招聘
About the Role:
We are seeking a highly motivated Senior Corporate Security Analyst to join Toast’s Corporate Security team in Bangalore. This role is focused on hands-on corporate security execution and risk reduction across endpoints, identities, SaaS platforms, vendors, and data — not SOC monitoring or shift-based operations.
The ideal candidate has strong experience working in enterprise corporate security environments, understands how to balance security controls with business needs, and is comfortable partnering with IT, GRC, Procurement, Legal, and Engineering teams. You will own multiple Corp Sec programs end-to-end and act as a senior individual contributor, while mentoring junior analysts and helping scale security practices across the organization.
A Day in Life*(Responsibilities)*
1.
Corporate Security Execution & Risk Management:
-
Own and operate key corporate security controls across endpoint, SaaS, identity, vendor, and data security.
-
Perform security risk assessments for business initiatives and translate findings into actionable remediation plans.
-
Act as a security advisor to internal stakeholders, focusing on practical risk reduction.
2.
Endpoint & SaaS Security:
-
Lead day-to-day security oversight for corporate endpoints and SaaS applications, including:
-
EDR/XDR, device hardening, encryption, MDM/UEM
-
Shadow IT discovery and SaaS risk reviews
-
Partner with IT Operations and Governance teams to resolve alerts, misconfigurations, and policy gaps.
-
Conduct periodic reviews of high-risk applications, browser extensions, and endpoint findings.
3. Vulnerability Management (Corporate Scope)
-
Drive vulnerability management for corporate endpoints and internal business systems.
-
Triage and prioritize vulnerabilities based on business impact and exploitability.
-
Track remediation with IT teams and validate closure.
4. Identity & Access Management (IAM)
-
Support enterprise IAM governance, including:
-
Joiner / mover / leaver processes
-
Access reviews and least-privilege enforcement
-
MFA, SSO, device trust, and privileged access (PAM)
-
Assist in access investigations and high-risk access exception reviews.
5.
Vendor & Third-Party Security:
-
Conduct vendor security assessments for onboarding and periodic reviews.
-
Review SOC 2 reports, security questionnaires, and supporting evidence.
-
Track vendor risks, remediation actions, and re-assessments.
-
Partner with Procurement, Legal, and GRC teams to ensure security requirements are met.
6.
Data Protection & DLP:
-
Support data protection initiatives across Google Workspace, Slack, and other collaboration platforms.
-
Assist with the design, tuning, and enforcement of DLP controls.
-
Participate in investigations related to data exposure or misuse.
7.
Security Awareness & Process Improvement:
-
Support security awareness training and phishing simulation programs.
-
Maintain Corp Sec policies, SOPs, and runbooks.
-
Identify opportunities to improve efficiency through automation and tooling.
8.
Mentorship & Ownership:
-
Mentor P2-level security analysts and provide technical guidance.
-
Take ownership of Corp Sec initiatives and deliver them end-to-end with minimal supervision.
9.
Contractor Security Oversight:
-
Establish and enforce contractor access standards, ensuring strict security controls during onboarding and offboarding.
-
Conduct periodic contractor access and activity audits, identifying and mitigating associated risks.
Work Mode: This role follows a hybrid work model, requiring a minimum of 2 days per week in the office.
What We’re Looking For
Required
-
6–10 years of experience in information security with strong corporate security exposure.
-
Hands-on experience with:
-
Endpoint security and EDR tools (e.g., Crowd Strike)
-
Vendor security assessments and SOC 2 reviews
-
IAM concepts (Okta, PAM, access reviews)
-
Saa
S and Shadow IT security:
-
Strong understanding of security frameworks (NIST CSF, ISO 27001, CIS Controls).
-
Experience working closely with IT and governance teams.
-
Strong written and verbal communication skills.
Preferred
-
Experience with Google Workspace security and DLP.
-
Exposure to GRC processes or platforms (Service Now GRC, One Trust).
-
Bachelor's degree in Computer Science, Information Security, or a related field; Master's degree preferred.
-
Proven experience in developing and implementing security policies, procedures, and frameworks.
Demonstrated experience in developing and delivering security awareness training and phishing exercises.
-
Possess excellent skills and experience in leveraging AI tools for threat detection, incident response, vulnerability management, and other security functions.
-
Familiarity with Google Workspace security features.
-
Proficiency with security tools such as Reco.AI, Torq, Splunk, Data Dog, bug bounty platforms, Okta Device Trust, Beyond Trust, Beyond Corp, and other SIEM, SOAR and Security tools commonly used in the market.
-
Ability to work autonomously and prioritize multiple tasks in a fast-paced environment.
-
Excellent verbal and written communication skills, with the ability to effectively communicate technical information to both technical and non-technical audiences. Proven ability to collaborate effectively with cross-functional teams.
-
Quick learner and adaptable to new security tools and technologies as they are procured and implemented.
-
Ability to adapt to environments, understand requirements, and actively collaborate within the team, with other teams, and with vendors.
-
Provide technical guidance and mentorship to P2 security analysts, fostering their professional growth and ensuring alignment with corporate security objectives.
-
Take initiative in leading projects and driving security initiatives.
-
Relevant security certifications are a plus.
How Toast Uses AI in its Hiring Process
Throughout the hiring process, our goal is to get to know you. We use AI tools to support our recruiters and interviewers with tasks like note-taking, summarization, and documentation of interviews to ensure they can be fully focused on your conversation. All hiring decisions are made by people.
Diversity, Equity, and Inclusion is Baked into our Recipe for Success
At Toast, our employees are our secret ingredient—when they thrive, we thrive. The restaurant industry is one of the most diverse, and we embrace that diversity with authenticity, inclusivity, respect, and humility. By embedding these principles into our culture and design, we create equitable opportunities for all and raise the bar in delivering exceptional experiences.
We Thrive Together
We embrace a hybrid work model that fosters in-person collaboration while valuing individual needs. Our goal is to build a strong culture of connection as we work together to empower the restaurant community. To learn more about how we work globally and regionally, check out: https://careers.toasttab.com/locations-toast.
Apply today!
Toast is committed to creating an accessible and inclusive hiring process. As part of this commitment, we strive to provide reasonable accommodations for persons with disabilities to enable them to access the hiring process. If you need an accommodation to access the job application or interview process, please contact candidateaccommodations@toasttab.com.
------
For roles in the United States, it is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
Total Views
0
Apply Clicks
0
Mock Applicants
0
Scraps
0
Similar Jobs
About Toast

Toast
PublicToast, Inc. is an American cloud-based restaurant management software company based in Boston, Massachusetts. The company provides an all-in-one point of sale (POS) system built on the Android operating system.
1,001-5,000
Employees
Boston
Headquarters
$20B
Valuation
Reviews
3.4
18 reviews
Work Life Balance
2.2
Compensation
2.8
Culture
1.8
Career
2.5
Management
1.5
15%
Recommend to a Friend
Pros
Competitive salary increases and compensation packages
Challenging technical work and API development opportunities
Flexible work arrangements (35-hour weeks when honored)
Cons
Poor management and toxic leadership culture
Layoffs and high staff turnover
Unpaid overtime and work-life balance issues
Salary Ranges
771 data points
Mid/L4
Mid/L4 · Cloud Security Engineer
1 reports
$169,000
total / year
Base
$130,000
Stock
-
Bonus
-
$169,000
$169,000
Interview Experience
8 interviews
Difficulty
3.9
/ 5
Duration
14-28 weeks
Offer Rate
25%
Experience
Positive 13%
Neutral 25%
Negative 62%
Interview Process
1
Application Review
2
Recruiter/HR Screen
3
Technical Phone Screen
4
System Design Interview
5
Behavioral Interview
6
Onsite/Panel Interviews
7
Team Matching
8
Final Round/Presentation
9
Background Check
10
Offer
Common Questions
Coding/Algorithm
System Design
Behavioral/STAR
Technical Knowledge
Leadership/Management
News & Buzz
Toast to Local Non-Profit Organizations Through Old Hights Brewing Company's Donation Beer Challenge - TAPinto
Source: TAPinto
News
·
5w ago
Mitsubishi UFJ Trust & Banking Corp Sells 48,282 Shares of Toast, Inc. $TOST - MarketBeat
Source: MarketBeat
News
·
5w ago
Toast, Inc. (TOST) Is a Trending Stock: Facts to Know Before Betting on It - Yahoo Finance
Source: Yahoo Finance
News
·
5w ago
Toast, Inc. $TOST Shares Sold by Federated Hermes Inc. - MarketBeat
Source: MarketBeat
News
·
5w ago



