Information Security Analyst
Wells Fargo
- Location
- Bengaluru, India
- Work model
- On-Site
- Level
- Mid
- Posted
- Sep 10, 2026
Skills
About this role
About Wells Fargo India Wells Fargo India enables global talent capabilities for Wells Fargo Bank NA., by supporting business lines and staff functions across Technology, Operations, Risk, Audit, Process Excellence, Automation and Product, Analytics and Modeling. We operate in Hyderabad and Bengaluru locations. Department Overview: Wells Fargo views Cyber security as enabling lines of business to mitigate information security risk in accordance with our risk appetite. Through a framework that addresses policy, process, operations, people, and technology, ICS protects our infrastructure, company data, and customer assets while ensuring alignment with applicable regulations and laws.
About the Role
Wells Fargo is seeking an Information Security Analyst (Individual Contributor) in the area of Cyber Security for the Third Party Cyber Security team. The role activities include Contract and Vendor records management.
Key Responsibilities
Review cybersecurity-related contract language, including Master Service Agreements (MSAs), Statements of Work (SOWs), and Security Obligations Exhibits. Evaluate proposed contract redlines and assess the associated information security risks. Partner with Legal, Sourcing, Procurement, and Cybersecurity stakeholders to negotiate and enforce appropriate security requirements. Support annual reviews and updates of cybersecurity contractual requirements and security obligation standards. Escalate contract provisions that introduce unacceptable security risk and provide risk-based recommendations. Maintain and validate the accuracy of third-party inventories and systems of record. Perform periodic reconciliation of vendor inventories across enterprise platforms and source systems. Review inventory submissions to ensure proper classification of vendor services, applications, data sharing activities, and technology solutions. Support onboarding, modification, and offboarding activities within the third-party lifecycle. Identify inventory discrepancies and collaborate with stakeholders to ensure accurate third-party records. Monitor inventory data quality metrics and reporting requirements. Assist with governance activities related to SaaS, cloud service providers, and technology service inventories. Review and evaluate information security responses within Inherent Risk Questionnaires (IRQ). Assess information security inherent risk impacts resulting from new engagements, recertifications, or changes in vendor services. Provide consultative guidance to business partners completing risk questionnaires. Collaborate with Cybersecurity, Legal, Procurement, Supply Chain Management, Operational Risk, and Business Information Security Officers (BISOs). Provide subject matter expertise regarding third-party cybersecurity risk management practices.
Required Qualifications
2+ years of Information Security Analysis experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education Desired Qualifications 2+ years of experience working in Information Security Governance Risk and Compliance 2+ years of experience working in Third Party Information Security domain Bachelor’s and/or Master’s degree in Computer Science or Information Systems Knowledge of security frameworks and regulations such as ISO 27001/27002, PCI DSS, COBIT, NIST, GLBA, GDPR Superior attention to detail with excellent written and verbal communication skills. Expertise in writing technical reports. Demonstrated critical thinking and analytical skills. Strong understanding of information security domains and possesses a well-rounded technical background. Knowledge of operational risk, IT processes and systems Comfortable with making and presenting recommendations to a wide audience of stakeholders Demonstrated experience in stakeholder management Demonstrated experience of conflict resolution, negotiation and problem identification and solving skills.