Free cookie consent management tool by TermsFeed Information Security Analyst (Governance Risk Compliance, CISA/CISSP) | Antal Tech Jobs
Back to Jobs
2 Weeks ago

Information Security Analyst (Governance Risk Compliance, CISA/CISSP)

decor
Gurugram, Haryana, India
Information Technology
Full-Time
Arctera.io

Overview

Job Summary:

The Info Sec Analyst – (GRC) will be responsible for managing policy exceptions, policy management, and supporting internal and external audits. The role requires a strong understanding of ISO 27001, NIST CSF, and other relevant security frameworks. The analyst will work closely with various stakeholders to ensure compliance, assess risks, and improve the organization’s security posture.

Key Responsibilities:

  • Policy Management: Develop, review, update, and enforce information security policies, standards, and procedures in alignment with industry best practices.
  • Policy Exception Handling: Evaluate and process policy exception requests, perform risk assessments, and recommend appropriate mitigation measures.
  • Audit Support: Assist in preparing for and responding to internal and external audits, including evidence collection, gap analysis, and remediation tracking.
  • Compliance & Risk Assessments: Conduct security and risk assessments, including vendor assessments and contract reviews, to ensure compliance with ISO 27001, NIST CSF, and other regulatory requirements.
  • Risk-based analysis: Identify attack vectors in security architecture reviews.
  • Documentation & Reporting: Maintain accurate records of security policies, exceptions, and audit findings, and prepare reports for management review.
  • Security Awareness: Support security awareness programs by educating employees on policies, compliance requirements, and risk management best practices.
  • Stakeholder Collaboration: Work with IT, security, legal, and business teams to ensure security policies and controls align with business objectives.
  • Continuous Improvement: Monitor evolving cybersecurity regulations and frameworks to enhance security policies and governance processes.

Required Skills & Experience:

  • Experience: 2+ years in information security, governance, risk, and compliance (GRC) roles.
  • Knowledge of Standards & Frameworks: Strong understanding of ISO 27001, NIST CSF, and other compliance frameworks.
  • Audit & Compliance Experience: Familiarity with internal and external audit processes, regulatory requirements, risk management, vendor assessments, and contract reviews.
  • Technical Knowledge: Understanding of IT security concepts, risk assessment methodologies, and security controls.
  • Communication & Collaboration: Strong written and verbal communication skills to interact with stakeholders across different functions.
  • Analytical Skills: Ability to assess security risks, review policy exceptions, and recommend appropriate mitigation strategies.

Education & Certifications:

  • Certifications such as CISA, CISSP, ISO 27001 Lead Auditor/Implementer, or equivalent are highly desirable.
  • Bachelor’s degree in Information Technology, Cybersecurity, or a related field.
Share job
Similar Jobs
View All
1 Day ago
TrueFan - Senior Machine Learning Engineer
Information Technology
  • Thiruvananthapuram, Kerala, India
About UsTrueFan is at the forefront of AI-driven content generation, leveraging cutting-edge generative models to build next-generation products. Our mission is to redefine content generation space through advanced AI technologies, including deep ge...
decor
1 Day ago
Salesforce commerce cloud consultant
Information Technology
  • Thiruvananthapuram, Kerala, India
Salesforce Commerce Cloud consultant  5+ Years of Experience 6 to 12 months Mode - Remote 1.1LPM - 1.2LPM Max Key Responsibilities Translate business requirements into scalable Salesforce Service Cloud solutions, in collaboration with CAE's technic...
decor
1 Day ago
Cloud Infrastructure Engineer
Information Technology
  • Thiruvananthapuram, Kerala, India
DescriptionInvent the future with us. Recognized by Fast Company’s 2023 100 Best Workplaces for Innovators List, Ampere is a semiconductor design company for a new era, leading the future of computing with an innovative approach to CPU design focuse...
decor
1 Day ago
Devops Engineer- Intermetiate
Information Technology
  • Thiruvananthapuram, Kerala, India
BackJD: Dev ops Engineer:As a DevOps Specialist- should be able to take ownership of the entire DevOps process, including Automated CI/CD pipelines and deployment to production.They should also be comfortable with risk analysis and prioritization.Le...
decor
1 Day ago
Sr Data Scientist (London)
Information Technology
  • Thiruvananthapuram, Kerala, India
AryaXAI stands at the forefront of AI innovation, revolutionizing AI for mission-critical, highly regulated industries by building explainable, safe, and aligned systems that scale responsibly. Our mission is to create AI tools that empower research...
decor
1 Day ago
Software Test Engineer
Information Technology
  • Thiruvananthapuram, Kerala, India
By clicking the “Apply” button, I understand that my employment application process with Takeda will commence and that the information I provide in my application will be processed in line with Takeda’s Privacy Notice and Terms of Use. I further att...
decor
1 Day ago
Software Developer 5 (Java Fullstack)
Information Technology
  • Thiruvananthapuram, Kerala, India
Job DescriptionBuilding off our Cloud momentum, Oracle has formed a new organization - Oracle Health Applications & Infrastructure. This team focuses on product development and product strategy for Oracle Health, while building out a complete platfo...
decor
1 Day ago
Java Developer - Spring Frameworks
Information Technology
  • Thiruvananthapuram, Kerala, India
Java DescriptionWe are looking for a passionate and talented Java Developer with 2-3 years of hands-on experience to join our growing development team.The ideal candidate should have a strong foundation in Java technologies and the ability to develo...
decor

Talk to us

Feel free to call, email, or hit us up on our social media accounts.
Social media