Bangalore, Karnataka, India
Information Technology
Full-Time
Eltropy
Overview
Senior Cyber Security Analyst
We are seeking a Senior Cybersecurity Analyst – GRC (Governance, Risk, and Compliance) to support and improve our security compliance and risk management program. This individual will help manage third-party audits, perform risk assessments, ensure ongoing compliance with security frameworks, and support business teams with customer and vendor assurance.
You’ll work closely with security, engineering, legal, and customer teams to ensure Eltropy’s security posture remains strong, transparent, and audit-ready.
Key Responsibilities
Eltropy is a rocket ship FinTech on a mission to disrupt the way people access financial services. Eltropy enables financial institutions to digitally engage in a secure and compliant way. Using our AI enabled digital conversations platform, community financial
institutions can improve operations, engagement and productivity. CFIs (Community Banks and Credit Unions) use Eltropy to communicate with consumers via Text, Video, Secure Chat, co-browsing, screen sharing and chatbot technology — all integrated in a single platform bolstered by AI, skill-based routing and other contact center capabilities.
Eltropy Values
We are seeking a Senior Cybersecurity Analyst – GRC (Governance, Risk, and Compliance) to support and improve our security compliance and risk management program. This individual will help manage third-party audits, perform risk assessments, ensure ongoing compliance with security frameworks, and support business teams with customer and vendor assurance.
You’ll work closely with security, engineering, legal, and customer teams to ensure Eltropy’s security posture remains strong, transparent, and audit-ready.
Key Responsibilities
- Assist in the preparation and execution of third-party audits and assessments, including SOC 2, PCI-DSS, NIST CSF, and ISO 27001.
- Support the development and maintenance of Eltropy’s GRC program, ensuring alignment with business and regulatory requirements through well-defined policies, controls, and risk processes.
- Respond to customer security questionnaires and due diligence requests.
- Conduct and manage vendor security assessments, maintain risk tracking, and ensure third-party compliance.
- Perform risk assessments across systems, tools, and business processes; manage mitigation plans and maintain an exceptions register.
- Contribute to access governance, including quarterly access reviews, enforcement of least privilege, and identity and access documentation.
- Draft, review, and update security policies, standards, and procedures to reflect current risk posture and best practices.
- Lead or support security awareness programs to promote a risk-conscious culture among staff and end users.
- Contribute to the development and testing of incident response and disaster recovery plans.
- Monitor and analyze cybersecurity threats, trends, and technologies, and recommend enhancements to Eltropy’s security posture.
- Help ensure the security of IT infrastructure by supporting the implementation and maintenance of measures against unauthorized access, cyber threats, and vulnerabilities.
- Track and report on compliance status, audit readiness, and risk trends to key stakeholders.
- 3–5 years of experience in cybersecurity or IT risk/compliance, with a focus on GRC.
- Familiarity with major frameworks like SOC 2, PCI-DSS, ISO/IEC 27001, and NIST CSF.
- Experience supporting third-party audits or certifications.
- Knowledge of risk management processes and frameworks.
- Ability to respond to security due diligence questionnaires and document technical and organizational controls.
- Understanding of access governance and identity lifecycle best practices.
- Excellent communication, documentation, and stakeholder coordination skills.
- Comfort with tools like Vanta, Drata, or similar GRC platforms.
- Experience in a SaaS, FinTech, or regulated technology environment.
- Familiarity with cloud environments such as GCP, AWS, or Azure.
- Understanding of security operations, incident response, or DevSecOps concepts.
- CISA – Certified Information Systems Auditor
- ISO 27001 Lead Auditor / Implementer
- PCI ISA – Internal Security Assessor
Eltropy is a rocket ship FinTech on a mission to disrupt the way people access financial services. Eltropy enables financial institutions to digitally engage in a secure and compliant way. Using our AI enabled digital conversations platform, community financial
institutions can improve operations, engagement and productivity. CFIs (Community Banks and Credit Unions) use Eltropy to communicate with consumers via Text, Video, Secure Chat, co-browsing, screen sharing and chatbot technology — all integrated in a single platform bolstered by AI, skill-based routing and other contact center capabilities.
Eltropy Values
- Customers are our North Star
- No Fear - Tell the truth
- Team of Owners
Similar Jobs
View All
Talk to us
Feel free to call, email, or hit us up on our social media accounts.
Email
info@antaltechjobs.in