In our always on
world, we believe it s essential to have a genuine connection with the work you do.
Job Location: Hyderabad
Are you a technology professional with experience across the domains of Governance, Risk, and Compliance (GRC), such as policy/standards, third-party risk management, customer security assurance, and security standards compliance
Are you excited by the challenge and reward of maturing the GRC function for a large, publicly traded companyThen CommScope s Governance, Risk, and Compliance (GRC) program may be the right next step for you! The Security Analyst will assist in developing and maintaining our security GRC function. You ll work with members of an international team of GRC professionals spanning CommScope s US and India offices.
How Youll Help Us Connect the World:
As a key player in CommScope s security landscape, you will collaborate with our business units, Technology, and Security teams to systematically identify security risks, catalogue them, and drive them to resolution. Your leadership in this area will be instrumental in our collective efforts to connect the world.
Your success in this role depends on several factors. First, you ll bring domain expertise and previous experience to the role, having served in the last technology or security roles. At least one of your previous roles will have given you technical experience so that you can actively participate in discussions about risk and control effectiveness. Structured execution, critical thinking, attention to detail, and effective communication are the foundation of everything we do.
- Works with other organisational participants to implement information security policies.
- Identifies, analyses, evaluates, and documents information security risks and controls based on established risk criteria.
- Recommend controls to mitigate identified security risks and assist with their implementation.
- Manages an exception review and approval process, ensuring that exceptions are documented and periodically reviewed.
- Assists with evaluating the effectiveness of the information security program by developing, monitoring, gathering, and analysing information security and compliance metrics for management.
- Performs third-party supplier risk assessments to manage supply chain risk throughout the suppliers lifecycle. Assesses and reports on the businesss risks and benefits, as well as mandates for supplier compliance.
- Assists with review of information security sections within supplier and customer contracts, identifies opportunities, and recommends security and data privacy content accordingly.
Required Qualifications for Consideration:
-
Preferrably 6 years of professional experience in Information Security and hands-on expertise in governance & Risk
, demonstrating increased responsibility and success in each role. A bachelor s degree
or equivalent professional experience is required. - Previous professional experience with information security or other IT / technical disciplines with the ability to communicate with a non-technical audience about relevant domain information.
- Clear communication skills and outstanding analytical and critical thinking skills.
You Will Excite Us If You Have:
- Previous experience working with business stakeholders to make risk tradeoffs.
- Previous experience developing and tracking metrics of technical processes.
- Previous experience working with external vendors and customers.
- Existing domain knowledge of security GRC. Previous experience working in these areas.
- Strong communication skills.