TransUnion Logo

TransUnion

Information Security Analyst _ penetration testing

Posted 3 Hours Ago
Be an Early Applicant
Hybrid
2 Locations
Mid level
Hybrid
2 Locations
Mid level
The role involves conducting penetration testing, vulnerability assessments, and application security scans, while collaborating with development teams to enhance security within CI/CD pipelines and ensure compliance with security standards.
The summary above was generated by AI

TransUnion's Job Applicant Privacy Notice

What We'll Bring:

We are seeking a security analyst to join CIBIL Information Security team to support annual penetration testing, ongoing vulnerability assessments, and application security scanning across our environment. The role will collaborate closely with development teams to embed DevSecOps practices, drive timely remediation of vulnerabilities, and ensure compliance with regulatory and threat‑intelligence advisories. Responsibilities include maintaining security baselines for infrastructure and leveraging tools such as Rapid7, Burp Suite, Checkmarx, and Seeker to strengthen our overall security posture.

What You'll Bring:

  • Support the annual penetration testing program for both existing systems and new go‑live applications, ensuring timely remediation of identified risks.

  • Execute periodic internal and external vulnerability assessment (VA) scans, analyze discovered vulnerabilities, and provide clear reporting to stakeholders for timely closure.

  • Support Static Application Security Testing (SAST) and Interactive Application Security Testing (IAST) scans, driving application teams to identify, prioritize, and resolve security weaknesses.

  • Collaborate with development teams to embed security controls into CI/CD pipelines (DevSecOps) and promote secure coding practices across the SDLC.

  • Support regulatory and compliance-driven security advisories, ensuring vulnerabilities identified through external mandates are remediated within required timelines.

  • Assist in remediation activities triggered by threat intelligence and VTM advisories, including evaluation of reported exploits, zero-day vulnerabilities, and their applicability to the organization.

  • Conduct periodic security baseline reviews for network devices, operating systems, and infrastructure components to ensure configuration compliance.

  • Utilize and maintain proficiency with key security tools such as Rapid7, Burp Suite, Checkmarx, and Seeker, using them to strengthen the organization’s vulnerability management and application security posture.

Impact You'll Make:

  • Maintain and enhance dashboards, reporting mechanisms, and metrics for vulnerability management, providing leadership with visibility into risk trends, remediation progress, and compliance adherence.
  • Assist in establishing and continuously improving secure coding standards, development guidelines, and security guardrails aligned with industry best practices.
  • Contribute to audit and compliance programs (e.g., ISO, SOC 2, regulatory reviews) by providing evidence, documentation, and remediation tracking for security‑related controls.
  • Stay updated with emerging threats, new tools, and evolving security techniques, advising teams on adoption of modern, efficient, and scalable security practices.

This is a hybrid position and involves regular performance of job responsibilities virtually as well as in-person at an assigned TU office location for a minimum of two days a week.

TransUnion Job Title

Analyst, InfoSec Risk Management & Governance

Top Skills

Burp Suite
Checkmarx
Rapid7
Seeker

TransUnion Bengaluru, Karnataka, IND Office

Primeco Towers - 5th floor, Bannerughatta Rd., Arekere MICO Layout, Main Rd. Panduranga Nagar, Bengaluru, India, 560076

Similar Jobs at TransUnion

3 Hours Ago
Hybrid
2 Locations
Senior level
Senior level
Big Data • Fintech • Information Technology • Business Intelligence • Financial Services • Cybersecurity • Big Data Analytics
Develop and design microservices Java applications deployed on cloud, collaborate with product teams, and improve scalability and performance with robust coding practices.
Top Skills: Api GatewayBigQueryDockerGCPGerritGitHibernateJavaJenkinsKubernetesLoad BalancingNoSQLPythonService DiscoverySparkSpring BootSQL
Yesterday
Hybrid
2 Locations
Senior level
Senior level
Big Data • Fintech • Information Technology • Business Intelligence • Financial Services • Cybersecurity • Big Data Analytics
Lead strategy, roadmap, and lifecycle management for cloud-based Specialized Risk data and application platforms. Manage a product team, partner with global architecture, data and engineering, define epics and PI priorities, monitor KPIs and performance, gather VOC, and drive product investments and continuous improvement to deliver industry-leading data products across multiple industries.
Top Skills: AgileAPIsBatch ProcessingCloudData LakesData WarehousesMobile ApplicationsMonitoring PlatformsWeb Applications
Yesterday
Remote or Hybrid
4 Locations
Senior level
Senior level
Big Data • Fintech • Information Technology • Business Intelligence • Financial Services • Cybersecurity • Big Data Analytics
Lead the design and execution of knowledge management solutions within enterprise transformation programs, ensuring knowledge assets are captured and reused effectively.
Top Skills: AIAutomationBloomfireBusiness Process ManagementInformation ScienceKnowledge Management

What you need to know about the Bengaluru Tech Scene

Dubbed the "Silicon Valley of India," Bengaluru has emerged as the nation's leading hub for information technology and a go-to destination for startups. Home to tech giants like ISRO, Infosys, Wipro and HAL, the city attracts and cultivates a rich pool of tech talent, supported by numerous educational and research institutions including the Indian Institute of Science, Bangalore Institute of Technology, and the International Institute of Information Technology.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account