Security Risk Analyst

2 Months ago • 2-5 Years • Cyber Security

Job Summary

Job Description

As a Security Risk Analyst at Anthology, you'll be responsible for managing daily operations of the Risk Management Program, reviewing and evaluating corporate and product security risks, and recommending control enhancements. You'll perform assessments of new programs and projects, providing guidance to stakeholders on security by design. Responsibilities include executing structured risk assessments of key applications, conducting vendor risk assessments, driving compliance, and staying updated on relevant legislation and threats. You'll collaborate with various teams including Corporate IT, the data privacy office, and internal audit. The role requires a deep understanding of security standards and frameworks (ISO, NIST, CIS) and experience in a global organization.
Must have:
  • 2-5 years experience in Information Security Risk Management
  • Knowledge of ISO, NIST, CIS security standards
  • Experience assessing/auditing security risks
  • Strong communication and project management skills
  • Experience with cloud technologies (AWS, Azure)
Good to have:
  • Experience with CIS-RAM
  • Industry certifications (CRISC, CISM, CISA, CISSP, CCSP)
  • Experience with project management tools
  • Experience documenting security policies/procedures

Job Details

Description

Governance Risk Compliance Security Engineer

Bangalore, India

 

The Opportunity:

Anthology delivers education and technology solutions so that students can reach their full potential and learning institutions thrive. Our mission is to empower educators and institutions with meaningful innovation that’s simple and intelligent, inspiring student success and institutional growth.

 

The Power of Together is built on having a diverse and inclusive workforce. We are committed to making diversity, inclusion, and belonging a foundational part of our hiring practices and who we are as a company.

 

For more information about Anthology and our career opportunities, please visit www.anthology.com.

 

Anthology’s Information Security team leads the governance, risk, and compliance program to enhance and ensure the confidentiality, integrity, and availability of all corporate information systems and products. This team is a core part of Anthology, providing it substantial opportunities to influence the overall corporate mission and culture.

 

We are building a team focused on high impact collaboration with our partners across the corporation leveraging transparency, trust, and innovation to elevate Anthology security through partnership and teamwork. We are seeking to hire the best talent, leveraging their skills to augment the team, and providing support and training to foster well-rounded individuals positioned for ongoing career success. 

 

As Governance Risk Compliance Security Engineer, you will be a detail-oriented compliance professional with a desire to improve enterprise security through engagement with partners throughout the organization to ensure security policies, procedures and guidelines are communicated effectively, monitored for compliance, and reported accurately. You will report to the Senior Director of Governance, Risk and Compliance for the Information Security team. 

 

Specific responsibilities will include: 

  • Assisting in managing daily operations of the Risk Management Program
  • Assisting in the review and evaluation of Anthology’s corporate and product security and privacy risks by assessing the effectiveness and adequacy of internal management controls, and recommending control enhancements
  • Performing assessments of new programs and projects to determine the information security risk(s) and determine the applicable/reasonable security controls that need to be implemented to mitigate the risk(s)
  • Providing guidance and advice to business stakeholders to realize ‘security by design’ by validating requirements prior to Go-Live
    • This includes defining any remaining risks, validating them with business stakeholders, recommending mitigations, registering them, and following up on remediation progress
  • Executing structured risk assessments of key applications with focus on compliance with company policies, frameworks and standards (e.g., CIS, ISO27001, ISO27701, ISO27017, ISO27018, NIST 800 series, SOC2)
  • Conducting vendor risk assessments
  • Driving compliance to policies and standards while providing transparency of compliance status
  • Keeping up with relevant international legislation, emerging threats, forecasts, policies, risk management developments and benchmarks
  • Aligning with other security risk management teams and related functions including Corporate IT, our data privacy office, and internal audit

 

The Candidate: 

Required skills/qualifications: 

  • 2-5 years of relevant experience in Information Security Risk Management, particularly around assessments/audits
  • Knowledge of and experience with security standards and frameworks such as ISO, NIST, CIS, etc.
  • Translation of IT threats and vulnerabilities to business risks
  • Experience in a global organization with the proven ability to navigate complex, international work environments.
  • Strong written and oral communication skills
  • Effective project management skills
  • Experience with cloud technologies (e.g., AWS, Azure)
  • Fluency in written and spoken English

 

Preferred skills/qualifications: 

  • Experience in a global organization with the proven ability to navigate complex, international work environments
  • Experience using the Center for Internet Security’s Risk Assessment Methodology (CIS-RAM)
  • In possession of relevant industry certifications (e.g., CRISC, CISM, CISA, CISSP, CCSP)
  • Experience working with project management tools
  • Experience documenting security-related policies or procedures
  • The ability to pick up on new technologies and skills quickly
  • Experience with cloud technologies (e.g., AWS, Azure)         

 

This job description is not designed to contain a comprehensive listing of activities, duties, or responsibilities that are required. Nothing in this job description restricts management's right to assign or reassign duties and responsibilities at any time.   

 

Anthology is an equal employment opportunity/affirmative action employer and considers qualified applicants for employment without regard to race, gender, age, color, religion, national origin, marital status, disability, sexual orientation, gender identity/expression, protected military/veteran status, or any other legally protected factor.

Similar Jobs

Microsoft - Senior Software Engineer - Services

Microsoft

Vancouver, British Columbia, Canada (On-Site)
1 Month ago
Hiver - Engineering Manager - DevOps

Hiver

Bengaluru, Karnataka, India (On-Site)
3 Months ago
PwC - Experienced Associate - Frontend Developer

PwC

Kuala Lumpur, Federal Territory Of Kuala Lumpur, Malaysia (On-Site)
3 Months ago
Microsoft - Senior Cloud Network Engineer

Microsoft

(On-Site)
1 Month ago
Saviynt - Senior Product Manager - Integrations

Saviynt

Bengaluru, Karnataka, India (Hybrid)
4 Months ago
Rackspace Technology - Security Risk and Compliance Management Specialist III

Rackspace Technology

Mexico City, Mexico (Remote)
4 Months ago
ION - Markets Platform Security Engineer - US

ION

Toronto, Ontario, Canada (On-Site)
4 Months ago
Saviynt - Technical Lead, Professional Services - NA

Saviynt

Bengaluru, Karnataka, India (Hybrid)
4 Months ago
Palo Alto Networks - Prisma Cloud Solution Architect

Palo Alto Networks

Philadelphia, Pennsylvania, United States (Remote)
3 Months ago
Evolution - IT Security Engineer (Red team)/ Penetration tester

Evolution

Sofia, Sofia City Province, Bulgaria (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Microsoft - Digital Solution Area Specialist - Azure Infra

Microsoft

Gurugram, Haryana, India (Hybrid)
1 Month ago
Autodesk - Principal Solution Architect (Autodesk Consulting)

Autodesk

Tokyo, Japan (Hybrid)
4 Months ago
Extreme Network - Staff Backend Developer (Python, Microservices, GenAI - 92890)

Extreme Network

Toronto, Ontario, Canada (Remote)
4 Months ago
NetApp - Cloud Software Engineer

NetApp

Bengaluru, Karnataka, India (On-Site)
3 Months ago
Postman - Backend and Systems Engineer, Flows

Postman

New York, New York, United States (On-Site)
4 Months ago
Microsoft - Software Engineer II - AI/ML

Microsoft

Dublin, County Dublin, Ireland (On-Site)
1 Month ago
Alphasense - Lead AI Platform Engineer

Alphasense

New York, New York, United States (On-Site)
2 Months ago
PwC - FIT - Guidewire CC Configuration - Senior Associate

PwC

Bengaluru, Karnataka, India (On-Site)
4 Months ago
Info Stretch - Lead Data Engineer

Info Stretch

Pune, Maharashtra, India (On-Site)
3 Months ago
PwC - IN-Associate – D365 Retail-MS Dynamics – Advisory – Mumbai

PwC

Mumbai, Maharashtra, India (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Bengaluru, Karnataka, India

Geeksynergy Technologies   - 3D Artist (Architectural Modeling and Animation)

Geeksynergy Technologies

Karnataka, India (On-Site)
5 Months ago
PwC - AES SAP APO Associate - Operate

PwC

Hyderabad, Telangana, India (On-Site)
4 Months ago
ClickForge - Animator

ClickForge

Jaipur, Rajasthan, India (On-Site)
7 Months ago
Luxoft - Business Analyst - ION

Luxoft

Bengaluru, Karnataka, India (On-Site)
3 Months ago
Angel and Genie - Unity Slot Game Developer

Angel and Genie

Bengaluru, Karnataka, India (Hybrid)
5 Months ago
Taboola - Solution Engineer

Taboola

New Delhi, Delhi, India (On-Site)
5 Months ago
Bella Sposa Global - Social Media Manager

Bella Sposa Global

Lucknow, Uttar Pradesh, India (Hybrid)
4 Months ago
Mitr HR Solution - 3D Designer

Mitr HR Solution

New Delhi, Delhi, India (On-Site)
4 Months ago
DNEG - Creature TD - CFX (DNEG Animation)

DNEG

Mumbai, Maharashtra, India (On-Site)
4 Months ago
PwC - IN_Senior Associate_SAP SAC_D&A-Advisory-_Gurgaon

PwC

Gurugram, Haryana, India (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

PwC - IN-Associate–ERP Controls- ITRA– Advisory – Mumbai

PwC

Mumbai, Maharashtra, India (On-Site)
4 Months ago
PwC - Technology Strategy and Transformation Manager – Financial Services

PwC

Toronto, Ontario, Canada (On-Site)
4 Months ago
PwC - IN_Manager _Technical Delivery Manager_ Emerging Technologies_ Advisory_ Bengaluru

PwC

Bengaluru, Karnataka, India (On-Site)
4 Months ago
ByteDance - Security Software Engineer

ByteDance

Singapore (On-Site)
3 Months ago
HackerOne - Technical Engagement Manager

HackerOne

India (Remote)
3 Months ago
Microsoft - Site Reliability Engineer II- CTJ - Top Secret

Microsoft

Redmond, Washington, United States (On-Site)
1 Month ago
Google - Security Sales Specialist, Google Public Sector

Google

(On-Site)
2 Months ago
Microsoft - Senior Data Scientist

Microsoft

Bengaluru, Karnataka, India (On-Site)
1 Month ago
PwC - Intern/ Trainee

PwC

Gurugram, Haryana, India (On-Site)
4 Months ago
Saviynt - Technical Lead, Professional Services - NA

Saviynt

Bengaluru, Karnataka, India (Hybrid)
4 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Anthology delivers education and technology solutions so that students can reach their full potential and learning institutions thrive. Millions of students around the world are supported throughout their education journey via Anthology’s ecosystem of flagship SaaS solutions and supporting services, including the award-winning Blackboard® (LMS), Anthology® Student (SIS/ERP), and Anthology® Reach (CRM). Through the Power of Together, we are uniquely inspiring educators and institutions with innovation that is meaningful, simple and intelligent to help customers redefine what’s possible and create life-changing opportunities for people everywhere. www.anthology.com. 

Alabama, United States (Remote)

Bogotá, Bogota, Colombia (Remote)

Colombia (Remote)

Brazil (Remote)

Colombia (Remote)

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Florida, United States (Remote)

View All Jobs

Get notified when new jobs are added by Anthology Inc

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug