JD – Cybersecurity Analyst The main responsibilities as a lead & performer are:
- Perform third party risk assessments • Design security controls • Perform infosec audits • Act as a SPOC for the team • Work in close coordination with global Function Manager and local line manageResponsibilities • o Continuously evaluate existing security practices, define and measure security-related activities and demonstrating improvements to the sec programs within the organization • Work closely with governance, regulatory and compliance to help formulate and implement a strategy for security that is tailored to the specific risks facing the organization • Monitor and provide continuous assurance on infrastructure security by leveraging available third party tools while assuring efficacy of controls against policies and certifications in the most automated manner • Responsible for building effective working relationships, making sound decisions, successfully making changes, initiating action and achieving results Profile • 7-9 years of overall work experience in IT app/ Infrastructure, risk,
cybersecurity • A strong understanding and experience of establishing security governance across an organization - Conducting risk assessments and audits of the company's information security systems, processes, and controls • Identifying and evaluating potential security risks, including risks related to third party vendors and partners • Developing and implementing strategies and processes for managing and mitigating identified risks • Working with the Information Security team and other stakeholders to implement and maintain security controls and standards • Providing guidance and support to the Information Security team and other stakeholders on information security best practices and standards • Developing and maintaining security policies, procedures, and standards • Reporting on audit findings and recommendations to the Information Security team and other stakeholders • Keeping up-to-date with the latest developments and trends in information security, risk management, and third party risk management • Strong a self-starter who has the ability to operate independently and demonstrates complete ownership over assigned objectives in a "semi-structured" setting • Excellent oral/written presentation skills with ability to communicate effectively with senior executive leadership