Information Security Risk Analyst
4 days ago
Job Description:
We are seeking a skilled and motivated Risk Analyst to join our Security Operations team. This role involves participation in the full risk life cycle of identification, analysis, response and reporting on risks. Related tasks would include contributing to internal policy development, third-party risk management, conducting internal risk assessments and internal audit activities.
The ideal candidate is an early-career professional with attention to detail and an eagerness to learn. They are an active listener with strong analytical and problem-solving abilities to catalog and elements of risk and to see interrelated patterns. The work often involves documenting risk factors in a way so that when the time is appropriate, they can be addressed effectively, so clear communication is vital in this role.
Essential Functions:
- Identify risk through formal engagement and interactive collaboration with stakeholders
- Analyze identified risks for their potential impact or likelihood of occurrence to ensure material risks are prioritized
- Recommend response for material risks, such as mitigation, acceptance or transfer, where appropriate and demonstrate if there is a clear business case or return on investment for the recommended response
- Report on the current risk and control maturity to determine if response actions are effective in meeting the target residual risk levels
- Contribute to policy development when risks need to be remedied through tighter administrative control
- Support the Third-Party Risk Management program to perform initial review vendors for their security posture
- Monitor for emerging third-party risk
- Conduct internal Risk Assessments in support of the companys compliance and audit obligations
- Conduct internal audits to test compliance with various standards
- Conduct user access reviews for applications and systems to ensure compliance with the principle of least privilege
Core Duties:
- Conduct periodic risk assessments and working sessions to surface risks
- Independently, and in coordination with colleagues, perform regular review of outstanding risks to analyze them for changes in materiality
- Contribute to executive reports to the Risk Committee
- Support external audit efforts by providing evidence pertaining to risk, policy and third-party governance
- Stay current with evolving threats, vulnerabilities, and best practices through threat intelligence monitoring and external sources
Core Knowledge
- Understanding of risk factors and threat databases
- Familiarity with compliance and audit standards
- Foundational experience with IT systems and a wide range of technologies
- Understanding of relationship between administrative and technical controls
- Understanding of how to measure and track control effectiveness over time
- Skill in recognizing and categorizing types of vulnerabilities and associated attacks
Qualifications:
Basic Qualifications:
- Pervasive sense of curiosity about how risks can manifest from threats
- Experience with, or an eagerness to learn, GRC tools that help support work function
- Experience documenting complex situations in a way that conveys business impact
- Minimum of 2 years of experience in cybersecurity incident response or a related role
Preferred Qualifications:
- Professional certifications such as CRISC, CISSP, or CISA
- Experience conducting risk assessments
- Experience with vendor governance and policy development
- Experience developing and implementing a risk register
- Experience managing a business impact assessment inventory or critical applications
Core Competencies
- Business Continuity
- Risk Analysis
- Threat Analysis
- Vulnerability Assessment
- Concise Communication
-
Security Analyst
2 weeks ago
Hyderabad, Telangana, India Litmus Information Systems Full time ₹ 8,00,000 - ₹ 18,00,000 per yearJob DescriptionPosition: Security Analyst Company: IFTAS (Indian Financial Technology & Allied Services ) Job Description Role Summary (a) Title: Security analyst (b) Business/Function: (c) Band / Designation: Security analyst-L2 (d) Location: Hyderabad (f) Team: (g) Summary: Security Analyste for application support responsible for safeguarding...
-
Senior Information Security Analyst
3 days ago
Hyderabad, Telangana, India Ameriprise Financial Services, LLC Full time ₹ 8,00,000 - ₹ 24,00,000 per yearRisk & Control Analysis will support the risk identification, control evaluation, and process documentation across key business functions. The role involves conducting risk assessments, testing control effectiveness, and maintaining Key Risk Indicators (KRIs). Ideal candidates will have expertise in internal controls, information security, and compliance...
-
Information Security Analyst
1 week ago
Hyderabad, Telangana, India Talent Worx Full time ₹ 12,00,000 - ₹ 36,00,000 per yearWe are hiring for one of the BIG 4's in India, professionals leverage the global network of firms, providing detailed knowledge of local laws, regulations, markets, and competition.Our client in India offers services to national and international clients in India across sectors. We strive to provide rapid, performance-based, industry-focused, and...
-
Information Security Analyst
1 week ago
Hyderabad, Telangana, India Talent Worx Full time ₹ 5,00,000 - ₹ 25,00,000 per yearWe are hiring for one of the BIG 4's in India, professionals leverage the global network of firms, providing detailed knowledge of local laws, regulations, markets, and competition.Our client in India offers services to national and international clients in India across sectors. We strive to provide rapid, performance-based, industry-focused, and...
-
Information Security Consultant
2 weeks ago
Hyderabad, Telangana, India NTT DATA Global Delivery Services Ltd Full time ₹ 20,00,000 - ₹ 60,00,000 per yearInformation Security Consultant Make an impact with NTT DATA Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it's a place where you can grow, belong and...
-
Information Security Consultant
1 day ago
Hyderabad, Telangana, India NTT Ltd. Full time ₹ 12,00,000 - ₹ 36,00,000 per yearMake an impact with NTT DATAJoin a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it's a place where you can grow, belong and thrive. Your day at NTT DATAThe Risk Analyst...
-
Security Analyst, GRC
3 days ago
Hyderabad, Telangana, India CDK Global Full time ₹ 15,00,000 - ₹ 25,00,000 per yearSecurity Analyst - GRCAt CDK, the Security Analyst provides comprehensive information security risk management services across the organization. The analyst is responsible for operating the current program, identifying opportunities to uplevel the program and implement identified improvements. This role involves close coordination with business stakeholders,...
-
Hyderabad, Telangana, India MosChip Full time ₹ 5,00,000 - ₹ 8,00,000 per yearJob Overview:A GRC Analyst assists in managing and ensuring compliance with regulatory requirements and internal policies. Work closely with analysts and other stakeholders to support risk management and compliance activities.Key Responsibilities:Risk AssessmentsConduct risk assessments and validation testing to identify potential security threats.Compliance...
-
Hyderabad, Telangana, India NTT DATA Global Delivery Services Ltd Full time ₹ 5,00,000 - ₹ 12,00,000 per yearSenior Associate Information Security Incident Response Analyst Make an impact with NTT DATA Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it's a place...
-
Head of Information Security
2 weeks ago
Hyderabad, Telangana, India Cube Consultancy Services Full time ₹ 20,00,000 - ₹ 25,00,000 per yearJob Responsibilities:Develop, implement, and monitor a strategic, comprehensive enterprise information security and IT risk management program to ensure the integrity, confidentiality, and availability of information owned, controlled, or processed by the organization.Manage the enterprise's information security organization, consisting of direct reports and...