Job Summary
We are seeking for an Information Security Analyst to support and enhance the security posture of our software development and IT services environment.
The successful candidate will be responsible for implementing and maintaining information security controls, conducting risk assessments, monitoring security events, and collaborating with development, infrastructure, and operations teams to ensure secure delivery of services and solutions.
Key Responsibilities
- Monitor and analyze security events, alerts, and incidents across company systems and cloud environments.
- Conduct information security risk assessments and support risk treatment activities.
- Manage vulnerability assessment and remediation programs for applications, servers, endpoints, and cloud resources.
- Support the implementation, maintenance, and continuous improvement of the Information Security Management System (ISMS).
- Ensure compliance with information security policies, procedures, and standards.
- Participate in security reviews of software applications and system architectures.
- Collaborate with Software Development and DevOps teams to promote secure coding and Secure SDLC practices.
- Support security requirements for customer projects, contracts, and due diligence requests.
- Coordinate and support internal and external security audits.
- Review and monitor access control processes and privileged account management.
- Prepare security reports, risk assessments, metrics, and management presentations.
- Track emerging threats, vulnerabilities, and cybersecurity trends and recommend appropriate controls.