IT Security Analyst
Capco
Make my CV for this job, freeView job and applyYour CV, rewritten for this role using only your real experience. Sign in with Google and upload your CV. Nothing to install.
Skills named in this job
Read from the description itself, not inferred.
This role on the market
2,790 open security roles across 437 companies are on ApplySarthi right now, most of them in Bengaluru (116), Hyderabad (28), Pune (22).
- Security Engineer, AWS Cloud ResponseAmazon Corporate Services Pty Ltd
- Software Development Engineer, AWS SecurityAmazon Development Centre (London) Limited
- GRC Security SpecialistPayoneer
- Application Security EngineerTeliogroup
- Application Security EngineerPokemoncareers
What security roles keep asking for: AWS (29%), Python (26%), SIEM (14%), GCP (12%), CI/CD (12%) — counted across their open postings here.
Capco has 726 open roles listed here.
- Automation Tester - Salesforce-bengaluru
- Business Analyst - Procurement
- Business Analyst - Procurement
- Business Analyst - Procurement
- Business Analyst - Procurement
Counted across 14 company job boards, updated as roles open and close.
Preparing for this interview
Interviews for security roles keep coming back to AWS, Python, SIEM, GCP. Practise those questions before you sit with Capco.
Questions you are likely to be asked
- Why do you want to join Capco?
- What is your experience with IAM? Tell me one thing you learned the hard way.
- Tell me about an analysis that changed a decision. What did you find?
- How do you check that your numbers are right before you share them?
- Walk me through a dashboard or report you built. Who used it, and for what?
Prep Sarthi gives you a free mock interview: an AI interviewer asks you questions like these out loud, from your own CV and this job, and shows your score and your weakest answer.
Practise the IT Security Analyst at Capco interview free →CAPCO POLAND
*We are looking for Poland based candidate.
Capco is a fully independent, global management and technology consultancy. For 25 years we have combined innovative thinking with deep industry knowledge to deliver business consulting, digital transformation and technology services to Finance and Energy markets. Our collaborative and efficient approach helps clients reduce costs and manage risk and regulatory change while increasing revenues. We are thinkers, innovators, and disruptors. We are small enough to care but large enough to matter.
As an IT Security Analyst, you will play a key role in supporting a large-scale Secrets & Credential Management initiative. You will analyze current-state environments, identify control gaps, and define robust, scalable security requirements. Working across technical and business teams, you will help ensure that sensitive credentials are governed, controlled, and aligned with regulatory and operational expectations.
Key Responsibilities:
- Conduct end-to-end analysis of secrets and credential management practices across applications, infrastructure, and platforms
- Identify, classify, and document secrets, including ownership, usage, storage, lifecycle stage, and associated risks
- Assess control gaps (e.g., unmanaged credentials, hardcoded secrets, weak auditability) and define remediation approaches
- Define functional and non-functional requirements for centralized secrets management solutions
- Facilitate workshops with stakeholders to gather requirements, validate findings, and support governance activities
Required Skills and Experience:
- At least 5 years of experience in a similar role.
- At least 2 years of experience in working with IAM projects.
- Experience in IT security analysis, security requirements engineering, or security governance within complex environments
- Strong understanding of IAM, PAM, least privilege, and secure access governance principles
- Knowledge of credential types (passwords, SSH keys, API keys, tokens, certificates, service accounts)
- Ability to translate security risks and control gaps into actionable requirements
- Strong communication and documentation skills, with the ability to collaborate across technical and non-technical teams
Nice to have:
- Experience with secrets management tools such as CyberArk, HashiCorp Vault, or cloud-native solutions
- Familiarity with security frameworks (ISO 27001, NIST, CIS Controls)
- Experience in transformation or migration projects involving credential centralization
- Exposure to regulated or highly controlled environments
- Experience supporting enterprise-scale security initiatives
We have been informed of several recruitment scams targeting the public. We strongly advise you to verify identities before engaging in recruitment related communication. All official Capco communication will be conducted via a Capco recruiter.
We offer a flexible collaboration model based on a B2B contract, with the opportunity to work on diverse projects.
#LI-REMOTE
Match this job to your CV
ApplySarthi scores your CV against this role, shows the skills you are missing, and writes a tailored version for the application.
Check my match →Similar open roles
- AI Architect Capco · bengaluru
- AI EngineerCapco · pune
- AI Engineer_Agentic AICapco · bengaluru
- Alteryx DeveloperCapco · mumbai
- Automation Testing – Selenium Java and API Capco · bengaluru
- BA Automation Specialist - MumbaiCapco · mumbai
- BA -Capital Market - BangaloreCapco · bengaluru
- BA- InsuranceCapco · pune
Need answers during your interview? Try Live Sarthi.
Live Sarthi, an Interview Sarthi app, shows answer suggestions during the call.
- Hidden from supported screen sharingThe overlay stays out of supported Windows screen captures.
- Answers start in about 1.5 secondsResponse time varies with your connection and model.
- From your own CVYour projects and your experience, not a generic script.
- 30 minutes freeThen ₹99 for a 2-day pass with unlimited calls — you pay for the days you are interviewing, not a subscription.
A Windows app, from the same team as ApplySarthi.
Listed on greenhouse · posted 2026-04-10. ApplySarthi collects openings and links to application pages; the role is advertised by Capco, not by us.