Information Security Analyst (GRC & Vulnerability Management)
Information Security Analyst (GRC & Vulnerability Management)
SaarthiEarly Applicant
- Posted 7 days ago
- Be among the first 10 applicants
Job Description
Description
Job Details
Key Responsibilities
ü Perform infrastructure vulnerability assessments using Nessus and prepare vulnerability reports.
ü Work with infrastructure and application teams to track and validate vulnerability remediation.
ü Support internal and external security audits by collecting evidence, preparing documentation, and coordinating with stakeholders.
ü Conduct risk assessments across business units, identify security risks, and recommend mitigation measures.
ü Maintain and update risk registers and track remediation activities.
ü Participate in incident response activities by providing risk analysis and supporting remediation efforts.
ü Assist in implementing security controls and automation to reduce business risks. Perform gap assessments against the RBI Cyber Security Framework and support implementation of required controls.
ü Monitor compliance with organizational security policies and regulatory requirements. Coordinate with business, IT, and security teams to improve the organization's overall security posture.
ü Required Skills
ü 4+ years of relevant experience in Information Security, GRC, Risk Management, or Vulnerability Management.
ü Hands-on experience with Nessus for vulnerability assessment and reporting.
ü Good understanding of information security audits and compliance activities.
ü Experience conducting risk assessments and managing risk registers.
ü Familiarity with the RBI Cyber Security Framework and experience performing compliance or gap assessments.
ü Knowledge of security frameworks such as NIST CSF, CIS Controls, ISO 27001, HIPAA, and similar standards.
ü Basic understanding of incident response processes and security best practices. Good communication and stakeholder management skills.
ü Ability to prepare reports and present findings to technical and business teams.
ü Preferred Skills Experience in the Banking, Financial Services, or NBFC sector.
ü Exposure to vulnerability remediation tracking and security governance.
ü Relevant certifications such as Security+, ISO 27001, CISA, CISM, CRISC, or similar are an added advantage.
Skills
Compliance Management, Security Governance, Audit Support, Vulnerability Management, HIPAA, Nessus, Stakeholder Management
Job Details
- Location: Trivandrum
- Experience: 2 - 3 Years
- Job Type: Full Time
- Openings: 1
Key Responsibilities
ü Perform infrastructure vulnerability assessments using Nessus and prepare vulnerability reports.
ü Work with infrastructure and application teams to track and validate vulnerability remediation.
ü Support internal and external security audits by collecting evidence, preparing documentation, and coordinating with stakeholders.
ü Conduct risk assessments across business units, identify security risks, and recommend mitigation measures.
ü Maintain and update risk registers and track remediation activities.
ü Participate in incident response activities by providing risk analysis and supporting remediation efforts.
ü Assist in implementing security controls and automation to reduce business risks. Perform gap assessments against the RBI Cyber Security Framework and support implementation of required controls.
ü Monitor compliance with organizational security policies and regulatory requirements. Coordinate with business, IT, and security teams to improve the organization's overall security posture.
ü Required Skills
ü 4+ years of relevant experience in Information Security, GRC, Risk Management, or Vulnerability Management.
ü Hands-on experience with Nessus for vulnerability assessment and reporting.
ü Good understanding of information security audits and compliance activities.
ü Experience conducting risk assessments and managing risk registers.
ü Familiarity with the RBI Cyber Security Framework and experience performing compliance or gap assessments.
ü Knowledge of security frameworks such as NIST CSF, CIS Controls, ISO 27001, HIPAA, and similar standards.
ü Basic understanding of incident response processes and security best practices. Good communication and stakeholder management skills.
ü Ability to prepare reports and present findings to technical and business teams.
ü Preferred Skills Experience in the Banking, Financial Services, or NBFC sector.
ü Exposure to vulnerability remediation tracking and security governance.
ü Relevant certifications such as Security+, ISO 27001, CISA, CISM, CRISC, or similar are an added advantage.
Skills
Compliance Management, Security Governance, Audit Support, Vulnerability Management, HIPAA, Nessus, Stakeholder Management
More Info
Key Skills
NIST CSF
CIS Controls
RBI Cyber Security Framework
