Security Analyst
Finastra · Bengaluru, Karnataka, India
Finastra · Bengaluru, Karnataka, India
# **Who are we?** At Finastra, we’re a global leader in financial services software, dedicated to expanding access to financial services and shaping what’s next for the industry. Our technology powers mission‑critical solutions across Lending, Payments and Universal Banking, supporting over 7,000 customers, including 80% of the world’s top 50 banks, in more than 110 countries. **What will you contribute?** The Cybersecurity Governance Office is responsible for defining, measuring, and enforcing enterprise cybersecurity standards through governance, risk management, and continuous compliance monitoring. The function acts as the central authority for translating cybersecurity policy into measurable outcomes and decision-ready insights across the organization. As part of the CGO, this role contributes by building the automation and reporting capabilities that enable scalable governance. This includes integrating data from multiple security tools, standardizing metrics, and delivering clear visibility into control effectiveness, risk posture, and operational performance. You will play a key role in moving the organization from manual, fragmented reporting to reliable, automated, and reusable data solutions. Your work will directly support cybersecurity leadership, engineering teams, and risk stakeholders in making informed decisions based on accurate, timely, and consistent data. **Role Overview** This role is an opportunity for a strong developer to apply engineering skills within a real‑world cybersecurity environment. As a Security Automation Engineer I, you will support the Cybersecurity organization by building clean, maintainable automation and reporting solutions that integrate data across diverse security tools used by Finastra’s product and enterprise security teams. You will work directly with senior engineers and security stakeholders across the CISO organization to turn loosely defined problems into reliable automation, data pipelines, and decision‑ready insights. Success in this role is measured by quality, ownership, and clarity of communication, not just output. This is not a ticket‑taking role; it is a guided execution role with real exposure and accountability. **What You Will Do** - Build automation and reporting solutions based on defined business and technical requirements across Cybersecurity teams - Develop and maintain Python‑based security automation and integration code - Query APIs and ingest data from multiple sources including security tools, databases, and structured files (JSON, XML, CSV, Excel), and normalize into reusable, consistent data models - Design, build, and maintain structured databases (e.g., SQL) to support scalable data storage and retrieval - Develop automated data ingestion pipelines using Python to collect, transform, and load data from sources such as files, SharePoint, and APIs into structured databases - Design and support reporting architecture that produce clear, decision‑ready security insights - Deliver Power BI reporting as a standard component of solutions, without requiring onboarding or ramp‑up time - Integrate automation and reporting solutions into Microsoft‑centric platforms, including SharePoint and Fabric‑based data services - Use GitHub effectively for source control, branching strategies, pull requests, code reviews, and documentation - Collaborate directly with senior engineers and cybersecurity stakeholders to clarify requirements, scope, and constraints - Manage multiple parallel work streams and proactively communicate progress, risks, and dependencies through written updates and lightweight tracking - Ensure all solutions are reliable, maintainable, and easy for other engineers to adopt without rework or tribal knowledge **What Success Looks Like** - Automation and integration solutions are clean, well-documented, and easy for others to support - Deliverables do not require rework due to fragility, poor structure, or unclear implementation - Stakeholders do not need to chase status, progress, or clarity - Risks, blockers, and dependencies are communicated early and clearly - Problems are well framed before code is written - Senior engineers trust your output and reuse your work **Required Skills and Experience** - Strong programming experience in Python - Proven ability to build Power BI reports independently from existing data sources - Experience connecting Power BI to structured data sources, including SQL databases and APIs, through governed data pipelines - Experience working with REST APIs and structured data formats - Strong working knowledge of SQL, including schema design, data modeling, and query optimization for analytical use cases - Experience building and maintaining data pipelines that move and transform data from raw sources into structured, reliable datasets - Hands‑on experience building automation such as schedulers, routines, or integrations - Ability to translate problem statements into engineered solutions with guidance - Strong written communication skills for documentation and status updates - Ability to manage time effectively across multiple parallel assignments - Azure DevOps experience (Boards, Repos, Pipelines) is a strong advantage **Preferred Qualifications** - Degree in Computer Science, Software Engineering, Data Science, or equivalent experience - Experience integrating or analyzing data from security or enterprise technology platforms - Familiarity with enterprise security practices or cybersecurity environments - Exposure to generative AI, prompt engineering, or LLM‑based solutions **Who This Role Is For** - Early‑career developers who want real responsibility and meaningful impact - Engineers who prioritize code quality, maintainability, and documentation - Individuals who take ownership and communicate proactively - People who enjoy ambiguity and problem framing as much as implementation - Those curious about how cybersecurity operates at enterprise and product scale