Senior Corporate Security Analyst

2 days ago


Bengaluru, Karnataka, India Toast Full time ₹ 12,00,000 - ₹ 24,00,000 per year

About the Role:

We are seeking a highly motivated and experienced Senior Corporate Security Analyst to join our expanding team. The ideal candidate will possess a comprehensive understanding of Corporate Security's strategic objectives and Toast's overarching goals, and will effectively achieve these in collaboration with the team. This role will be pivotal in safeguarding Toast's assets, reputation, and information through the implementation and management of comprehensive security solutions, the promotion of security awareness, and the assurance of resilience against emerging threats. This position will necessitate significant collaboration with various Infosec teams, R&D, and other internal teams to uphold a robust security posture. The Senior Security Analyst will also provide guidance and mentorship to junior security analysts, demonstrating exemplary security skills, contributing to policy and document creation, maintaining strong communication, and assisting leadership and management in assuming additional ownership.

A Day in Life (Responsibilities)

Vendor Security 

  • Conduct security risk assessments for vendors (onboarding and annual), review their security reports (SOC2), and continuously monitor their security posture.
  • Perform risk scoring, provide security recommendations, track and respond to security breaches involving vendors, and oversee the remediation of third-party vulnerabilities.
  • Drive Security Improvement Initiatives: Coordinate with procurement teams, GRC team and other stakeholders to enhance the overall security related to third-party risks.

SAAS Security & Endpoint Security

  • Supervise the deployment and operation of tools designed to identify installed software on endpoints and conduct comprehensive risk assessments of non-approved software.
  • Liaise with Technical Governance for compliance oversight and action, facilitating the resolution of alerts, user account validations, and application misconfigurations.
  • Develop and manage programs to conduct quarterly assessments of high/critical application vulnerabilities identified by Crowdstrike and all Chrome extensions utilized by Toasters, evaluating their actual risk.

Security Awareness Training Program & Phishing Simulation

  • Oversee the initiation and implementation of organization-wide security awareness training programs.
  • Engage in collaborative efforts with internal teams and external vendors to develop and deliver comprehensive training content.
  • Administer phishing simulations for all employees.

G-Suite and Data Loss Prevention (DLP)

  • Proactively identify opportunities within G-Suite to strengthen the security posture and provide comprehensive security recommendations to the IT Operations Team for implementation.
  • Investigate and propose Data Loss Prevention functionalities across key Toast data exchange platforms (e.g., Google Workspace, Slack).

Corporate Security Team Responsibilities & Documentation

  • Collaborate with the multiple stakeholders to precisely delineate responsibilities and identify tasks for the Corporate Security team, thereby precluding operational redundancies.
  • Review and update policies, Standard Operating Procedures (SOPs), and runbooks in coordination with the Technical Governance team.

Security Tool Implementation and Management

  • Demonstrated proficiency in the utilization of Identity and Access Management tools (Okta, BeyondTrust) to ensure secure access and authentication, and privileged access management.
  • Possesses expertise in the BeyondCorp (Zero Trust) security model and its implementation for perimeterless security.
  • Adept in patch management, encompassing processes, tools, and the timely application of security updates.

AI Automation

  • Proactively identify opportunities to reduce manual effort through process automation and the strategic implementation of AI tools within security operations.

Work Mode: This role follows a hybrid work model, requiring a minimum of 2 days per week in the office.

We are excited about you if you have these things:

  • Bachelor's degree in Computer Science, Information Security, or a related field; Master's degree preferred.
  • 6 - 10 years of experience in information security, with a strong focus on corporate security, vendor security, and security operations.
  • Strong technical knowledge and understanding of cybersecurity frameworks (e.g., NIST Cybersecurity Framework, ISO27001, CIS Controls, SOC 2, PCI DSS).
  • Proven experience in developing and implementing security policies, procedures, and frameworks.
  • Expertise in conducting vendor security risk assessments, including reviewing SOC2 reports and security questionnaires.
  • Strong technical knowledge of Shadow IT and Software Asset Management tools and processes.
  • Demonstrated experience in developing and delivering security awareness training and phishing exercises.
  • Possess excellent skills and experience in leveraging AI tools for threat detection, incident response, vulnerability management, and other security functions.
  • Familiarity with Google Workspace security features.
  • Experience working with EDR solutions like Crowdstrike.
  • Proficiency with security tools such as Reco.AI, Torq, Splunk, DataDog, bug bounty platforms, Okta Device Trust, BeyondTrust, BeyondCorp, and other SIEM and Security tools commonly used in the market.
  • Ability to work autonomously and prioritize multiple tasks in a fast-paced environment.
  • Excellent verbal and written communication skills, with the ability to effectively communicate technical information to both technical and non-technical audiences. Proven ability to collaborate effectively with cross-functional teams.
  • Quick learner and adaptable to new security tools and technologies as they are procured and implemented.
  • Ability to adapt to environments, understand requirements, and actively collaborate within the team, with other teams, and with vendors.
  • Provide technical guidance and mentorship to P2 security analysts, fostering their professional growth and ensuring alignment with corporate security objectives. Take initiative in leading projects and driving security initiatives.
  • Relevant security certifications are a plus.

Diversity, Equity, and Inclusion is Baked into our Recipe for Success

At Toast, our employees are our secret ingredient—when they thrive, we thrive. The restaurant industry is one of the most diverse, and we embrace that diversity with authenticity, inclusivity, respect, and humility. By embedding these principles into our culture and design, we create equitable opportunities for all and raise the bar in delivering exceptional experiences.

We Thrive Together

We embrace a hybrid work model that fosters in-person collaboration while valuing individual needs. Our goal is to build a strong culture of connection as we work together to empower the restaurant community. To learn more about how we work globally and regionally, check out:

Apply today

Toast is committed to creating an accessible and inclusive hiring process. As part of this commitment, we strive to provide reasonable accommodations for persons with disabilities to enable them to access the hiring process. If you need an accommodation to access the job application or interview process, please contact

------

For roles in the United States, It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.


  • Security Analyst

    2 weeks ago


    Bengaluru, Karnataka, India Oracle Financial Services Software Ltd Full time ₹ 1,00,00,000 - ₹ 2,00,00,000 per year

    Senior Security Analyst Oracle is seeking a Security Operations Center (SOC) analyst with experience protecting critical infrastructure to help us defend Oracle cloud infrastructure. Our team is skilled in threat hunting, analyzing indicators of compromise (IOCs), investigating adverse security events, security incident management, and digital forensics...


  • Bengaluru, Karnataka, India Oracle Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Description Oracle is seeking a Security Operations Center (SOC) analyst with experience protecting critical infrastructure to help us defend Oracle cloud infrastructure. Our team is skilled in threat hunting, analyzing indicators of compromise (IOCs), investigating adverse security events, security incident management, and digital forensics across LaaS,...


  • Bengaluru, Karnataka, India ORACLE Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Job Description : Senior Security Analyst Location: BENGALURU, KARNATAKA, IndiaJob Identification: 313595Job Category: Information Security EngineerPosting Date: 11/05/2025, 05:36 PMRole: Individual ContributorJob Type: Regular EmployeeSecurity Clearance Required: NoYears of Experience: 3 to 5 yearsAdditional Info: Visa / work permit sponsorship is not...


  • Bengaluru, Karnataka, India BETSOL Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Company Description BETSOL is a cloud-first digital transformation and data management company offering products and IT services to enterprises in over 40 countries. BETSOL team holds several engineering patents, is recognized with industry awards, and BETSOL maintains a net promoter score that is 2x the industry average. BETSOL's open source backup and...


  • Bengaluru, Karnataka, India Globallogic Full time ₹ 12,00,000 - ₹ 24,00,000 per year

    Description: Security AnalystRequirements: Responsibilities:Lead security assessments and penetration testing for medical devices and software.Identify, exploit, and report vulnerabilities with actionable recommendations.Mentor junior analysts and review their work.Ensure compliance with medical device cybersecurity standards and regulations.Technical...


  • Bengaluru, Karnataka, India e-Hireo Full time ₹ 6,00,000 - ₹ 18,00,000 per year

    JOB DESCRIPTIONExperience :8 - 10 YrsLocation :BengaluruDesignation :Senior Cyber Security AnalystAbout Company:This is a globally renowned automobile manufacturer known for its commitment to quality, reliability, and innovation. It has played a pioneering role in developing fuel-efficient and hybrid vehicles, setting industry benchmarks in sustainable...


  • Bengaluru, Karnataka, India Carmeuse Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    DescriptionAs a Senior Security Analyst/Engineer, you will be responsible for supporting the security operations of our organization by assisting in the monitoring, detection, and response to security incidents. This role offers a blend of security analysis and engineering tasks. This position offers a progression from foundational knowledge to more advanced...


  • Bengaluru, Karnataka, India Pegasystems Full time ₹ 10,00,000 - ₹ 25,00,000 per year

    Meet Our TeamPega is a leader in customer engagement and digital process automation offering a commercial SaaS version of our industry-leading platform to our global clients. In fact, we were recently recognized as one of the " Top 10 Tech Winners For The AI Revolution" by industry analysts. On the frontlines of this success is the Pega Cloud Security...


  • Bengaluru, Karnataka, India Roku Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Description : About the Role : The Senior Cyber Security Analyst will play a critical role in our Security Operations Center (SOC), responsible for real-time monitoring, threat detection, and incident response across our global infrastructure. You'll lead investigations, manage our SIEM solution, and continuously improve our security posture. Key...

  • Gen Ai Engineer

    2 weeks ago


    Bengaluru, Karnataka, India Corporate Security Services Full time ₹ 5,00,000 - ₹ 15,00,000 per year

    Company DescriptionCorporate Security Services is a security agency based in India, specializing in providing security . We are committed to delivering top-notch security services to our clients, ensuring their safety and peace of mind.Role DescriptionFunction: Software Engineering → Other Software DevelopmentGenerative AIPythonMachine...