Associate Governance and Compliance Security Analyst

ProductHybrid Remote, Bangalore, India


Description

Associate Governance Risk Compliance Security Engineer

Bangalore, India

 

The Opportunity:

Anthology delivers education and technology solutions so that students can reach their full potential and learning institutions thrive. Our mission is to empower educators and institutions with meaningful innovation that’s simple and intelligent, inspiring student success and institutional growth.

 

The Power of Together is built on having a diverse and inclusive workforce. We are committed to making diversity, inclusion, and belonging a foundational part of our hiring practices and who we are as a company.

 

For more information about Anthology and our career opportunities, please visit www.anthology.com.

 

Anthology’s Information Security team leads the governance, risk, and compliance program to enhance and ensure the confidentiality, integrity, and availability of all corporate information systems and products. This team is a core part of Anthology, providing it substantial opportunities to influence the overall corporate mission and culture.

 

We are building a team focused on high impact collaboration with our partners across the corporation leveraging transparency, trust, and innovation to elevate Anthology security through partnership and teamwork. We are seeking to hire the best talent, leveraging their skills to augment the team, and providing support and training to foster well-rounded individuals positioned for ongoing career success.

 

As an Associate Governance Risk Compliance Security Engineer, you will be a detail-oriented compliance professional with a desire to improve enterprise security through engagement with partners throughout the organization to ensure security policies, procedures, and guidelines are communicated effectively, monitored for compliance, and reported accurately. You will report to the Director of Governance, Risk and Compliance for the Information Security team.

 

Specific responsibilities will include:

  • Providing input into Anthology’s enterprise-wide security policies and procedures
  • Enforcing policies, procedures, and guidelines
  • Helping with the design, development, and implementation of controls created in response to identified risks
  • Monitoring and enhancing the Anthology training and awareness program
  • Participating in external audit activities (e.g., evidence collection, communication, project management)

 

The Candidate:

Required skills/qualifications:

  • 0-2 years of experience in Security Compliance or Audit
  • Sufficient experience in planning and conducting work requiring judgment and independent evaluation, selection, modification, and application of standard procedures and techniques
  • Familiarity with information security frameworks (NIST 800-53, ISO 27001, SOC2, CIS, PCI-DSS)
  • Understanding of secure development practices
  • Fluency in written and spoken English

 

Preferred skills/qualifications:

  • Experience participating in or conducting audits
  • Knowledge of secure development methodologies, tools, and practices (OWASP Top Ten)
  • Experience working with industry GRC tools                              

 

This job description is not designed to contain a comprehensive listing of activities, duties, or responsibilities that are required. Nothing in this job description restricts management's right to assign or reassign duties and responsibilities at any time.   

 

Anthology is an equal employment opportunity/affirmative action employer and considers qualified applicants for employment without regard to race, gender, age, color, religion, national origin, marital status, disability, sexual orientation, gender identity/expression, protected military/veteran status, or any other legally protected factor.