Senior Analyst, Security Governance, Risk & Compliance

Barracuda Networks
Bengaluru
Workplace: HybridFull timeFunction: Legal, Risk & ComplianceExperience: 3+ yearsEducation: bachelorsSkills: ["Attention to detail","Independent assessment","Communication","Data-driven mindset"]

Support ISO 27001 and PCI DSS security compliance programs within the Information Security team by leading internal audit and assessment cycles, producing reports for management, and performing gap analyses against multiple security standards. Serve as the in-house PCI SME, assist with PCI SAQ-D Attestations of Compliance (AOC), and help modernize self-assessment processes to make them scalable, automated, and data-driven. Report directly to the Director of Security Governance, Risk & Compliance.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Barracuda Networks
Barracuda Networks
6 days ago

Senior Analyst, Security Governance, Risk & Compliance

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 1 hour agoStatus: Live

Job Summary

Support ISO 27001 and PCI DSS security compliance programs within the Information Security team by leading internal audit and assessment cycles, producing reports for management, and performing gap analyses against multiple security standards. Serve as the in-house PCI SME, assist with PCI SAQ-D Attestations of Compliance (AOC), and help modernize self-assessment processes to make them scalable, automated, and data-driven. Report directly to the Director of Security Governance, Risk & Compliance.
Location: Bengaluru
Workplace: Hybrid
Employment Type: Full time
Job Function: Legal, Risk & Compliance
Seniority: Mid level

Key Responsibilities

  • •Lead and coordinate internal audit and internal assessment cycles for PCI DSS (SAQ-D), ISO 27001, ISO 27017, ISO 27018, and ISO 42001.
  • •Produce internal audit/assessment reports for management.
  • •Serve as the in-house PCI SME, supporting security leadership in development of the PCI program.
  • •Support management in producing PCI SAQ-D Attestations of Compliance (AOC).
  • •Perform gap analysis initiatives against other industry standards and modernize self-assessment using internal tools and technologies.

Pay and Benefits

Perks:Equity

Key Requirements

  • •Bachelor’s degree in information security, IT/Computer Science, or equivalent.
  • •Industry certification such as CompTIA Security+ (or equivalent).
  • •Internal PCI DSS experience and prior training comparable to PCI ISA (Internal Security Assessor) or PCI QSA (Qualified Security Assessor).
  • •Experience auditing security frameworks including ISO 27001, ISO 27017, ISO 27018, and ISO 42001.
  • •3+ years of experience in information security or related roles.
Experience:3+ yearsInformation security
Education:Bachelor's in information security, IT/Computer Science, or equivalent
Skills:Attention to detailIndependent assessmentCommunicationData-driven mindset
Certifications:CompTIA Security+
Languages:English
Tech Stack:ISO 27001PCI DSSISO 27017ISO 27018ISO 42001PowerBIAWSAzureLLMsAgentic AI

Company Brief

Barracuda Networks
Provides cloud-enabled security and data protection solutions including email protection, network and application security, and backup and recovery services for businesses, service providers, and government organizations worldwide.
Industry: Cybersecurity
Company Size: Enterprise (1,001+ employees)
Revenue: USD 250M to 500M
Growth: Established Company
Funding: Private Equity Backed
Headquarters: Campbell, United States
Founded: 2003
WebsiteLinkedIn