Senior Analyst, Security Governance, Risk & Compliance
Barracuda · Bengaluru
- Experience3–4 yrs
- SalaryNot disclosed
- Work modeonsite
- Levelmid
- Posted21 Sept 2026
About Barracuda
Barracuda is hiring in Bengaluru in technology software. This role looks for around 3+ years of experience.
Skills
- PCI DSS
- ISO 27001
- ISO 27017
- ISO 27018
- ISO 42001
- Internal auditing
- Gap analysis
- Information security
- PCI ISA
- PCI QSA
- CompTIA Security+
The role
A GRC analyst at a cybersecurity company assesses information security programs and strengthens PCI DSS compliance, ISO 27001 frameworks, and cloud security. The work also applies internal auditing and gap analysis to make assessments scalable and data-driven.
Full job description
Description
Come join our passionate team! Barracuda is a leading cybersecurity company providing complete protection against complex threats. Our platform protects email, data, applications, and networks with innovative solutions, and a managed XDR service, to strengthen cyber resilience. Hundreds of thousands of IT professionals and managed service providers worldwide trust us to protect and support them with solutions that are easy to buy, deploy, and use.
We know a diverse workforce adds to our collective value and strength as an organization. Barracuda Networks is proud to be an employer that complies with all applicable national, state and local laws pertaining to nondiscrimination and equal opportunity regardless of race, gender, religion, sex, sexual orientation, national origin, or disability.
Envision yourself at Barracuda
We are seeking a motivated and detail-oriented Senior Analyst, Security Governance, Risk & Compliance (GRC) to join our Information Security team.
This role is primarily focused on supporting ISO 27001 and PCI DSS security compliance programs at Barracuda, and is inclusive of internally-led independent assessments related to those programs for Barracuda as a cloud service provider
The ideal candidate will have a keen interest in independently assessing programs as they exist currently, while simultaneously providing recommendations to management on how to mature them to enable them to become highly scalable, automated, and data-driven. This role will report directly to the Director of Security Governance, Risk & Compliance (GRC)
What You’ll Be Working On
Lead the execution and coordination of internal audit/internal assessment cycles for PCI DSS (SAQ-D), ISO 27001, ISO 27017, ISO 27018, ISO 42001Produce internal audit/assessment reports for managementServe as Barracuda’s in-house PCI SME, supporting security leadership in development of the PCI programSupport management in producing PCI SAQ-D Attestations of Compliance (AOC) for BarracudaLeading independently-performed gap analysis initiatives on a case by case basis against other industry standards, leveraging internal tools and technologies to modernize how we self-assess
What You Bring To The Role
Bachelor’s degree in information security, IT/Computer Science, or equivalentIndustry certifications such as CompTIA Security+ or equivalentInternal PCI DSS experiencePrior training or experience comparable to PCI ISA (Internal Security Assessor) or PCI QSA (Qualified Security Assessor) programsExperience with auditing various industry security frameworks such as ISO 27001, ISO 27017, ISO 27018, ISO 420013+ years of experience in Information Security or related roles
Nice to have
Experience in public cloud (AWS & Azure)Hands on experience using PowerBI or similar analytics platforms0-1 years hands on experience in the development of Agentic AI use cases and usage of various LLMs
What You’ll Get From Us
A team where you can voice your opinion, make an impact, and where you and your experience are valued. Internal mobility – there are opportunities for cross training and the ability to attain your next career step within Barracuda. In addition, you will receive equity, in the form of non-qualifying options.