Padmi

Senior Analyst, Risk & Compliance

Delhi NCRPosted 2 months ago
CybersecuritySeniorFull Time; Regular
Apply at Cvent

Opens the source posting on shine.com

Source description

About the role

View original

Disclaimer: Beware of Recruitment Scams - Legitimate Cvent recruiting communications will always come from an official name@cvent.com email. We never request any payments or ask for sensitive personal or financial information via chat or social media platforms. For more information, please visit: https://www.cvent.com/en/notice-recruitment-fraud Overview Cvent is a leading meetings, events, and hospitality technology provider with more than 4,800 employees and ~22,000 customers worldwide, including 53% of the Fortune 500. Founded in 1999, Cvent delivers a comprehensive event marketing and management platform for marketers and event professionals and offers software solutions to hotels, special event venues and destinations to help them grow their group/MICE and corporate travel business. Our technology brings millions of people together at events around the world. In short, were transforming the meetings and events industry through innovative technology that powers human connection. The DNA of Cvent is our people, and our culture has an emphasis on fostering intrapreneurship - a system that encourages Cventers to think and act like individual entrepreneurs and empowers them to act, embrace risk, and make decisions as if they had founded the company themselves. At Cvent, we value the diverse perspectives that everyone brings. Whether working with a team of colleagues or with clients, we ensure that we foster a culture that celebrates differences and builds shared connections. We are seeking a proactive, technically skilled Lead Analyst to join our Information Security Risk & Compliance team in Gurgaon. Ideal candidates have 6-8 years of experience in information security risk management and will primarily lead and mature Cvents ThirdParty Risk (TPRM) program endtoend. You will also provide secondary support across broader GRC activities, partnering with crossfunctional teams to enable timely risk decisions and strengthen our overall posture. This is a handson role with significant stakeholder engagement and opportunity to drive measurable impact. Security Risk Management & Compliance Enhance the Risk Assessment Program to mature assessment approach, monitoring processes, re-evaluation criteria and adopt a customized and AI-driven vendor security score card.Perform third-party vendor security assessments, many of which focus on security controls for data and app integrations, AI tools, AI related technologies (MCPs, LLMs etc), newer technologies, and SAAS tools.Perform comprehensive Technical Risk assessments and compliance evaluations for internal projects, internal systems, Cvent products, many of which focus on AI systems and AI project implementations.Support day-to-day security risk and compliance management tasks to support achievement of team objectives and an agile business climate.Support development of technical and AI-driven solutions and processes to automate or streamline repeatable security risk assessment, audits and contract management.Manage the end-to-end risk lifecycle, including risk identification, and a focus on identifying technical risk treatment plans in collaboration with cross-functional teams to recommend technical- and process-based mitigations and drive risk monitoring.Establish and maintain day-to-day and management level reporting for Risk Assessments. Lead and facilitate regional and global certification audits (e.g., ISO 27001, ISO 27701, SOC 2, PCI-DSS) by collecting evidence, implementing automated data aggregation processes, and tracking remediation efforts to ensure compliance.Provide daily operational support for compliance initiatives, ensuring timely execution of projects and alignment with organizational security objectives.Conduct identity and access control reviews to validate user permissions and enforce least privilege principles, including periodic review of AI agent and service account permissions.Contribute to the development, refinement, and implementation of security policies, standards, and procedures, emphasizing automation-driven workflows and actionable reporting for enhanced efficiency and incorporating AI governance guidelines to ensure responsible use and transparency.Leverage, fine-tune and maintain security automation tools (e.g., for automated control testing, workflow orchestration) to optimize risk management and compliance processes, reducing manual overhead and improving scalability.Conduct customer contract reviews; partner with Sales and Legal to ensure contractual language is negotiated consistent with Cvents security policies, practices and capabilities Candidate Requirements Bachelors degree in computer science, Information Technology, Cybersecurity, or a related field (masters preferred).4-7 years of experience in information security, with hands-on exposure to risk management, technology and vendor/supply chain security assessments, and audit and compliance.Experience implementing security practices and controls from D

One address, no account. We’ll tell you when matching roles go live.

More at Cvent

Related open roles

View all roles
Senior Analyst, Risk & Compliance at Cvent · Padmi