Track Manager (Support & Operations)
About this role
Job Summary
Security Risk Assessment Analyst - L3 Role Summary The Security Risk Assessment (SRA) L3 Analyst is responsible for conducting advanced security risk assessments, identifying vulnerabilities, evaluating security controls, and providing recommendations to mitigate risks across applications, infrastructure, cloud environments, and business processes. The role requires strong expertise in cybersecurity frameworks, risk management, compliance, and stakeholder engagement.
Key Responsibilities
Key Responsibilities • Perform comprehensive security risk assessments for applications, systems, cloud platforms, and third-party vendors. • Identify, analyze, and evaluate cybersecurity risks and recommend mitigation strategies. • Review security architecture and design documents to assess security posture. • Conduct threat modeling and risk analysis for new and existing solutions. • Evaluate compliance with security standards and frameworks such as ISO 27001, NIST, CIS, SOC 2, and regulatory requirements. • Collaborate with development, infrastructure, cloud, and business teams to address identified risks. • Track risk remediation activities and validate closure of security findings. • Prepare detailed risk assessment reports and present findings to stakeholders. • Support internal and external audits related to information security and risk management. • Provide security guidance for cloud migrations, digital transformation initiatives, and new technology implementations. • Mentor junior analysts and support continuous improvement initiatives.
Skill Requirements
Key Responsibilities • Perform comprehensive security risk assessments for applications, systems, cloud platforms, and third-party vendors. • Identify, analyze, and evaluate cybersecurity risks and recommend mitigation strategies. • Review security architecture and design documents to assess security posture. • Conduct threat modeling and risk analysis for new and existing solutions. • Evaluate compliance with security standards and frameworks such as ISO 27001, NIST, CIS, SOC 2, and regulatory requirements. • Collaborate with development, infrastructure, cloud, and business teams to address identified risks. • Track risk remediation activities and validate closure of security findings. • Prepare detailed risk assessment reports and present findings to stakeholders. • Support internal and external audits related to information security and risk management. • Provide security guidance for cloud migrations, digital transformation initiatives, and new technology implementations. • Mentor junior analysts and support continuous improvement initiatives. Required Skills Technical Skills • Security Risk Assessment methodologies • Threat Modeling (STRIDE, PASTA, etc.) • Vulnerability Assessment and Management • Cloud Security (Azure, AWS, GCP) • Application Security Concepts • Network Security Fundamentals • Identity and Access Management (IAM) • Security Architecture Review • Risk Registers and Risk Treatment Planning Frameworks & Standards • ISO 27001 • NIST Cybersecurity Framework • NIST SP 800-53 • CIS Controls • OWASP Top 10 • SOC 2 • PCI DSS (preferred) Experience • 5-8+ years of experience in Information Security, Cybersecurity, or Risk Management. • 3+ years of hands-on experience conducting security risk assessments. • Experience in enterprise, cloud, and application security environments. • Experience working with business and technical stakeholders. Preferred Certifications • CISSP • CISM • CRISC • ISO 27001 Lead Implementer/Auditor • CCSK or CCSP • CEH (preferred)
Other Requirements
Key Competencies • Risk Analysis and Decision Making • Stakeholder Management • Problem Solving • Communication and Reporting • Technical Leadership • Analytical Thinking • Attention to Detail Expected Deliverables • Security Risk Assessment Reports • Risk Register Updates • Threat Models • Security Review Recommendations • Remediation Tracking Reports • Compliance Gap Assessment Reports
Frequently Asked Questions
Is the salary disclosed for the Track Manager (Support & Operations) position at HCLTech?
Where is the Track Manager (Support & Operations) position at HCLTech located?
How do I apply for the Track Manager (Support & Operations) position at HCLTech?
When was the Track Manager (Support & Operations) job at HCLTech posted?
You'll be redirected to HCLTech's official application page on successfactors.