Senior Information Security Analyst

Posted Yesterday
Be an Early Applicant
Gurugram, Haryana, IND
In-Office
Senior level
Fintech • Payments • Financial Services
The Role
Lead and operationally support identity and access governance: enforce policies, monitor compliance, run access reviews and attestations, support IGA/PAM tools, perform risk assessments, produce reports, coordinate audits, and improve identity/security processes across applications and infrastructure.
Summary Generated by Built In

About Our Company

Ameriprise India LLP has been providing client based financial solutions to help clients plan and achieve their financial objectives for 20 years. We are part of Ameriprise Financial Inc., a US financial planning company headquartered in Minneapolis with a global presence and diversified financial services leader with more than $1.5 trillion in assets under management, administration and advisement as of year-end 2024. The firm’s focus areas include Asset Management and Advice, Retirement Planning and Insurance Protection.

Be part of an inclusive, collaborative culture that rewards you for your contributions, and work with other talented individuals who share your passion for doing great work. You’ll also have plenty of opportunities to make your mark at the office and a difference in your community. So, if you're talented, driven and want to work for a strong, ethical company that cares, take the next step and create a career at Ameriprise India LLP.

Job Description

The Senior Information Security Analyst is part of a team that establishes, supports, and continuously improves the enterprise information security policies, practices, and standards. This role will participate in on-going operational activities that serve to establish appropriate access to and provide the appropriate protection, confidentiality, integrity and availability of enterprise systems and data through effective security controls. This role is also responsible for validating compliance with policies and standards that keep applications and infrastructure safe and secure from vulnerabilities.

Key Responsibilities:

  • Information Security Governance

  • Identity & Access Governance

  • Policy/Procedure Management and Enforcement

  • Reporting/Metrics

  • Provide timely and effective operational support for the firm's information security tools, processes and practices in the Identity and Access space. Use standard technology monitoring tools to monitor assigned environments and/or technical assets and identify/detect behavior outside of established standards. Escalate key security issues to the appropriate team to be addressed. Assist with security assurance testing activities.

  • Monitor compliance with information security and identity policies and practices and any applicable laws. Assist with internal and external security risk assessments, risk analysis and application or system-level access reviews and attestations. Coordinate/facilitate access and entitlement reviews for individual applications, business lines, and the enterprise at-large.

  • Assist with the research, development, continuous improvement and implementation of identity policies, procedures, standards, and processes based on compliance requirements and industry best practices. Document the identity governance requirements, processes and procedures. Enforce information security and identity policies and procedures by reviewing violation reports, investigating possible exceptions, and documenting controls.

  • Prepare status reports on identity and access matters that are used for a variety of purposes - tracking and monitoring security breaches, forensic investigative activities, remediation plan management and risk management & compliance reporting. Effectively manage and prioritize ad-hoc reporting requests, scorecards, and standard departmental reporting. Coordinate with internal team and external auditors to provide documentation of compliance assessments, support, and remediation activities.

  • Maintain and develop knowledge of identity & access management trends, new identity technologies and best practices. Conduct security and industry specific research to keep self and the firm abreast of the latest security issues and regulatory developments that may impact existing policies, procedures, and practices. Participate in information security education, training and awareness activities for technology and business teams.

  • Enhances organization reputation by accepting ownership for accomplishing new and different requests; exploring opportunities to add value to job accomplishments.

  •  Required Qualifications:

  • Bachelor’s degree in computer science, management information systems, or related technical field; or equivalent work experience. 4-7 years of experience in Information Security Services, Cybersecurity, or related technical field. 4+ years in Identity Governance & Administration [IGA].

  • The successful candidate will need to demonstrate proficiency in at least one of verticals below: Identity & Access Governance suites such as RSA Identity Governance & Lifecycle (formerly Aveksa) or other competitor products such as SailPoint, Saviynt, Entra ID Governance or IBM Security Verify Governance.

  • Privileged Credential Management tools that cover both cloud [examples AWS Secrets Manager, Azure Key Vault, Google Cloud Secret Manager] or on-prem credentials [such as CyberArk or other competitor tools like Beyond Trust, Thycotic, Delinea, Arcon, Hashicorp].

  • In addition, the successful candidate will need to meet below requirements: Interested in gaining broad experience in Information Security Services. First level knowledge and/or demonstrated technical ability to understand code and technology infrastructure in multiple environments with experience in the below languages [Powershell, Python, PowerApps, PowerBI, Regular expressions-based programming] Demonstrated basic understanding of the Software Development Lifecycle (SDLC) and programming/development procedures.

  • Work experience that spans the Identity & Access Management or Governance, Risk, and Compliance security domains.

  • Working knowledge of information security and computer network/system access technologies.

  • Experience working in the financial services industry or other highly regulated/compliance-oriented environments.

  • Good understanding of security controls, monitoring systems and regulatory/business drivers that impact security policies and practices. Effective oral and written communication skills Critical thinking and thought leadership skills including logical, analytical, and abstract rational skills.

  • Strong attention to detail, follow-through, and time management skills. Working with technical and business users on platform related questions/issues Demonstrated aptitude to quickly learn and apply new tools and processes.

  • Defining business, user, and systems requirements Developing user acceptance test plans Business Analysis Building Process Flows Data Analytics Experience creating SQL queries and reports Presentations (Creating and Delivering).

  • Project Coordination Risk Identification and Remediation ITIL (Change, Problem, Incident, Configuration) Management Direct client experience, including working with client teams in both on-site and offshore models.

  • Preferred Qualifications:

  • Identity & Access Governance (IAG) Capabilities: Access Review / Attestations Joiner/Mover/Leaver Role Based Access Controls (RBAC) Access Request Provisioning / De-Provisioning Privileged Access Management (PAM)

  • Governance Capabilities: Password Management Credential Access Management Basic knowledge and experience with: Operating Systems (Windows, Linux, Mainframe, etc.) Directories/LDAP Constructs (Active Directory, Oracle, etc.) Databases/RDBMS/AWS RDS Constructs (Oracle, SQL, DB2, RDS etc.) Authentication / Authorization Constructs (Directory, Hybrid, Native Source) Data Formats (XML, CSV, etc.) Development / Programming / Scripting SQL for data analytics & reporting AWS and Azure cloud IAG/IAM/PAM.

  • Experience troubleshooting data issues.

  • Audit Response (Artifact creation and delivery) Compliance Types (SOX, SOC1, SOC2, SOX, NYDFS, FINRA, SEC, GLBA, HIPAA, IT Compliance, etc.) CISSP or similar security certifications.

  • In-Office Collaboration

    We are a client-centric, relationship-based business. Working together, in-person, is foundational to how we achieve results. By fostering a culture of face-to-face collaboration, idea sharing, productivity and personal connection, we deliver for our stakeholders — clients, advisors, employees and shareholders. Our employees work in the office at least three (3) days per week, with flexibility to work from home two (2) days per week. Some roles may require additional in-office time or different in-office expectations, and specific requirements will be discussed during the hiring process.

Full-Time/Part-Time

Full time

Timings

(2:00p-10:30p)

India Business Unit

AWMPO AWMP&S President's Office

Job Family Group

Technology

Ameriprise India LLP is an equal opportunity employer. We consider all qualified applicants without regard to race, color, religion, sex, genetic information, age, sexual orientation, gender identity, disability, military status, veteran status, marital status, pregnancy, family status or any other basis prohibited by law.

We are committed to fostering an inclusive and accessible recruitment process for individuals with disabilities. If you require a reasonable accommodation to participate in the application or interview process, speak to your recruiter to discuss how we can support you.

Skills Required

  • Bachelor's degree in computer science, MIS, or related field, or equivalent experience
  • 4-7 years experience in Information Security/Cybersecurity or related field
  • 4+ years experience in Identity Governance & Administration (IGA)
  • Proficiency in at least one IGA suite (RSA Identity Governance & Lifecycle, SailPoint, Saviynt, Entra ID Governance, IBM Security Verify Governance)
  • Experience with Privileged Access/ Credential Management tools and cloud secret managers (CyberArk, BeyondTrust, Thycotic, Delinea, Arcon, Hashicorp, AWS Secrets Manager, Azure Key Vault, Google Cloud Secret Manager)
  • Working knowledge of information security and network/system access technologies
  • Practical scripting/programming ability: Powershell, Python, PowerApps, PowerBI, regular expressions
  • Understanding of Software Development Lifecycle (SDLC) and basic programming/development procedures
  • Experience creating SQL queries and reports; data analytics experience
  • Experience in financial services or other regulated/compliance-oriented environments
  • Experience coordinating access reviews, attestations, risk assessments, audit support and remediation
  • Strong communication, analytical thinking, attention to detail, and time management
  • Familiarity with ITIL processes (Change, Problem, Incident, Configuration)
  • IAG/IAM capabilities: Access Review/Attestations, RBAC, Provisioning/De-provisioning, Joiner/Mover/Leaver workflows
  • Governance capabilities and platform knowledge: OS (Windows, Linux, Mainframe), Directories/LDAP (Active Directory, Oracle), Databases/RDBMS (Oracle, SQL, DB2, RDS), Authentication/Authorization constructs
  • Experience with AWS and Azure cloud identity constructs and IAG/IAM/PAM in cloud
  • Experience troubleshooting data issues, audit artifact creation and audit response delivery
  • Familiarity with compliance frameworks (SOC1/SOC2, SOX, NYDFS, FINRA, SEC, GLBA, HIPAA)
  • Security certification such as CISSP or similar
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Seguin, TX
40 Employees

What We Do

RBFCU Wealth Management, The Garner Davis Group is a financial advisory practice of Ameriprise Financial Services, LLC. With a combined 39 years of experience, our team uses a financial planning process designed to help high net worth individuals, families and business leaders help manage their finances and assets. AREAS OF FOCUS • Family Finances • Retirement Planning Strategies • Wealth Preservation Strategies • Investment Management • Retirement Plan Distribution • Social Security Retirement Benefits • Small Business • Business Retirement Plans • Tax Planning Strategies CONNECT WITH US Phone: 979-417-0563 | 512-873-2527 OFFICE LOCATIONS 8300 N MOPAC EXPY, Suite 100, Austin, TX 78759 107 THIS WAY, Suite A, Lake Jackson, TX 77566 1 IKEA-RBFCU PKWY, Live Oak, TX 78233-2792 Please visit http://www.ameriprise.com/social for important rules and disclosures about how you and I can interact on social media

Similar Jobs

In-Office or Remote
7 Locations
44000 Employees

University of Ottawa Logo University of Ottawa

Senior Analyst, IT Security

Edtech • Professional Services
In-Office
2 Locations
13981 Employees
97K-121K Annually
In-Office
Gurugram, Haryana, IND
16649 Employees

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account