BPM LLP Logo

BPM LLP

InfoSec Analyst

Posted 2 Days Ago
Be an Early Applicant
Bengaluru, Karnataka
Junior
Bengaluru, Karnataka
Junior
The IT Security Analyst manages operations of existing security solutions, investigates security breaches, implements new solutions, and conducts audits and assessments to ensure enterprise security compliance.
The summary above was generated by AI

About BPM:

BPM is a full-service accounting firm providing comprehensive assurance, tax, and consulting services to clients globally. We are one of the largest California-based accounting firms and have built our success by focusing on our clients and our people. Our client base encompasses a complex array of sophisticated clients that keep our staff intellectually challenged every day.

Our people-centered culture and firm motto “Because People Matter” has allowed us to be consistently recognized as one of the Best Places to Work in the Bay Area. We are dedicated to providing meaningful careers for all of our employees along with fostering an environment that allows an integrated lifestyle. Our flexible culture allows our professionals to live a balanced lifestyle between their work responsibilities and personal commitments.


Burr Pilger Mayer India Pvt. Ltd. (BPM India) is a subsidiary of BPM LLP. Founded in 1986, BPM is one of the largest California-based accounting and consulting firms, ranking in the top 50 in the country. With 15 offices across the Bay Area, BPM serves emerging and mid-cap businesses as well as high-net-worth individuals in a broad range of industries, including financial services, technology, life science, manufacturing, food, wine, and craft brewing, automotive, nonprofits, real estate, and construction. The Firm’s International Tax Practice is one of the largest on the West Coast, and its well-recognized SEC practice serves approximately 35 public reporting companies, mostly in the technology industry.


About the role:

The IT Security Analyst performs two core functions for BPM. The first is the day-to-day operations of the in-place security solutions, while the second is identifying, investigating, and resolving security breaches detected by those systems. Secondary tasks may include involvement in implementing new security solutions, participation in creating and maintaining policies, standards, baselines, guidelines, and procedures, assisting with E-Discovery, and conducting vulnerability audits and assessments. The IT Security Analyst is expected to be fully aware of the enterprise’s security goals as established by its stated policies, procedures, and guidelines and to work to uphold those goals.

Responsibilities:

  • Strategy & Planning
  • Participate in the planning and design of enterprise security architecture under the direction of the IT Security Manager, where appropriate.
  • Participate in creating and maintaining enterprise security documents (policies, standards, baselines, guidelines, and procedures) under the direction of the IT Security Manager, where appropriate.
  • Acquisition & Deployment
  • Maintain up-to-date detailed knowledge of the IT security industry, including awareness of new or revised security solutions, improved security processes, and the development of new attacks and threat vectors.
  • Recommend additional security solutions or enhancements to existing security solutions to improve overall enterprise security.
  • Perform the deployment, integration, and initial configuration of all new security solutions and any enhancements to existing security solutions following standard best operating procedures generically and the enterprise’s security documents specifically.
  • Operational Management
  • Maintain up-to-date baselines for the secure configuration and operations of all in-place devices, whether under direct control (i.e., security tools) or not (e.g., workstations, servers, network devices).
  • Maintain operational configurations of all in-place security solutions per the established baselines.
  • Monitor all in-place security solutions for efficient and appropriate operations.
  • Review logs and reports of all in-place devices, whether they are under direct control (i.e., security tools (Microsoft Sentinel, Defender, etc.)) or not (e.g., workstations, servers, network devices). Interpret the implications of that activity and devise plans for appropriate resolution.
  • Participate in investigations into problematic activity.
  • Participate in E-Discovery projects.
  • Participate in the design and execution of vulnerability assessments, penetration tests, and security audits.
  • Participate in application and vendor reviews which involve assessing risks, compliance with security requirements, verifying adherence to regulatory standards and organizational security policies.
  • Provide on-call support for end users for all in-place security solutions.

Position Requirements:

  • Formal Education & Certification
  • College diploma or university degree in Computer Science and/or two years equivalent work experience.
  • One or more of the following certifications:
  • CompTIA Security+
  • GIAC Information Security Fundamentals
  • Microsoft Certified Systems Administrator: Security
  • Associate of (ISC)2
  • Knowledge & Experience
  • Extensive experience working in a SOC environment responding to incidents and breaches.
  • Experience with firewalls, intrusion detection systems, anti-virus software, data encryption, and other industry-standard techniques and practices.
  • Experience in E-Discovery, including content searches and relevant procedures and practices.
  • Experience with current systems software, protocols, and standards.
  • Working technical knowledge of network, PC, and platform operating systems
  • Strong understanding of IP, TCP/IP, and other network administration protocols.
  • Strong understanding of applicable practices and laws relating to data privacy and protection.
  • Familiarity with switches, routers, and Firewalls.

Personal Attributes:

  • Proven analytical and problem-solving abilities.
  • Ability to effectively prioritize and execute tasks in a high-pressure environment.
  • Good written, oral, and interpersonal communication skills.
  • Ability to conduct research into IT security issues and products as required.
  • Ability to present ideas in business-friendly and user-friendly language.
  • Highly self-motivated and directed.
  • Keen attention to detail.
  • Team-oriented and skilled in working within a collaborative environment.

Similar Jobs

17 Days Ago
Bengaluru, Bengaluru Urban, Karnataka, IND
Senior level
Senior level
Healthtech • Biotech
The Sr. InfoSec Quality and Compliance Analyst will conduct risk assessments for enterprise systems, assist in the development of risk management policies, and ensure compliance with regulatory requirements through audits and collaboration across departments. They will utilize risk management frameworks and tools, monitor risk exposure, and document compliance evidence while staying updated with industry best practices.
Top Skills: AuditboardData Analysis ToolsGrc PlatformsInformation SystemsItRisk ManagementRisk Management Software
24 Days Ago
Bengaluru, Bengaluru Urban, Karnataka, IND
Junior
Junior
Healthtech • Biotech
As an InfoSec Quality and Compliance Analyst, you'll manage security controls for SOX governed applications, including user provisioning, auditing processes, and reporting weekly metrics. You'll work closely with internal auditors, provide supporting evidence, and collaborate with security specialists to ensure operational compliance.
Top Skills: Application SecurityAribaBlacklineDatabase AdministrationIt Service ManagementIt SoxSailpointSap SecurityServicenowSnowflake
24 Days Ago
Bengaluru, Bengaluru Urban, Karnataka, IND
Senior level
Senior level
Healthtech • Biotech
The Staff InfoSec Risk and Compliance Analyst will lead application security measures for various SAP systems, ensuring proper access controls, compliance with audit processes, and developing custom GRC rulesets. Responsibilities include performing security administration, supporting audits, maintaining documentation, and collaborating on new functionality rollout.
Top Skills: ApoEwmFioriGrcGtsIbpSAPSap EccSap GrcSolution Manager

What you need to know about the Bengaluru Tech Scene

Dubbed the "Silicon Valley of India," Bengaluru has emerged as the nation's leading hub for information technology and a go-to destination for startups. Home to tech giants like ISRO, Infosys, Wipro and HAL, the city attracts and cultivates a rich pool of tech talent, supported by numerous educational and research institutions including the Indian Institute of Science, Bangalore Institute of Technology, and the International Institute of Information Technology.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account