Talent.com
This job offer is not available in your country.
▷ Only 24h Left : Security and Compliance Analyst

▷ Only 24h Left : Security and Compliance Analyst

AnumanaIndia
1 day ago
Job description

Position : Security and Compliance Analyst

Experience Range : 3 to 5 yrs

Job Location : Bangalore

Work Mode : Hybrid (3 days in the office, 2 days remote)

Job Summary

Anumana is seeking a detail-oriented and proactive Security and Compliance Analyst to ensure our organization’s adherence to international security standards and regulatory requirements. The successful candidate will play a key role in the development, implementation, and continuous improvement of Anumana's Information Security Management System (ISMS) in compliance with ISO / IEC 27001, ISO / IEC 27002, and ISO 13485 standards.

This role involves close collaboration with multiple departments—HR, Legal, IT, Engineering, and Quality / Regulatory teams—to maintain a robust security and compliance posture. The Security and Compliance Analyst will also be responsible for managing third-party risk assessments, ensuring compliance with global privacy regulations (such as GDPR), and supporting the overall Information Security Program.

Key Responsibilities

Compliance Management

  • Maintain and continuously improve the Information Security Management System (ISMS) to comply with ISO / IEC 27001, ISO / IEC 27002, and ISO 13485 standards.
  • Coordinate with the Quality and Regulatory team to align security controls with ISO 13485 requirements for medical device software.
  • Develop and update policies, procedures, and documentation necessary for maintaining certification status.
  • Conduct internal audits and prepare for external audits, ensuring that all necessary evidence is documented and accessible.

Cross-Department Collaboration

  • Work closely with HR, Legal, IT, Engineering, and other departments to ensure that information security requirements are consistently integrated across the organization.
  • Provide guidance on security and compliance matters, including secure practices, policy enforcement, and risk mitigation.
  • Assist in the development of training materials and conduct regular security awareness sessions for staff.
  • Third-Party Risk Management

  • Respond to third-party risk management questionnaires, ensuring that external parties meet Anumana’s security standards.
  • Perform risk assessments on vendors, suppliers, and partners, evaluating their adherence to security requirements.
  • Maintain and update a database of third-party risk assessments and ensure regular monitoring of vendor compliance.
  • Privacy and Confidentiality Management

  • Monitor and enforce privacy compliance across the organization, focusing on GDPR, CCPA, and other relevant global data protection regulations.
  • Track data protection incidents and coordinate response and remediation activities.
  • Work with Legal and HR teams to ensure confidentiality agreements are properly managed and enforced.
  • Security Program Oversight

  • Support the overall information security program by conducting risk assessments, tracking key performance indicators (KPIs), and managing security metrics.
  • Develop and maintain security policies, standards, and guidelines based on best practices and relevant frameworks.
  • Monitor and assess compliance with organizational policies, industry standards, and applicable regulations.
  • Identify areas of improvement in security controls and recommend mitigation strategies.
  • Audit Preparation & Evidence Management

  • Gather, organize, and maintain documentation of control evidence required for internal and external audits.
  • Track audit findings, follow up on remediation actions, and ensure they are completed on time.
  • Prepare reports summarizing compliance activities, audit results, and risk assessments for management review.
  • Qualifications Required :

  • Bachelor's degree in Information Security, Computer Science, Risk Management, or a related field (or equivalent experience).
  • 3+ years of experience in information security, compliance, risk management, or related fields.
  • Strong understanding of ISO / IEC 27001, ISO / IEC 27002, and ISO 13485 standards.
  • Experience with information security frameworks (e.g., NIST, HITRUST) and best practices.
  • Knowledge of data protection regulations, including GDPR, CCPA, and other privacy laws.
  • Ability to respond to third-party risk assessments and manage vendor compliance.
  • Familiarity with GRC (Governance, Risk, and Compliance) tools and methodologies.
  • Preferred :

  • Professional certifications such as CISSP, CISM, CRISC, CCSK, or ISO / IEC 27001 Lead Auditor / Implementer.
  • Experience working in the medical device or healthcare sector, with familiarity in Software as a Medical Device (SaaMD).
  • Knowledge of security assessment tools and vulnerability management practices.
  • Understanding of secure software development and DevSecOps practices.
  • Skills :

  • Strong analytical and problem-solving skills with attention to detail.
  • Excellent communication skills, with the ability to present complex information clearly to technical and non-technical stakeholders.
  • Highly organized, with strong project management skills and the ability to prioritize tasks effectively.
  • Demonstrated ability to work collaboratively with cross-functional teams.
  • Create a job alert for this search

    Only Left Compliance • India

    Related jobs
    • Promoted
    Security Operations Center Analyst

    Security Operations Center Analyst

    Soffit Infrastructure Services (P) LtdIndia
    Security Operation Centre (SOC).Information Security Analyst are the first level responsible for ensuring the protection of digital assets from unauthorized access, identify security incidents and ...Show moreLast updated: 28 days ago
    • Promoted
    • New!
    AWS Information Security and Compliance Specialist (BFSI) (11 / 10 / 2025)

    AWS Information Security and Compliance Specialist (BFSI) (11 / 10 / 2025)

    PeopleGeneIndia
    We are seeking a hands-on Security & Compliance Lead to own and execute end-to-end security audits and compliance initiatives across applications, infrastructure, and organizational processes.This ...Show moreLast updated: 3 hours ago
    • Promoted
    Security and Compliance Analyst

    Security and Compliance Analyst

    AnumanaIndia
    Position : Security and Compliance Analyst Experience Range : 3 to 5 yrs Job Location : Bangalore Work Mode : Hybrid (3 days in the office, 2 days remote). Job Summary Anumana is seeking a detail-orient...Show moreLast updated: 19 days ago
    • Promoted
    • New!
    Apply in 3 Minutes! Information Security Analyst- Urgent-Thane

    Apply in 3 Minutes! Information Security Analyst- Urgent-Thane

    Aditya Birla GroupIndia
    Job Description – Information Security Analyst (Defensive Security).Location : Thane, Maharashtra, India (On-site).Employment Type : Third-Party Payroll. Job Description – Senior Information Security ...Show moreLast updated: 3 hours ago
    • Promoted
    Infrastructure Security Analyst

    Infrastructure Security Analyst

    Tanla Platforms LimitedIndia
    You’ll be Responsible for? Implement, configure, and maintain infrastructure and monitoring tools across on-prem Data Centers (Servers, Networks, Storage, Firewalls) and hybrid Cloud (Azure / AWS).Wo...Show moreLast updated: 30+ days ago
    • Promoted
    IAM Analyst [T500-12810]

    IAM Analyst [T500-12810]

    Talent500India
    About This Role : The most important duty of an IAM Engineer is to ensure that authorized users have the right access to company systems, data, and applications. Job Responsibilities : Plan, implement...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    ▷ 3 Days Left : Threat and Vulnerability Management Analyst

    ▷ 3 Days Left : Threat and Vulnerability Management Analyst

    SHI Solutions India Pvt. Ltd.India
    Position - Threat and Vulnerability Management Analyst.Interested candidates can apply by sending their resume to rekha.Conduct in-depth reviews of vulnerability scans, penetration test results, th...Show moreLast updated: 3 hours ago
    • Promoted
    Security Analyst

    Security Analyst

    ACL DigitalIndia
    Interview Round : - 1 round internal -virtual 2nd round internal-virtual 3rd Client Round.Should have experience in VAPT,pentesting, vulnerability risk management, PCI,compliance.Web, API, Mobile and...Show moreLast updated: 26 days ago
    • Promoted
    Security & Compliance Specialist

    Security & Compliance Specialist

    [24]7.aiIndia
    Position : Security & Compliance Specialist.Reports to : Manager InfoSec, GRC.Department : Information Security (InfoSec). This role oversee the development, evaluation and implementation of governanc...Show moreLast updated: 19 days ago
    • Promoted
    AWS Information Security and Compliance Specialist (BFSI)

    AWS Information Security and Compliance Specialist (BFSI)

    PeopleGeneIndia
    We are seeking a hands-on Security & Compliance Lead to own and execute end-to-end security audits and compliance initiatives across applications, infrastructure, and organizational processes.This ...Show moreLast updated: 30+ days ago
    • Promoted
    Lead Security Operations Analyst

    Lead Security Operations Analyst

    SmarshIndia
    Company Description Smarsh is the leader in Communications Compliance, Archiving, and Analytics.We provide compliance across the broadest set of communications channels with insights on what’s bein...Show moreLast updated: 30+ days ago
    • New!
    Lead Security Analyst

    Lead Security Analyst

    Morningstar, Inc.IN
    The Information Security department is responsible for setting enterprise security policies and standards that are designed to protect the confidentiality, integrity and availability of Morningstar...Show moreLast updated: 3 hours ago
    • Promoted
    • New!
    ▷ Only 24h Left! Cyber Security Analyst - MS Defender

    ▷ Only 24h Left! Cyber Security Analyst - MS Defender

    MizuhoIndia
    Mizuho Global Services Pvt Ltd (MGS) is a subsidiary company of Mizuho Bank, Ltd, which is one of the largest banks or so called ‘Mega Banks’ of Japan. MGS was established in the year 2020 as part o...Show moreLast updated: 3 hours ago
    • Promoted
    Compliance Analyst

    Compliance Analyst

    ACA GroupIndia
    ACA Group is the leading governance, risk, and compliance (GRC) advisor in financial services.We empower our clients to reimagine GRC and protect and grow their business. Our innovative approach int...Show moreLast updated: 17 days ago
    • Promoted
    Security Analyst

    Security Analyst

    Tata Consultancy ServicesIndia
    Experience range : 6 to 8 years.Location : Bengaluru, Hyderabad, Chennai, Pune, Kolkata.Provide BAU support for secrets management applications like CyberArk, HashiCorp Vault.Collaborate with variou...Show moreLast updated: 18 days ago
    • Promoted
    Threat and Vulnerability Management Analyst

    Threat and Vulnerability Management Analyst

    SHI Solutions India Pvt. Ltd.India
    Position - Threat and Vulnerability Management Analyst.Interested candidates can apply by sending their resume to rekha.Conduct in-depth reviews of vulnerability scans, penetration test results, th...Show moreLast updated: 6 days ago
    • Promoted
    Security Analyst - Threat Hunting

    Security Analyst - Threat Hunting

    SHI Solutions India Pvt. Ltd.India
    We have an immediate requirement for.SHI Locuz Enterprise Solutions Pvt Ltd.Job Details : Work Experience - 3+years(relevant) Work Location - Mumbai Looking for immediate joiners.J ob Description : J...Show moreLast updated: 6 days ago
    • Promoted
    Cyber Security - Cyber Compliance Analyst - BA

    Cyber Security - Cyber Compliance Analyst - BA

    ComputacenterIndia
    Life on the team Operates the cyber compliance framework to ensure Computacenter is continually compliant to our cybersecurity obligations, helping us to achieve our business goals and build custom...Show moreLast updated: 19 days ago
    • Promoted
    Compliance Analyst

    Compliance Analyst

    ConfidentialIndia
    At Norstella, our mission is simple : to help our clients bring life-saving therapies to market quicker—and help patients in need. Founded in 2022, but with history going back to 1939, Norstella unit...Show moreLast updated: 21 days ago
    • Promoted
    Cyber Security Analyst - MS Defender

    Cyber Security Analyst - MS Defender

    MizuhoIndia
    Mizuho Global Services Pvt Ltd (MGS) is a subsidiary company of Mizuho Bank, Ltd, which is one of the largest banks or so called ‘Mega Banks’ of Japan. MGS was established in the year 2020 as part o...Show moreLast updated: 18 days ago