Hiring.Camp
This job is no longer accepting applications. Similar open roles are listed below.

Information Security Analyst

Erm

·

Jun 24, 2026

Location
New Delhi, India · Bangalore, India
Type
Full-time
Department
Security
Experience
3+ years
Education
Bachelor
Closing date
2 weeks ago
Source
Workday

Description

Key Responsibilities

  • Client Requests and Contract Reviews:
    • Serve as a point of contact for client requests for information related to information security compliance. Must have deep understanding in this and provide detailed evidence-based responses.
    • Review contracts and agreements to ensure compliance with information security requirements and standards.
    • Attending client meetings and address their security concerns.
  • Third-Party Risk Management:
    • Manage third-party risk assessment processes, including vendor security assessments and due diligence.
    • Evaluate third-party security controls and assess their alignment with organizational policies and standards.
  • Exception Requests:
    • Review and evaluate exception requests related to information security policies and standards.
    • Assess the impact of proposed exceptions and make recommendations to management for approval or mitigation.
  • Business Resilience
    • Conduct business impact assessments across critical business services and departments, ensuring that impact levels, as well as security and resilience measures, are documented.
    • Facilitate business continuity and disaster recovery exercises across business services.

Foundational Responsibilities

  • Compliance Management:
    • Assist in the development, implementation, and maintenance of the company's information security compliance program.
    • Ensure adherence to regulatory requirements, industry standards, and internal policies and procedures.
    • Conduct regular compliance assessments and audits to identify gaps and areas for improvement.
  • Governance Support:
    • Support the establishment and maintenance of information security governance frameworks, policies, and procedures.
    • Assist in the development of governance documentation, including charters, policies, standards, and guidelines.
    • Provide guidance and support to stakeholders on governance-related matters, ensuring alignment with business objectives.
  • Risk Management:
    • Assist in the identification, assessment, and mitigation of information security risks across the organization.
    • Conduct risk assessments and analyze security controls to ensure effectiveness and compliance with ISO 27001 requirements.
    • Collaborate with stakeholders to develop and implement risk mitigation strategies and action plans.
    • Maintain central risk management tooling to record and report risks to key stakeholders.
  • ISO 27001 Compliance:
    • Support the maintenance and continual improvement of a global Information Security Management System (ISMS) and ISO 27001 certification .
    • Manage ISMS non-conformities and corrective action plan.
    • Support external ISO 27001 audits to maintain certification.
    • Assist in the development and documentation of ISO 27001 policies, procedures, and controls.
    • Conduct internal audits to assess compliance with ISO 27001 standards and identify areas for improvement.
    • Identify and help implement continuous improvement initiatives within the ISMS and across the wider business.
  • Security Awareness and Training:
    • Assist in the development and delivery of security awareness and training programs for employees.
    • Promote a culture of security awareness and best practices throughout the organization.

Influence And Decision-Making Authority

Operating within practices and procedures covered by precedent or well-defined policies; end results will be subject to review. The job will contain a variety of activities and clear short-term objectives. The job holder may determine their own priorities whilst meeting clear outcomes.

Explains policies, practices and procedures of the job area to parties within and outside of own job function. May have responsibility for communicating with parties external to the organisation (e.g., customers, vendors, etc.).

Job Requirements & Capabilities

Qualifications:

  • Bachelor's degree in Computer Science, Information Security, or a related field.
  • Lead Implementer Training ISO27001
  • ISO 27001 Lead Auditor (desirable)
  • CISA (desirable)
  • CRISC (desirable)

Job specific capabilities/skills:

  • 3-4 years of experience in information security, compliance, or related field.
  • Strong English Verbal communication skills, including presentation skills, with an ability to communicate with a range of technical and non-technical team members, stakeholders, and clients. 
  • Hands on experience with GRC related tooling (e.g., risk management and third party security).
  • Strong English Written communication skills, for example to write technical reports and professionally respond to client security assessments, master service agreements, and general queries.

Skills

Risk ManagementComplianceISO 27001

Similar Jobs

30

Information Security Analyst

Bostonpartners · Boston, United States of America

Yesterday

Information Security Analyst

Global Payments · Pune, India · Onsite

4 days ago

Information Security Analyst

Omnissa · USA-GA, United States of America · Remote

1 week ago

Information Security Analyst

Yakimacounty · Technology Services, United States of America

1 week ago

Information Security Analyst

Yakimacounty · Technology Services, United States of America

1 week ago

Information Security Analyst

Corporate Careers · IAA Building B, United States of America +2 · Onsite

1 week ago

Information Security Analyst

Join the connected world of Assurant · Buenos Aires (Alem), Argentina

1 week ago

Information Security Analyst

NextGen Federal Systems · Washington, District of Columbia · Onsite

1 week ago

Analyst, Information Security

Melcoresorts · City of Dreams Manila, Philippines

1 week ago

Information Security Analyst

Eurofins Scientific · Bengaluru, KA, India

2 weeks ago

Information Security Analyst

Rockwellautomation · Mexico Mexico City +2 · Hybrid

2 weeks ago

Information Security Analyst

Rockwell Automation · Mexico Mexico City +2 · Hybrid

2 weeks ago

Information Security Analyst

Vesync · Tustin, CA · Onsite

2 weeks ago

Information Security Analyst

"NEPC, LLC" · Boston, MA

2 weeks ago

Information Security Analyst

Octanner · USA - Utah-Salt Lake City-Headquarters, United States of America

2 weeks ago

Information Security Analyst

Itron here · Budapest, Hungary (Local Office) · Hybrid

2 weeks ago

Information Security Analyst

Crown Agents Bank · London, England, United Kingdom

3 weeks ago

Information Security Analyst

Jadin Tech · Colorado Springs, CO

3 weeks ago

Information Security Analyst

Profound · Buenos Aires, Argentina · Onsite

4 weeks ago

Information Security Analyst

Didomi · Paris,France · Remote

1 month ago

Information Security Analyst

Southern First Bank · Greenville, SC

1 month ago

Information Security Analyst

Foresters Financial · Toronto, Canada

1 month ago

Information Security Analyst

Employees Swissportglobal · Cheshire-Runcorn, UK

1 month ago

Information Security Analyst

FBT Gibbons · Louisville, KY +4

1 month ago

Information Security Analyst

Sancorp Consulting LLC · Arlington, VA

1 month ago

Information Security Analyst

Toyota · Toyota Credit Canada Inc - Head Office

1 month ago

Information Security Analyst

Bdo · Toronto - Wellington St, Canada

1 month ago

Information Security Analyst

Abacus Technology · Topeka, KS, US

1 month ago

Information Security Analyst

Spacex · Starbase, TX +1

1 month ago

Information Security Analyst

LGT is the largest Private · Sydney, Australia

2 months ago
Information Security Analyst at Erm | Hiring.Camp