentation skills.
Relevant certifications preferred: CISSP – Certified Information Systems Security Professional CISA – Certified Information Systems Auditor ISO 27001 LA/LI – ISO 27001 Lead Auditor/Lead Implementer CCSK – Certificate of Cloud Security Knowledge

At Certify, we're committed to creating an inclusive workplace where everyone feels valued and supported. As an equal opportunity employer, we celebrate diversity and warmly invite applicants from all backgrounds to join our vibrant community.

  • Chennai, Tamil Nadu, India JR Compliance Full time ₹ 6,00,000 - ₹ 12,00,000 per year

    We are looking for a highly motivated and detail-oriented Jr. Compliance Analyst to join our team at JR Compliance, with 1-2 years of experience in compliance or related fields.Roles and ResponsibilityConduct thorough reviews of compliance documents and records to ensure accuracy and completeness.Develop and implement effective compliance procedures and...


  • Mumbai, Maharashtra, India eProtect 360 Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    Position:Senior Security Analyst – Threat Detection & Incident ResponseExperience:5–7 yearsLocation:RemoteWorking Hours:2:30 PM – 11:30 PM ISTAtePROTECT 360 Solutions Pvt. Ltd., we are looking for a skilledCybersecurity Professionalto strengthen our security operations team. If you're passionate about threat detection, incident response, and compliance...


  • Hyderabad, Telangana, India Prudent Technologies and Consulting, Inc. Full time ₹ 5,00,000 - ₹ 10,00,000 per year

    Job Title: Cybersecurity Analyst (Entry-Level) Location: Hyderabad, TS, India – Work From Office Must. Department: Information Technology / CybersecurityEmployment Type: Full-TimeReports To: Cybersecurity ManagerJob PurposeThe Cybersecurity Analyst (Fresher) will support the organization's security operations by monitoring, analysing, and responding to...


  • Chennai, Tamil Nadu, India Digitalxc Full time ₹ 8,00,000 - ₹ 12,00,000 per year

    Job Summary:We are seeking a detail-oriented and proactive Security Analyst to join our Information Security team. The Security Analyst will be responsible for monitoring, analyzing, and responding to security threats and incidents across the organization's IT infrastructure. This role involves safeguarding company data, identifying vulnerabilities, ensuring...


  • Delhi, Delhi, India P.I.V.O.T Security Full time ₹ 6,00,000 - ₹ 12,00,000 per year

    About P.I.V.O.T SecurityP.I.V.O.T Security, established in 2022, is a dynamic offensive cybersecurity company committed to closing the gap between offensive and defensive strategies through groundbreaking research and development. Our cutting-edge threat intelligence platform mimics real-world offensive techniques to pinpoint vulnerabilities in an...


  • Ahmedabad, Gujarat, India Eventus Security Full time

    Position Title: Sr. Security Analyst Experience: 3yrs +Location: Ahmedabad (candidate based out at Gujarat preferred)Qualifications:BE/ B.Tech/ M.Tech/ MSc/ MCA qualification or equivalentAt least one of the following certifications - GCFA, GCFE, CISP, CISSP, CCNP, CCIE Security, CEH, CSA.Responsibilities:• Should have minimum of 3 years of experience in...


  • Ahmedabad, Gujarat, India Eventus Security Full time

    Position Title: Sr. Security Analyst Experience: 3yrs +Location: Ahmedabad (candidate based out at Gujarat preferred)Qualifications:BE/ B.Tech/ M.Tech/ MSc/ MCA qualification or equivalentAt least one of the following certifications - GCFA, GCFE, CISP, CISSP, CCNP, CCIE Security, CEH, CSA.Responsibilities:• Should have minimum of 3 years of experience in...


  • Ahmedabad, Gujarat, India Eventus Security Full time

    Position Title: Sr. Security Analyst Experience: 3yrs +Location: Ahmedabad (candidate based out at Gujarat preferred)Qualifications:BE/ B.Tech/ M.Tech/ MSc/ MCA qualification or equivalentAt least one of the following certifications - GCFA, GCFE, CISP, CISSP, CCNP, CCIE Security, CEH, CSA.Responsibilities:• Should have minimum of 3 years of experience in...


  • Ahmedabad, Gujarat, India Eventus Security Full time

    Position Title: Sr. Security Analyst Experience: 3yrs + Location: Ahmedabad (candidate based out at Gujarat preferred) Qualifications: BE/ B.Tech/ M.Tech/ MSc/ MCA qualification or equivalent At least one of the following certifications - GCFA, GCFE, CISP, CISSP, CCNP, CCIE Security, CEH, CSA. Responsibilities: • Should have minimum of 3 years of...


  • Hyderabad, Telangana, India beBeeSecurity Full time ₹ 1,50,00,000 - ₹ 2,50,00,000

    Senior Security Risk AnalystWe are seeking a skilled professional to collaborate with our business units, technology, and security teams to identify, catalog, and resolve security risks.This is an exciting opportunity for someone who wants to work in a dynamic environment and make a meaningful contribution to the organization.Candidates should have...