Security Analyst - GRC

Bridgestone Americas

Bengaluru

On-site

INR 1,200,000 - 1,800,000

Full time

6 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Bridgestone Americas in Bengaluru seeks an experienced Information Security professional to support Governance, Risk, and Compliance (GRC) programs across global regions. The role includes security awareness efforts and collaboration with audit teams to maintain ISO 27001 and NIST controls.

The candidate will assist with risk assessments, policy development, and reporting for leadership, auditors, and stakeholders while staying abreast of evolving regulatory requirements and industry standards.

Qualifications

  • Bachelor's degree in Cybersecurity, Information Technology, Business, Risk Management, Audit, Compliance, or related field.
  • Relevant certifications preferred (Security+, ISO 27001 Lead Implementer/Auditor, CISA, CRISC, CISSP, CISM).
  • Equivalent combination of experience, training and education may be considered.

Responsibilities

  • Support Governance, Risk, and Compliance (GRC) programs and initiatives across global regions.
  • 50% Security Awareness support, 50% other GRC duties as assigned.
  • Assist with compliance assessments, evidence collection, control testing, and audit activities across frameworks (ISO 27001, NIST, PCI DSS, NIS2, GDPR, CMMC).
  • Support enterprise risk management activities including risk identification, assessment, treatment planning, risk reporting.

Skills

GRC principles
ISO 27001
NIST CSF
Audits & assessments
Security awareness
Stakeholder communication
Microsoft Office
English communication

Education

Bachelor's degree in Cybersecurity
CISA
CISSP
ISO 27001 Lead Implementer/Auditor
CRISC

Tools

ServiceNow
OneTrust
Archer
Sprinto

Job description

About Information Security Team

Our mission is to create and maintain a secure foundation for Bridgestone to continue serving society with superior quality and trust in a digital and evolving world. We will Identify, Detect, Protect, Respond and Recover from cyber-attacks, ensuring the Confidentiality, Integrity, Availability and Safety of our team-mates, information, and systems.

About Information Security Team

Our mission is to create and maintain a secure foundation for Bridgestone to continue serving society with superior quality and trust in a digital and evolving world. We will Identify, Detect, Protect, Respond and Recover from cyber-attacks, ensuring the Confidentiality, Integrity, Availability and Safety of our team-mates, information, and systems.

Years of experience : 5-7 years
Key Responsibilities
  • Support Governance, Risk, and Compliance (GRC) programs and initiatives across global regions.
  • 50% Security Awareness support, 50% all other GRC duties as assigned
  • Assist with compliance assessments, evidence collection, control testing, and audit activities supporting frameworks and regulations such as ISO 27001, NIST, PCI DSS, NIS2, TISAX, GDPR, CMMC, and other applicable requirements.
  • Support enterprise risk management activities, including risk identification, assessment, treatment planning, risk register maintenance, and risk reporting.
  • Develop, review, maintain, and organize Information Security policies, standards, procedures, and supporting documentation.
  • Support security awareness and training activities, including awareness campaigns, communications, phishing simulations, metrics collection, and employee engagement initiatives.
  • Prepare reports, dashboards, metrics, and presentations for leadership, auditors, and stakeholders. Specifically phishing metrics and reporting.
  • Monitor regulatory, legal, and industry developments impacting cybersecurity and compliance obligations.
  • Support continuous improvement initiatives related to GRC processes, tools, documentation, and reporting.
Technical Skills
  • Understanding of Information Security Governance, Risk Management, Compliance, and Security Awareness principles.
  • Familiarity with security frameworks and standards including ISO 27001, NIST CSF, NIST 800-53, CIS Controls, PCI DSS, GDPR, NIS2, TISAX, and similar requirements.
  • Experience supporting audits, assessments, control reviews, and documentation management.
  • Familiarity with risk management methodologies and risk assessment processes.
  • Experience using governance, risk, compliance, issue management, and workflow platforms such as ServiceNow, OneTrust, Archer, Sprinto, or similar tools.
  • Ability to analyze information, develop reports, track metrics, and identify trends.
  • Proficiency with Microsoft Office products including Excel, PowerPoint, Word, Teams, and SharePoint.
Soft Skills
  • Strong verbal and written communication and interpersonal skills. (in English)
  • Excellent troubleshooting and problem-solving skills
  • Solid business acumen; understands how Information Security supports business objectives.
  • Comfortable dealing with ambiguity and working through change.
  • Works well on a team; supplemented by the ability to work with minimal supervision.
Educations And Qualifications
  • Bachelor's degree in Cybersecurity, Information Technology, Business, Risk Management, Audit, Compliance, or a related discipline.
  • Relevant certifications preferred, such as Security+, ISO 27001 Lead Implementer/Auditor, CISA, CRISC, CISSP, CISM, CGRC, or similar credentials.
  • Equivalent combination of experience, training, and education may be considered.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

GRC Security Consultant
GRC Security Consultant

Trantor • Chandigarh

On-site
INR 900,000 - 1,500,000
GRC /SOC Analyst
GRC /SOC Analyst

fulcrumdigital • Pune District

Hybrid
INR 600,000 - 900,000
Information Security GRC Analyst
Information Security GRC Analyst

Perydot • Mumbai

On-site
INR 600,000 - 1,000,000
Information Security Engineer - GRC
Information Security Engineer - GRC

EDGE Executive Search • Gurugram District

On-site
INR 900,000 - 1,500,000
Governance, Risk & Compliance Analyst
Governance, Risk & Compliance Analyst

Hero Fincorp • India

On-site
INR 1,800,000 - 2,600,000
Senior GRC Analyst
Senior GRC Analyst

3M HEALTHCARE • Hyderabad

On-site
INR 1,500,000 - 2,200,000
GRC Analyst
GRC Analyst

Exotel Techcom Pvt Ltd • Bengaluru

On-site
INR 600,000 - 900,000
Senior Manager – Digital, Cyber Security (GRC)
Senior Manager – Digital, Cyber Security (GRC)

Tata Consumer Products • Bengaluru

On-site
INR 1,500,000 - 1,900,000
Product GRC Consultant
Product GRC Consultant

CyRAACS™ • Bengaluru

On-site
INR 600,000 - 1,200,000
Senior GRC Analyst
Senior GRC Analyst

Exotel Techcom Pvt Ltd • Bengaluru

On-site
INR 800,000 - 1,400,000