FlexHired LogoFlexHired
Logo of Jumio

Jumio

Senior Information Security Risk Analyst

Job Summary

The role involves managing information security risks through assessments, risk mitigation, and stakeholder collaboration. The candidate supports GRC activities, maintains security certifications like SOC2, ISO 27001, and PCI DSS, and ensures compliance monitoring. Strong communication, decision-making skills, and experience with GRC tools are essential. The position requires a proactive approach to cybersecurity, risk analysis, and supporting security policies within a fast-paced environment.

Required Skills

Regulatory Compliance
Cybersecurity
Security Policies
Risk Assessment
Risk Management
Information Security
Security Compliance
Security Standards
Security Certifications
Security Audit
Vendor Risk Management
ISMS
GRC solutions

Benefits

Security Awareness Training
Industry Developments Updates

Job Description

Role Purpose:

The Risk Analyst operates within the governance, risk & compliance service provided by the Jumio security function.

The Risk Analyst will be responsible for identifying, analyzing, and influencing the management of information risks across the organization.

Role Value:

The role holder reports into the GRC Lead and they need to positively influence other members of the security team as well as other departments across Jumio.

Responsibilities:

The key responsibilities of the role are as follows:

Information Security Risk Management

  • Conducts information security risk assessments of internal processes,applications and software solutions.
  • Identifies opportunities to improve risk posture, developing solutions for remediating or mitigating risks and assessing the residual risk.
  • Identifies, analyzes, assesses, monitors, and tracks risks in the information security risk register.
  • Collaborates with internal stakeholders (Engineering , HR , Machine Learning , IT , Finance , Sales, Privacy,Legal, etc.) as part of the risk management program.
  • Participates in ad-hoc, non-systematic risk assessment requests.
  • Evaluates and manages security exception requests, ensuring compliance with security standards and mitigating associated risks.
  • Prepares security exception risk profile and reports to relevant stakeholders.

Third Party Risk Management

  • You support the delivery of vendor risk management and security assurance services, for high-speed business initiatives. You perform focused risks assessments of existing or new services and technologies.
  • Identify and collaborate with internal groups with outsourcing and vendor oversight responsibilities to reduce duplication of effort and ensure overall compliance with the program.

Governance Risk & Compliance

  • You support governance risk and compliance activities within the ISMS
  • Supporting the ongoing maintenance of independent security certification activities for SOC2, ISO 27001 and PCI DSS.
  • You support the management and high-quality output from the GRC Platform.
  • You support our security compliance monitoring model.
  • You support the maintenance of security KPI metrics and reporting regularly.
  • You support the delivery of security awareness training and knowledge to all staff.
  • You support the management of security policies and processes, to ensure operational efficiency, meet regulatory compliance, and support regional demands.
  • You support external and internal audit activities as required.
  • You assist fellow Jumio’s in understanding and pragmatically responding to security audit findings.
  • Stays updated with the latest cybersecurity trends, emerging threats, and industry developments to provide proactive risk mitigation recommendations.

Qualifications, Experience & Skills Required

  • Experience in managing GRC solutions, and familiarity with Eramba or equivalent.
  • Experience in managing 3rd party vendor assurance tools.
  • Experience in supporting fast-paced GRC capabilities.
  • An ability to identify and assesses the severity and potential impact of risks and communicate risk assessment findings to risk owners outside Information Security in a way that consistently drives objective, fact-based decisions that optimize the trade-off between risk mitigation and business performance
  • Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one
  • An ability to effectively influence others to modify their opinions, plans, or behaviours
  • You are a strong communicator, and you get your message across well and clearly, you make people interested in listening to you.
  • An understanding of business needs and commitment to delivering high-quality, prompt, and efficient service to the business
  • Excellent prioritization capabilities, with an aptitude for breaking down work into manageable parts, effectively assessing the priority and time required to complete each part
  • An ability to work on several tasks simultaneously and pay attention to sources of information from inside and outside one’s network within an organization
  • You move at speed and enjoy working within a fast-paced, dynamic environment.
  • You'll need passion and energy for the subject; you'll care about shaping positive outcomes.
  • You'll need to have a strong desire and hunger to learn as much as possible.
  • You'll have a willingness to embrace change, adapt and evolve to meet the needs of the subjects we manage.

Great to have Experience and Qualifications:

  • 3+ years of work experience in information security, especially in an Information Risk Analysis role
  • 3+ years of experience in a Security Risk Management (SRM) and/or IT Audit role
  • 3+ years of experience with regulatory compliance and information security management frameworks (SOC2, IS0 27000, and PCI DSS)
  • Desirable to be Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), and/or Certified Information Systems Auditor (CISA)
  • BS or MA in Business, Computer Science, Information Security, or a related field

Key Characteristics and Attitudes:

  • Positive energy and outcome-driven
  • Passion for the subject
  • Happy moving subjects along at a pace with minimum details by implementing them
  • Enjoy working in a self-organizing team environment
  • Thinks further than the solution appears to require
  • Adaptable and flexible
  • Fast learner, high capacity for abstract thinking and structured approach to work
  • The big picture and the detail
  • High IQ and EQ
  • Excellent analytical, conceptual and communications skills in spoken and written English
  • Articulate and persuasive

Jumio Values:

IDEAL: Integrity, Diversity, Empowerment, Accountability, Leading Innovation

Equal Opportunities:

Jumio is a collaboration of people with different ideas, strengths, interests and cultures. We welcome applications and colleagues from all backgrounds and of all statuses.

About Jumio:

Jumio is a B2B technology company dedicated to eradicating online identity fraud, money laundering and other financial crimes to help make the internet safer. We leverage AI, biometrics, machine learning, liveness detection and automation to create solutions that are trusted by leading brands worldwide and respected by industry thought leaders.

Jumio is the leading provider of online identity verification, eKYC and AML solutions. With a global footprint, we’re expanding the team to meet strong client demand across a range of industries including Financial Services, Travel, Sharing Economy, Fintech, Gaming, and others.

Applicant Data Privacy

We will only use your personal information in connection with Jumio’s application, recruitment, and hiring processes, as described in Jumio’s Applicant Privacy Notice. If you have any questions or comments, please send an email to [email protected].

Interested in this job?

Application deadline: Open until filled

Logo of Jumio

Jumio

Accelerate customer onboarding, combat fraud, and ensure compliance with Jumio's industry-leading identity verification platform.

See more jobs
Date PostedJuly 17th, 2025
Job TypeFull Time
LocationIndia (remote)
SalaryCompetitive rates
Exciting remote opportunity (requires residency in India) for a Senior Information Security Risk Analyst at Jumio. Offering competitive salary (full time). Explore more remote jobs on FlexHired!

Safe Remote Job Search Tips

Verify Employer Thoroughly

Research the company's identity thoroughly before applying. Check for a professional website with contacts, active social media, and LinkedIn profiles. Verify details across platforms and look for reviews on Glassdoor or Trustpilot to confirm legitimacy.

Never Pay to Get a Job

Legitimate employers never require payment for applications, training, background checks, or equipment. Always reject upfront payment requests or demands for bank details, even if they claim it's for purchasing necessary work gear on your behalf.

Safeguard Your Personal Information

Protect sensitive data like SSN, bank details, or ID copies. Share this only after accepting a formal, written job offer. Ensure it's submitted via a secure company system or portal, never through insecure channels like standard email attachments.

Scrutinize Communication & Interviews

Watch for communication red flags: poor grammar, generic emails (@gmail), vague details, or undue pressure. Be highly suspicious of interviews held only via text or chat apps; legitimate companies typically use video or phone calls.

Beware of Unrealistic Offers

If an offer's salary or benefits seem unrealistically high for the work involved, be cautious. Research standard pay for similar roles. Offers that appear 'too good to be true' are often scams designed to lure you into providing information or payment.

Insist on a Formal Contract

Always secure and review a formal, written job offer or employment contract before starting work or sharing final personal details. Ensure it clearly defines your role, compensation, key terms, and conditions to avoid misunderstandings or scams.

Related Jobs

Full Time
India (remote)
Full Time
India (Remote)

Subscribe Newsletter

Never miss a remote job opportunity. Subscribe to our newsletter today and receive exclusive job alerts, career advice, and industry insights delivered straight to your inbox.