Loading open roles
Loading open roles
Loading role

Job Description
Senior Analyst - Information Risk Management
|
Skill / Function |
Information Risk Management |
|
Location |
Bangalore |
|
Department |
Legal & Compliance |
|
Level |
Senior Analyst |
The role sits within Legal & Compliance and will support Information Risk Management activities across data privacy, information governance, compliance assessment, reporting, and stakeholder coordination. The Senior Analyst is expected to execute assessments independently, apply sound judgment to information handling decisions, and bring a practical understanding of technology platforms, tools, workflows, and data movement across business applications.
· Work on data privacy and information risk assessments, including review of data handling, retention, disposal, and information management requirements.
· Analyze whether information should be preserved, retained, archived, or destroyed in line with applicable regulatory, legal, and organizational requirements.
· Review information available across business applications, repositories, workflow platforms, and reporting tools, and prepare clear assessment of outputs and management reports.
· Assess information that moves outside the organization's network and supports approval, rejection, or escalation of requests in accordance with organizational policies.
· Conduct due diligence, compliance checks, document review, and e-discovery support activities, and prepare structured reports or summaries.
· Review technical workflows that capture, process, transfer, or store data, and assess related information management or risk requirements.
· Work with large data sets, trackers, and reporting sheets to identify gaps, trends, exceptions, and follow-up actions.
· Coordinate with internal stakeholders, technology teams, business users, and compliance teams to gather information, validate assessment of outputs, and close action items.
· Support training, refreshers, process documentation, and knowledge management activities for information risk and compliance processes.
· Prepare concise written summaries, compliance memos, status updates, and reports using inputs from multiple sources.
· 4-6 years of relevant experience in a legal, corporate, compliance, information governance, legal services, risk management, or legal outsourcing environment.
· Good exposure to legal documents, legal services, compliance operations, information management, or data privacy processes.
· Good understanding of data privacy, information governance, records management, data retention, data security, and compliance implementation concepts.
· Experience in preparing compliance reports, quality summaries, assessment of outputs, dashboards, trackers, or stakeholder-facing updates.
· Strong written and verbal communication skills in English, with the ability to engage stakeholders through email, calls, and follow-up discussions.
· Ability to understand business context, ask relevant clarifying questions, and translate assessment findings into practical action items.
· Comfortable working in a team-based and results-oriented environment with a long-term interest in building expertise in information risk management.
The candidate should have basic to intermediate understanding of technology and tools used in compliance, information management, and business operations. Hands-on depth is not expected across every tool, but the candidate should be comfortable understanding how tools capture, store, move, export, and report information.
· Productivity and reporting: MS Office Suite, especially Excel, Word, PowerPoint, Outlook, and Teams; ability to work with trackers, pivots, filters, comments, versioning, and basic reporting outputs.
· Workflow and business applications: Basic understanding of ticketing/workflow tools, document management platforms, case management tools, access repositories, shared drives, and collaboration platforms.
· Data and reporting awareness: Ability to interpret data fields, system extracts, application reports, audit logs, user access information, and exception reports with guidance.
· Risk and compliance tools: Exposure to data privacy platforms, data loss prevention, information protection, retention, e-discovery, or access review tools will be an added advantage.
· Technical workflow understanding: Ability to follow and document high-level data flows, system workflows, approvals, handoffs, integrations, and information lifecycle steps.
· Automation awareness: Basic familiarity with dashboards, workflow automation, and modern productivity tools is preferred; advanced coding is not required.
· Ability to work independently with limited supervision and manage assigned activities end to end.
· Logical thinking, attention to detail, and ability to identify inconsistencies, gaps, and control issues.
· Strong communication, stakeholder management, and professional writing skills.
· Ability to manage large volumes of information and organize outputs in a clear, structured, and quality-oriented manner.
· Ability to use quality methods, checklists, documentation standards, and project tools consistently.
· Curiosity to understand applications, workflows, and business processes from an information risk perspective.
· Experience or exposure to similar legal, compliance, risk, privacy, or information governance work environment.