Synopsys

Information Security Analyst - GRC

Synopsys
onsite mid full-time Bengaluru
Apply →

First indexed 5 Apr 2026

Description

At Synopsys, we drive the innovations that shape the way we live and connect. Our technology is central to the Era of Pervasive Intelligence, from self-driving cars to learning machines. We lead in chip design, verification, and IP integration, empowering the creation of high-performance silicon chips and software content.

Join us to transform the future through continuous technological innovation.

As an Information Security Analyst, you will be an integral part of the Synopsys Corporate Information Security group, working within a mature Governance, Risk, and Compliance (GRC) Team. This team collaborates closely with the Director of Information Security, Manager of GRC, and stakeholders across the organization to raise the overall security and compliance posture for Synopsys.

Your responsibilities will include:

  • Identifying, documenting, monitoring, and reporting on risk register items, KPIs/KRIs, including the monitoring of security control efficacy.
  • Demonstrating experience with governance, risk, and compliance tools.
  • Working with security control frameworks such as ISO 27001, SOC 2 Type II, NIST 800-53, NIST CSF, and similar.
  • Presenting security risks to a wide audience, including risk owners and other stakeholders.
  • Interacting with Synopsys IT and business stakeholders to understand risks to critical infrastructure by defining potential business impact with the responsibility to apply effective mitigation strategies.
  • Providing guidance on control implementations related to governance frameworks, regulations, and corporate security policies.
  • Understanding of security functions including Incident Management, Change Management, Identity and Access Management, and Vendor Security Risk Management.
  • Conducting third-party (vendor) risk assessments in collaboration with stakeholders.
  • Providing security requirements to both internal partners and external third-party providers.
  • Effectively communicating and working with a global team.
  • Maintaining, enforcing, and tracking the Synopsys Information Security Exception process.
  • Staying current with industry, regulatory, and legal requirements relevant to security, compliance, and privacy.

You will be responsible for enhancing Synopsys' overall security and compliance posture by building and improving the GRC portfolio. You will also enable and transform the risk management program to address the evolving cybersecurity threat landscape. Ensure regulatory compliance as the company continues to grow. Strengthen risk assessments of suppliers and partners, contributing to a robust security framework.

To be successful in this role, you will need:

  • A bachelor's degree in Computer Science, Information Systems, or a related field.
  • Typically, 5-7 years of experience in a related field.
  • Knowledge of common certification and attestation programs such as ISO 27001 and SOC 2 Type II, ISO 31000.
  • Practical working experience with control frameworks like ISO 27001, NIST 800-53, SOC 2 Type II and NIST CSF.
  • Excellent organizational skills with attention to detail and the ability to multitask for project prioritization.
  • Effective communication skills with internal and external customers, executive managers, and team members.
  • Ability to understand the intent of compliance requirements to provide effective and meaningful examination.

We offer a comprehensive range of health, wellness, and financial benefits to cater to your needs. Our total rewards include both monetary and non-monetary offerings. Your recruiter will provide more details about the salary range and benefits during the hiring process.

At Synopsys, we want talented people of every background to feel valued and supported to do their best work. Synopsys considers all applicants for employment without regard to race, color, religion, national origin, gender, sexual orientation, age, military veteran status, or disability.

This listing is enriched and indexed by YubHub. To apply, use the employer's original posting: https://careers.synopsys.com/job/bengaluru/information-security-analyst-grc/44408/93409691360