Skip to main content

Cybersecurity Analyst (Bengaluru, KA, IN)

On-siteFull timeMid-level

Bengaluru, Karnataka, India · Posted 7 hr. ago

We at Yara are part of a global network, collaborating to profitably and responsibly solve some of the world's key challenges - resource scarcity, food insecurity and environmental change.

About the Unit

The Cybersecurity team focuses on safeguarding digital assets, strengthening enterprise-wide resilience, and ensuring security is embedded by design across all technology and digital initiatives. Cybersecurity is responsible for ensuring cyber and service resilience across all technology services and brings together several core functions. The unit brings together several core capabilities to strengthen security and resilience across the enterprise. Cybersecurity Architecture defines secure reference architectures and oversees endpoint, network, cloud, infrastructure, application, and identity security. Cybersecurity Operations focuses on threat detection, monitoring, incident response, digital forensics, threat intelligence, cybersecurity tool operations, and awareness building. Exposure Management manages vulnerabilities, coordinates remediation efforts, and provides attack surface analytics across IT, OT, and cloud environments. In addition, Digital Resilience ensures service continuity through disaster recovery, crisis management, resilience testing, and post-incident reviews, while Digital Risk and Compliance drives governance, risk management, and regulatory compliance. Region and Domain Cybersecurity Leads further support coordination, liaison activities, and the advancement of Cybersecurity maturity across services, solutions, and sites. Together, these capabilities help strengthen security, resilience, and trust across the enterprise.

Responsibilities

  • Own and drive initiatives to improve cybersecurity lifecycle activities across all relevant towers, including SOC, network security, and cloud compliance by identifying process gaps and leading improvements to operational excellence and organizational effectiveness.
  • Define, monitor, and report quality-assurance and control-effectiveness metrics, including remediation ageing, recurring findings, and improvement outcomes.
  • Support and drive compliance lifecycle initiatives across all cloud environments, including tracking, escalation, follow-up and closure of non-compliances (e.g. cordinating : pentest, threat modelling and risk management)
  • Support respective domain owners to review, refine, and enforce operational cybersecurity policies and guardrails, updating procedures based on emerging threats and operational insights.
  • Track and report changes to cloud and infrastructure control frameworks, and collaborate on validation and implementation initiatives.
  • Review, validate, and authorize security group, network ACL, and cloud firewall rule requests, ensuring adherence to least-privilege principles and zero-trust network boundaries.
  • Maintain and continuously audit cloud firewall topologies across virtual networks (VPCs/VNets), identifying redundant, overly permissive, or stale rules and coordinating remediation with networking teams.
  • Supporting the operations and effectiveness of Vulnerability Management, ensuring findings are effectively managed and remediated across internal and external attack surfaces. Support the vulnerability scanning platform, oversee vulnerability identification and remediation processes, coordinate with application and infrastructure owners, and drive the resolution of findings across internal and external attack surfaces. Also supporting in handling External Attack Surface Management (EASM) findings, helping reduce organizational exposure by identifying, validating, and tracking remediation of assets and security risks.

Profile

  • 5 years of experience with a vulnerability scanner and vulnerability management lifecycle, with cloud security constructs across major providers (AWS, Azure), including AWS Security Groups/NACLs, Azure NSGs, AWS Network Firewall, or Azure Firewall.
  • General knowledge of best practices in IAM as well as application security i.e. Security control frameworks like NIST/CIS, OWASP top 10 risks, and basic SAST/DAST concepts
  • Coordinate, advise and support the implementation of application security controls, container scanning, and secure baseline configurations within deployment pipelines (e.g. change management, validation, testing control effectiveness).
  • Maintain audit-ready evidence for control assessments and verify that remediation actions are effective before findings are closed.
  • Manage time-bound security control exceptions, including documented risk acceptance, compensating controls, accountable owners, expiry dates, and escalation of overdue actions.
  • Demonstrates excellent communication and interpersonal skills, fostering a collaborative and supportive team environment.
  • Possesses understanding of best practices in Identity and Access Management (IAM), vulnerability management, cyber security incident handling, firewall management.
  • Relevant technical certifications (AWS, Microsoft, or vendor neutral)
  • Degree in Information Technology or related fields

Additional Information

Other responsibilities:

  • As operational demand requires, serve as the cybersecurity operational liaison within the integrated operations center (IOC), collaborating with network, cloud, and systems engineering teams to correlate cross-domain telemetry.
  • Provide overflow support to monitor, alert on, and analyze security telemetry across multi-cloud environments, checking alignment with baseline security configurations and compliance frameworks.
  • Collaborate with Yara SOC, where needed, on triage, initial containment, and coordination of operational security incidents, facilitating root-cause analysis and operational post-mortems across functional domains.
  • Support the implementation, testing, and documentation of approved security group, network ACL, and cloud firewall rule changes with the responsible engineering teams.
  • Participate in daily stand-up meetings, where applicable.

Apply no later than

Knowledge grows through differences
Yara is committed to creating a diverse and inclusive environment and is proud to be an equal opportunity employer. We believe that creating a diverse and inclusive work environment is not only the right thing, but also the smart thing to do. To deliver on this, Yara has firmly anchored Diversity, Equity & Inclusion (DE&I) in our business strategy and has more than 400 employees worldwide involved in D&I ambassadors networks. 

As part of our recruitment process, where permitted by local law, we may conduct reference and background checks. These checks will only be performed when deemed necessary for the nature of the job. Candidates will be informed by HR before any background checks are initiated.

Locations
Bengaluru, Karnataka, India
Education
bachelor degree
Experience
5+ years

Categories

Skills

We use cookies

We use cookies to understand how this board is used and to improve it. Analytics run only if you accept. Cookie Policy