Skip to main content

Senior Analyst, Security Governance, Risk & Compliance

On-siteFull timeSenior

Bengaluru, Karnataka, India · Posted 3 hr. ago

Come join our passionate team! Barracuda is a leading cybersecurity company providing complete protection against complex threats. Our platform protects email, data, applications, and networks with innovative solutions, and a managed XDR service, to strengthen cyber resilience. Hundreds of thousands of IT professionals and managed service providers worldwide trust us to protect and support them with solutions that are easy to buy, deploy, and use.

We know a diverse workforce adds to our collective value and strength as an organization. Barracuda Networks is proud to be an employer that complies with all applicable national, state and local laws pertaining to nondiscrimination and equal opportunity regardless of race, gender, religion, sex, sexual orientation, national origin, or disability.


Envision yourself at Barracuda

We are seeking a motivated and detail-oriented Senior Analyst, Security Governance, Risk & Compliance (GRC)to join our Information Security team.

This role is primarily focused on supporting ISO 27001 and PCI DSS security compliance programs at Barracuda, and is inclusive of internally-led independent assessments related to those programs for Barracuda as a cloud service provider

The ideal candidate will have a keen interest in independently assessing programs as they exist currently, while simultaneously providing recommendations to management on how to mature them to enable them to become highly scalable, automated, and data-driven. This role will report directly to the Director of Security Governance, Risk & Compliance (GRC)

What you’ll be working on

  • Lead the execution and coordination of internal audit/internal assessment cycles for PCI DSS (SAQ-D), ISO 27001, ISO 27017, ISO 27018, ISO 42001
  • Produce internal audit/assessment reports for management
  • Serve as Barracuda’s in-house PCI SME, supporting security leadership in development of the PCI program
  • Support management in producing PCI SAQ-D Attestations of Compliance (AOC) for Barracuda
  • Leading independently-performed gap analysis initiatives on a case by case basis against other industry standards, leveraging internal tools and technologies to modernize how we self-assess

What you bring to the role

  • Bachelor’s degree in information security, IT/Computer Science, or equivalent
  • Industry certifications such as CompTIA Security+ or equivalent
  • Internal PCI DSS experience
  • Prior training or experience comparable to PCI ISA (Internal Security Assessor) or PCI QSA (Qualified Security Assessor) programs
  • Experience with auditing various industry security frameworks such as ISO 27001, ISO 27017, ISO 27018, ISO 42001
  • 3+ years of experience in Information Security or related roles

Nice to have

  • Experience in public cloud (AWS & Azure)
  • Hands on experience using PowerBI or similar analytics platforms
  • 0-1 years hands on experience in the development of Agentic AI use cases and usage of various LLMs

What you’ll get from us:

A team where you can voice your opinion, make an impact, and where you and your experience are valued. Internal mobility – there are opportunities for cross training and the ability to attain your next career step within Barracuda. In addition, you will receive equity, in the form of non-qualifying options.

#LI-hybrid

Locations
Bengaluru, Karnataka, India
Education
bachelor degree
Experience
3+ years

Categories

Skills