ASAI job platform logo
  1. Home
  2. /Jobs
  3. /Security Engineer Jobs in Bengaluru
  4. /Cyber Security Compliance Analyst
Carmeuse

Cyber Security Compliance Analyst

Bengaluru · Staff/Principal

Mature listing - likely many applicantsVerified listingPosted 28d ago

Applicants who checked fit first are 3.1× more likely to hear back

Your match scoreCalculated · locked
86Overall
64Skills
97Experience

Your score for this role already exists

ASAI compared this JD against 41 signals - skills, seniority, domain, stack overlap etc. Add a resume and it unlocks in about 30 seconds.

No credit card · 1 tap with Google

What we know about this role

Hiring pulse

LOW

Carmeuse is showing limited hiring activity lately. Expect slight delayed response.

Apply window

First 72 hours

Window passed - posted 28d ago

Early applicants get seen before the pile builds.

Not a repost

The first time we've seen this listing - it hasn't been closed and reopened.

Skills required

5 listed
SAP SecuritySecurity AwarenessSwift (Programming Language)Single Sign-On (SSO)Authorization (Computing)
SAP SecuritySecurity AwarenessSwift (Programming Language)Single Sign-On (SSO)Authorization (Computing)

You almost certainly match several of these already. Unlock your skill map to see the matches, the gaps, and what to fix first.

Job description

Key Responsibilities

•Maintain and continuously improve the compliance control set, the supporting evidence and the documentation required by regulatory and audit obligations (GDPR,NIS2, SAP security audits, SWIFT and GITC), covering:
ØApplication change management and software development life cycle controls
ØSecurity hardening and vulnerability patching of operating systems and databases
ØIT user access permissions and periodic user access reviews
ØGeneral user access — security audit logs, monitoring evidence and review
ØPrivileged user access (ie Firefighter usage) and privileged activity review
ØGovernance and review of operating systems and databases privileged access
ØPassword policies and baseline identity controls (SSO/MFA principles)
ØSoftware compliance and security — web vulnerability management
ØSWIFT Customer Security Programme (CSP) compliance
•Run the day-to-day operation of the global security awareness programme: plan and launch phishing simulations and training campaigns, follow up completion, and report on results
ØTrack training completion and phishing click/report rates, and propose improvements to campaign content, targeting and follow-up
•Collaborate with the SAP Basis Security & Authorization team to review and report SoD violations
•Coordinate the global vulnerability management process: consolidate scan results, prioritise on risk, track remediation with infrastructure, application and OT owners,and escalate overdue or high-risk items
•Prepare the monthly, quarterly and annual compliance, vulnerability and awareness reports for the Global Security & Compliance Manager and for Carmeuse IT leadership
•Support internal and external audits (including GITC): prepare evidence packs, coordinate control owners, support walkthroughs, and track findings through to closure
•Maintain the security governance documentation (policies, standards, procedures, control narratives and the exception register) and participate in ITSC and cyber security team meetings
•Ensure that Carmeuse's regulatory and audit compliance controls are secure and auditable, in
•line with the established security, audit and regulatory requirements (GDPR, NIS2, SAP security audits, SWIFT and GITC)
•Operate the global security awareness and vulnerability management follow-up processes, driving measurable improvement in employee behaviour and remediation performance
•Maintain the compliance documentation, metrics and reporting used by the Global Security & Compliance Manager and by IT leadership

Key performance indicators :

Compliance and audit findings closed on time; vulnerability remediation

performance against the agreed SLAs (critical / high); security awareness results (training completion rate, phishing simulation click and report rates); timeliness and quality of the compliance evidence, metrics and reporting.

Required

•Bachelor’s degree in engineering / technology in Information Security, Computer Science, IT or a related field
•At least 8 years of experience in IT or cyber security, with hands-on exposure to compliance, audit support and reporting (a GRC or internal audit background is an advantage)
•Working knowledge of regulatory and audit frameworks (GDPR, NIS2, SAP security audits, SWIFT,GITC);
•Mandatory certification: CISA
•ISO 27001 or CIPM are a plus
•Language: English (written & spoken)
•Cyber security governance, control frameworks and audit evidence expectations
•Regulatory and industry compliance topics: GDPR, NIS2, SAP security audits and SWIFT
•compliance
•User access, Segregation of Duties and identity and access fundamentals (SSO/MFA principles)
•Vulnerability management principles (risk-based prioritisation, remediation lifecycle, reporting)
•and security awareness platforms such as KnowBe4

Skills

•Problem solving, with attention to detail in controls, evidence and documentation
•Written and oral communication skills — able to explain technical topics to non-technical stakeholders
•Organization & planning — able to track many actions through to closure and hold a reporting cadence
•Microsoft desktop applications (Excel, Word, PowerPoint) and compliance reporting/dashboarding
•Cross-functional collaboration with IT, OT, Legal & Privacy and business owners; pragmatic and outcome-focused

Free · no signup

Get tomorrow's jobs before you have to search

Daily job drops, skill trends and free resources - posted straight to the group. Leave any time.

Join WhatsAppJoin Telegram

No spam. Just jobs and resources.

Why people use ASAI

Someone shared one job with you. ASAI keeps finding the rest.

  • Scored, not searched. Every role ranked against your actual profile.

  • Alerts as often as hourly. Reach new roles while the pile is still small.

  • Skill gaps, spelled out. See exactly which requirements you don't meet yet.

  • Verified jobs, only. Say no to ghost jobs. Your time deserves respect.

More Security Engineer roles in Bengaluru

See all

Senior Software engineer - Advanced Threat Protection

Okta · Bengaluru

Lead Security Engineer IGA

Cyderes · Bengaluru

Sr Software Engineer - Cybersecurity Integrations (Armis)

ServiceNow · Bengaluru

Software Engineer (Cybersecurity Integrations) - Armis

ServiceNow · Bengaluru

Keep browsing

All Security Engineer jobs in Bengaluru

Two ways in

Applicants who checked fit first are 3.1× more likely to hear back

Your match scoreCalculated · locked
86Overall
64Skills
97Experience

Your score for this role already exists

ASAI compared this JD against 41 signals - skills, seniority, domain, stack overlap etc. Add a resume and it unlocks in about 30 seconds.

No credit card · 1 tap with Google

Free · no signup

Get tomorrow's jobs before you have to search

Daily job drops, skill trends and free resources - posted straight to the group. Leave any time.

Join WhatsAppJoin Telegram

No spam. Just jobs and resources.

Why people use ASAI

Someone shared one job with you. ASAI keeps finding the rest.

  • Scored, not searched. Every role ranked against your actual profile.

  • Alerts as often as hourly. Reach new roles while the pile is still small.

  • Skill gaps, spelled out. See exactly which requirements you don't meet yet.

  • Verified jobs, only. Say no to ghost jobs. Your time deserves respect.

ASAI job platform logo

A job platform finally, balanced in your favour.

Jobs by CityJobs by CompanyGuidesHow We VerifyAboutPrivacy PolicyTerms of Service

Built in India 🇮🇳

© 2026 ASAI. All rights reserved.