Free cookie consent management tool by TermsFeed Security Analyst – GRC | Antal Tech Jobs
Back to Jobs
3 Days ago

Security Analyst – GRC

decor
Bangalore, Karnataka, India
Information Technology
Full-Time
42 Gears Mobility Systems

Overview

Bengaluru, India Full Time

Relevant Experience: Freshers

Job Description

Information Security and Compliance Analyst will be a member of the information security team and assist with a wide range of information security tasks, including, but not limited to, ISMS policy, SOC2 compliance procedure creation and improvement, and technical controls auditing and review. As part of this position, the successful candidate will work closely with teams across the organization, from HR, accounting, administration, IT, and engineering to ensure our standards are both sufficient to maintain our security posture and adhered to by all parts of the organization.

Responsibilities

  • Assist in supporting compliance reviews, certifications, and accreditations (e.g., ISO27001, SOC2, GDPR, etc.) under guidance and supervision.
  • Enhance risk and compliance strategy in alignment with internal controls, audit, and business requirements and objectives.
  • Review, assess, and document current internal controls.
  • Translate regulatory requirements into a unified collection of processes and provide the respective stakeholders with compliance requirements and methodologies.
  • Facilitate Client assessments.
  • Collaborate with engineering, product, and cloud teams to ensure security compliance and continually improve processes.
  • Facilitate internal & external audits and conduct reviews to verify compliance.
  • Manage all internal and external audit findings and ensure their remediation on an agreed schedule with the respective stakeholders.
  • Managing security incidents and taking appropriate corrective actions.
  • Define risk and compliance metrics and provide monthly reporting to management, including gaps in policy and proposed resolutions.
  • Maintain a risk register and manage risk mitigation plans.
  • Frequently update domain knowledge by tracking incoming regulations, maintaining knowledge of relevant frameworks and standards, participating in educational opportunities, reading professional publications, maintaining personal networks, participating in professional organizations, and obtaining relevant certifications.
  • Conduct training on information security awareness for new joiners.

Experience & Qualifications

  • Must be a Graduate. Preferably in Computer Science / Computer Applications / Business Administration.
  • Possesses excellent listening skills and is proficient in oral and written communications.
  • Have a proven ability to work effectively in a loosely structured team environment that demands a high degree of cooperation, flexibility, teaming, cross-group, and real-time responsiveness.
  • 0-1 years of experience in information security compliance, audit, and/or risk management in a technology environment.
  • Experience facilitating external assessments, such as security audits or regulatory inquiries.
  • Understanding of the VAPT process and capable of driving vulnerability management.
  • Excellent written and verbal communication skills, with a willingness to learn and contribute to drafting policies and supporting awareness or training initiatives.
  • Eagerness to understand complex and evolving requirements, with the ability to support in translating them into clear, actionable steps while working with cross-functional teams.
  • Willingness to learn how to identify potential security and privacy risks, and support in suggesting practical solutions that align with the business needs.
  • People-oriented with the ability to build relationships, persuade stakeholders, and manage conflict across a variety of functions and skill levels.
  • Basic understanding of regulatory requirements relevant to tech companies (like GDPR, EU AI Act), and security frameworks such as OWASP SAMM is a plus.
  • Knowledge of current and impending regulatory requirements applicable to technology organizations, such as GDPR and the EU Artificial Intelligence Act desirable.
  • Willingness to learn and develop familiarity with application security control models, such as OWASP SAMM, is desirable.
  • Identify control gaps and support remediation of findings.
  • Ability to contribute to internal ISO 27001 assessments.
  • Contribute to and achieve business and departmental goals and objectives.

Share job
Similar Jobs
View All
11 Hours ago
Program Manager
Information Technology
  • 15 - 18 Yrs
  • Gurgaon / Gurugram
We’re Hiring | Program Manager Location: Gurugram, India Domain: Program Management | Digital Systems | Java/.NET | Agile | Fintech/Supply Chain Are you a strategic thinker with deep experience in program management of digital products? We’re lo...
decor
11 Hours ago
Technical Fullstack Architect - Node.js
Information Technology
  • 50,00,000 - 60,00,000 INR - Annual
  • 12 - 18 Yrs
  • Hyderabad
About the Role: We are seeking a Fullstack Technical Architect with deep expertise in backend development using Node.js and proficiency in frontend technologies like React or any modern JavaScript framework. You will play a key role in building an...
decor
12 Hours ago
Principal Engineer - Fullstack
Information Technology
  • 30,00,000 - 40,00,000 INR - Annual
  • 8 - 12 Yrs
  • Mumbai
Looking for candidate who is enthusiastic to work in a Startup environment and build things from Scratch individually Candidate has past experience in scalable consumer facing applications managing latency and traffic FullStack Individual Contribu...
decor
12 Hours ago
Asst. Manager / Dy. Manager – Talent Acquisition
Automotive
  • 4,00,000 - 8,00,000 INR - Yearly
  • 4 - 8 Yrs
  • West Bengal
We are looking for dynamic and experienced professionals for the Talent Acquisition team at our Kharagpur Plant location. The incumbent will be responsible for managing the full-cycle recruitment process for both technical and functional roles across...
decor
1 Day ago
Data Analyst (Kannada Speakers)
AI & Machine Learning Advancement
  • 1 - 1 Yrs
  • Karnataka, India
For thousands of years, maps have provided humans with the knowledge they need to make decisions. As a Maps Evaluator, you will have the opportunity to provide ground truth for your town, city or country. At Peroptyx, we are looking for Data Ana...
decor
1 Day ago
Data Analyst (Telugu Speakers)
AI & Machine Learning Advancement
  • 1 - 1 Yrs
  • Andhra Pradesh, Telangana, India
For thousands of years, maps have provided humans with the knowledge they need to make decisions. As a Maps Evaluator, you will have the opportunity to provide ground truth for your town, city or country. At Peroptyx, we are looking for Data Ana...
decor
1 Day ago
Solution Architect – Databricks
Information Technology
  • 40,00,000 - 50,00,000 INR - Annual
  • 9 - 15 Yrs
  • Mumbai
Summary role description: Hiring for a Solution Architect – Databricks for global technology consulting and system integration firm specializing in data engineering, AI and ML. Company description: Our client is a US-headquarte...
decor
1 Day ago
Interesting Job Opportunity: Utilli - Full Stack Developer - Node.js/React.js
Information Technology
  • Bangalore, Karnataka, India
Job SummaryWe are seeking a highly skilled Full Stack Engineer to lead a team of developers in building and maintaining scalable web applications. This role requires a hands-on leader with deep expertise in JavaScript frameworks and modern developme...
decor

Talk to us

Feel free to call, email, or hit us up on our social media accounts.
Social media