
Specializing in home improvement.
Senior Analyst Information Security at Lowe's
About the role
Innovate in Bengaluru
This position is based at our on-site office in Bengaluru. Lowe's offers an ultramodern work environment, complete with cutting-edge technology, collaborative workspaces, an on-site gym and clinic, and other perks to enhance your work experience.
About Lowe’s
Lowe’s is a FORTUNE® 100 home improvement company serving approximately 16 million customer transactions a week in the United States. With total fiscal year 2024 sales of more than $83 billion, Lowe’s operates over 1,700 home improvement stores and employs approximately 300,000 associates. Based in Mooresville, N.C., Lowe’s supports the communities it serves through programs focused on creating safe, affordable housing, improving community spaces, helping to develop the next generation of skilled trade experts and providing disaster relief to communities in need. For more information, visit Lowes.com.
Lowe’s India, the Global Capability Center of Lowe’s Companies Inc., is a hub for driving our technology, business, analytics, and shared services strategy. Based in Bengaluru with over 4,500 associates, it powers innovations across omnichannel retail, AI/ML, enterprise architecture, supply chain, and customer experience. From supporting and launching homegrown solutions to fostering innovation through its Catalyze platform, Lowe’s India plays a pivotal role in transforming home improvement retail while upholding strong commitment to social impact and sustainability. For more information, visit Lowes India
Job Summary
The primary purpose of this role is to support the Security Risk and Assurance team’s second line of defense program. This includes responsibility for executing and improving processes and procedures with occasional guidance from senior-level security leaders.
This role manages and coordinates all activities of the continuous SOX and security compliance processes. The Senior Analyst would be responsible for leading a workstream in assessing and implementing SOX controls supporting large, complex IT modernization initiatives that enable key business and technology strategies and programs with enterprise impact. This role oversees all activities including planning, program execution, control testing, and reporting for assigned workstreams. In addition, the Senior Analyst provides critical input into the long-term strategy for technology security across all domains and platforms.
The individual in this role provides direction and indirect people leadership in a matrixed management environment.
Roles & Responsibilities:
Core Responsibilities:
- Works closely with various groups and levels of leadership within Lowe’s Tech, including the Executive Leadership Team.
- Collaborates with technical and business teams responsible for major financial system modernization efforts, security vital assets, and PCI scoped assets to determine control design effectiveness regularity impact and help in the design of the relevant SOX controls.
- Conducting IT and adjacent process walkthroughs to ensure control objectives are met and sufficient coverage is maintained.
- Develops written control workpapers and reports of varied depth on short deadlines, with minimal supervision, at a technical level of detail appropriate to the audience.
- Identifying and scoping improvement opportunities working to bring improvements to fruition while defining appropriate controls as well.
- Interfacing with management on all required activities internal control assessment scoping and controls definition; providing reasonable support during the assessment lifecycle.
- Provide oversight, direction, and mentoring advice to the IT Security Compliance analysts, sharing an in-depth understanding of company and industry methodologies, policies, standards, and control controls.
- Build and maintain effective working relationships with key business and IT stakeholders.
- Support management in developing robust action plans to address deficiencies and ensure remediation promptly to effectively address issues.
- Support internal team initiatives by delivering quality high-quality technical assessments.
- Provides insight and consultation to help ensure new and existing security solutions are developed with insight into industry best practices, strategies, and architectures.
- Makes recommendations for process or technology changes.
- Develops tools or processes to operationalize/improve workflows.
- Partners with senior key stakeholders to develop and/or update Information Security documents such as policies, standards, procedures training, etc.
Years of Experience
- 5+ years of experience developing Cybersecurity or information assurance policies, standards, awareness training, or 5 years of experience conducting assessments or technical reviews to analyze risk.
Education Qualification & Certifications:
Required Minimum Qualifications:
- Bachelor's Degree in Computer Science, CIS, Engineering, Business Administration, Cybersecurity, or related field (or equivalent work or military experience in a related field).
- Experience with information security programs, audits, and SOX
- 5+ years of experience in information security compliance.
- Advanced understanding of fundamental security and network concepts (Windows and Unix security: endpoint security; logging and monitoring; application security; user access; perimeter protection principles, network communication rules; and analysis methods; etc.).
- Self-motivated, reliable, and follows through on commitments.
- Solutions-focused, strong work ethic, and desire to achieve excellence.
- Highly flexible and adaptable within a rapid and changing work environment.
Preferred Qualifications
- IT security compliance experience in the retail industry
- Experience in a PCI/Retail technology environment
- Big 4 internal or external audit experience
- Relevant information security certifications (e.g., CISA, CISSP, PCI-P, ISA, CISM, CEH, CRISC, OSCP, GPen)
- Demonstrated understanding of internal security controls, risk assessment, and identifying opportunities for improvement
- Intermediate knowledge of vulnerability management (OS, application, custom code, configuration, etc.) and associated risks
- Excellent communication and interpersonal skills with success in working across organizations at all levels.
- Experience in designing, implementing, operating automation.
Lowe's is an equal opportunity employer and administers all personnel practices without regard to race, color, religious creed, sex, gender, age, ancestry, national origin, mental or physical disability or medical condition, sexual orientation, gender identity or expression, marital status, military or veteran status, genetic information, or any other category protected under federal, state, or local law.
Required skills
Information security
Risk management
Security controls
Analysis
Communication
Total Views
0
Total Apply Clicks
0
Total Mock Apply
0
Total Bookmarks
0
More open roles at Lowe's

Sales Floor Dept Supervisor - Inside Garden
Lowe's · Plymouth, MN 1955

Full Time - Head Cashier - Closing
Lowe's · Seabrook, NH 1979

Part Time - Head Cashier - Flexible
Lowe's · Seabrook, NH 1979

Part Time - Fulfillment Associate - Flexible
Lowe's · Dickson, TN 1675

Full Time - Cashier - Opening
Lowe's · Catskill, NY 2483
Similar jobs

Staff Tech, Security, T4
Collins Aerospace (RTX) · US-AZ-TUCSON-M05 ~ 1151 E Hermans Rd ~ BLDG M05 (External Site)

Principal Systems Security Engineer (Cyber) - P4 (Onsite)
Collins Aerospace (RTX) · US-MA-MARLBOROUGH-MA2 ~ 1001 Boston Post Rd ~ BLDG 2

Senior Principal Systems Security Engineer (Cyber) - P5 (Onsite)
Collins Aerospace (RTX) · US-MA-MARLBOROUGH-MA2 ~ 1001 Boston Post Rd ~ BLDG 2

Principal Systems Security Engineer (Cyber) - P4 (Onsite)
Collins Aerospace (RTX) · US-AL-HUNTSVILLE-401 ~ 401 Jan Davis Dr NW ~ JAN DAVIS 401

Network/Security Analyst- Onsite
Collins Aerospace (RTX) · US-MT-GREAT FALLS-6932-CUST ~ 6932 Goddard Dr ~ GODDARD (External Site)
About Lowe's

Lowe's
PublicSpecializing in home improvement.
10,001+
Employees
Mooresville
Headquarters
$11.2B
Valuation
Reviews
10 reviews
3.3
10 reviews
Work-life balance
2.8
Compensation
3.5
Culture
3.2
Career
2.5
Management
2.9
45%
Recommend to a friend
Pros
Friendly coworkers and team environment
Flexible scheduling and hours
Good benefits and health coverage
Cons
Poor management and lack of support
Limited advancement opportunities
High pressure and unrealistic expectations
Salary Ranges
54 data points
Lead/L5
Mid/L4
Senior/L5
Lead/L5 · LEAD ENGINEER, INFORMATION SECURITY
1 reports
$134,173
total per year
Base
$103,210
Stock
-
Bonus
-
$134,173
$134,173
Interview experience
52 interviews
Difficulty
4.1
/ 5
Duration
21-35 weeks
Offer rate
23%
Experience
Positive 68%
Neutral 16%
Negative 16%
Interview process
1
Recruiter Screen
2
ML Coding
3
ML System Design
4
Research Discussion
5
Team Interviews
Common questions
ML fundamentals
Design an ML system
Research paper discussion
Statistical concepts
Latest updates
11 Best New Lowe’s Home Finds Flying Off Shelves Right Now - bestlifeonline.com
bestlifeonline.com
News
·
1w ago
A Look At Lowe's (LOW) Valuation As Shares Trade Near Narrative And DCF Fair Value Estimates - simplywall.st
simplywall.st
News
·
1w ago
Actor Rob Lowe spotted at Columbia Metro Airport - WLTX
WLTX
News
·
1w ago
Jim Jones Records Encounter With Lowe’s Manager Who Called Police - Black Enterprise
Black Enterprise
News
·
1w ago