Cybersecurity Controls Testing Analyst

Mizuho

Pune District

On-site

INR 900,000 - 1,300,000

Full time

7 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Mizuho Pune is seeking a Cybersecurity Controls Testing Analyst to join the CISO Security Risk & Assurance organization. You will independently assess the design and operating effectiveness of cybersecurity controls and collaborate with IAM, Cyber Defense, and other technology teams to provide objective assurance.

Key responsibilities include executing control tests across multiple domains, collecting evidence, identifying deficiencies, documenting testing results, and supporting remediation and

Qualifications

  • Bachelor's degree in Cybersecurity, IT, CS, Risk Management, or related field.
  • 3+ years of experience in Cybersecurity, IT Risk, IT Audit, Cybersecurity GRC, Technology Controls, Information Security, or Internal Controls.
  • Working knowledge of cybersecurity and technology control concepts.
  • Strong analytical, problem-solving, and documentation skills.
  • Ability to review evidence and identify inconsistencies or control gaps.
  • Strong written and verbal communication skills.
  • Ability to manage multiple assignments and priorities.

Responsibilities

  • Execute testing of cybersecurity controls across Identity & Access Management, Cyber Defense, Vulnerability Management, Security Monitoring, Endpoint Security, Infrastructure Security, and related domains.
  • Perform design effectiveness and operating effectiveness testing.
  • Execute test procedures and testing scripts based on defined control objectives and standards.
  • Collect, review, and validate evidence provided by control owners.
  • Assess whether evidence demonstrates effective control execution.
  • Document testing activities, observations, and conclusions.
  • Identify control deficiencies, exceptions, and compliance gaps.
  • Escalate issues to senior testing team members as appropriate.

Skills

Analytical thinking
Documentation skills
Communication skills
Multitasking

Education

Bachelors degree

Job description

Why Mizuho

At Mizuho, we provide the stability of an international industry leader with the career trajectory of a growing business. Our steady, strategic growth gives our people at all levels rewarding degrees of responsibility and richer work experience than a boutique firm or an established giant could offer alone.

It’s the local expertise of our employees that makes our global network so powerful. By collaborating with colleagues and clients who share the same ambition and drive, you can amplify your sphere of influence and base of knowledge as part of one of the largest banks in the world.

Summary:

The Cybersecurity Controls Testing Analyst will be part of the CISO Security Risk & Assurance (SRA) organization and support the execution of a centralized Cybersecurity Controls Testing function.

The role will work closely with Cybersecurity Identity & Access Management (IAM), Cyber Defense, and other technology teams to independently assess the design and operating effectiveness of cybersecurity controls. This role is responsible for evaluating control execution, reviewing supporting evidence, identifying deficiencies, and documenting testing results in accordance with established testing methodologies.

The function operates independently of control owners to provide objective assurance over the effectiveness of cybersecurity controls.

Key Responsibilities:
Cybersecurity Control Testing
  • Execute testing of cybersecurity controls across Identity & Access Management, Cyber Defense, Vulnerability Management, Security Monitoring, Endpoint Security, Infrastructure Security, and related domains.
  • Perform design effectiveness and operating effectiveness testing.
  • Execute test procedures and testing scripts based on defined control objectives and standards.
  • Collect, review, and validate evidence provided by control owners.
  • Assess whether evidence demonstrates effective control execution.
  • Document testing activities, observations, and conclusions.
  • Identify control deficiencies, exceptions, and compliance gaps.
  • Escalate issues to senior testing team members as appropriate.
Stakeholder Collaboration
  • Work with cybersecurity and technology teams to understand control processes and evidence requirements.
  • Participate in walkthroughs and control discussions with stakeholders.
  • Maintain independence while building effective working relationships with control owners.
  • Support audit and regulatory information requests as needed.
Reporting & Remediation
  • Prepare testing workpapers, evidence reviews, and testing documentation.
  • Assist with remediation tracking and follow-up testing activities.
  • Maintain accurate testing records and testing metrics.
  • Support preparation of management reporting and testing summaries.
Continuous Improvement
  • Participate in efforts to improve testing methodologies, templates, and documentation standards.
  • Identify opportunities to improve testing efficiency and effectiveness.
  • Develop knowledge of cybersecurity technologies, controls, and industry frameworks.
Required Qualifications:
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Risk Management, or related discipline.
  • 3+ years of experience in Cybersecurity, IT Risk, IT Audit, Cybersecurity GRC, Technology Controls, Information Security, or Internal Controls.
  • Working knowledge of cybersecurity and technology control concepts.
  • Strong analytical, problem-solving, and documentation skills.
  • Ability to review evidence and identify inconsistencies or control gaps.
  • Strong written and verbal communication skills.
  • Ability to manage multiple assignments and priorities.
Preferred Qualifications:
  • Experience performing ITGC, cybersecurity controls testing, internal audit, or technology risk assessments.
  • Familiarity with NIST, ISO 27001, COBIT, CIS Controls, or similar frameworks.
  • Understanding of IAM, Vulnerability Management, Security Operations, Endpoint Security, or Infrastructure Security controls.
  • Certifications such as Security+, SSCP, CySA+, or equivalent.
Company Overview:

Mizuho Pune is an integral part of Mizuho Financial Group, one of the world’s leading financial institutions with a strong global presence across the Americas, EMEA, and Asia. Based in India, Mizuho Pune supports Mizuho’s international businesses by delivering high-quality, scalable, and resilient services across multiple functions.

Mizuho Pune plays a critical role in driving operational excellence, standardization, and innovation for Mizuho Americas. By combining deep domain expertise with strong process, technology, and analytical capabilities, it partners closely with regional and global teams to support corporate and investment banking, capital markets, and corporate services functions, while adhering to the highest standards of risk management, regulatory compliance, and control.

  • Mizuho Pune offers competitive compensation and benefits package aligned with industry standards and local market practices.

Mizuho Pune is an equal opportunity employer and is committed to fostering an inclusive and diverse workplace.

Employment is subject to applicable background verification checks in accordance with Indian laws and company policies.

asia-pacific/mizuho-global-services/careers

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Controls Testing Lead
Cybersecurity Controls Testing Lead

Mizuho • Pune District

On-site
INR 1,800,000 - 2,400,000
Cyber Security Advisory Lead
Cyber Security Advisory Lead

Mizuho • Pune District

On-site
INR 4,000,000 - 6,500,000
Cyber Fusion Center Shift Lead
Cyber Fusion Center Shift Lead

Mizuho • Pune District

Hybrid
INR 2,000,000 - 3,500,000
L2 SOC Analyst
L2 SOC Analyst

Mizuho • Pune District

On-site
INR 1,500,000 - 2,100,000
Senior Product Security Lead
Senior Product Security Lead

Mizuho • Pune District

On-site
INR 350,000 - 700,000
Cyber Fusion Center Threat Intelligence Lead
Cyber Fusion Center Threat Intelligence Lead

Mizuho • Pune District

On-site
INR 4,000,000 - 6,000,000
Digital Forensics & Incident Response (DFIR) Lead
Digital Forensics & Incident Response (DFIR) Lead

Mizuho • Pune District

On-site
INR 3,500,000 - 7,500,000
Cyber Fusion Center Threat Hunting Lead
Cyber Fusion Center Threat Hunting Lead

Mizuho • Pune District

On-site
INR 4,500,000 - 6,500,000
Senior Python Developer and Test Automation Engineer
Senior Python Developer and Test Automation Engineer

Mizuho • Pune District

On-site
INR 1,800,000 - 2,500,000
Core Banking & Payments Platform Engineer (Automation & Production Support)
Core Banking & Payments Platform Engineer (Automation & Production Support)

Mizuho • Pune District

On-site
INR 1,800,000 - 3,000,000