Lead Information Security Analyst
Mumbai, IN
Nomura
Nomura Holdings website. Group companies, news releases, services, CSR, IR, careers information.
Responsibilities:
· Implement and support data masking, encryption, and tokenization strategies using Thales Cipher Trust Data Security Platform.
· Collaborate with application owners and infrastructure teams to identify data protection needs and design integration approaches.
· Develop and maintain policies, templates, and security rules for protecting sensitive data across databases, filesystems, and cloud platforms.
· Manage Cipher Trust Manager, DSM (Data Security Manager), CTE (Cipher Trust Transparent Encryption), DPM (Data Protection on Demand), and TDP (Tokenization).
· Perform integration of Thales DPoD with SaaS platforms, cloud-native applications, and structured databases.
· Support audits and ensure alignment with regulatory compliance (e.g., GDPR, RBI, PCI-DSS).
· Participate in data discovery and classification exercises in collaboration with other platform leads (e.g., BigID, MIP).
· Monitor operational health, perform troubleshooting, and ensure availability and integrity of the deployed controls.
· Generate and deliver technical reports, incident analysis, and improvement plans to leadership and compliance teams.
· Train and support internal teams for secure adoption of obfuscation and tokenization solutions.
Knowledge, Skill, Experience Required:· 8–10 years of experience in Information Security or Data Protection.
· 3+ years of hands-on experience with Thales Cipher Trust Suite or similar tools (e.g., Vormetric, Voltage).
· Strong understanding of encryption key lifecycle management, tokenization, and data masking strategies.
· Experience integrating obfuscation tools into databases (Oracle, MSSQL, MySQL) and enterprise applications.
· Good scripting and automation skills (e.g., Python, Shell, Ansible) preferred.
· Familiarity with cloud security concepts and integration of obfuscation solutions with AWS, Azure, or GCP.
· Working knowledge of data discovery tools like BigID, and classification tools like Microsoft Purview (MIP) is a plus.
· Understanding of compliance drivers such as GDPR, HIPAA, SOX, and RBI regulations.
Beneficial:
· Thales Certified Engineer / Architect – CipherTrust
· CISSP, CISA, CDPSE, or CIPT will be a bonus
Personal Characteristics:
· Strong problem-solving and analytical mindset.
· Ability to manage and prioritize tasks in a fast-paced environment.
· Clear communicator with technical and non-technical stakeholders.
· Proactive in identifying security gaps and proposing solutions.
· Detail-oriented, organized, and documentation-focused.
· Strong ethical standards and a passion for data privacy.
We are committed to providing equal opportunities throughout employment including in the recruitment, training and development of employees. We prohibit discrimination in the workplace whether on grounds of gender, marital or domestic partnership status, pregnancy, carer’s responsibilities, sexual orientation, gender identity, gender expression, race, color, national or ethnic origins, religious belief, disability or age.
*Applying for this role does not amount to a job offer or create an obligation on Nomura to provide a job offer. The expression "Nomura" refers to Nomura Services India Private Limited together with its affiliates.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Ansible Audits Automation AWS Azure CISA CISSP Cloud Compliance Encryption GCP GDPR HIPAA MSSQL MySQL Oracle Privacy Python SaaS Scripting SOX
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.