
Information Security Analyst
- Mumbai, Maharashtra
- Permanent
- Full-time
- Regulatory Compliance: Ensure compliance with relevant regulations and standards released by Reserve Bank of India (RBI)
- Vulnerability Management: Track and assist in the closure of identified vulnerabilities, working closely with IT and development teams to implement remediation plans.
- Secure Configurations: Review and maintain secure configurations for systems, applications, and network devices.
- External Certifications: Coordinate and manage external certification processes such as ISO 27001 and PCI DSS, ensuring all requirements are met and maintained.
- Data Loss Prevention (DLP): Manage and monitor DLP rules and policies to prevent unauthorized access and data breaches.
- Security Assessments: Conduct security assessments for new applications and systems, providing recommendations for improvements and ensuring compliance with security policies.
- SIEM Use Cases: Review and optimize Security Information and Event Management (SIEM) use cases to enhance threat detection and response capabilities.
- Training and Awareness: Develop and conduct security training and awareness programs for employees to promote a culture of security within the organization.
- Strong analytical skills, knowledge of security tools, and effective communication with cross-functional teams are essential for success in this role.
- Drives required risk culture and partnership with peer technology teams and support functions
- Participate in Information Security Steering Committee,
- 5 - 10 years' experience in information security and Technology professional
- Bachelor's degree in information security, Computer Science, or a related field.
- Certification in security (CISA, CISM, CISSP) is a strong plus
- Proven experience in regulatory compliance, vulnerability management, and secure configurations.
- Strong knowledge of ISO 27001 and PCI DSS certification processes.
- Excellent communication and interpersonal skills, with the ability to conduct effective training sessions.
- Experience with DLP tools and technologies.
- Ability to conduct thorough security assessments and provide actionable recommendations.
- Experience with SIEM tools and use case development
- Excellent analytical skills with the eye for details
- Multi culture mindset and flexibility, able to work in an international environment