
Incident Analyst
- Gurgaon, Haryana
- Permanent
- Full-time
- Investigate reported information security incidents to determine their scope, impact, and root cause.
- Identify responsible individuals or processes contributing to incidents and suggest corrective actions.
- Document findings, create detailed incident reports, and communicate learnings to stakeholders.
- Act as a liaison with government agencies (e.g., NCSCC, NCIIPC, CERT-IN, NTRO/DOT) to share and receive critical information related to cyber and information security incidents.
- Maintain a repository of communications, advisories, and updates from regulatory bodies for the organization.
- Ensure timely and accurate reporting of incidents to relevant stakeholders and authorities.
- Identify key areas for improvement in the organization’s cyber and information security posture.
- Collaborate with internal teams to implement measures that address identified gaps and enhance security.
- Monitor and evaluate the effectiveness of implemented measures and recommend further improvements.
- Manage exceptional usage requests, ensuring compliance with organizational policies.
- Oversee information asset gate entry and access management to ensure secure handling of assets.
- Maintain records of access and usage approvals, ensuring proper documentation and traceability.
- Prepare detailed management summaries of incidents for strategic communication and decision-making.
- Support preparations for Management Incident Summary Forum (MISF) meetings.
- Present periodic reports on incident statistics, root causes, preventive actions, and compliance updates.
- Provide training and guidance to employees on incident prevention, compliance, and security best practices.
- Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or a related field.
- 3–5 years of total experience, with at least 2 years in information security incident handling, compliance coordination, IT operations, or a related field.
- Experience in liaising with government agencies or regulatory bodies is a strong advantage.
- ISO 27001 Lead Auditor/Implementer
- CISSP (Certified Information Systems Security Professional) / CISA (Certified Information Systems Auditor) / CRISC (Certified in Risk and Information Systems Control) or similar
- Strong knowledge of cyber security frameworks, standards, and regulatory requirements.
- Familiarity with incident response frameworks, methodologies, and tools (e.g., SIEM, IDS/IPS etc.).
- Understanding of IT infrastructure, security controls & proficiency in root cause analysis & problem-solving.
- Excellent communication and interpersonal skills for effective coordination with stakeholders.
- Strong analytical & critical thinking abilities for attention to detail & ability to prepare concise & accurate reports.
- Proactive approach to identifying and addressing compliance and security issues.