*Title: IT Security Analyst*

*Duration: 2+ Month*

*Location:  Scottsdale, AZ or Alpharetta, GA*

*Only Locals*

*Interview: In-person*

 

We are looking for an analyst to join our 3rd Party Assurance program, in 
support of the overall enterprise IT governance program. The analyst will 
use the 3rd Party Assurance framework to support the program both centrally 
and at the individual Business Units.

 

*Responsibilities include:*

• Due diligence and Ongoing monitoring

o Lead new and recurring 3rd party security risk assessments, develop 
mitigation plans, and work with internal stakeholders to assign remediation 
tracking responsibility

o Implement processes to monitor the 3rd party portfolio using a risk based 
approach. Monitoring may take many forms including but not limited to:

 Review of 3rd party provided audit reports and supporting collateral e.g. 
SOC1/2 reports and other certifications, or review of 3rd party security 
whitepapers

 Requesting questionnaires be completed by the 3rd party describing their 
environment and controls

 Periodic on site 3rd party risk assessments

o Maintain and enhance the administration of issue monitoring and exception 
tracking and, where necessary facilitate remediation actions to improve 
overall 3rd party performance to meet business needs.

o Partner with the cybersecurity team to monitor risks related to third 
party access to Client’s and our customers’ critical systems and data.

o Track the 3rd party risk management process in RSA Archer governance, 
risk & compliance tool

 

• Stakeholder Consulting:

o Collaborate with Client Enterprise Sourcing & Business Optimization and 
the other Risk Organizations such as Compliance and Privacy in the process 
of supporting the program.

o Work in a self-directed, collaborative, and constructive manner with the 
business units, and our internal stakeholders to enhance the effectiveness 
of 3rd Party Management processes and controls.

o Build effective relationships with stakeholders who own and support key 
3rd party relationships. Gain commitment from stakeholders to help manage 
and improve the risk posture of these 3rd parties.

 

*Minimum Requirements*

3 years’ experience in administering security controls in an organization

 

*Critical Skills*

• Experience working with Security Frameworks e.g. ISO 27001, NIST 800-53, 
CSA CCM

• Strong Project and Time Management skills

• Ability to handle multiple tasks, prioritize and meet deadlines

• Strong interpersonal and influencing skills

 

*Education*

4-year degree in computer science or related field or equivalent experience

 

*Physical Requirements*

General Office Demands

 

 

*Regards,*

*Vikas Shimpi*

*Bitsoft International, Inc*

Tel  :630-225-7443

Fax : 630.596.9069

Email: [email protected]

-- 
You received this message because you are subscribed to the Google Groups 
"Android Discuss" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To post to this group, send email to [email protected].
Visit this group at https://groups.google.com/group/android-discuss.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/android-discuss/3cefecde-47c0-4b10-8ee7-cacc02222a01%40googlegroups.com.
For more options, visit https://groups.google.com/d/optout.

Reply via email to