Compliance/ Cyber Security Analyst (ISO 27K, SOC 2 Type 2)

SITA Group

Delhi

Hybrid

INR 1,200,000 - 1,800,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Flexible work from home
Employee Wellbeing Program
Professional Development
LinkedIn Learning access

Job summary

SITA Group is seeking a Compliance professional to support SOC 2 Type 2 compliance across its security and operational environments. You will help prepare documentation, evidence, and control mappings while engaging with internal teams and external auditors.

The role emphasizes SSDLC familiarity, risk-based controls, and continuous improvement, with eligibility for flexible work arrangements in India.

Qualifications

  • 3+ years in QA, InfoSec, or Compliance environments with SOC 2/ISO 27001/PCI DSS exposure.
  • Experience implementing SOC 2 Type 2 programmes: evidence collection, controls, audit readiness.
  • Familiarity with SSDLC, access control, incident response, and risk-based control assessments.
  • Experience collaborating with cross-functional teams to implement security controls and remediate findings.

Responsibilities

  • Develop and execute a SOC 2 Type 2 compliance programme with documentation and control matrices.
  • Coordinate with GRC, SoC, Infra, Development, and external auditors for artefacts.
  • Support implementation and validation of access controls, monitoring, incident response, and data protection.

Skills

SOC 2 Type 2 Implementation
Compliance Management
Audit Readiness & Response
Risk Assessment
Technical Writing

Education

University degree in CS/IS/Engineering
CISA/CISM or ISO27001 Lead Implementer (desirable)

Tools

GRC tools
Log management platforms
Access reviews tooling

Job description

Overview

WELCOME TO SITA

We're the team that keeps airports moving, airlines flying smoothly, and borders open. Our tech and communication innovations are the secret behind the success of the world's air travel industry.

You'll find us at 95% of international hubs. We partner closely with over 2,500 transportation and government clients, each with their own unique needs and challenges. Our goal is to find fresh solutions and cutting-edge tech to make their operations run like clockwork. Want to be a part of something big?

Are you ready to love your job? The adventure begins right here, with you, at SITA.

PURPOSE

Support the implementation, control, and continuous improvement of SOC 2 Type 2 compliance across SITA’s operational and infrastructure environments. This includes preparing for and supporting external audits, maintaining documentation, and ensuring alignment with the SOC 2 Trust Services Criteria (Security, Availability, Processing Integrity, Confidentiality, and Privacy) as well as SITA’s internal security and operational policies.

WHAT YOU’LL DO

  • Assist in the development and execution of a SOC 2 Type 2 compliance programme, including the creation and maintenance of required documentation, audit evidence, and control matrices aligned with the Trust Services Criteria.
  • Coordinate with internal stakeholders (e.g. GRC, SoC, Infrastructure, Development, and Integration teams) and external auditors to ensure timely and accurate delivery of compliance artefacts.
  • Support the implementation and validation of technical and administrative controls such as access management, system monitoring, incident response, and data protection in line with SOC 2 requirements.
  • Maintain and update the Roles and Responsibilities Matrix to ensure all personnel involved in SOC 2 scope understand and acknowledge their duties.
  • Monitor and report on the effectiveness of SOC 2 controls, identifying gaps and recommending remediation actions.
  • Facilitate internal readiness assessments and mock audits to ensure preparedness for formal SOC 2 Type 2 evaluations.
  • Track and manage audit findings, ensuring timely resolution and documentation of corrective actions.
  • Support the development and delivery of SOC 2 awareness and training sessions for relevant teams.
  • Assist in the planning and estimation of compliance-related activities, including resource needs and timelines.
  • Ensure that all documentation (e.g. policies, procedures, system architecture diagrams, change control logs) is reviewed and updated regularly to meet SOC 2 audit requirements.
Qualifications

EXPERIENCE

  • Minimum of 3+ years’ experience in a Quality Assurance, Information Security, or Compliance environment, with hands‑on involvement in regulatory frameworks and standards such as SOC 2, ISO 27001, or PCI DSS.
  • Demonstrated experience in implementing and supporting SOC 2 Type 2 compliance programmes, including evidence collection, control validation, and audit readiness.
  • Familiarity with secure system development lifecycle (SSDLC), access control management, incident response, and risk‑based control assessments aligned with the Trust Services Criteria.
  • Experience working with cross‑functional teams (e.g. infrastructure, development, operations, and GRC) to implement security controls, respond to audit findings, and drive continuous improvement.

KNOWLEDGE & SKILLS

  • Strong understanding of SOC 2 Trust Services Criteria (Security, Availability, Processing Integrity, Confidentiality, and Privacy), including scoping, control mapping, and evidence documentation.
  • Knowledge of security best practices for access control, system monitoring, data encryption, secure configuration, and incident response.
  • Ability to interpret audit requirements and translate them into actionable tasks for technical and non‑technical stakeholders.
  • Proficiency in preparing and maintaining compliance artefacts such as control matrices, risk assessments, roles and responsibilities documentation, and policy/procedure manuals.
  • Familiarity with tools and platforms used for log management, access reviews, vulnerability assessments, and change tracking.
  • Excellent communication and documentation skills, with the ability to explain complex compliance topics clearly and effectively across diverse teams.

PROFESSION COMPETENCIES

  • SOC 2 Type 2 Implementation
  • Compliance Management
  • Business Process Improvement
  • Managing Risk
  • Audit Readiness & Response
  • Secure System Development Lifecycle
  • Standards, Procedures & Policies
  • Supplier Security Assurance
  • Quality Management
  • Requirements Analysis
  • Systems Thinking
  • Conceptual Thinking
  • Innovation
  • Managing Change
  • Conflict Resolution
  • Technical Writing & Documentation

CORE COMPETENCIES

  • Adhering to Principles & Values
  • Communication
  • Creating & Innovating
  • Customer Focus
  • Developing Talent
  • Impact & Influence
  • Leading Execution
  • Managing Performance
  • Results Orientation
  • Teamwork

EDUCATION & QUALIFICATIONS

  • University degree or equivalent, preferably in Computer Science, Information Security, Engineering, or a related field.
  • Industry certifications such as Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), SOC 2 Certified Practitioner, or ISO 27001 Lead Implementer are highly desirable.
  • ISEB Foundation or equivalent quality assurance qualification is a plus.
  • Familiarity with audit frameworks and regulatory standards including SOC 2, ISO 27001, and PCI DSS.

WHAT WE OFFER

We're all about diversity. We operate in 200 countries and speak 60 different languages and cultures. We're really proud of our inclusive environment. Our offices are comfortable and fun places to work, and we make sure you get to work from home too. Find out what it's like to join our team and take a step closer to your best life ever.

Flex Week: Work from home up to 2 days/week (depending on your team's needs)

Flex Day: Make your workday suit your life and plans.

Flex-Location: Take up to 30 days a year to work from any location in the world.

Employee Wellbeing: We have got you covered with our Employee Assistance Program (EAP), for you and your dependents 24/7, 365 days/year. We also offer Champion Health - a personalized platform that supports a range of wellbeing needs.

Professional Development: Level up your skills with our training platforms, including LinkedIn Learning!

Competitive Benefits: Competitive benefits that make sense with both your local market and employment status.

SITA is an Equal Opportunity Employer. We value a diverse workforce. In support of our Employment Equity Program, we encourage women, aboriginal people, members of visible minorities, and/or persons with disabilities to apply and self‑identify in the application process.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Compliance Analyst (SOC -2 Type -2)
Compliance Analyst (SOC -2 Type -2)

SITA • Delhi

Hybrid
INR 2,500,000 - 4,000,000
Flex Week
Flex Day
Flex-Location
+3
Compliance/ Cyber Security Analyst (ISO 27K, SOC 2 Type 2)
Compliance/ Cyber Security Analyst (ISO 27K, SOC 2 Type 2)

SITA • Delhi

Hybrid
INR 1,200,000 - 2,000,000
Flex Week: 2 days from home
Flex Day: flexible scheduling
Flex-Location: global remote option
+3
Compliance Analyst (SOC -2 Type -2)
Compliance Analyst (SOC -2 Type -2)

Sita • New Delhi

On-site
INR 1,400,000 - 2,100,000
Senior Infrastructure Engineer
Senior Infrastructure Engineer

SITA Group • Delhi

On-site
INR 1,500,000 - 2,600,000
Flex Week: Work from home up to 2 days
Flex Day
Flex-Location: up to 30 days remote
+2
Associate Service Operations Specialist
Associate Service Operations Specialist

SITA • Delhi

On-site
INR 900,000 - 1,300,000
Flex Week
Flex Day
Flex Location
+3
Lead Site Reliability Engineer/ Expert
Lead Site Reliability Engineer/ Expert

SITA • Delhi

Hybrid
INR 4,000,000 - 7,000,000
Flex Week
Flex Day
Flex-Location
+3
Data Analytics & Quality Specialist
Data Analytics & Quality Specialist

SITA Group • Delhi

Hybrid
INR 700,000 - 1,100,000
Flex Week: Work from home up to 2 days
Flex Day
Flex-Location: up to 30 days remote
+3
Solution Engineer, Manager
Solution Engineer, Manager

SITA • Delhi

Hybrid
INR 1,200,000 - 1,600,000
Work from home up to 2 days/week
Flexibility in work location
Employee Wellbeing Program
+1
Senior Life Cycle Engineer/ Expert/ Specialist
Senior Life Cycle Engineer/ Expert/ Specialist

SITA • Delhi

Hybrid
INR 1,200,000 - 1,500,000
Flex Week: Work from home up to 2 days/week
Employee Wellbeing support
Professional Development opportunities
Associate Field Engineer
Associate Field Engineer

SITA Group • Bengaluru

On-site
INR 360,000 - 600,000
Flex Week: Work from home up to 2 days
Flex-Location: Up to 30 days/year
Employee Wellbeing
+1