Your browser does not support javascript! Please enable it, otherwise web will not work for you.

Cyber Risk Analyst @ Sophos

Home > Assessment / Advisory






 Cyber Risk Analyst

Job Description

As a Cyber Risk Analyst I, you will work proactively in assessing and prescribing remediation actions related to vulnerabilities identified within Sophos customers environments. You will work closely with senior analysts and advisors to analyze data, conduct cyber risk assessments, and develop strategies to enhance our customers security posture.
You ll be part of the Sophos Managed Risk team, which helps organizations proactively reduce cyber risk by identifying, prioritizing, and remediating vulnerabilities across both internal and external attack surfaces. The team leverages industry-leading exposure management technology, powered by Tenable, to uncover previously unknown assets and continuously monitor them for potential security weaknesses. They evaluate vulnerabilities in the context of real-world exploitability, emerging threats, and business impact, enabling customers to focus on remediation efforts where it matters most. The team delivers clear risk insights, actionable remediation guidance, and expert analysis, while also tracking newly disclosed and critical vulnerabilities as they arise. By combining deep technical expertise with close customer collaboration, the Sophos Managed Risk team plays a crucial role in strengthening security posture, reducing exposure, and preventing attacks before they impact business operations.
What you will do
  • Conduct recurring vulnerability scanning on enterprise assets; report discovered vulnerabilities .
  • Monitor and review vulnerability and compliance scan results, tracking remediation against service objectives
  • Assist senior-level team members in d evelop ing risk-based remediation plans with proposed solutions for identified vulnerabilities
  • Stay informed about the threat landscape to prioritize vulnerabilities and adapt security measures accordingly
  • Engage in continuous, self-driven learning to stay updated on trends, strategies, and technologies in the Vulnerability Management space
  • Maintain strong working relationships and credibility amongst groups within the Sophos Managed Services organization
What you will bring
  • 1+ years of experience in conducting vulnerability assessments, attack surface management preferably in both IT and OT (Operational Technology) environments
  • Must be able to thrive within a team environment as well as on an individual basis
  • Entry-level understanding of Vulnerability Management practices and risk analytics/modeling
  • Proficient in utilizing vulnerability scanning tools, e.g., Nessus/Tenable
  • Experience in tracking trends and configuring systems to minimize false positives and focus on true events
  • Exceptional writing, documentation, and presentation skills to effectively communicate findings to customers/stakeholders
  • Ability to prioritize impactful vulnerabilities and minimize noise often associated with vulnerability tools
  • Understanding of network-based, system-level, cloud, and application-layer attacks and their mitigation methods
  • Understanding of vulnerability classification and scoring methodologies (CVSS, CVE, CWE) and fundamental grasp of risk vs severity
  • Willingness to work outside of standard business hours including weekends and holidays the Sophos Managed Risk service is 24X7X365
  • Skilled in managing time independently while juggling multiple projects concurrently in a fast-paced environment
  • Excellent customer service skills
  • Degree in one or more of the following fields: Cybersecurity, Information Technology, Computer Science, or related fields.
Disclaimer: This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.

Job Classification

Industry: IT Services & Consulting
Functional Area / Department: Risk Management & Compliance
Role Category: Assessment / Advisory
Role: Risk Analyst
Employement Type: Full time

Contact Details:

Company: Sophos
Location(s): Delhi, NCR

+ View Contactajax loader


Keyskills:   Computer science Managed services Risk analytics Artificial Intelligence SIEM Vulnerability Customer service Information technology Recruitment Business operations

 Fraud Alert to job seekers!

₹ Not Disclosed

Sophos

Powered by SophosLabs a global threat intelligence and data science team Sophoscloud-native and AI-enhanced solutions secure endpoints (laptops, servers and mobile devices) and networks against evolving cybercriminal tactics and techniques, including automated and active-adversary breaches, ransomwa...