Experience
3 - 5 yrs
Job Location
Chennai, India
Vacancy
1
Designation
Information Security Analyst
Job Type
Not specified
Job Description
Information Security Analyst
Profile Summary
This Role is primarily responsible for performing risk assessments, third party reviews, internal audit, information security control and system review and design. The successful candidate should have broad information security and risk experience, a high degree of professionalism, a friendly and collaborative demeanor, and have strong verbal, written, and organizational skills. This position typically reports to the Manager of Information Security
Location: Chennai, India (Hybrid)
Duties and Responsibilities include and are not limited to the following.
- Support internal and external audit programs, including evidence collection, control validation, issue tracking, and remediation verification.
- Conduct Information Security Management System (ISMS) audits in alignment with standards and frameworks such as ISO 27001, SOC 2, NIST, and applicable regulatory requirements.
- Conduct risk assessments and security due diligence for third-party vendors, suppliers, and business partners to identify and mitigate cyber, operational, and compliance risks.
- Analyze security, privacy, and regulatory requirements to evaluate risk exposure and recommend appropriate remediation strategies.
- Prepare comprehensive risk assessment reports, dashboards, and executive-level summaries to support informed business decision-making.
- Perform control design and effectiveness reviews across business processes, applications, and infrastructure environments.
- Assess new technologies, cloud services, and business initiatives to ensure security and compliance requirements are embedded throughout the lifecycle.
- Partner with application owners, engineering teams, and business stakeholders to identify vulnerabilities, assess risk impact, and drive timely remediation efforts.
- Monitor, analyze, and report on emerging cybersecurity threats, industry trends, regulatory changes, and best practices to enhance organizational resilience.
- Develop and maintain risk metrics, key risk indicators (KRIs), and governance reporting to measure and communicate risk posture.
- Contribute to continuous improvement initiatives by enhancing risk management methodologies, audit processes, and security governance practices.
- Provide subject matter expertise and support for security awareness, compliance initiatives, and cross-functional risk management activities.
- Perform additional responsibilities and special projects assigned in support of the organizations security and compliance objectives
Preferred Qualifications
- Minimum 3-5 years of experience in information security risk and compliance
- Familiarity with ISO 27001, NIST CSF, SOC 2, PCI DSS , CSA STAR and related risk assessment Methodologies
- Knowledge of enterprise network and systems architecture concepts and technologies, including but not limited to enterprise directory, enterprise integration architecture, and Identity access management
- Thorough knowledge and understanding of security risk assessment on all information systems such as people, process, technology, and information processing facilities
- Knowledge on cloud security
- Prepare risk assessment report and risk treatment plan.
- Conduct Information security awareness session to end user s/ middle management.
- Certification such as ISO27001 / CISA /CISM /CRISC/ AWS Security Cloud Certifications will be added advantage.
- Should be a self-starter and lead the risk analysis in assigned areas with minimum supervision.
- Strong technical background in technical systems/environments.
- Strong written and verbal communication skills
- Ability to develop good working relationships and excellent interpersonal skills
- Capable of working independently and as part of a team.
Education And/Or Qualification:
Disclaimer : This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.No Referrers Available
There are currently no referrers available for this job. You can still apply, will let you know once there is any referrer available.