Security Operations Analyst II – Security Compliance Center
On-siteGurugram, Haryana, India
Job Summary
Support operational compliance activities across PCI DSS, SOC 2, NIST CSF, and Privacy frameworks by gathering evidence and validating control execution. Manage Jira tickets, workflows, and follow-ups for compliance tasks, remediation items, and audit requests while collecting, reviewing, and documenting control evidence. Coordinate with technical teams to obtain information, clarify requests, and support timely closure of audit-related actions. Participate in internal readiness assessments and external audits by delivering samples, evidence, and system information. Maintain organized repositories of compliance evidence, identify gaps in control execution, and escalate issues to the Compliance Center Manager. Track and report status of operational activities, risks, and blockers while contributing to process improvements for audit efficiency.
Required Qualifications
- 3–5 years of experience in security compliance, IT audit, or related technical operational roles
- Experience supporting compliance programs such as PCI DSS, SOC 2, NIST CSF, ISO 27001, or similar frameworks
- Strong organizational skills with the ability to manage multiple tasks, deadlines, and evidence requests simultaneously
- Comfortable working in Jira or similar workflow/ticketing systems; experience managing queues and SLAs
- Ability to document processes, controls, and procedures clearly and accurately
- Strong communication skills and ability to coordinate with both technical and non‐technical partners
- Able to identify inconsistencies or gaps in evidence and raise issues appropriately
- Strong project management, multitasking, and organizational skills required
- Understanding of basic security concepts such as authentication, encryption, logging/monitoring, and network fundamentals
Desired Qualifications
- Familiar with cloud technologies and modern IT environments; experience with AWS, and Azure is a plus
- Information security or compliance certification is a plus (e.g., CISA, Security+, ISO 27001 Associate, PCIP)
- Experience with any of the Big 4 is a plus
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.