Skip to content
← Back to job listings

Security Analyst II

Iaings · Noida, Uttar Pradesh, India

CybersecurityExternal listingfull-timeabout 5 hours ago

About The Role

About the Role

We are looking for a highly motivated Security Analyst II – Information Security to support our Information Security, Privacy, and Compliance functions. The role is focused on managing customer security assessments, audit support activities, compliance-related engagements, internal audits and coordination with internal stakeholders to ensure timely and accurate responses to customer information security and privacy requirements.

The ideal candidate should have a strong understanding of information security frameworks, privacy principles, secure software development practices, and experience supporting customer audits in a technology-driven environment. Experience working with BFSI (Banking, Financial Services, and Insurance) clients will be an advantage.

Key Responsibilities

Customer Audit & Assessment Management

  • Manage and coordinate customer information security assessments, due diligence questionnaires, and audit requests.
  • Act as the primary point of contact for customer security and compliance inquiries.
  • Track, monitor, and follow up on customer audit requests to ensure timely closure.
  • Prepare and review responses related to information security, privacy, compliance, and operational controls.
  • Support customer-led audits, reviews, and compliance assessments.

Stakeholder Coordination

  • Collaborate with Engineering, DevOps, Product, Legal, Privacy, Infrastructure, HR, and Operations teams to gather evidence and required documentation.
  • Coordinate with cross-functional teams to obtain responses, policies, procedures, certifications, and technical evidence requested by customers.
  • Drive closure of customer action items and audit observations through regular follow-ups.

Information Security & Compliance

  • Support maintenance and continuous improvement of Information Security and Privacy Management Systems.
  • Assist in compliance activities related to ISO 27001, ISO 27701, SOC 2 Type II, ISO 9001, and other applicable standards.
  • Review customer security requirements and map them against organizational controls.
  • Support risk assessments, control reviews, and compliance reporting activities.
  • Assist in developing and maintaining security and privacy documentation, policies, standards, and procedures.

Security & Privacy Advisory

  • Provide guidance on security controls, privacy requirements, and compliance obligations to internal stakeholders.
  • Support customer discussions related to information security, privacy, data protection, and secure development practices.
  • Stay updated on emerging security threats, privacy regulations, and industry best practices.

Reporting & Governance

  • Maintain audit trackers, assessment dashboards, and compliance metrics.
  • Prepare management reports and status updates for leadership and stakeholders.
  • Support internal and external audit activities as required.

Required Qualifications

  • Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Information Systems, or a related field.
  • 3-5 years of experience in Information Security, Compliance, Risk Management, Audit Support, or GRC functions.
  • Experience handling customer security questionnaires, due diligence assessments, and compliance audits.
  • Experience working with enterprise customers, preferably in Banking and Financial Services (BFSI) environments.
  • Strong understanding of information security principles, privacy requirements, and governance practices.

Required Knowledge & Skills

Security & Compliance Frameworks

Working knowledge of

  • ISO 27001
  • ISO 27701
  • SOC 2 Type II
  • Secure Software Development Lifecycle (SSDLC)
  • Information Security Risk Management
  • Security Controls and Governance

Technical Understanding

  • Secure software development practices
  • Application security concepts
  • Cloud security fundamentals (AWS/Azure/GCP)
  • Vulnerability management concepts
  • Identity and Access Management concepts
  • Data protection and encryption concepts

Privacy & Regulatory Awareness

Understanding of

  • Privacy management principles
  • Data protection regulations
  • Customer and regulatory compliance requirements
  • Third-party risk management concepts

Soft Skills

  • Excellent written and verbal communication skills.
  • Strong stakeholder management and coordination abilities.
  • Ability to manage multiple customer engagements simultaneously.
  • Strong analytical and documentation skills.
  • Attention to detail and ability to work independently.

Preferred Certifications

Any one or more of the following certifications will be preferred

  • ISO 27001 Lead Implementer / Lead Auditor
  • ISO 27701 Lead Implementer / Lead Auditor
  • Certified Information Systems Auditor (CISA)
  • Certified Information Security Manager (CISM)
  • Certified in Cybersecurity (CC)
  • CompTIA Security+
  • Certified Ethical Hacker (CEH)

Preferred Experience

  • Experience in CPaaS, SaaS, Cloud, FinTech, or Telecommunications environments.
  • Experience supporting banking and financial sector customers.
  • Exposure to customer audits from large enterprises, banks, or regulated industries.
  • Experience responding to RFPs, security questionnaires, and vendor risk assessments.

What We Offer

  • Opportunity to work with leading banking and enterprise customers.
  • Exposure to security, privacy, and compliance frameworks.
  • Collaborative and fast-paced technology environment.

This is an external listing. JobSpring does not represent or verify the employer. Report this listing