Security Analyst (GRC, SOX DB Control)
Role details
Job location
Tech stack
Job description
We are looking for an experienced Security Lead with strong expertise in Security Assessments, SOX compliance, and Database driven enterprise applications, combined with knowledge of Automation and AI technologies. The role involves designing and governing secure, compliant architectures while driving automation and AI led optimization across security, compliance, and database management processes. Scope of Work
- Security Assessments & Compliance
-
Perform and lead Security Assessments, including:
-
NIST 800 171 / DFARS assessments (annual or upon security posture changes)
-
Server Access Control Plans (ACP) Annual
-
Access Control Reports (ACR) Annual
-
Support SOX controls validation, audits, and remediation
-
Handle ad hoc assessments from InfoSec and regulatory bodies
-
Develop security architecture standards and compliance frameworks
-
Identify risks and recommend mitigation strategies aligned with enterprise policies, Define secure, scalable architecture frameworks Integrate security, compliance, automation, and AI into solutions Lead architecture reviews and governance processes Provide technical leadership across security and compliance initiatives Drive digital transformation through automation and AI adoption, The Senior IT Security Analyst is responsible for identifying risks, responding to threats, and partnering with teams across the organization to ensure our systems and data remain …
- 1 month ago
Requirements
Core Expertise 5-7+ years of IT experience with 5+ years in Senior Security roles Strong knowledge of: o Security frameworks: NIST, DFARS, SOX o Access control and identity governance o Enterprise application and database architecture Database & Application Expertise Hands-on experience with: o SQL Server & Oracle databases Strong understanding of: o Database security o Access control models o Audit logging and compliance Automation Skills Experience with RPA and workflow automation tools Strong scripting skills (Python, PowerShell, Shell) Process automation for compliance and security workflows AI & Analytics Knowledge Understanding of AI/ML concepts and use cases in security/compliance Experience or exposure to: o AI-based anomaly detection o Log analytics and SIEM integrations o Generative AI tools (Copilot, OpenAI APIs, etc.) Cloud & Tools Experience with cloud (Azure/AWS preferred) Familiarity with DevOps, CI/CD pipelines Knowledge of security tools and SIEM platforms Preferred Qualifications Certifications: o TOGAF / Azure Architect / AWS Architect o CISSP / CISM / Security Certifications Experience in: o Process mining tools o AI-driven compliance solutions o Enterprise audit and governance platforms Soft Skills Strong stakeholder and audit management skills Excellent analytical and problem-solving abilities Ability to translate regulatory requirements into technical solutions Leadership and mentoring capability
Benefits & conditions
The pay range for this role is $70k- $75k per annum including any bonuses or variable pay. Tech Mahindra also offers benefits like medical, vision, dental, life, disability insurance and paid time off (including holidays, parental leave, and sick leave, as required by law). Ask our recruiters for more details on our Benefits package. The exact offer terms will depend on the skill level, educational qualifications, experience, and location of the candidate.