About this role
About the Role We are looking for a highly motivated Security Analyst II – Information Security to support our Information Security, Privacy, and Compliance functions. The role is focused on managing customer security assessments, audit support activities, compliance-related engagements, internal audits and coordination with internal stakeholders to ensure timely and accurate responses to customer information security and privacy requirements. The ideal candidate should have a strong understanding of information security frameworks, privacy principles, secure software development practices, and experience supporting customer audits in a technology-driven environment. Experience working with BFSI (Banking, Financial Services, and Insurance) clients will be an advantage. Key Responsibilities Customer Audit & Assessment Management
• Manage and coordinate customer information security assessments, due diligence questionnaires, and audit requests. • Act as the primary point of contact for customer security and compliance inquiries. • Track, monitor, and follow up on customer audit requests to ensure timely closure. • Prepare and review responses related to information security, privacy, compliance, and operational controls. • Support customer-led audits, reviews, and compliance assessments. Stakeholder Coordination
• Collaborate with Engineering, DevOps, Product, Legal, Privacy, Infrastructure, HR, and Operations teams to gather evidence and required documentation. • Coordinate with cross-functional teams to obtain responses, policies, procedures, certifications, and technical evidence requested by customers. • Drive closure of customer action items and audit observations through regular follow-ups. Information Security & Compliance
• Support maintenance and continuous improvement of Information Security and Privacy Management Systems. • Assist in compliance activities related to ISO 27001, ISO 27701, SOC 2 Type II, ISO 9001, and other applicable standards. • Review customer security requirements and map them against organizational controls. • Support risk assessments, control reviews, and compliance reporting activities. • Assist in developing and maintaining security and privacy documentation, policies, standards, and procedures. Security & Privacy Advisory
• Provide guidance on security controls, privacy requirements, and compliance obligations to internal stakeholders. • Support customer discussions related to information security, privacy, data protection, and secure development practices. • Stay updated on emerging security threats, privacy regulations, and industry best practices. Reporting & Governance
• Maintain audit trackers, assessment dashboards, and compliance metrics. • Prepare management reports and status updates for leadership and stakeholders. • Support internal and external audit activities as required. Required Qualifications
• Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Information Systems, or a related field. • 3-5 years of experience in Information Security, Compliance, Risk Management, Audit Support, or GRC functions. • Experience handling customer security questionnaires, due diligence assessments, and compliance audits. • Experience working with enterprise customers, preferably in Banking and Financial Services (BFSI) environments. • Strong understanding of information security principles, privacy requirements, and governance practices. Required Knowledge & Skills Security & Compliance Frameworks Working knowledge of:
• ISO 27001 • ISO 27701 • SOC 2 Type II • Secure Software Development Lifecycle (SSDLC) • Information Security Risk Management • Security Controls and Governance Technical Understanding
• Secure software development practices • Application security concepts • Cloud security fundamentals (AWS/Azure/GCP) • Vulnerability management concepts • Identity and Access Management concepts • Data protection and encryption concepts Privacy & Regulatory Awareness Understanding of:
• Privacy management principles • Data protection regulations • Customer and regulatory compliance requirements • Third-party risk management concepts Soft Skills
• Excellent written and verbal communication skills. • Strong stakeholder management and coordination abilities. • Ability to manage multiple customer engagements simultaneously. • Strong analytical and documentation skills. • Attention to detail and ability to work independently. Preferred Certifications Any one or more of the following certifications will be preferred:
• ISO 27001 Lead Implementer / Lead Auditor • ISO 27701 Lead Implementer / Lead Auditor • Certified Information Systems Auditor (CISA) • Certified Information Security Manager (CISM) • Certified in Cybersecurity (CC) • CompTIA Security+ • Certified Ethical Hacker (CEH) Preferred Experience
• Experience in CPaaS, SaaS, Cloud, FinTech, or Telecommunications environments. • Experience supporting banking and financial sector customers. • Exposure to customer audits from large enterprises, banks, or regulated industries. • Experience responding to RFPs, security questionnaires, and vendor risk assessments. What We Offer
• Opportunity to work with leading banking and enterprise customers. • Exposure to security, privacy, and compliance frameworks. • Collaborative and fast-paced technology environment.