Senior Corporate Security Analyst

Toast Toast · Enterprise · Bangalore, India · R & D : Security : Cybersecurity

Seeking a Senior Corporate Security Analyst in Bangalore to focus on hands-on corporate security execution and risk reduction across endpoints, identities, SaaS platforms, vendors, and data. The role involves owning CorpSec programs end-to-end, mentoring junior analysts, and scaling security practices. Responsibilities include operating security controls, performing risk assessments, leading oversight for endpoints and SaaS, driving vulnerability management, supporting IAM governance, conducting vendor security assessments, and assisting with data protection initiatives.

What you'd actually do

  1. Own and operate key corporate security controls across endpoint, SaaS, identity, vendor, and data security.
  2. Perform security risk assessments for business initiatives and translate findings into actionable remediation plans.
  3. Lead day-to-day security oversight for corporate endpoints and SaaS applications, including: EDR/XDR, device hardening, encryption, MDM/UEM
  4. Drive vulnerability management for corporate endpoints and internal business systems.
  5. Support enterprise IAM governance, including: Joiner / mover / leaver processes

Skills

Required

  • Endpoint security and EDR tools
  • Vendor security assessments
  • SOC 2 reviews
  • IAM concepts
  • Okta
  • PAM
  • access reviews
  • SaaS security
  • Shadow IT security
  • NIST CSF
  • ISO 27001
  • CIS Controls
  • IT and governance teams collaboration

Nice to have

  • Google Workspace security
  • DLP
  • GRC processes
  • ServiceNow GRC
  • OneTrust
  • security awareness training
  • phishing simulation
  • AI tools for threat detection
  • incident response
  • vulnerability management
  • Reco.AI
  • Torq
  • Splunk
  • DataDog
  • bug bounty platforms
  • Okta Device Trust
  • BeyondTrust
  • BeyondCorp
  • SIEM
  • SOAR
  • security certifications

What the JD emphasized

  • strong experience working in enterprise corporate security environments
  • own multiple CorpSec programs end-to-end
  • senior individual contributor
  • mentoring junior analysts
  • scale security practices across the organization
  • Hands-on experience with: Endpoint security and EDR tools (e.g., CrowdStrike)
  • Hands-on experience with: Vendor security assessments and SOC 2 reviews
  • Hands-on experience with: IAM concepts (Okta, PAM, access reviews)
  • Hands-on experience with: SaaS and Shadow IT security
  • Strong understanding of security frameworks (NIST CSF, ISO 27001, CIS Controls)
  • Experience working closely with IT and governance teams
  • Provide technical guidance and mentorship to P2 security analysts