Padmi

SENIOR DOMAIN ANALYST - GRC - Risk management

Delhi NCRPosted 1 month ago
CybersecuritySenior
Apply at Happiest Minds Technologies

Opens the source posting on jobs.happiestminds.com

Source description

About the role

View original

The Application Risk Analyst role in our Cyber Governance, Risk, and Compliance (GRC) team is key to meeting cybersecurity goals and ensuring regulatory compliance across all units. This is an outstanding opportunity to join a dynamic team and help maintain a secure and resilient IT infrastructure! What You'll Do Conduct technical application risk assessments to identify cyber vulnerabilities and operational and regulatory threats. Collaborate with agile Product teams and GIS to implement mitigating technical controls aligned with GIS policies and regulatory standards. Prepare detailed assessment reports for Business Unit owners, highlighting key risks and policy exceptions through threat modeling. Partner with GIS and Business Units to develop and implement risk exception plans and strategies. Support the development of automated quantitative and qualitative risk analyses and reporting processes. Liaise with internal and external auditors to provide documentation and evidence for compliance with international security standards (SOC-2, ISO 27001, PCI DSS, NIST CSF 2.0). Provide mentorship on changes in product security and regulatory landscapes, updating Security Policies, Standards, and Technical Security Requirements as needed. Support the delivery of the wider GIS Security program in line with strategy and important metrics. What We're Looking For Self-motivated and adaptable to an ever-changing cybersecurity environment. Excellent collaboration skills, eager to work as part of a cohesive, distributed team. Outstanding analytical and critical thinking skills. Comprehensive communication skills, including effective listening, data gathering, and idea articulation. 10+ years of experience in information security with a relevant degree. IT Audit, Internal Audit, and/or cyber advisory experience are a plus. Familiarity with cybersecurity industry standards and frameworks such as NIST CSF, NIST 800-53, ISO 27001, and PCI DSS. Preferred certifications: CISSP, CCSP, CISM, CISA, CompTIA Security+, GIAC. The Application Risk Analyst role in our Cyber Governance, Risk, and Compliance (GRC) team is key to meeting cybersecurity goals and ensuring regulatory compliance across all units. This is an outstanding opportunity to join a dynamic team and help maintain a secure and resilient IT infrastructure! What You'll Do Conduct technical application risk assessments to identify cyber vulnerabilities and operational and regulatory threats. Collaborate with agile Product teams and GIS to implement mitigating technical controls aligned with GIS policies and regulatory standards. Prepare detailed assessment reports for Business Unit owners, highlighting key risks and policy exceptions through threat modeling. Partner with GIS and Business Units to develop and implement risk exception plans and strategies. Support the development of automated quantitative and qualitative risk analyses and reporting processes. Liaise with internal and external auditors to provide documentation and evidence for compliance with international security standards (SOC-2, ISO 27001, PCI DSS, NIST CSF 2.0). Provide mentorship on changes in product security and regulatory landscapes, updating Security Policies, Standards, and Technical Security Requirements as needed. Support the delivery of the wider GIS Security program in line with strategy and important metrics. What We're Looking For Self-motivated and adaptable to an ever-changing cybersecurity environment. Excellent collaboration skills, eager to work as part of a cohesive, distributed team. Outstanding analytical and critical thinking skills. Comprehensive communication skills, including effective listening, data gathering, and idea articulation. 10+ years of experience in information security with a relevant degree. IT Audit, Internal Audit, and/or cyber advisory experience are a plus. Familiarity with cybersecurity industry standards and frameworks such as NIST CSF, NIST 800-53, ISO 27001, and PCI DSS. Preferred certifications: CISSP, CCSP, CISM, CISA, CompTIA Security+, GIAC. ATITNM01-3-1 The Application Risk Analyst role in our Cyber Governance, Risk, and Compliance (GRC) team is key to meeting cybersecurity goals and ensuring regulatory compliance across all units. This is an outstanding opportunity to join a dynamic team and help maintain a secure and resilient IT infrastructure! ... The Application Risk Analyst ... The Application Risk Analyst role in our Cyber Governance, Risk, and Compliance (GRC) team is key to meeting cybersecurity goals and ensuring regulato... GRC - Risk management, Risk Management, Threat Modelling, Cyber Security

One address, no account. We’ll tell you when matching roles go live.

More at Happiest Minds Technologies

Related open roles

View all roles