Hiring.Camp

Security Control Assessment Specialist

Trading Technologies

·

Today

Location
Ahmedabad/GiftCity
Type
Full-time
Department
Security
Experience
5+ years
Source
Pinpoint

Description

Security Control Assessment Specialist

Department: Engineering

Employment Type: Permanent - Full Time

Location: Ahmedabad/GiftCity



Description

We are seeking an experienced Security Control Assessment Specialist to independently test the design and operating effectiveness of Trading Technologies’ enterprise cybersecurity controls. This role plans and executes control assessments end to end, documents findings with clear supporting evidence, and partners with control owners and the TT Security team to design practical remediations. The role also contributes to the continuous improvement of the control environment itself, strengthening how controls are defined, evidenced and monitored, and automating control testing where possible.



Key Responsibilities

  • Plan and execute independent tests of enterprise cybersecurity controls across TT’s technology estate, with a high degree of autonomy over scoping, methodology, sampling and scheduling.
  • Assess both the design and the operating effectiveness of controls, combining evidence review and control owner walkthroughs with hands-on technical validation of configurations, logs, identity and access data, and cloud environments.
  • Document findings clearly and defensibly, setting out the condition, criteria, cause, risk and impact, and rating them consistently against TT’s risk criteria.
  • Partner with control owners and TT Security to design workable remediations, then validate closure through retesting rather than accepting assertion alone.
  • Track findings and remediation plans through to closure, escalating overdue or inadequately addressed items where necessary.
  • Build and maintain automated and continuous control monitoring so that control health is visible between formal assessment cycles.
  • Contribute to the continuous improvement of the control framework itself, refining control definitions, testing procedures, evidence requirements and the annual assessment plan.
  • Map the control environment to SOC 2, ISO 27001 and NIST frameworks, identifying gaps, duplication and opportunities to test once and satisfy multiple obligations.
  • Manage relationships with internal stakeholders and control owners, setting expectations, communicating requirements clearly, and holding a firm, evidence-based position when findings are challenged.
  • Support external audits and customer assessments by providing tested, reliable control evidence.



Skills, Knowledge and Expertise

Essential Skills & Experience
  • 8 to 10 years of IT experience, including at least 5 years focused on information security.
  • Professional certification required: CISM, CISSP, CISA, CRISC or equivalent.
  • Demonstrable experience designing and executing security control tests and producing findings and workpapers that withstand audit scrutiny.
  • Strong working knowledge of cybersecurity controls and frameworks, including SOC 2, ISO 27001, the NIST Cybersecurity Framework and NIST SP 800-53.
  • Technical depth across identity and access management, cloud infrastructure (AWS certification is a plus), endpoint and network security, logging and monitoring, vulnerability management and secure development practices.
  • Experience automating control testing or building continuous control monitoring, using scripting, queries, APIs or GRC platform automation.
  • Familiarity with GRC platforms such as OneTrust, Vanta, Drata, ServiceNow IRM or similar.
  • Exceptional spoken and written English, with the ability to explain technical requirements and findings clearly to both engineers and senior stakeholders.
  • Confidence and diplomacy to challenge control owners constructively and to hold a position under pressure when the evidence supports it.
  • Ability to work autonomously, manage a portfolio of concurrent assessments and deliver to deadline with minimal supervision.
  • Strong attention to detail and follow-through.
Desirable Skills & Experience
  • Experience in financial services, capital markets or another regulated industry is highly regarded.


Benefits

Competitive Benefits & Perks in India We offer a comprehensive benefits package designed to support your well-being, growth, and work-life balance.
  • Health & Financial Security:
    • Medical, Dental, and Vision coverage
  • Time Off & Flexibility:
    • Enjoy the best of both worlds: the energy and collaboration of in-person work, combined with the convenience and focus of remote days. This is a hybrid position requiring three days of in-office collaboration per week, with the flexibility to work remotely for the remaining two days. Our hybrid model is designed to balance individual flexibility with the benefits of in-person collaboration, enhanced team cohesion, spontaneous innovation, hands-on mentorship opportunities and strengthens our company culture.
    • 21 days of Paid Time Off (PTO) per year, with the option to roll over unused days.
    • One dedicated day per year for volunteering.
    • Two professional development days per year to allow uninterrupted professional development.
    • An additional PTO day is added during milestone anniversary years.
    • Robust paid holiday schedule with early dismissal.
    • Generous parental leave for all parents (including adoptive parents).
  • Work-Life Support & Resources:
    • Budget for tech accessories, including monitors, headphones, keyboards, and other office equipment.
    • Milestone anniversary bonuses.
  • Wellness & Lifestyle Perks:
    • Subsidy contributions toward gym memberships and health/wellness initiatives.
  • Our Culture:
    • Forward-thinking, culture-based organization with collaborative teams that promote diversity and inclusion.
Trading Technologies (www.tradingtechnologies.com) is a global capital markets platform services company providing market-leading technology for the end-to-end trading operations of Tier 1 banks, brokerages, money managers, hedge funds, proprietary traders, Commodity Trading Advisors (CTAs), commercial hedgers, and risk managers. With its roots in listed derivatives, the Software-as-a-Service (SaaS) company delivers “multi-X” solutions, with “X” representing asset classes, functions, workflows, and geographies. This multi-X approach features trade execution services across futures and options, fixed income, foreign exchange (FX), and cryptocurrencies, augmented by solutions for data and analytics, including transaction cost analysis (TCA); quantitative trading; compliance and trade surveillance; clearing and post-trade allocation; and infrastructure services. The award-winning TT platform ecosystem also helps exchanges deliver innovative solutions to their market participants and technology companies to distribute their complementary offerings to Trading Technologies’ clients.

Trading Technologies is backed by leading global investment firms Thoma Bravo, one of the world’s largest and most experienced software investors, and 7Ridge, a global growth equity firm focused on technology-enabled businesses.
This investment supports Trading Technologies’ continued focus on product innovation, platform scalability, and long-term growth for customers and partners worldwide.

Trading Technologies (TT) is an equal-opportunity employer. Equal employment has been, and continues to be, a required practice at the Company. Trading Technologies’ practice of equal employment opportunity is to recruit, hire, train, promote, and base all employment decisions on ability rather than race, color, religion, national origin, sex/gender orientation, age, disability, sexual orientation, genetic information, parental status, veteran,  or any other protected status. Additionally, TT participates in the E-Verify Program for US offices.

Skills

AWSServiceNowCybersecuritySOCComplianceSOC 2ISO 27001CISSP
Security Control Assessment Specialist at Trading Technologies | Hiring.Camp