Padmi

Security & Compliance Analyst

Delhi NCRPosted 3 months ago
CybersecuritySeniorFull Time; Regular
Apply at Ace Recruit

Opens the source posting on shine.com

Source description

About the role

View original

Role Overview: You are an experienced Security & Compliance Analyst with expertise in Vulnerability Management, Governance Risk & Compliance (GRC), and IT Service Management practices. Your focus will be on strengthening the organizational security posture through proactive risk identification, vulnerability remediation, compliance governance, and cross-functional stakeholder collaboration. Your hands-on experience in enterprise security operations, risk-based remediation strategies, and automation-driven security improvements within Unix/Linux midrange environments will be crucial for this role. Key Responsibilities: - Security & Vulnerability Management: - Manage end-to-end vulnerability lifecycle including identification, prioritization, remediation tracking, and reporting. - Perform risk-based analysis using CVSS scoring and business impact assessment. - Drive vulnerability remediation programs ensuring SLA compliance and backlog reduction. - Collaborate with infrastructure and application teams to remediate security findings. - Support patch management governance across enterprise platforms. - Governance, Risk & Compliance (GRC): - Support implementation and adherence to organizational security and compliance frameworks. - Conduct risk assessments and ensure alignment with internal and regulatory security standards. - Track compliance metrics and provide audit-ready reporting. - Participate in security incident response and threat analysis activities. - Maintain governance documentation and compliance evidence. - Service Management & Process Improvement: - Work closely with Incident, Problem, and Change Management teams following ITIL V4 practices. - Perform Root Cause Analysis (RCA) for recurring security and operational issues. - Raise and track RFCs to mitigate risks and prevent incident recurrence. - Develop dashboards and reporting mechanisms for security visibility. - Automation & Stakeholder Engagement: - Implement automation workflows to improve remediation efficiency. - Collaborate with DevSecOps, infrastructure, and application teams for security integrations. - Communicate technical risks effectively to business stakeholders and leadership. - Present security performance metrics and improvement plans to management forums. Qualifications: - Bachelors Degree in Computer Science or related field. - 12 - 14 years of experience in Security, Risk & Compliance or Vulnerability Management roles. Additional Details: The company focuses on achieving the following key outcomes: - Improved vulnerability remediation efficiency - Reduced security backlog and risk exposure - Enhanced compliance posture - Strong governance and audit readiness - Improved visibility through reporting and dashboards Role Overview: You are an experienced Security & Compliance Analyst with expertise in Vulnerability Management, Governance Risk & Compliance (GRC), and IT Service Management practices. Your focus will be on strengthening the organizational security posture through proactive risk identification, vulnerability remediation, compliance governance, and cross-functional stakeholder collaboration. Your hands-on experience in enterprise security operations, risk-based remediation strategies, and automation-driven security improvements within Unix/Linux midrange environments will be crucial for this role. Key Responsibilities: - Security & Vulnerability Management: - Manage end-to-end vulnerability lifecycle including identification, prioritization, remediation tracking, and reporting. - Perform risk-based analysis using CVSS scoring and business impact assessment. - Drive vulnerability remediation programs ensuring SLA compliance and backlog reduction. - Collaborate with infrastructure and application teams to remediate security findings. - Support patch management governance across enterprise platforms. - Governance, Risk & Compliance (GRC): - Support implementation and adherence to organizational security and compliance frameworks. - Conduct risk assessments and ensure alignment with internal and regulatory security standards. - Track compliance metrics and provide audit-ready reporting. - Participate in security incident response and threat analysis activities. - Maintain governance documentation and compliance evidence. - Service Management & Process Improvement: - Work closely with Incident, Problem, and Change Management teams following ITIL V4 practices. - Perform Root Cause Analysis (RCA) for recurring security and operational issues. - Raise and track RFCs to mitigate risks and prevent incident recurrence. - Develop dashboards and reporting mechanisms for security visibility. - Automation & Stakeholder Engagement: - Implement automation workflows to improve remediation efficiency. - Collaborate with DevSecOps, infrastructure, and application teams for security integrations. - Communicate technical risks effectively to business stakehol

One address, no account. We’ll tell you when matching roles go live.

More at Ace Recruit

Related open roles

View all roles
Security & Compliance Analyst at Ace Recruit · Padmi