Cyber Security Assurance Senior Analyst

Uber Uber · Consumer · Bangalore, India · Engineering

This role focuses on evaluating and enhancing the security of IT systems and infrastructure through control assessments, policy recommendations, and continuous monitoring. While it explores the use of LLM-based solutions for automating security tasks, the core function is cybersecurity assurance, not AI/ML development.

What you'd actually do

  1. Conduct control and configuration assessments to identify deviations from policy, standards, and baseline requirements, and provide guidance on remediation and compliance readiness.
  2. Advise improvements to policy, procedures, and standards based on control execution gap assessments.
  3. Assist in the implementation of required policies, procedures, and configurations; may make recommendations for improvements.
  4. Design, develop and implement continuous control monitoring techniques in partnership with Uber’s system ownership community and drive the implementation of automated control testing at scale.
  5. Lead monitoring of corrective actions of system audits; may assist in the documentation of Plan of Action and Milestones (POAM).

Skills

Required

  • A degree in information technology/computer information systems or related
  • 5+ years of work experience in Assurance/Risk Assessments/Security Issue Management domains.
  • Experience assessing control design and operating effectiveness across enterprise IT and cloud environments
  • Experience with audit remediation tracking, risk registers, and corrective action management.
  • Knowledge of common control frameworks and standards such as NIST CSF, NIST 800-53, ISO 27001, SOC 2, CIS, and PCI DSS.
  • Excellent written and verbal communication skills.

Nice to have

  • Certified Information Systems Auditor (CISA) certification.
  • Proven track record in leading IT audits, risk assessments, and control evaluations.
  • Demonstrated knowledge of IT audit methodologies and best practices.
  • Ability to leverage AI & data analytics to articulate stories in a risk & assurance lens.
  • Demonstrated ability to apply AI & automation innovation to the control testing process.
  • Strong attention to detail with an analytical mind and outstanding problem-solving skills.

What the JD emphasized

  • essential