Sun King

Cyber Risk Analyst

India full-time Mid Salary not listed
full-time Mid level Technology & IT Curated
Sign in to apply Free account — we bring you straight back to this role.

About the role

Job location: Remote in India

About the role:We are looking for a Cyber Risk Analyst to strengthen our governance, risk, and compliance posture across the organization. In this role, the Cyber Risk Analyst will drive cyber security audits, vendor security reviews, business continuity (BCP/DR) drills, and security awareness initiatives, while supporting the implementation of frameworks such as NIST Cybersecurity Framework (CSF) and ISO 27001 ISMS. This role is ideal for someone who enjoys working cross‑functionally, can communicate clearly with both technical and non‑technical stakeholders, and is comfortable working remotely with high ownership and accountability.

What you will be expected to do

Cyber Security Audits & Assessments (30%)

Plan and execute internal cyber security audits and control reviews across applications, infrastructure, and business processes.

Document findings, assess risk and impact, and track remediation through closure with respective teams.

Vendor and Third‑party Security Reviews (30%)

Conduct security due diligence for vendors and third parties: review security questionnaires, certifications, and technical controls to ensure they meet organizational requirements.

Identify and track vendor risks, recommend mitigation measures, and support contractual security requirements where needed.

Business Continuity and BCP/DR drills (25%)

Work with stakeholders to maintain and test business continuity and disaster recovery (BCP/DR) plans.

Plan, coordinate, and document tabletop exercises and technical BCP/DR drills, track and follow up on corrective actions.

Cyber Governance and Risk Management (10%)

Maintain up‑to‑date security policies, standards, procedures, and guidelines, ensuring alignment with NIST CSF, ISO 27001, and relevant regulations.

Prepare regular reports and dashboards on audit findings, risk status, BCP drill outcomes, vendor risk posture, and ISMS/NIST CSF progress for management.

Maintain and update the cyber risk register, working with control owners and business stakeholders to identify, assess, and prioritize risks.

Perform risk assessments (likelihood/impact), propose risk treatment options (mitigate, accept, transfer, avoid), and track treatment plans to closure.

Cyber Security Awareness & Training (5%)

Develop and deliver cyber security awareness sessions and targeted training for employees, including phishing awareness, secure handling of data, and role‑based security topics.

Create clear, engaging communication materials (presentations, FAQs, quick guides) to improve security culture.

You might be a strong candidate if you have/are

Bachelor's degree in any engineering discipline.

At least 3 years of experience in cyber governance, risk and compliance domain.

Experience in implementing security controls and processes across business functions adhering to NIST CSF, ISO 27001 standards.

Practical experience into at least 70% of the above-mentioned responsibilities.

Exposure to industry standards and regulations (e.g., SOC 2, ISO 27001, GDPR/DPDP etc.).

Security certifications such as CISA, ISO 27001 Lead Implementer / Lead Auditor is preferred.

AI‑governance or AI‑risk credentials such as ISO/IEC 42001 training, NIST AI RMF Architect/Lead Implementer, or recognized AI Security & Governance certifications is a strong plus.

Good communication and interpersonal skills, with the ability to engage effectively with diverse stakeholders.

What Sun King offers

Professional growth in a dynamic, rapidly expanding, high-social-impact industry

An open-minded, collaborative culture made up of enthusiastic colleagues who are driven by the challenge of innovation towards profound impact on people and the planet.

A truly multicultural experience: You will have the chance to work with and learn from people from different geographies, nationalities, and backgrounds.

Structured, tailored learning and development programs that help you become a better leader, manager, and professional through the Sun King Center for Leadership.

Originally posted on Himalayas

Interview prep

Walk in with sharper answers.

Use this as a quick practice sheet before you speak with the employer.

Mid
Technology & IT Remote Collaboration Cyber Risk Analyst Technology Mid level

Likely questions

  1. Tell us about work you have done that is close to the Cyber Risk Analyst role.
  2. How would you approach your first 30 days at Sun King?
  3. Which of Remote Collaboration, Cyber and Risk have you used recently, and what did it help you achieve?
  4. Describe a time you solved a problem without waiting to be told exactly what to do.
  5. How do you handle busy days, changing priorities, or pressure at work?

Prepare before the call

  • A recent example that proves your experience with Remote Collaboration, Cyber and Risk.
  • One short story with a problem, your action, and the result.
  • Two examples that show the strengths listed on your CV.
  • A clear reason why this role and company interest you.
  • Your availability, preferred work style, and salary expectations.

Ask them

  • What would success look like in the first 90 days?
  • What are the main problems this hire should help solve?
  • How does the team give feedback and measure good work?
  • What does a normal working week look like for this role?
Practice line

I am interested in the Cyber Risk Analyst role because I can bring practical experience in Remote Collaboration, Cyber and Risk, learn the team quickly, and contribute to the outcomes Sun King needs from this hire.

Related jobs.

More roles from this company or category.