*Title: IT Security Analyst*
*Duration: 2+ Month* *Location: Scottsdale, AZ or Alpharetta, GA* *Only Locals* *Interview: In-person* We are looking for an analyst to join our 3rd Party Assurance program, in support of the overall enterprise IT governance program. The analyst will use the 3rd Party Assurance framework to support the program both centrally and at the individual Business Units. *Responsibilities include:* • Due diligence and Ongoing monitoring o Lead new and recurring 3rd party security risk assessments, develop mitigation plans, and work with internal stakeholders to assign remediation tracking responsibility o Implement processes to monitor the 3rd party portfolio using a risk based approach. Monitoring may take many forms including but not limited to: Review of 3rd party provided audit reports and supporting collateral e.g. SOC1/2 reports and other certifications, or review of 3rd party security whitepapers Requesting questionnaires be completed by the 3rd party describing their environment and controls Periodic on site 3rd party risk assessments o Maintain and enhance the administration of issue monitoring and exception tracking and, where necessary facilitate remediation actions to improve overall 3rd party performance to meet business needs. o Partner with the cybersecurity team to monitor risks related to third party access to Client’s and our customers’ critical systems and data. o Track the 3rd party risk management process in RSA Archer governance, risk & compliance tool • Stakeholder Consulting: o Collaborate with Client Enterprise Sourcing & Business Optimization and the other Risk Organizations such as Compliance and Privacy in the process of supporting the program. o Work in a self-directed, collaborative, and constructive manner with the business units, and our internal stakeholders to enhance the effectiveness of 3rd Party Management processes and controls. o Build effective relationships with stakeholders who own and support key 3rd party relationships. Gain commitment from stakeholders to help manage and improve the risk posture of these 3rd parties. *Minimum Requirements* 3 years’ experience in administering security controls in an organization *Critical Skills* • Experience working with Security Frameworks e.g. ISO 27001, NIST 800-53, CSA CCM • Strong Project and Time Management skills • Ability to handle multiple tasks, prioritize and meet deadlines • Strong interpersonal and influencing skills *Education* 4-year degree in computer science or related field or equivalent experience *Physical Requirements* General Office Demands *Regards,* *Vikas Shimpi* *Bitsoft International, Inc* Tel :630-225-7443 Fax : 630.596.9069 Email: [email protected] -- You received this message because you are subscribed to the Google Groups "Android Discuss" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. To post to this group, send email to [email protected]. Visit this group at https://groups.google.com/group/android-discuss. To view this discussion on the web visit https://groups.google.com/d/msgid/android-discuss/3cefecde-47c0-4b10-8ee7-cacc02222a01%40googlegroups.com. For more options, visit https://groups.google.com/d/optout.
