IT Risk & Compliance Analyst
Bangalore, India
Elastic
Power insights and outcomes with The Elastic Search AI Platform. See into your data and find answers that matter with enterprise solutions designed to help you accelerate time to insight. Try Elastic ...Elastic, the Search AI Company, enables everyone to find the answers they need in real time, using all their data, at scale — unleashing the potential of businesses and people. The Elastic Search AI Platform, used by more than 50% of the Fortune 500, brings together the precision of search and the intelligence of AI to enable everyone to accelerate the results that matter. By taking advantage of all structured and unstructured data — securing and protecting private information more effectively — Elastic’s complete, cloud-based solutions for search, security, and observability help organizations deliver on the promise of AI.
What is The Role:
Are you passionate about understanding the "why" in managing risk? If so, come join the growing IT Risk & Compliance (ITRC) team at Elastic! In this role, you will work with a diverse group of collaborators not just within IT, but across various functions at Elastic!
We are looking for a self-motivated individual who seeks to help bring a practical and intuitive approach to risk and compliance. ITRC's objective is to drive a "compliance-by-design" mindset through thought leadership and a consultative approach. This role requires the use of analytical skills to solve complex problems and deliver clear recommendations to collaborators in IT, Information Security, and others in the business.
What You Will Be Doing:
- Assist in the evaluation of technology risks end-to-end processes and new projects at Elastic from planning, scope development to execution which includes:
- Evaluating, documenting, and advising on end to end business system architecture and processes in order to effectively manage IT risks and build out mitigation measures
- Documenting and evaluating end-to-end business systems architecture and processes to effectively manage IT risks to assist in the design of appropriate mitigation measures
- Validating design of processes and controls to facilitate internal or external audits
- Assist with internal controls walkthroughs and obtaining evidence requested from audit teams
- Analyzing audit deficiencies or improvement opportunities by defining the appropriate remediation plans
- Educate a diverse workforce in the “why”, “what”, and “who” of risk management
What You Will Bring:
- 2 to 3 years of experience in IT Audit or IT Risk Advisory from a Big 4 public accounting firm, or a public company
- A deep understanding of IT General Controls and the role they play in an overall control environment is a must
- Knowledge of how periodic user access reviews work, and critical audit testing attributes
- Experience with reviewing and analyzing SOC1/2 reports
- Ability to manage multiple tasks and priorities, and to stay organized and efficient in a fast-paced environment
- Natural curiosity for finding opportunities for automation in processes and controls
- Excellent communication skills and ability to work effectively across multiple functional and business groups
- Ability to think critically and creatively to resolve issues
- Demonstrated creativity and flexibility in problem solving and project collaboration
Bonus Points:
- Experience working with modern GRC solutions such as AuditBoard and project management platforms such as Jira
- Ability and interest in working in a fast-paced, high-growth setting with a positive approach
- Worked with multicultural and geographically distributed teams
Additional Information - We Take Care of Our People
As a distributed company, diversity drives our identity. Whether you’re looking to launch a new career or grow an existing one, Elastic is the type of company where you can balance great work with great life. Your age is only a number. It doesn’t matter if you’re just out of college or your children are; we need you for what you can do.
We strive to have parity of benefits across regions and while regulations differ from place to place, we believe taking care of our people is the right thing to do.
- Competitive pay based on the work you do here and not your previous salary
- Health coverage for you and your family in many locations
- Ability to craft your calendar with flexible locations and schedules for many roles
- Generous number of vacation days each year
- Increase your impact - We match up to $2000 (or local currency equivalent) for financial donations and service
- Up to 40 hours each year to use toward volunteer projects you love
- Embracing parenthood with minimum of 16 weeks of parental leave
Different people approach problems differently. We need that. Elastic is an equal opportunity/affirmative action employer committed to diversity, equity, and inclusion. Qualified applicants will receive consideration for employment without regard to race, ethnicity, color, religion, sex, pregnancy, sexual orientation, gender perception or identity, national origin, age, marital status, protected veteran status, disability status, or any other basis protected by federal, state or local law, ordinance or regulation.
We welcome individuals with disabilities and strive to create an accessible and inclusive experience for all individuals. To request an accommodation during the application or the recruiting process, please email candidate_accessibility@elastic.co We will reply to your request within 24 business hours of submission.
Applicants have rights under Federal Employment Laws, view posters linked below: Family and Medical Leave Act (FMLA) Poster; Pay Transparency Nondiscrimination Provision Poster; Employee Polygraph Protection Act (EPPA) Poster and Know Your Rights (Poster)
Elasticsearch develops and distributes encryption software and technology that is subject to U.S. export controls and licensing requirements for individuals who are located in or are nationals of the following sanctioned countries and regions: Belarus, Cuba, Iran, North Korea, Russia, Syria, the Crimea Region of Ukraine, the Donetsk People’s Republic (“DNR”), and the Luhansk People’s Republic (“LNR”). If you are located in or are a national of one of the listed countries or regions, an export license may be required as a condition of your employment in this role. Please note that national origin and/or nationality do not affect eligibility for employment with Elastic.
Please see here for our Privacy Statement.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Audits Automation Cloud Compliance Elasticsearch Encryption Jira Polygraph Privacy Risk management SOC 1
Perks/benefits: Career development Competitive pay Equity / stock options Flex hours Flex vacation Health care Medical leave Parental leave Salary bonus Startup environment Transparency
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.