974,315open jobs
58,640companies
159,915added this week
Browse all
Salary
≈ $17k – $42k per year (Estimated)
Location
In office (Bengaluru)
Seniority
Middle · 3+ years exp

Confirmed on the employer's own hiring board on Sep 30, 2026. First seen by Alion on Sep 30, 2026.

Overview
Company
Impact
Profile match
Headquartered in London, United Kingdom, EY (Ernst & Young) is a multinational professional services network and one of the "Big Four" accounting firms. The organization provides financial assurance and auditing, tax advisory, management and technology consulting, and strategy and transactions advisory through its EY-Parthenon arm. Operating across more than 150 countries, it delivers risk management, digital transformation, data analytics, and regulatory compliance solutions to multinational corporations, financial institutions, and government entities worldwide.

At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all.

Information Security Analyst - Sr. Associate

Today’s world is fueled by vast amounts of information. Data is more valuable than ever before. Protecting data and information systems is central to doing business, and everyone in EY Information Security has a critical role to play. Join a global team of over 950 people who collaborate to support the business of EY by protecting EY and client information assets! Our Information Security professionals enable EY to work securely and deliver secure products and services, as well as detect and quickly respond to security events as they happen. Together, the efforts of our dedicated team helps protect the EY brand and build client trust.

Within Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we consider the entire security lifecycle. You will join a team of hardworking, security-focused individuals dedicated to supporting, protecting and enabling the business through innovative, secure solutions that provide speed to market and business value.

The opportunity

The Technology Assurance, Risk, and Policy (TARP) function within Information Security strives to create and promote a holistic Governance, Risk, and Compliance (GRC) program by creating a robust, resilient, and proactive governance framework, supported by a strategic risk management approach and stringent compliance structures. It aims to integrate and align its GRC initiatives in line with the global firm's objectives and emerging threats within the cybersecurity landscape.

The Technology Assurance team develops provides security assurance on EY’s deployed technology to internal and external stakeholders. The team members act as subject matter experts across a number of information and cyber security disciplines that include, among others, application and network penetrating testing and vulnerabilities identification, information security audits, compliance to cyber security and regulatory frameworks, and conducting or coordinating security audits and assessments. The team develops the overall strategy and for implementing various technical attack and penetration assessment, information security audits like HITRUST, SOC 1 and SOC 2 to provide third-party assurance to EY’s Clients in EY’s senior leadership. The team is responsible of overseeing and leading the technical audit process that includes third-party external assessments of client-facing critical business applications, M365 Teams Apps, Network, cloud configuration reviews, infrastructure reviews, UK Cyber Essentials Plus Certification and UK IT Health Check Certification. The team manages Attack and Penetration testing controls based on Industry Standards and obtain third-party security attestations/certifications to enable EY Business to win in the market. The team also manages and maintains the firm’s ISO 27001 certifications is responsible for the end-end delivery of attestation audits like SOC 1 and SOC2. Technical compliance to regulatory framework like Internation Standard on Quality Management (ISQM) is also a responsibility of the team.

An Information Security Analyst will work closely with team leads to assist with one of the security functional areas described above.

Your key responsibilities

  • Create creating various process documents and assist with the maintenance of the team’s internal procedure and process documents.
  • Assist with one or more of the following areas:
    • Develop comprehensive Information Security technical audit plans and schedules based on client demands, regulatory requirements, industry best practices, and organizational objectives.
    • Maintain the firm’s Information Security Management System (ISMS) and participate in the various ISO 27001 activities like risk assessments, maintain monitoring framework for key security metrics and remediation tracking of observations and finding.
  • Collaborate with internal stakeholders, including IT teams, compliance teams, ET and CT, to ensure alignment of audit activities with organizational goals and priorities.
  • Maintain accurate and up-to-date documentation of vulnerabilities, remediation plans, and risk mitigation strategies to share with stakeholders and clients.
  • Stay informed about emerging threats, attack vectors, and security vulnerabilities affecting the organization’s technology stack.
  • Collaboration with other Information Security groups and external stakeholders across EY is key to this role.

Skills and attributes for success

  • Strong Background in various Information Technology domains
  • Working knowledge of Information Security concepts
  • Excellent organizational and coordination abilities
  • Strong analytical skills with the ability to collect, organize, and analyse information
  • Ability to learn quickly and adapt to a fast-moving environment
  • Critical thinking skills
  • Strong time management skills

To qualify for the role you must have

  • Min 3 years of experience in an information security or technology audit field
  • Ability to work collaboratively with various teams to obtain an in-depth understanding of the process and the documentation requirements
  • Ability to deliver high quality documentation paying attention to every detail
  • Ability to quickly grasp complex technical concepts and make them easily understandable in text and pictures
  • Strong communication and interpersonal skills
  • Must be a strong multi-tasker and be able to prioritize duties

Ideally, you’ll also have

  • Bachelors or above in Information Technology or Cyber Security related Degrees
  • Keen interest in pursuing relevant Information Security Certifications like CISSP, CISM, ISO 27001 lead auditor, ISO 42001 lead auditor/implementer, CISA, etc.

What we offer

As part of this role, you will work in a highly coordinated, globally diverse team with the opportunity and tools to grow, develop and drive your career forward. Here, you can combine global opportunity with flexible working. The EY benefits package goes above and beyond too, focusing on your physical, emotional, financial and social well-being. Your recruiter can talk to you about the benefits available in your country. Here’s a snapshot of what we offer:

  • Continuous learning: You will develop the mindset and skills to navigate whatever comes next.
  • Success as defined by you: We will provide the tools and flexibility, so you can make a significant impact, your way.
  • Transformative leadership: We will give you the insights, coaching and confidence to be the leader the world needs.
  • Diverse and inclusive culture: You will be accepted for who you are and empowered to use your voice to help others find theirs.

EY | Building a better working world

EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.

Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate.

Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
974,315 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Bengaluru
≈ $17k – $38k per year (Estimated) • Hybrid • Full-Time • 5+ years exp • Hyderabad
Management
Agile
Apply
≈ $18k – $38k per year (Estimated) • In office • Full-Time • 6+ years exp • Bachelor's Degree • Hyderabad
Python
PowerShell
DevOps
Windows
Unix
TCP/IP
Cybersecurity
Crowdstrike
SentinelOne
MITRE ATT&CK
Carbon Black
Apply
≈ $11k – $31k per year (Estimated) • In office • 2+ years exp • Kochi
Python
PowerShell
AI/ML
Red Teaming
DevOps
Azure
AWS
Cybersecurity
ISO 27001
NIST CSF
Apply
≈ $15k – $36k per year (Estimated) • Hybrid • 2+ years exp • Bengaluru
DevOps
GCP
Azure
AWS
SLI/SLO/SLA
Cybersecurity
ISO 27001
NIST CSF
SOC 2
GDPR
HIPAA
Management
Confluence
Jira
Apply
Senior SOC Controller 6 hours ago
≈ $18k – $38k per year (Estimated) • In office • 5+ years exp • Bachelor's Degree • Pune
Analytics
Power BI
Apply
≈ $49k – $119k per year (Estimated) • In office • Full-Time • Bachelor's Degree • Bengaluru
AI/ML
Anomaly Detection
DevOps
Splunk
GCP
Azure
AWS
VPN
Cybersecurity
Wireshark
Tcpdump
Volatility
ISO 27001
MITRE ATT&CK
SOC 2
FedRAMP
Cyber Kill Chain
FTK
EnCase
SIEM
Apply
≈ $12k – $31k per year (Estimated) • Remote (India) • Full-Time • 2+ years exp • India
Python
SQL
Databases
Snowflake
AI/ML
Copilot
Cursor
Claude
ChatGPT
Function Calling
AI Agents
LLM
Human-in-the-Loop
Structured Outputs
Red Teaming
LLM Guardrails
NIST AI RMF
Tool Use
DevOps
Rest API
Splunk
OpenTelemetry
Datadog
PagerDuty
Azure
CI/CD
Git
Grafana
Platform Engineering
Configuration Management
IAM
Amazon CloudWatch
Cybersecurity
Okta
ISO 27001
SOC 2
Microsoft Entra ID
DLP
Management
ServiceNow
Apply
≈ $12k – $31k per year (Estimated) • Remote (India) • Full-Time • 2+ years exp • India
Python
SQL
Databases
Snowflake
AI/ML
Copilot
Cursor
Claude
ChatGPT
Function Calling
AI Agents
LLM
Human-in-the-Loop
Structured Outputs
Red Teaming
LLM Guardrails
NIST AI RMF
Tool Use
DevOps
Rest API
Splunk
OpenTelemetry
Datadog
PagerDuty
Azure
CI/CD
Git
Grafana
Platform Engineering
Configuration Management
IAM
Amazon CloudWatch
Cybersecurity
Okta
ISO 27001
SOC 2
Microsoft Entra ID
DLP
Management
ServiceNow
Apply
$85k – $108k per year • In office • Full-Time • Lisbon
Python
Java
DevOps
GCP
AWS
Docker
Cybersecurity
Burp Suite
ISO 27001
OWASP Top 10
PCI DSS
Threat Modeling
Apply
In office • Full-Time • London
DevOps
VMWare
Azure
IAM
Linux
Windows
Cybersecurity
ISO 27001
GDPR
Zero Trust
Microsoft Entra ID
Management
ServiceNow
Marketing
LinkedIn
Apply
≈ $19k – $42k per year (Estimated) • In office • 5+ years exp • Thiruvananthapuram
Python
Ruby
PowerShell
C#
Databases
PostgreSQL
DevOps
Rest API
Ansible
GCP
Azure
Jenkins
AWS
Docker
Kubernetes
IAM
Linux
Windows
Cybersecurity
Okta
CyberArk
HashiCorp Vault
BeyondTrust
LDAP
SIEM
Apply
≈ $24k – $57k per year (Estimated) • In office • 9+ years exp • Master's Degree • Kochi
AI/ML
AI Agents
Analytics
Power BI
Microsoft Excel
Apply
≈ $18k – $38k per year (Estimated) • In office • 3+ years exp • Noida
Java
DevOps
Rest API
Azure
AWS
IAM
SOAP
Cybersecurity
Active Directory
Management
Jira
ServiceNow
Apply
≈ $25k – $72k per year (Estimated) • In office • 18+ years exp • Bachelor's Degree • Bengaluru
Cybersecurity
ISO 27001
Apply
≈ $19k – $41k per year (Estimated) • In office • 5+ years exp • Chennai
Python
Ruby
PowerShell
C#
Databases
PostgreSQL
DevOps
Rest API
Ansible
GCP
Azure
Jenkins
AWS
Docker
Kubernetes
IAM
Linux
Windows
Cybersecurity
Okta
CyberArk
HashiCorp Vault
BeyondTrust
LDAP
SIEM
Apply
≈ $27k – $65k per year (Estimated) • In office • Full-Time • 4+ years exp • Bachelor's Degree • Bengaluru
Java
Kotlin
C#
Kotlin
Glide
C#
.NET
DevOps
CI/CD
Management
ServiceNow
Agile
ITSM
Apply
≈ $18k – $47k per year (Estimated) • In office • Bengaluru
Management
ITIL
Apply
Global WFM Manager 5 hours ago
≈ $16k – $34k per year (Estimated) • In office • Full-Time • 4+ years exp • Bengaluru
Apply
≈ $18k – $44k per year (Estimated) • In office • Full-Time • Bengaluru
Apply
≈ $13k – $25k per year (Estimated) • In office • Full-Time • 8+ years exp • Bachelor's Degree • Bengaluru
SQL
Databases
Snowflake
Management
Agile
Apply
See all jobs
This is one of many
974,315 more open roles from verified company boards, updated every day.