🎁 Before you apply, rehearse this interview. Create your free WorkMundi account and get an Interview Training on HelpsYouSpeak — no cost, no card. I want my training →
About The Company ThreatModeler Software Inc. is industrys #1 automated Threat modeling platform. The successful team members will initially support our services clients, where ThreatModeler was awarded a single or multi-year competitive contract. The effort is to perform client implementations, ranging from gathering client requirements for Threat modeling services and rolling out ThreatModelers platform across the enterprise. Reports to: Information Security Officer Team: IT & Security Location: India - Noida Role: Full time - Permanent Purpose of the Role We are looking for a senior cybersecurity analyst with robust compliance experience to help manage and mature our security stack and compliance program across both corporate and product environments. This is a senior and hands-on role suited to someone who can operate independently, make sound risk-based decisions, and own outcomes across security operations and tooling, governance, risk and compliance, and customer security requirements. The role sits at the intersection of cybersecurity and compliance. The ideal candidate should be comfortable moving between hands-on security operations, including endpoint security, vulnerability management, incident response, cloud security, security tooling, logging and monitoring, etc., and compliance work, such as evidence gathering, policy and procedure review, risk management, and audit readiness. Responsabilities Operate and improve the companys security tooling across endpoint security, SIEM/SOAR, SASE/SWG/DLP/ZTNA, identity and access management, vulnerability management, and AWS-native security controls. Manage vulnerability management across both corporate and product environments. Support monitoring and incident response activities, including alert review, investigations, and root cause analysis. Review and improve AWS security controls, logging & monitoring, access management, secure configuration practices, etc. Identify technical security gaps and .