InfoSec Analyst

Bengaluru

BPM LLP

Work with a team that puts your success first. BPM is home to a diverse workforce who will go out of their way to understand you needs.

View all jobs at BPM LLP

Apply now Apply later

About BPM:BPM is a full-service accounting firm providing comprehensive assurance, tax, and consulting services to clients globally. We are one of the largest California-based accounting firms and have built our success by focusing on our clients and our people. Our client base encompasses a complex array of sophisticated clients that keep our staff intellectually challenged every day.Our people-centered culture and firm motto “Because People Matter” has allowed us to be consistently recognized as one of the Best Places to Work in the Bay Area. We are dedicated to providing meaningful careers for all of our employees along with fostering an environment that allows an integrated lifestyle. Our flexible culture allows our professionals to live a balanced lifestyle between their work responsibilities and personal commitments.
Burr Pilger Mayer India Pvt. Ltd. (BPM India) is a subsidiary of BPM LLP. Founded in 1986, BPM is one of the largest California-based accounting and consulting firms, ranking in the top 50 in the country. With 15 offices across the Bay Area, BPM serves emerging and mid-cap businesses as well as high-net-worth individuals in a broad range of industries, including financial services, technology, life science, manufacturing, food, wine, and craft brewing, automotive, nonprofits, real estate, and construction. The Firm’s International Tax Practice is one of the largest on the West Coast, and its well-recognized SEC practice serves approximately 35 public reporting companies, mostly in the technology industry.
About the role:The IT Security Analyst performs two core functions for BPM. The first is the day-to-day operations of the in-place security solutions, while the second is identifying, investigating, and resolving security breaches detected by those systems. Secondary tasks may include involvement in implementing new security solutions, participation in creating and maintaining policies, standards, baselines, guidelines, and procedures, assisting with E-Discovery, and conducting vulnerability audits and assessments. The IT Security Analyst is expected to be fully aware of the enterprise’s security goals as established by its stated policies, procedures, and guidelines and to work to uphold those goals.

Responsibilities:

  • Strategy & Planning
  • Participate in the planning and design of enterprise security architecture under the direction of the IT Security Manager, where appropriate.
  • Participate in creating and maintaining enterprise security documents (policies, standards, baselines, guidelines, and procedures) under the direction of the IT Security Manager, where appropriate.
  • Acquisition & Deployment
  • Maintain up-to-date detailed knowledge of the IT security industry, including awareness of new or revised security solutions, improved security processes, and the development of new attacks and threat vectors.
  • Recommend additional security solutions or enhancements to existing security solutions to improve overall enterprise security.
  • Perform the deployment, integration, and initial configuration of all new security solutions and any enhancements to existing security solutions following standard best operating procedures generically and the enterprise’s security documents specifically.
  • Operational Management
  • Maintain up-to-date baselines for the secure configuration and operations of all in-place devices, whether under direct control (i.e., security tools) or not (e.g., workstations, servers, network devices).
  • Maintain operational configurations of all in-place security solutions per the established baselines.
  • Monitor all in-place security solutions for efficient and appropriate operations.
  • Review logs and reports of all in-place devices, whether they are under direct control (i.e., security tools (Microsoft Sentinel, Defender, etc.)) or not (e.g., workstations, servers, network devices). Interpret the implications of that activity and devise plans for appropriate resolution.
  • Participate in investigations into problematic activity.
  • Participate in E-Discovery projects.
  • Participate in the design and execution of vulnerability assessments, penetration tests, and security audits.
  • Participate in application and vendor reviews which involve assessing risks, compliance with security requirements, verifying adherence to regulatory standards and organizational security policies.
  • Provide on-call support for end users for all in-place security solutions.

Position Requirements:

  • Formal Education & Certification
  • College diploma or university degree in Computer Science and/or two years equivalent work experience.
  • One or more of the following certifications:
  • CompTIA Security+
  • GIAC Information Security Fundamentals
  • Microsoft Certified Systems Administrator: Security
  • Associate of (ISC)2
  • Knowledge & Experience
  • Extensive experience working in a SOC environment responding to incidents and breaches.
  • Experience with firewalls, intrusion detection systems, anti-virus software, data encryption, and other industry-standard techniques and practices.
  • Experience in E-Discovery, including content searches and relevant procedures and practices.
  • Experience with current systems software, protocols, and standards.
  • Working technical knowledge of network, PC, and platform operating systems
  • Strong understanding of IP, TCP/IP, and other network administration protocols.
  • Strong understanding of applicable practices and laws relating to data privacy and protection.
  • Familiarity with switches, routers, and Firewalls.

Personal Attributes:

  • Proven analytical and problem-solving abilities.
  • Ability to effectively prioritize and execute tasks in a high-pressure environment.
  • Good written, oral, and interpersonal communication skills.
  • Ability to conduct research into IT security issues and products as required.
  • Ability to present ideas in business-friendly and user-friendly language.
  • Highly self-motivated and directed.
  • Keen attention to detail.
  • Team-oriented and skilled in working within a collaborative environment.
Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0
Category: Analyst Jobs

Tags: Audits Compliance CompTIA Computer Science Encryption Firewalls GIAC Intrusion detection Privacy Sentinel SOC Strategy TCP/IP

Perks/benefits: Flex hours

Region: Asia/Pacific
Country: India

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.