Sr. IT Security Risk & Compliance Analyst [T500-18805]

ANSR

Bengaluru

On-site

INR 1,500,000 - 2,300,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Competitive salary
Health insurance
Professional development opportunities
Flexible working hours

Job summary

A leading company in the genomics field is seeking a Sr. IT Security Risk & Compliance Analyst to enhance their security certifications program. This role involves ensuring compliance with critical security frameworks like ISO:27001 and SOC 2 and requires strong analytical skills, project management expertise, and excellent communication abilities. You will collaborate with diverse teams to maintain high standards in security compliance and project support, making a significant impact within the organization.

Qualifications

  • Minimum 5 years related experience.
  • Experience with ISO:27001 and SOC 2 requirements.
  • Strong background in cybersecurity and risk management.

Responsibilities

  • Ensure compliance with ISO 27001, C5, and SOC 2.
  • Manage end-to-end compliance activities within projects.
  • Document compliance evidence and oversee internal audits.

Skills

Organizational Skills
Analytical Skills
Project Management
Communication
Problem-Solving

Education

Bachelor's degree
Master's degree
PhD

Tools

GRC tool (AuditBoard)

Job description

Sr. IT Security Risk & Compliance Analyst [T500-18805]
Sr. IT Security Risk & Compliance Analyst [T500-18805]

Illumina is a leading developer, manufacturer, and marketer of life science tools and integrated systems dedicated to making genomics useful for all. Illumina’s integrated Indian global hub in Bengaluru, Illumina India Biotechnology Private Limited, is focused on technology activities that will help usher in the next wave of innovation in healthcare and medical research. If you’re eager to work on challenging projects that uses cutting-edge technology to transform the future of healthcare, this is your chance to join a truly remarkable team.

Job Description

Position Summary:

The Sr. IT Security Risk & Compliance Analyst will work within the security certifications team to support and mature a strong security certifications program. With an immediate goal to provide operation support in maintaining ISO:27001, C5 and SOC 2 certifications for Illumina’s cloud-based analytics products. The role will bring the necessary subject matter expertise in the ISO, C5 and SOC 2 security certifications space and work with the program manager based in the AMR region to meet future business needs. The position requires ability to operate with remote supervision, with high customer satisfaction, efficiency, and accountability towards the success of the program. This position interacts with all tiers of staff and management and must possess good project management and organizational skills.

Scope of Responsibilities:

  • Applies core knowledge and understanding of area of specialization to provide solutions in creative and effective ways.
  • Assesses unusual circumstances and uses sophisticated analytical and problem-solving techniques to identify cause and suggest variations in approach.
  • Works on assignments of diverse scope where information is limited and problem solving requires adaptation of existing techniques.
  • Enhances internal and external working relationships and networks with senior partners within area of expertise.
  • Adapts style to differing audiences and often advises others on difficult matters that require persuasion.
  • Work is done independently and is reviewed at critical points.
  • Uses evaluation, judgment, and interpretation to select best course of action.

Responsibilities:

  • Responsible for ensuring various process owners maintain the required ISO 27001, C5 and SOC 2 and various additional security framework requirements (e.g. NIST, PCI, HIPAA)
  • Management and custodian duties related to GRC tool (AuditBoard)
  • Documenting evidence that supports compliance with security requirements
  • Coordinates data gathering, logging and upkeep of periodic activities as defined within the security management process.
  • Develops and maintains periodic review of ISMS program based polices.
  • Advises project teams and internal GIS customers on ISO, C5 and SOC 2 certification scope, and compliance approach.
  • Assist and lead process improvement projects to enhance control strength.
  • Manage Quarterly compliance requirements for various security frameworks
  • Operate independently to manage end to end compliance activities within projects.
  • Develops and maintains metrics to demonstrate security control’s health throughout the year.
  • Assist in maintaining ISO, C5 and SOC 2 security risks, open action items and drive them for closure.
  • Support internal security audits conducted as part of ISO, C5 and SOC 2 programs.
  • Schedule, maintain and facilitate SME walkthroughs during external and internal audits.
  • Work within the GRC audit tool to maintain audit schedules, control strength ratings and SME ownership assignments.
  • Facilitate and maintain ISO, C5 and SOC 2 program’s non-conformance actions including root-cause analysis and investigation status.
  • Listed responsibilities are an essential, but not exhaustive list, of the usual duties associated with the position. Changes to individual responsibilities may occur due to business needs.

Requirements:

  • Experience with ISO:27001 and SOC 2 requirements and security regulations within other frameworks – e.g., 21 CFR Part 820/11, ISO 13485, FDA, SOX, HIPAA and C5.
  • Strong organizational skills to maintain and manage activities around ISO, C5 and SOC 2 certification projects.
  • Strong experience with GRC tool configuration and maintenance – (e.g. AuditBoard)
  • Experience working within a distributed team in multiple geographical locations.
  • Strong oral and written skills to persuade, direct and advise stakeholders on security compliance processes.
  • Understanding of cloud infrastructure, cybersecurity threats, vulnerabilities and risk management
  • Ability to articulate security & compliance requirements & strategy and provide tailored approach to meet the business needs.
  • Experience and leadership in fast-paced project implementations.
  • Excellent customer service and communication skills.
  • Experience with software development lifecycle activities, methodologies, testing and validation.
  • Experience with common IT infrastructure and applications, e.g., virtualization, directory services, storage, DBMS.
  • Security certifications such as Security+, CEH, CISA, CISM, or equivalent are a plus
  • All listed requirements are deemed as essential functions to this position; however, business conditions may require reasonable accommodations for additional task and responsibilities.

Experience / Education:

  • Typically requires a minimum of 5 years of related experience with a Bachelor’s degree; or 3 years and a Master’s degree; or a PhD without experience; or equivalent work experience
Seniority level
  • Seniority level
    Mid-Senior level
Employment type
  • Employment type
    Full-time
Job function
  • Job function
    Information Technology and Engineering

Referrals increase your chances of interviewing at ANSR by 2x

Get notified about new Information Technology Security Specialist jobs in Bengaluru, Karnataka, India.

ISMS - Information Security Management System
Senior Information Security Compliance Analyst
Technology Analyst - CyberSecurity(Vulnerability Analyst)
Junior Security Analyst – Malware & Application Security

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Architect
Cyber Security Architect

VARITE INC • Bengaluru

On-site
INR 1,500,000 - 2,500,000
Candidate Referral Bonus
Senior / Principal GRC Analyst
Senior / Principal GRC Analyst

844 Altera Semiconductor Technology India Pvt. Ltd. • Bengaluru

On-site
INR 2,000,000 - 3,000,000
Information Security Analyst
Information Security Analyst

ASSA ABLOY Global Solutions • Chennai District

Hybrid
INR 900,000 - 1,500,000
Senior Associate - IT
Senior Associate - IT

Eurofins • Bengaluru

Hybrid
INR 800,000 - 1,200,000
Senior / Principal GRC Analyst
Senior / Principal GRC Analyst

Altera • Bengaluru

On-site
INR 3,000,000 - 4,500,000
Information securities & Audit Manager
Information securities & Audit Manager

Talentgigs • Bengaluru

On-site
Analyst - IT Audit [T500-19742]
Analyst - IT Audit [T500-19742]

ANSR • Hyderabad

On-site
INR 800,000 - 1,400,000
Security Analyst - IT GRC & Audit (CSCRF)
Security Analyst - IT GRC & Audit (CSCRF)

Kotak Alternate Asset Managers Limited • Maharashtra

On-site
INR 2,500,000 - 4,000,000
Security training
Senior Application Security Specialist
Senior Application Security Specialist

[24]7.ai • Bengaluru

On-site
INR 1,500,000 - 2,500,000
Senior GRC Analyst
Senior GRC Analyst

Litmos • India

On-site
INR 2,400,000 - 3,200,000