At Broadridge, we've built a culture where the highest goal is to empower others to accomplish more. If you're passionate about developing your career, while helping others along the way, come join the Broadridge team.
Key Responsibilities:
- SaaS Visibility and Risk Identification
Ensure ongoing discovery and classification of SaaS usage across the organization, leveraging CASB and other telemetry to identify unsanctioned platforms, assess risk levels, and trigger appropriate security review processes. - Security Baseline Enforcement
Ensure all SaaS platforms meet Broadridge's minimum security requirements (e.g., SSO, MFA, RBAC, logging, IP restrictions, encryption). Support teams in implementing and validating controls and identify drift over time. - Access, Integration, and Data Governance
Want more jobs like this?
Get Data and Analytics jobs in Bangalore, India delivered to your inbox every week.
Oversee proper identity and access controls, secure API integrations, and enforcement of data classification, retention, and encryption policies. Coordinate with IAM, Privacy, and business teams to maintain compliance.
Ensure SaaS platforms generate appropriate logs, integrate with enterprise SIEM (e.g., Splunk), and support real-time alerting. Confirm runbooks and escalation paths are in place for incident response and vendor coordination.
Maintain visibility into SaaS configurations, ensure changes follow Broadridge change control standards, and verify that lower environments are also governed appropriately.
- Bachelor's degree in computer science, information technology or a related field.
- 7+ years of experience in Information Security, with at least 3 years focused on SaaS security or cloud platforms.
- Strong understanding of SaaS-specific risks, architecture, and controls.
- Experience working with CASB, SSPM, and SIEM tools (e.g., Microsoft Defender, Splunk).
- Understanding of identity and access management in the context of SaaS platforms and integrations with other systems.
- Strong knowledge of data protection, encryption, secure integration practices, and incident response procedures.
- Understanding of industry frameworks (e.g., NIST SP 800-53, CSA, CIS).
- Technical knowledge of cloud-native platforms and integrations.
- Experience conducting or supporting technical risk assessments for SaaS vendors.
- Excellent written and verbal communication skills; ability to articulate technical topics clearly.
- Strong analytical skills and attention to detail.
- Ability to work independently in a global, matrixed organization.
- Comfortable working in rotational shifts and managing competing priorities.
- CCSK, CRISC, CISA, ISO 27001, or similar cloud/security-related certifications.
- Experience working in financial services or other highly regulated environments.