Beacon Trusteeship Limited is looking for a Cybersecurity Analyst to own hands-on security operations for the Trusteeship, RTA and Depository Participant business. This role sits below the Group CTO and is responsible for day-to-day monitoring, coordinating VAPT cycles with empanelled vendors, and critically owning remediation: not just logging findings, but directing what gets fixed, in what order, and confirming closure.
This is an individual-contributor-plus role suited to someone early in their security career who wants real ownership of an SEBI-regulated workplace, running audits, firewall reviews, and compliance documentation independently, with CTO oversight rather than day-to-day supervision.
Key Responsibilities
Own VAPT lifecycle end-to-end with empanelled vendors (e.g. CERT-In empanelled firms) — scoping, coordinating execution, reviewing draft findings for accuracy,
and instructing IT/infra teams on remediation priority and approach
Track every VAPT and audit finding to closure using a structured remediation tracker; escalate blocked items to the CTO
Run day-to-day monitoring of perimeter firewalls, endpoint security (EDR), and SOC alerts; triage and respond to security events
Perform periodic firewall rule reviews, identify unused, overly permissive, or risky rules and drive cleanup
Support SEBI CSCRF compliance activities as a Qualified RE: audit evidence collection, documentation, and timeline tracking
Maintain and update the IT asset inventory (hardware, software) relevant to the Vashi site
Conduct basic security reviews of recent and existing third-party vendors before onboarding
Lead first-response for security incidents at BIHPL; escalate high/critical incidents to the CTO immediately
Maintain the risk register for BIHPL and support periodic risk ass
📌 Information Security Mumbai
🏢 Beacon Trusteeship
📍 Mumbai
Reply to this offer
Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.