The Information Security Analyst IV plays an integral part in the development, implementation, and compliance of information security across the global enterprise. Primarily responsible for managing risks related to the confidentiality, integrity, and availability of our information and will lead and support various information security efforts and initiatives.
RESPONSIBILITIES
Lead various information security projects and initiatives throughout the year, which may include project planning, scoping, execution, documentation and reporting, and overseeing the work of other project team members.35%
Provide consultative support on behalf of InfoSec to other department s security-related efforts and projects, as needed. This includes assisting IT as well as the broader organization with developing and implementing security controls, procedures, and standards. 20%
Support the Information Security team s risk management efforts by performing security-related risk and control assessments, developing mitigation strategies and recommendations, and managing and tracking security issues to ensure they are appropriately addressed. 20%
Assist our Encore entities with achieving and maintaining compliance with various information security frameworks (i.e. NIST Cybersecurity Framework, FFIEC, ISO 27001, etc.) and with industry and government rules and regulations as they relate to IT/security (e.g. SOX, PCI DSS). 15%
This role is required to be on-call at least one week a month on a rotation. 5%
Perform other duties, as assigned. 5%
TRAVEL REQUIRMENTS
: Domestic Travel:
MINIMUM REQUIREMENTS
EDUCATION
: Bachelors FIELD OF STUDY: Computer Science/Information Technology, Accountancy
EXPERIENCE
: 3+ years of business experience
KNOWLEDGE, SKILLS, ABILITIES, AND OTHER ATTRIBUTES:
- Working knowledge of one or more of the regulatory environments (i.e. SOX, PCI DSS, GDPR, etc.) and/or applicable industry standard information security frameworks (i.e. NIST Cybersecurity Framework, ISO 27001, FFIEC, etc.)
- Knowledgeable in a specific skillset or area within information security, risk management, compliance, or related function
- Ability to lead projects and provide direction to junior staff
- Ability to complete day-to-day activities independently
PREFERRED QUALIFICATIONS
EDUCATION: Masters or Advanced FIELD OF STUDY: Computer Science/Information Technology, Accountancy
EXPERIENCE: 4+ years of business experience with 3+ years working in advisory/consulting/audit at a big four accounting firm or for a publicly traded company in a similar role
CERTIFICATION(S): CISA, CRISC, CISSP, GIAC, and/or certification in a relevant security field
KNOWLEDGE, SKILLS, ABILITIES, AND OTHER ATTRIBUTES:
- Good communication skills
- Comfort interacting with various departments and levels within the organization
- Strong attention-to-detail
What We Offer
- We understand the important balance between work and life, fun and professionalism, and corporation verse community. We strive to support your career aspirations and provide the benefits you need to live a more fulfilling life.
- Our compensation and benefits programs were created with an Employee-First Approach focused on supporting, developing, and recognizing YOU.
- We offer a wide array of wellness and mental health initiatives, support volunteerism, and environmental efforts, encourage employee education through leadership training, skill-building, and tuition reimbursements, and always strive to provide promotion opportunities from within.
- All these things are just a small way to show our employees that we recognize their value, we understand what is important to them, and we reward their contributions.