Free cookie consent management tool by TermsFeed Information Security Analyst (Third Party Risk Management , CTPRP /CISA/CRISC) | Antal Tech Jobs
Back to Jobs
2 Weeks ago

Information Security Analyst (Third Party Risk Management , CTPRP /CISA/CRISC)

decor
Gurugram, Haryana, India
Information Technology
Full-Time
Arctera.io

Overview

About Arctera

Arctera keeps the world’s IT systems working. We can trust that our credit cards will work at the store, that power will be routed to our homes and that factories will produce our medications because those companies themselves trust Arctera.

Arctera is behind the scenes making sure that many of the biggest organizations in the world – and many of the smallest too – can face down ransomware attacks, natural disasters and compliance challenges without missing a beat. We do this through the power of data and our flagship products, Insight, InfoScale and Backup Exec.

Illuminating data also helps our customers maintain personal privacy, reduce the environmental impact of data storage, and defend against illegal or immoral use of information.

It’s a task that continues to get more complex as data volumes surge. Every day, the world produces more data than it ever has before. And global digital transformation – and the arrival of the age of AI – has set the course for a new explosion in data creation.

Joining the Arctera team, you’ll be part of a group innovating to harness the opportunity of the latest technologies to protect the world’s critical infrastructure and to keep all of our data safe.

Job Summary:

We are hiring an Information Security Analyst to conduct vendor risk assessments, review contract security clauses, and ensure compliance with industry standards, regulatory requirements, and internal security policies. This role is responsible for assessing, monitoring, and mitigating risks associated with third-party vendors while driving the overall TPRM program to enhance vendor security management. The ideal candidate should possess strong analytical skills, collaborate effectively with internal stakeholders, and proactively identify and mitigate third-party security risks.

Key Responsibilities:

  • Vendor Risk Management: Conduct security risk assessments for third-party vendors, identifying potential threats and control gaps.
  • Contract Security Reviews: Evaluate security clauses in vendor contracts, participate in SLA negotiations, and recommend necessary controls.
  • Compliance & Risk Assessments: Conduct security and risk assessments to ensure compliance with ISO 27001, NIST CSF, and other regulatory requirements. Support other GRC-related functions as needed.
  • Compliance & Frameworks: Ensure vendors align with industry standards such as ISO 27001, SOC 2, NIST 800-53, GDPR, and PCI-DSS.
  • Risk Remediation: Collaborate with vendors to remediate identified risks and track mitigation plans.
  • Stakeholder Collaboration: Work closely with Legal, Procurement, Privacy, Security Review, and Business teams to integrate security requirements into vendor relationships.
  • Reporting & Metrics: Develop and present risk reports to management, highlighting key third-party security risks and trends.
  • Audit Support: Assist in preparing for and responding to internal and external audits, including evidence collection, gap analysis, and remediation tracking.
  • Vendor Risk Repository Management: Maintain a centralized repository for vendor risk profiles, assessments, and agreements.
  • Security & Compliance Updates: Stay informed on emerging security threats, regulatory changes, and best practices in third-party risk management.

Required Skills & Experience:

  • Minimum 2 years of experience in Third-Party Risk Management, Information Security, or GRC.
  • Experience conducting vendor security risk assessments and contract reviews.
  • Strong understanding of ISO 27001, SOC 2, NIST 800-53, GDPR, and PCI-DSS compliance requirements.
  • Experience in reviewing SOC 2, HITRUST, SIG, and CAIQ reports.
  • Strong audit and control testing skills (preferred).
  • Proficiency with TPRM tools such as OneTrust, ServiceNow, or similar platforms.
  • Ability to analyze vendor security controls and provide risk-based recommendations.
  • Excellent written and verbal communication skills to engage with vendors and internal stakeholders.

Education & Certifications:

  • Bachelor’s/Master’s degree in IT/CS, Cybersecurity, or a related field.
  • Certifications such as CTPRP (Certified Third Party Risk Professional), ISO 27001 Lead Auditor/Implementer, CISA, and CRISC are highly desirable.
Share job
Similar Jobs
View All
1 Day ago
TrueFan - Senior Machine Learning Engineer
Information Technology
  • Thiruvananthapuram, Kerala, India
About UsTrueFan is at the forefront of AI-driven content generation, leveraging cutting-edge generative models to build next-generation products. Our mission is to redefine content generation space through advanced AI technologies, including deep ge...
decor
1 Day ago
Salesforce commerce cloud consultant
Information Technology
  • Thiruvananthapuram, Kerala, India
Salesforce Commerce Cloud consultant  5+ Years of Experience 6 to 12 months Mode - Remote 1.1LPM - 1.2LPM Max Key Responsibilities Translate business requirements into scalable Salesforce Service Cloud solutions, in collaboration with CAE's technic...
decor
1 Day ago
Cloud Infrastructure Engineer
Information Technology
  • Thiruvananthapuram, Kerala, India
DescriptionInvent the future with us. Recognized by Fast Company’s 2023 100 Best Workplaces for Innovators List, Ampere is a semiconductor design company for a new era, leading the future of computing with an innovative approach to CPU design focuse...
decor
1 Day ago
Devops Engineer- Intermetiate
Information Technology
  • Thiruvananthapuram, Kerala, India
BackJD: Dev ops Engineer:As a DevOps Specialist- should be able to take ownership of the entire DevOps process, including Automated CI/CD pipelines and deployment to production.They should also be comfortable with risk analysis and prioritization.Le...
decor
1 Day ago
Sr Data Scientist (London)
Information Technology
  • Thiruvananthapuram, Kerala, India
AryaXAI stands at the forefront of AI innovation, revolutionizing AI for mission-critical, highly regulated industries by building explainable, safe, and aligned systems that scale responsibly. Our mission is to create AI tools that empower research...
decor
1 Day ago
Software Test Engineer
Information Technology
  • Thiruvananthapuram, Kerala, India
By clicking the “Apply” button, I understand that my employment application process with Takeda will commence and that the information I provide in my application will be processed in line with Takeda’s Privacy Notice and Terms of Use. I further att...
decor
1 Day ago
Software Developer 5 (Java Fullstack)
Information Technology
  • Thiruvananthapuram, Kerala, India
Job DescriptionBuilding off our Cloud momentum, Oracle has formed a new organization - Oracle Health Applications & Infrastructure. This team focuses on product development and product strategy for Oracle Health, while building out a complete platfo...
decor
1 Day ago
Java Developer - Spring Frameworks
Information Technology
  • Thiruvananthapuram, Kerala, India
Java DescriptionWe are looking for a passionate and talented Java Developer with 2-3 years of hands-on experience to join our growing development team.The ideal candidate should have a strong foundation in Java technologies and the ability to develo...
decor

Talk to us

Feel free to call, email, or hit us up on our social media accounts.
Social media