01 Sep
|
SoftwareONE
|
Gurugram
01 Sep
SoftwareONE
Gurugram
Job Summary
The Security Assurance Analyst is responsible for executing security assurance activities related to access control compliance and third-party security assessments. The role collaborates with internal teams and business stakeholders to ensure compliance with organizational security policies and applicable standards.
Responsibilities
- Collaborate with the Head of Security Assurance to plan periodic physical and logical access control compliance reviews across all regions. Work with IT, HR, and business teams to conduct logical access reviews and validate compliance with organizational policies. Coordinate with regional physical security and facilities teams to execute physical access control reviews as per the defined review frequency.
Document findings, track remediation actions, and report compliance status to the Head of Security Assurance.
- Conduct security assessments for recent and existing suppliers, vendors, and third-party service providers. Review security questionnaires, certifications, audit reports, and supporting evidence. Assess vendor security controls against organizational requirements and identify potential risks.
Document assessment findings, recommend remediation actions, and track risk mitigation with relevant stakeholders.
Support periodic reassessments of critical vendors as part of the third-party risk management program.
- Coordinate with IT, HR, Procurement, Facilities, and business teams to ensure timely completion of security assurance activities. Support internal and external audits by coordinating evidence collection, tracking remediation actions, and maintaining compliance documentation. Support the Security Unit function in executing security assurance initiatives and other security related activities as assigned by the CISO Security Assurance manager.
Requirements
- Bachelor's degree in engineering, information technology, computer science, or a related discipline.
- 5-10 years of experience in Information Technology.
- Experience in Information Security, Security Assurance, IT Audit, or Governance, Risk Compliance (GRC) is an added advantage.
- ISO/IEC 27001 Lead Auditor or Internal Auditor Certification, ISO/IEC 42001 Lead Auditor or Internal Auditor Certification is desirable.
Job Function
IT Solutions
Disclaimer: This job posting and Location has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.
📌 Security Assurance Specialist (Gurugram)
🏢 SoftwareONE
📍 Gurugram