Information Security Analyst (Government, Risk & Compliance)

Burns & McDonnell India

Bengaluru

On-site

INR 1,500,000 - 2,400,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A leading engineering firm in Bengaluru is seeking an experienced cybersecurity professional. Responsibilities include conducting risk assessments, leading third-party evaluations, and advising business stakeholders on security compliance. The ideal candidate has a Bachelor’s degree in Cybersecurity or related fields, experience in risk management activities, and strong communication skills. This full-time position doesn't require travel, offering a dynamic work environment focused on cybersecurity initiatives.

Qualifications

  • Experience independently performing cybersecurity risk, compliance, or assurance activities.
  • Ability to translate security and compliance requirements into business-relevant guidance.
  • Experience engaging directly with business stakeholders or third parties on cybersecurity matters.
  • Ability to translate security and compliance requirements into business‑relevant guidance.
  • Strong written and verbal communication skills.
  • Applied experience with frameworks such as NIST, ISO 27001, SOC 2, or similar.
  • Preferred professional cybersecurity certification (e.g., Security, CISA, CRISC, CISSP).

Responsibilities

  • Conduct cybersecurity risk assessments and document findings.
  • Lead third-party risk assessments for vendors.
  • Advise stakeholders on mitigation strategies.
  • Support external audits, certifications, and client‑facing security assessments
  • Advise stakeholders on mitigation strategies and track remediation progress
  • Analyze the security risk of new or existing computer applications, software or services
  • Deliver cybersecurity awareness training and simulated phishing activities developed by CAS
  • Lead CAS Objectives and Key Results (OKRs), initiatives, and projects with low to moderate operational impact to the business
  • Participate in the CAS Weekly Champion rotation and enhance Champion duties defined in the CAS Weekly Champion playbook
  • All other duties as assigned

Skills

Cybersecurity risk assessments
Stakeholder engagement
Risk management
Strong written and verbal communication
Framework application (NIST, ISO 27001, SOC 2)

Education

Bachelor’s degree in Cybersecurity or related field
Professional cybersecurity certification (e.g., CISSP)

Job description

Responsibilities
  • Conduct cybersecurity risk assessments and document findings, risk ratings, and recommendations
  • Lead third‑party risk assessments for vendors, suppliers, and technology partners
  • Interpret regulatory, contractual, and framework requirements and apply them to business use cases
  • Support external audits, certifications, and client‑facing security assessments
  • Advise stakeholders on mitigation strategies and track remediation progress
  • Analyze the security risk of new or existing computer applications, software or services
  • Deliver cybersecurity awareness training and simulated phishing activities developed by CAS
  • Lead CAS Objectives and Key Results (OKRs), initiatives, and projects with low to moderate operational impact to the business
  • Participate in the CAS Weekly Champion rotation and enhance Champion duties defined in the CAS Weekly Champion playbook
  • All other duties as assigned
Qualifications
  • Bachelor’s degree in Cybersecurity, Information Systems, Risk Management, or related field (or equivalent experience)
  • Demonstrated experience independently performing cybersecurity risk, compliance, or assurance activities
  • Experience engaging directly with business stakeholders or third parties on cybersecurity matters
  • Ability to translate security and compliance requirements into business‑relevant guidance
  • Strong written and verbal communication skills
  • Applied experience with frameworks such as NIST, ISO 27001, SOC 2, or similar
  • Preferred professional cybersecurity certification (e.g., Security, CISA, CRISC, CISSP)
Job Details

Job: Information Technology

Primary Location: India‑Karnataka‑Bengaluru

Schedule: Full‑time

Travel: No

Req ID: 261175

Job Hire Type: Experienced Not Applicable #BMI N/A

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Analyst
Information Security Analyst

ASSA ABLOY Global Solutions • Chennai District

Hybrid
INR 900,000 - 1,500,000
Information Security Analyst
Information Security Analyst

Tek Systems • Karnataka

Hybrid
INR 1,400,000 - 2,200,000
Cybersecurity Analyst (Contract-To-Hire)
Cybersecurity Analyst (Contract-To-Hire)

Orcapod Consulting Services • Bengaluru

Hybrid
INR 900,000 - 1,300,000
IT Associate
IT Associate

MS Clinical Research • Bengaluru

On-site
INR 1,500,000 - 2,100,000
Senior Information Security Analyst-(Risk and Regulatory Tech Complainance)
Senior Information Security Analyst-(Risk and Regulatory Tech Complainance)

KreditBee • Bengaluru

On-site
INR 800,000 - 1,500,000
Senior Associate - IT
Senior Associate - IT

Eurofins • Bengaluru

Hybrid
INR 800,000 - 1,200,000
Governance, Risk & Compliance Analyst
Governance, Risk & Compliance Analyst

Hero Fincorp • India

On-site
INR 1,800,000 - 2,600,000
Security Compliance Analyst
Security Compliance Analyst

Captalent Hr • Indore District, Gurugram District, Mumbai

Hybrid
INR 1,800,000 - 2,800,000
Lead Information Security Analyst
Lead Information Security Analyst

Nomura • Mumbai

On-site
INR 1,800,000 - 2,400,000
Info/Security - Analyst
Info/Security - Analyst

Ascendion Engineering • Hyderabad

Hybrid
INR 2,500,000 - 3,800,000