Security Risk Analyst
Reporting to the Senior Manager of Security Governance, Risk, & Compliance (GRC), I ensure the compliance program and security policy deliverables are achieved, supporting security policies, processes, tools, and standards throughout the organization. Forming partnerships with the Information Security Group, Internal Audit, Technology and other organizations within the business, as well as designated external partners, I have a strong background in technology, security & metrics while remaining highly analytical, collaborative, organized, and able to partner effectively with other teams on an ongoing basis.I work with Internal Audit, Legal, IT & Infrastructure, and other cross-functional teams to mitigate risks and strengthen the company’s security posture, including:• Breakdown barriers between departments, build relationships to drive security forward within the company. Develop policies and procedures around best practices in InfoSec. • Operationalize and evangelize a “culture of security” throughout all levels of the company, its partners, and the client portfolio.• Create systems and counter-measures to proactively secure our systems, networks, software, hardware estate, and other digital assets.• Lead team to monitor and triage security incidents, EDR, Data Exfiltration, and Fraud/Compliance related issues.• Perform Due Diligence and Third Party/Vendor Risk Management assessments.