Security Analyst II
Iaings · Noida, Uttar Pradesh, India
About The Role
About the Role
We are looking for a highly motivated Security Analyst II – Information Security to support our Information Security, Privacy, and Compliance functions. The role is focused on managing customer security assessments, audit support activities, compliance-related engagements, internal audits and coordination with internal stakeholders to ensure timely and accurate responses to customer information security and privacy requirements.
The ideal candidate should have a strong understanding of information security frameworks, privacy principles, secure software development practices, and experience supporting customer audits in a technology-driven environment. Experience working with BFSI (Banking, Financial Services, and Insurance) clients will be an advantage.
Key Responsibilities
Customer Audit & Assessment Management
- Manage and coordinate customer information security assessments, due diligence questionnaires, and audit requests.
- Act as the primary point of contact for customer security and compliance inquiries.
- Track, monitor, and follow up on customer audit requests to ensure timely closure.
- Prepare and review responses related to information security, privacy, compliance, and operational controls.
- Support customer-led audits, reviews, and compliance assessments.
Stakeholder Coordination
- Collaborate with Engineering, DevOps, Product, Legal, Privacy, Infrastructure, HR, and Operations teams to gather evidence and required documentation.
- Coordinate with cross-functional teams to obtain responses, policies, procedures, certifications, and technical evidence requested by customers.
- Drive closure of customer action items and audit observations through regular follow-ups.
Information Security & Compliance
- Support maintenance and continuous improvement of Information Security and Privacy Management Systems.
- Assist in compliance activities related to ISO 27001, ISO 27701, SOC 2 Type II, ISO 9001, and other applicable standards.
- Review customer security requirements and map them against organizational controls.
- Support risk assessments, control reviews, and compliance reporting activities.
- Assist in developing and maintaining security and privacy documentation, policies, standards, and procedures.
Security & Privacy Advisory
- Provide guidance on security controls, privacy requirements, and compliance obligations to internal stakeholders.
- Support customer discussions related to information security, privacy, data protection, and secure development practices.
- Stay updated on emerging security threats, privacy regulations, and industry best practices.
Reporting & Governance
- Maintain audit trackers, assessment dashboards, and compliance metrics.
- Prepare management reports and status updates for leadership and stakeholders.
- Support internal and external audit activities as required.
Required Qualifications
- Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Information Systems, or a related field.
- 3-5 years of experience in Information Security, Compliance, Risk Management, Audit Support, or GRC functions.
- Experience handling customer security questionnaires, due diligence assessments, and compliance audits.
- Experience working with enterprise customers, preferably in Banking and Financial Services (BFSI) environments.
- Strong understanding of information security principles, privacy requirements, and governance practices.
Required Knowledge & Skills
Security & Compliance Frameworks
Working knowledge of
- ISO 27001
- ISO 27701
- SOC 2 Type II
- Secure Software Development Lifecycle (SSDLC)
- Information Security Risk Management
- Security Controls and Governance
Technical Understanding
- Secure software development practices
- Application security concepts
- Cloud security fundamentals (AWS/Azure/GCP)
- Vulnerability management concepts
- Identity and Access Management concepts
- Data protection and encryption concepts
Privacy & Regulatory Awareness
Understanding of
- Privacy management principles
- Data protection regulations
- Customer and regulatory compliance requirements
- Third-party risk management concepts
Soft Skills
- Excellent written and verbal communication skills.
- Strong stakeholder management and coordination abilities.
- Ability to manage multiple customer engagements simultaneously.
- Strong analytical and documentation skills.
- Attention to detail and ability to work independently.
Preferred Certifications
Any one or more of the following certifications will be preferred
- ISO 27001 Lead Implementer / Lead Auditor
- ISO 27701 Lead Implementer / Lead Auditor
- Certified Information Systems Auditor (CISA)
- Certified Information Security Manager (CISM)
- Certified in Cybersecurity (CC)
- CompTIA Security+
- Certified Ethical Hacker (CEH)
Preferred Experience
- Experience in CPaaS, SaaS, Cloud, FinTech, or Telecommunications environments.
- Experience supporting banking and financial sector customers.
- Exposure to customer audits from large enterprises, banks, or regulated industries.
- Experience responding to RFPs, security questionnaires, and vendor risk assessments.
What We Offer
- Opportunity to work with leading banking and enterprise customers.
- Exposure to security, privacy, and compliance frameworks.
- Collaborative and fast-paced technology environment.
Similar roles you might like
See all →This is an external listing. JobSpring does not represent or verify the employer. Report this listing
