×
Register Here to Apply for Jobs or Post Jobs. X

Cybersecurity Controls Testing Analyst

Job in 411001, Pune, Maharashtra, India
Listing for: Mizuho
Full Time position
Listed on 2026-09-03
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection
Job Description & How to Apply Below
Why Mizuho
At Mizuho, we provide the stability of an international industry leader with the career trajectory of a growing business. Our steady, strategic growth gives our people at all levels rewarding degrees of responsibility and richer work experience than a boutique firm or an established giant could offer alone.

It’s the local expertise of our employees that makes our global network so powerful. By collaborating with colleagues and clients who share the same ambition and drive, you can amplify your sphere of influence and base of knowledge as part of one of the largest banks in the world.

Summary:

The Cybersecurity Controls Testing Analyst will be part of the CISO Security Risk & Assurance (SRA) organization and support the execution of a centralized Cybersecurity Controls Testing function.
The role will work closely with Cybersecurity Identity & Access Management (IAM), Cyber Defense, and other technology teams to independently assess the design and operating effectiveness of cybersecurity controls. This role is responsible for evaluating control execution, reviewing supporting evidence, identifying deficiencies, and documenting testing results in accordance with established testing methodologies.

The function operates independently of control owners to provide objective assurance over the effectiveness of cybersecurity controls.

Key Responsibilities:

Cybersecurity Control Testing
Execute testing of cybersecurity controls across Identity & Access Management, Cyber Defense, Vulnerability Management, Security Monitoring, Endpoint Security, Infrastructure Security, and related domains.
Perform design effectiveness and operating effectiveness testing.
Execute test procedures and testing scripts based on defined control objectives and standards.
Collect, review, and validate evidence provided by control owners.
Assess whether evidence demonstrates effective control execution.
Document testing activities, observations, and conclusions.
Identify control deficiencies, exceptions, and compliance gaps.
Escalate issues to senior testing team members as appropriate.
Stakeholder Collaboration
Work with cybersecurity and technology teams to understand control processes and evidence requirements.
Participate in walkthroughs and control discussions with stakeholders.
Maintain independence while building effective working relationships with control owners.
Support audit and regulatory information requests as needed.
Reporting & Remediation
Prepare testing work papers, evidence reviews, and testing documentation.
Assist with remediation tracking and follow-up testing activities.
Maintain accurate testing records and testing metrics.
Support preparation of management reporting and testing summaries.
Continuous Improvement
Participate in efforts to improve testing methodologies, templates, and documentation standards.
Identify opportunities to improve testing efficiency and effectiveness.
Develop knowledge of cybersecurity technologies, controls, and industry frameworks.

Required Qualifications:

Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Risk Management, or related discipline.
3+ years of experience in Cybersecurity, IT Risk, IT Audit, Cybersecurity GRC, Technology Controls, Information Security, or Internal Controls.
Working knowledge of cybersecurity and technology control concepts.
Strong analytical, problem-solving, and documentation skills.
Ability to review evidence and identify inconsistencies or control gaps.
Strong written and verbal communication skills.
Ability to manage multiple assignments and priorities.

Preferred Qualifications:

Experience performing ITGC, cybersecurity controls testing, internal audit, or technology risk assessments.
Familiarity with NIST, ISO 27001, COBIT, CIS Controls, or similar frameworks.
Understanding of IAM, Vulnerability Management, Security Operations, Endpoint Security, or Infrastructure Security controls.
Certifications such as Security+, SSCP, CySA+, or equivalent.

Company Overview:

Mizuho Pune is an integral part of Mizuho Financial Group, one of the world’s leading financial institutions with a strong global presence across the Americas, EMEA, and Asia. Based in…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary