n
- advanced knowledge of organization, technology controls, security, and risk issues including cyber control exceptions.
n
- Demonstrated ability to participate in complex, comprehensive or large projects and initiatives.
n
- Ability to serve as a lead expert resource in technology controls and information security for project teams, the business, organization and outside vendors.
n
- Deep understanding of multiple control domains (e.g., access control, data protection, network security).
n
- Ability to lead technical discussions with third-party SMEs and internal stakeholders.
n
- Familiarity with cyber control frameworks and assessment tools.
n
- Coordination with Line of Business, Vendor Management, and risk stakeholders.
n
- Effective communication of cyber risks and remediation strategies.
n
- Adherence to internal policies, procedures, and technology control standards.
n
- Understanding of applicable regulatory guidelines.
n
- Third Party Risk Management.
n