Security Analyst / Security Engineer

Kotak Investment Advisors

Mumbai

On-site

INR 3,500,000 - 6,000,000

Full time

5 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Kotak Investment Advisors seeks a Security Analyst/Engineer to define and manage the enterprise information security program aligned with business objectives. The role partners with CISO/VP Technology to drive risk management, policy enforcement, and incident response.

Responsibilities include leading governance, SOC setup, threat monitoring, and security training, while ensuring regulatory compliance and continuous improvement across IT and business units.

Qualifications

  • Bachelor’s degree in Computer Science, Information Technology, or a related field.
  • Master’s degree is preferred.
  • Extensive experience in information security, risk management, and governance.

Responsibilities

  • Define, implement, and manage the enterprise information security vision with alignment to business goals.
  • Lead risk assessments, compliance programs, and incident response initiatives.
  • Oversee security policies, standards, and procedures across the organization.
  • Establish and operate a Security Operations Centre (SOC) and metrics.
  • Mentor security teams and report security posture to leadership.

Skills

Information security
Risk management
Incident response
Security operations
Threat intelligence
Vendor management

Education

BSc in CS/IT
MS preferred

Tools

CISSP
CISM
CISA

Job description

Job Title: Security Analyst / Security Engineer

Location: Mumbai
Department: Information Technology
Role Level: Manager / Senior Manager
Reports To: CTO / CISO / VP Technology

Job Summary

The Security Analyst / Security Engineer will be responsible for defining, implementing, and managing the organization’s enterprise information security vision, strategy, and programs to ensure that information assets and technology systems are adequately protected.

The role will work closely with the CISO, VP, senior leadership, and business units to drive risk assessment, risk management, compliance, and incident response initiatives. The incumbent will oversee the Audit, development and enforcement of security policies, standards, and procedures, while fostering a strong security-first culture across the organization.

Key Responsibilities
Security Strategy & Governance
  • Develop, implement, and continuously enhance a comprehensive information security strategy aligned with business objectives.
  • Establish security governance frameworks, standards, and operating models.
  • Foster a security-first mindset across the organization through leadership and advocacy.
Risk Management
  • Identify, assess, and mitigate cybersecurity and information security risks.
  • Facilitate enterprise-wide risk assessments and ensure timely risk remediation.
  • Work with business and IT teams to embed security controls into systems and processes.
  • Should have knowledge for implement TPRM.
Policy & Standards Development
  • Develop, implement, and enforce security policies, standards, and guidelines.
  • Ensure policies are aligned with regulatory, legal, and industry best practices.
Incident Response & Threat Management
  • Lead incident response planning, execution, and post-incident analysis.
  • Oversee investigations of security breaches, including coordination on disciplinary and legal matters.
  • Ensure readiness through tabletop exercises and incident simulations.
Compliance & Regulatory Management
  • Ensure compliance with applicable laws, regulations, and industry standards.
  • Support internal and external audits and regulatory reviews.
  • Coordinate remediation of audit findings and control gaps.
  • Having knowledge of Cyber CSCRF, DPDP & Digital Accessibility framework
Security Operations Centre (SOC)
  • Establish and operationalize a Security Operations Centre (SOC).
  • Oversee monitoring, detection, and response to security incidents.
  • Define SOC processes, metrics, and escalation mechanisms.
Security Awareness & Training
  • Design and lead security awareness and training programs for employees.
  • Promote best practices related to data protection, phishing prevention, and cyber hygiene.
Team Leadership & Stakeholder Management
  • Manage, mentor, and develop a team of security professionals.
  • Collaborate with IT, business units, vendors, and senior leadership.
  • Provide regular security posture and risk reports to senior management and leadership forums.
Measurement & Continuous Improvement
  • Define KPIs and metrics to measure the effectiveness of cybersecurity controls.
  • Continuously assess and improve security tools, processes, and frameworks.
Technical & Functional Skills
  • Strong understanding of information security frameworks and best practices.
  • Hands-on or oversight experience in:
    • Malware analysis
    • Data analysis
    • Cloud security
    • Ethical hacking / penetration testing
    • Vulnerability assessment
  • Experience with security monitoring, incident handling, and threat intelligence.
  • Ability to bridge technical and non-technical discussions effectively.
Qualifications
Education
  • Bachelor’s degree in Computer Science, Information Technology, or a related field.
  • Master’s degree is preferred.
Experience
  • Extensive experience in information security, including:
    • Risk management
    • Compliance & governance
    • Incident response
    • Security operations
    • TPRM – Vendor management
Certifications (Highly Desirable)
  • CISSP
  • CISM
  • CISA
  • Other relevant cybersecurity certifications

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Analyst
Information Security Analyst

MRO • Pune District

On-site
INR 180,000 - 240,000
Security Analyst
Security Analyst

Cloudxtreme • Mumbai

Hybrid
INR 1,800,000 - 2,600,000
SOC Engineer
SOC Engineer

Mintskill HR Solutions LLP • Mumbai

On-site
INR 600,000 - 1,000,000
Chief Information Security Officer
Chief Information Security Officer

Yotta Data Services Private Limited • Mumbai

On-site
INR 6,000,000 - 9,000,000
Information Systems Security Manager
Information Systems Security Manager

IDFC FIRST Bank • Navi Mumbai

On-site
INR 1,800,000 - 3,200,000
Senior IT Security Analyst
Senior IT Security Analyst

Redient Security • Pune District

On-site
INR 1,200,000 - 1,600,000
Information Technology Security Manager
Information Technology Security Manager

Advantmed India LLP • Pune District

Hybrid
INR 2,000,000 - 4,000,000
Information Security Analyst
Information Security Analyst

Systems Plus • Pune District

On-site
INR 900,000 - 1,300,000
Senior MS Engineer, SOC
Senior MS Engineer, SOC

NTT DATA BUSINESS SOLUTIONS • Mumbai

On-site
INR 1,200,000 - 2,000,000
Cyber Security Analyst
Cyber Security Analyst

thehivecareers.co • Bengaluru

On-site
INR 800,000 - 1,200,000