- Location
- Bengaluru, BDC14A, India
- Type
- Full-time
- Department
- Legal
- Experience
- 5+ years
- Source
- Workday
Description
Designation: Risk and Compliance Analyst
Qualifications:Any Graduation
Years of Experience:Minimum 5 years of experience
About Accenture
Accenture is a global professional services company with leading capabilities in digital, cloud and security.Combining unmatched experience and specialized skills across more than 40 industries, we offer Strategy and Consulting, Technology and Operations services, and Accenture Song— all powered by the world’s largest network of Advanced Technology and Intelligent Operations centers. Our 784,000 people deliver on the promise of technology and human ingenuity every day, serving clients in more than 120 countries. We embrace the power of change to create value and shared success for our clients, people, shareholders, partners and communities.Visit us at www.accenture.com
What would you do? The Risk & Compliance Analyst will collaborate with capability directors, leads, process SMEs, and the executive team to develop, implement, and maintain plans for information security, data privacy, risk management, and compliance. The role is responsible for supporting risk assessments, compliance reviews, policy documentation, security awareness, audit readiness, and organization asset management across business processes.
What are we looking for? Knowledge Requirements • Thorough understanding of information security principles, risk management, compliance, and data privacy concepts. • Understanding of ISO/IEC 27001 requirements; ISO certification in information security is preferred. • Knowledge of networking protocols such as TCP/IP, DNS, HTTP, and VPN is preferred. Required Qualifications • Bachelor s degree in Cybersecurity, Information Technology, Computer Science, or a related field. • Minimum 5 years of experience in information security, risk and compliance, audit, cybersecurity, or a related IT role. Preferred Certifications • ISO/IEC 27001 certification or data privacy certification. • CompTIA Security+. • Certified Ethical Hacker (CEH). Key Skills • Analytical thinking and structured problem-solving. • Strong written and verbal communication. • Attention to detail and documentation accuracy. • Ability to work under pressure and support incident or audit-related activities. • Collaboration with cross-functional teams and senior stakeholders. • Ability to manage multiple priorities, deadlines, and compliance deliverables. • Proficient with Microsoft Office tools
Roles and Responsibilities: Roles and Responsibilities • Perform risk assessments and develop practical risk mitigation strategies for business processes, applications, and information assets. • Ensure compliance with applicable regulations, standards, and frameworks such as GDPR, HIPAA, ISO/IEC 27001, SOC 2, and NIST. • Maintain, update, and support implementation of security policies, procedures, standards, and compliance documentation. • Responsible and accountable for information security administration and managing organization assets, including asset review and compliance tracking. • Support internal and external security audits by preparing evidence, coordinating stakeholders, tracking observations, and supporting closure of audit actions. • Prepare reports for senior management on security posture, risk status, compliance progress, incidents, key security metrics, and KPIs. • Collaborate with capability directors, leads, process SMEs, and cross-functional teams to identify risks, control gaps, and process improvement opportunities. • Support development of asset management plans and risk treatment actions aligned to business requirements. • Track compliance activities, open risks, audit actions, and remediation timelines to ensure timely closure. • Promote a security-conscious culture across the organization through training, awareness, and stakeholder engagement. Risk Assessment & Compliance • Perform risk assessments and develop risk mitigation strategies. • Ensure compliance with regulations and frameworks such as GDPR, HIPAA, ISO/IEC 27001, SOC 2, and NIST. • Maintain and update security policies, procedures, and documentation. Security Awareness & Training • Develop and deliver security awareness training for employees and relevant stakeholder groups. • Support phishing simulation campaigns and social engineering awareness activities, where applicable. • Promote secure behavior and a security-conscious culture across the organization. Audit & Reporting • Prepare reports for senior management on security posture, incidents, compliance status, and key risks. • Support internal and external security audits, including evidence collection, stakeholder coordination, and action tracking. • Track key security metrics, KPIs, compliance deliverables, and remediation progress.Any Graduation
About Accenture
Accenture is a leading global professional services company that helps the world’s leading businesses, governments and other organizations build their digital core, optimize their operations, accelerate revenue growth and enhance citizen services—creating tangible value at speed and scale. We are a talent- and innovation-led company with approximately 791,000 people serving clients in more than 120 countries. Technology is at the core of change today, and we are one of the world’s leaders in helping drive that change, with strong ecosystem relationships. We combine our strength in technology and leadership in cloud, data and AI with unmatched industry experience, functional expertise and global delivery capability. Our broad range of services, solutions and assets across Strategy & Consulting, Technology, Operations, Industry X and Song, together with our culture of shared success and commitment to creating 360° value, enable us to help our clients reinvent and build trusted, lasting relationships. We measure our success by the 360° value we create for our clients, each other, our shareholders, partners and communities.Visit us at www.accenture.com
Equal Employment Opportunity Statement
We believe that no one should be discriminated against because of their differences. All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, military veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by applicable law. Our rich diversity makes us more innovative, more competitive, and more creative, which helps us better serve our clients and our communities.