Information Security Analyst
Must Have Skills
Preferred Skills
About the Client
We are calling candidates on behalf of a global digital transformation and technology services organization delivering innovative IT solutions across industries including banking, healthcare, telecom, retail, and enterprise technology. With a strong focus on cybersecurity, governance, compliance, and operational excellence, the organization supports large-scale enterprise environments and mission-critical applications worldwide.
Job Overview
We are looking for a highly motivated Information Security Analyst to join the Control Factory / Information Security Operations team. The ideal candidate will have hands-on experience in technology risk management, IT audit, cybersecurity operations, compliance assessments, and remediation coordination.
The role involves working closely with technology teams, asset owners, and stakeholders to perform security assessments, ensure compliance adherence, manage remediation activities, and support BAU (Business As Usual) security operations.
Key Responsibilities
Operational & Security Compliance Support
- Coordinate with technology and application teams to perform security and compliance assessments as part of BAU processes.
- Work with Technology Asset Owners (TAOs) to implement and maintain control assessment processes.
- Conduct assessments to identify security risks, compliance gaps, and process deviations as per SOPs and internal security standards.
- Track remediation activities and ensure timely closure of identified findings.
- Perform periodic reviews and proactive compliance assessments.
Risk & Control Management
- Understand and evaluate IT controls, cyber security controls, and technology risk frameworks.
- Develop and maintain control inventories for applications and systems.
- Assess applications and infrastructure against defined security controls and standards.
- Analyze deviations and prepare remediation plans following documented procedures.
- Support audit and regulatory requirements through process adherence and evidence management.
Stakeholder & Process Coordination
- Collaborate with internal stakeholders on remediation and governance activities.
- Communicate assessment results, compliance findings, and progress updates effectively.
- Manage workflow tickets using tools like JIRA and ServiceNow.
- Maintain process documentation and knowledge repositories in Confluence or similar collaboration tools.
Continuous Improvement & Automation
- Identify opportunities for process automation and operational efficiency improvements.
- Contribute to innovation initiatives that enhance stakeholder experience and security operations.
- Support knowledge-sharing and process standardization initiatives.
Required Skills & Experience
Core Technical Skills
- 4–5 years of experience in:
- Information Security
- Cybersecurity Operations
- IT Audit
- Technology Risk Management (TRM)
- IT Compliance / Governance
Functional Knowledge
- Understanding of:
- Windows and Unix/Linux operating systems
- Databases and networking concepts
- Firewalls, LDAP, Active Directory (AD), and Cloud technologies
- Authentication & Authorization mechanisms
- APIs, interfaces, logging, and monitoring
- Application architecture and design concepts
- Data classification and application criticality
Tools & Platforms
Experience with:
- JIRA
- Confluence
- ServiceNow
- Archer (preferred)
- MS Office Suite (Excel, Word, PowerPoint, Visio)
- PDF/documentation tools
Soft Skills
- Strong analytical and problem-solving skills
- Excellent communication and stakeholder management abilities
- Ability to follow structured operational processes
- Good documentation and reporting skills
- Self-learning attitude and adaptability to new technologies
Preferred Qualifications
- Degree or Diploma in IT, Computer Science, Information Security, or related technology stream
- Industry-recognized certifications are preferred:
- Microsoft Certifications
- Cloud Certifications
- Cybersecurity Certifications
- IT Governance / Audit Certifications
Nice to Have
- Experience in project management or governance coordination
- Exposure to enterprise security frameworks and audit processes
- Knowledge of automation initiatives in security operations
Apply to this job
Required — upload a file or paste the text
