sophos logo

Cyber Risk Analyst

Sophos

India

GRC

Posted 4 months ago

midunknown

Job Description

About Us Sophos is a cybersecurity leader defending 600,000 organizations globally with an AI-driven platform and expert-led services. Sophos meets organizations wherever they are in their security maturity and grows with them to defeat cyberattacks. Its solutions combine machine learning, automation, and real-time threat intelligence with frontline human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response.   Sophos offers industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection and response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats.   Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security Service Providers (MSSPs), resellers and distributors, marketplace integrations, and cyber risk partners, giving organizations the flexibility to choose trusted relationships when securing their business. Sophos is headquartered in Oxford, U.K. More information is available at www.sophos.com.

Role Summary

As a Cyber Risk Analyst I, you will work proactively in assessing and prescribing remediation actions related to vulnerabilities identified within Sophos customers’ environments. You will work closely with senior analysts and advisors to analyze data, conduct cyber risk assessments, and develop strategies to enhance our customers’ security posture.  

You’ll be part of the Sophos Managed Risk team, which helps organizations proactively reduce cyber risk by identifying, prioritizing, and remediating vulnerabilities across both internal and external attack surfaces. The team leverages industry-leading exposure management technology, powered by Tenable, to uncover previously unknown assets and continuously monitor them for potential security weaknesses. They evaluate vulnerabilities in the context of real-world exploitability, emerging threats, and business impact, enabling customers to focus on remediation efforts where it matters most. The team delivers clear risk insights, actionable remediation guidance, and expert analysis, while also tracking newly disclosed and critical vulnerabilities as they arise. By combining deep technical expertise with close customer collaboration, the Sophos Managed Risk team plays a crucial role in strengthening security posture, reducing exposure, and preventing attacks before they impact business operations. 

Share:WhatsAppLinkedIn

Not ready to apply?

Get weekly alerts for new GRC jobs:

Share your cyber salary

Anonymous. No login, no name. Helps everyone see real pay by role and country.

Hiring context

✅ Verified open on Aug 26, 2026 · posted 8 days ago

📈 143 open roles at Sophos as of Aug 31, 2026: 17 security-specific, 0% remote, 3% show pay (+1 vs last week).

GRC career context

💰 GRC Analyst roles in India typically band $9k - $24k (curated benchmark, ₹7.5L–₹20L local). Check your own salary →

Hiring for a role like this?

Reach cybersecurity professionals browsing the board - your listing goes live instantly.

Post a job →

Related cybersecurity jobs

Stay ahead of the curve. Get new infosec jobs in your inbox.