Lead Security Analyst - Risk (Hyderabad)

Lead Security Analyst - Risk (Hyderabad)

07 Aug
|
Trinet Group
|
Hyderabad

07 Aug

Trinet Group

Hyderabad

JOB SUMMARY/OVERVIEW

A highly skilled and experienced Lead Security Risk Analyst to join our team. In this role, you will be responsible for assessing and managing the security risks associated with our organization's internal systems, cloud systems, third-party vendors and partners. You will play a critical role in ensuring the security and integrity of our systems, data, and operations by conducting comprehensive risk assessments and implementing effective risk mitigation strategies.

ESSENTIAL DUTIES/RESPONSIBILITIES

- Conduct security risk assessments of identified issues and proposed system changes to evaluate their security controls, practices, and overall risk posture.
- Conduct thorough assessments of third-party vendors and partners to evaluate their security controls, practices, and overall risk posture.
- Identify and analyze potential security risks and vulnerabilities associated with third-party relationships, considering factors such as data confidentiality, integrity, availability, compliance, and business continuity.
- Collaborate with cross-functional teams, including Legal, Procurement, IT, and Compliance, to establish and enforce third-party risk management policies, procedures, and standards.
- Develop and maintain a comprehensive inventory of all third-party relationships, including risk profiles, assessment findings, and remediation plans.
- Perform ongoing monitoring and due diligence of third-party vendors to ensure their adherence to contractual obligations and security requirements.
- Stay abreast of emerging security threats, industry best practices, and regulatory requirements related to third-party risk management.
- Advise and provide guidance to business units on the selection and engagement of third-party vendors, ensuring adequate security controls are in place.
- Collaborate with internal stakeholders to implement and improve processes and tools for efficient third-party risk assessment and management.




- Conduct periodic reviews and audits of third-party vendors to evaluate their ongoing compliance with security requirements and contractual obligations.
- Prepare and present comprehensive reports and recommendations to senior management, highlighting key risks, vulnerabilities, and remediation strategies.

JOB REQUIREMENTS AND QUALIFICATIONS

Education:

- Bachelor's degree in computer science, Information Security, Risk Management, or related field.

Training Requirements (licenses, programs, or certificates):

- Relevant certifications such as CISSP, CISA, CRISC, or equivalent is highly desirable.

Experience:

- 8+ years of experience in performing security risk assessment, third-party risk management, vendor risk assessment, or information security risk analysis, preferably in a senior or lead role.
- In-depth knowledge of security frameworks, standards, and regulations such as ISO 27001, NIST, GDPR, CCPA, etc.
- Strong understanding of information security principles, practices, and technologies, with a focus on third-party risk management.
- Demonstrated knowledge of relevant privacy and data protection regulations, as well as familiarity with industry standards for security and risk management.
- Experience in conducting risk assessments, vulnerability assessments, and penetration testing of third-party systems and networks.
- Ability to perform risk quantification (FAIR or equivalent), including estimating likelihood, impact, and loss exposure, is highly desired.




- Familiarity with security tools and technologies used for third-party risk management, such as GRC platforms, ProcessUnity, vulnerability scanners, and risk assessment tools.
- Experience with Vulnerability management, threat intelligence, fraud, physical security, cloud, application security/SDLC or emerging tech is a plus.
- Excellent analytical and problem-solving skills, with the ability to assess and prioritize risks effectively.

Other Knowledge, Skills and Abilities:
- Excellent written and verbal communication skills, interpersonal and collaborative skills.
- An understanding of business needs and dedication to delivering high-quality, timely, and efficient service to the business.
- Excellent prioritization capabilities, with an aptitude for breaking down work into manageable parts, effectively assessing the priority and time required to complete each part.
- An ability to work on several tasks simultaneously and pay attention to sources of information from inside one's network within an organization.
- An ability to effectively collaborate across multiple teams and ensure program needs are satisfied through interpersonal and trusted communication.

Work Environment
- Work in a clean, pleasant, and comfortable office work setting. The work setting characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable persons with disabilities to perform the essential functions.
- This position is 100% in office.

Please Note: The above job description is not all encompassing. Position functions and qualifications may vary depending on business necessity.

Disclaimer : This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.

📌 Lead Security Analyst - Risk (Hyderabad)
🏢 Trinet Group
📍 Hyderabad

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: lead security analyst - risk (hyderabad) / hyderabad

Subscribe to this job alert:

Get the latest job offers by email for: lead security analyst - risk (hyderabad) / hyderabad