Free cookie consent management tool by TermsFeed Cyber Security Analyst | Antal Tech Jobs
Back to Jobs
13 Weeks ago

Cyber Security Analyst

decor
Kochi, India
Information Technology
Full-Time
CSC (Corporation Service Company)

Overview

  • Role: Cybersecurity Analyst
  • Location: Bangalore
  • Working Model: Hybrid
  • Shifts: 12-9PM/3PM-12AM

Intro:

The Cybersecurity Analyst - Audit is a highly respected, influential and in-demand role within the business. The position is responsible for supporting the security direction of the business and elevating the company’s security posture across multiple jurisdictions. The Cybersecurity Analyst - Audit is expected to support the security strategy of the business within new and existing information system capabilities. Consequently, the position requires both an understanding of legacy systems, as well as new technologies and regulatory requirements. The Cybersecurity Analyst – Audit is also responsible for executing and supporting external audit efforts and coordinating with audit partners.

The ideal candidate is technical and possesses at least three years of experience in security, compliance, risk management, or audit. The role oversees the business’ adherence to security requirements and obligations mandated by standards, regulations and regulating bodies such as the Sarbanes-Oxley Act (SOX), General Data Protection Regulation (GDPR), Federal Financial Institutions Examination Council (FFIEC), and International Organization for Standardization (ISO), AIFMD, PSD2, EBA, ESMA, MAS, CSSF, CIMA, CBI. In tandem with security leadership, the Cybersecurity Analyst – Audit consistently assesses, audits, and validates the assurance of the security program. As a primary point of contact for auditors, the Cybersecurity Analyst – Audit monitors progress and enforces resolution of outstanding issues that may lead to non-compliance or security threats to the business. As a key member of the information security team, the Cybersecurity Analyst – Audit must focus on strong risk management and corporate resiliency, and not be driven solely by compliance.

Some of the things you'll be doing:

  • Partner with global teams across Business Operations, Compliance, IT and Legal to manage technology risks and regulatory compliance.
  • Deliver assigned internal, external and jurisdictional audits per a published audit plan.
  • Draft and publish policies, standards, guidelines and procedures related to security and IT compliance.
  • Improve compliance of IT processes and identify opportunities for technology compliance control automation.
  • Execute end to end compliance initiatives in accordance with the compliance roadmap.
  • Design high-quality test plans and direct technology control test activities.
  • Build and maintain controls that map to compliance requirements, provide implementation recommendations, and monitor evidence.
  • Continuously improve the technology control framework in alignment with industry trends
  • Contribute to coordination with jurisdictional inspectors and audit partners.
  • Execute and monitor IT risk assessments.
  • Keep up to date with external technology and compliance regulations, data privacy and security best practices.
  • Define and publish quantitative and qualitative technology compliance metrics and metrics to assess the success of the security program
  • Implement and support GRC technologies and tools.
  • Identify strengths and weaknesses in IT technology operations and projects as they relate to privacy, security, business resiliency and regulatory compliance.
  • Document, formulate and enforce areas of security improvement that balance risk with business operations and do not diminish efficiencies or innovation.
  • Work in tandem with GRC and business leadership to perform ongoing security program assessments and audits and create annual strategic technology and budgetary directives.
  • Analyze findings, and document, recommend and report program gaps to security leadership.
  • Contribute to oversight of third parties, vendors and business partners to safeguard against undue risk presented by external entities. Escalate to security management and business unit leads when points of weakness are discovered.

What technical skills, experience, and qualifications do you need?:

  • At least 5+ years’ experience in IT audit, risk management and/or cybersecurity as a practitioner
  • Strong business acumen and security technology skills for well-rounded proficiency, as well as proven ability to align with security practices and compliance responsibilities.
  • Knowledge of global technology laws and regulations, including but not limited to PCI, SOX, FFIEC, ISO, GDPR, AIFMD, PSD2, EBA, ESMA, MAS, CSSF, CIMA, CBI. Additional experience in one or more of the following: ISO 27001 or NIST.
  • Understanding of audit standards and practices, and control frameworks (ISO, NIST, COSO, COBIT, etc.).
  • Understanding of security concepts of threat categories (such as malware, phishing attacks, Defense-in Depth, MITRE ATT&CK framework).
  • Understanding of technology policies, standards, and guidelines.
  • Experience with regulations and regulatory expectations regarding technology in the region of your accountability.
  • Exceptional written and verbal communication skills, and proven ability to translate security and risk to all levels of the business.
  • Capacity to understand legacy and progressive technology and security controls along with respective risk. Working knowledge of technologies such as cloud computing, DevOps and application security.
  • Track record of acting with integrity, taking pride in work, seeking to excel, being curious and adaptable, and communicating effectively.

Additional Qualifications:

  • Prior hands-on experience working in at least one information technology discipline.
  • Prior experience conducting internal and/or external audits.
  • Prior experience working with GRC systems.
  • Demonstrated problem-solving capabilities, and ability to manage complex local and international security requirements.
  • Self-motivated, directed and well-organized, with the vision to position controls in anticipation of threats.
  • Successful track record of managing external entities’ contracts and relationships, and mitigating risks to business development opportunities.
  • Highly trustworthy; leads by example.

Education Requirements:

  • Bachelor’s degree in computer science, information assurance, MIS or related field, or equivalent industry experience.

Certification Requirements

  • Holds or is working towards one or more security, audit or risk industry certifications preferred such as: CISSP, CISM, CRISC, CISA, CIA, CIPP, CIPT, CIPM, CERA, CRM, GRCP, or GRCA.
Share job
Similar Jobs
View All
10 Hours ago
MTS II - Software Engineer
Information Technology
  • 4 - 7 Yrs
  • Pune
MAJOR RESPONSIBILITIES • Design, implement, integrate, and verify software applications and tools using JavaScript, NodeJS, and C++. • Enhance, optimize, and improve the efficiency and robustness of current software, with a particular focus on OSS ...
decor
1 Day ago
Business Advisory Analyst
Information Technology
  • Bangalore, Karnataka, India
Skill required: Banking Services - Core BankingDesignation: Business Advisory AnalystQualifications:BBA/BCom/Master of Business AdministrationYears of Experience:3 to 5 yearsAbout AccentureAccenture is a global professional services company with lea...
decor
1 Day ago
Front End Developer
Information Technology
  • Bangalore, Karnataka, India
Position Title: Front End DeveloperCompany: Johnson Controls (JCI)Location: BangaloreJob Summary: We are seeking a talented Front End Developer with 4-7 years of experience to join our dynamic team. The ideal candidate will have a strong background ...
decor
1 Day ago
Database Engineer III (Big Data)
Information Technology
  • Bangalore, Karnataka, India
LivePerson (NASDAQ: LPSN) is the global leader in enterprise conversations. Hundreds of the world’s leading brands — including HSBC, Chipotle, and Virgin Media — use our award-winning Conversational Cloud platform to connect with millions of consume...
decor
1 Day ago
Data Scientist Manager
Information Technology
  • Bangalore, Karnataka, India
Job DescriptionLeads a team of people who design, develop and program methods, processes, and systems to consolidate and analyze unstructured, diverse “big data” sources to generate actionable insights and solutions for client services and product e...
decor
1 Day ago
Data Scientist Manager
Information Technology
  • Bangalore, Karnataka, India
Job DescriptionLeads a team of people who design, develop and program methods, processes, and systems to consolidate and analyze unstructured, diverse “big data” sources to generate actionable insights and solutions for client services and product e...
decor
1 Day ago
Sr. QA Engineer
Information Technology
  • Bangalore, Karnataka, India
Role Summary:Picarro is seeking an exceptional Sr. QA Engineer for functional testing of Picarro Analyzers. This role expects you to analyze requirements, create and execute test-plan, and record results in test-repo. This person is also expected to...
decor
1 Day ago
C++ Graphics and Windowing System Software Engineer - Mir
Information Technology
  • Bangalore, Karnataka, India
We build a high-performance, high-efficiency stack for window managers and display subsystems in C++, called Mir. We're growing the team and looking for new colleagues who share our passion for precision, performance and user experience.Our goal is ...
decor

Talk to us

Feel free to call, email, or hit us up on our social media accounts.
Social media