About Us
At Codvo, we are committed to building scalable, future-ready data platforms that power business impact. We believe in a culture of innovation, collaboration, and growth, where engineers can experiment, learn, and thrive. Join us to be part of a team that solves complex data challenges with creativity and cutting-edge technology.
Role Overview :
The Cybersecurity Analyst will play a key role in ensuring the organization's compliance, governance, and security posture under the GRC framework. This role involves managing audits, collecting and maintaining evidence, conducting vulnerability assessments, and assisting in strengthening the overall security infrastructure. The ideal candidate will have strong attention to detail, experience with security tools, and a solid understanding of compliance requirements.
Key Responsibilities :
Security & GRC
- Support ongoing and upcoming security compliance and governance initiatives.
- Ensure adherence to GRC policies and frameworks across projects and operations.
- Assist in implementing and maintaining security controls and compliance measures.
Audit & Evidence Management
Manage internal and external audits under the GRC framework.Ensure timely collection, validation, and documentation of audit evidence.Maintain an organized evidence repository for audit and compliance readiness.Collaborate with cross-functional teams to close audit findings and improve processes.Security Operations
Conduct regular vulnerability scans and ensure identified risks are mitigated.Review and maintain firewall configurations and ensure compliance with internal security policies.Strengthen incident response processes, with a focus on Active Directory monitoring and remediation.Review findings from security tools and reports, and provide recommendations for corrective actions.Tools & Technologies Utilize and interpret results from the following tools and platforms :
Proofpoint – Email and threat protectionSonarCloud – Source code analysis and security reviewAlert Logic – Managed detection and response (MDR)Burp Suite – Web application security testingIntune – Endpoint and device managementMicrosoft Security Suite – (Defender, Sentinel, etc.) for threat detection and responseIsland.io – Browser security platform (currently under testing phase)Administrative & Reporting
Support administrative and evidence-based tasks related to compliance.Prepare and maintain security and compliance reports for leadership review.Track progress on security initiatives and audit readiness activities.Qualifications & Skills :
Bachelor's degree in Computer Science, Information Security, or a related field.5 years of experience in cybersecurity, audit, or GRC-related roles.Strong understanding of information security principles, compliance standards, and audit practices.Hands-on experience with the listed security tools preferred.Excellent documentation, communication, and coordination skills.Detail-oriented, proactive, and able to handle multiple priorities in a fast-paced environment.Preferred Certifications :
CompTIA Security+ , CISA , CISM , CISSP , or equivalent certifications are an advantage.
Skills Required
Proofpoint, Burp Suite, Intune