
Senior Associate, Cybersecurity Risk Analyst – Third Party
Posted Aug 29

Posted Aug 29
This is a fully remote position, open to applicants in North Carolina, +1 more state.
• Stay informed about current and emerging trends in information security, including threats, technologies, regulatory requirements, industry best practices, and risks associated with AI.
• Contribute to departmental and enterprise initiatives, change management efforts, team goals, and activities focused on continuous improvement.
• Execute information security risk management tasks and manage assigned projects.
• Recognize opportunities for process enhancement and convey suggestions to management.
• Conduct information security risk evaluations of third-party vendors utilizing security questionnaires, audit reports, control documentation, and supporting evidence.
• Assess evaluation outcomes and aid in defining the information security risk profiles of third parties.
• Formulate recommendations to address security deficiencies and collaborate with stakeholders and external parties on mitigation and remediation efforts.
• Record assessments, findings, recommendations, and communications within governance, risk, and compliance platforms.
• Address inquiries regarding organizational information security practices with accurate, approved, and professional information.
• Collaborate with business stakeholders, risk functions, and enterprise teams on assessments, tracking remediation, and managing risk.
• Gather, maintain, and analyze assessment and risk management data for oversight, reporting, and decision-making purposes.
• Create metrics, dashboards, reports, and presentations detailing assessment results, risk trends, remediation progress, and program performance.
• Identify reporting opportunities, trends, and areas for data quality enhancement.
• Analyze and consolidate information from security questionnaires, audit reports, evidence, policies, standards, and discussions with stakeholders.
• Present findings, recommendations, reports, and presentations to technical, business, and leadership audiences.
• Assist in the development, maintenance, and implementation of information security standards, policies, procedures, and documentation.
• Assess security considerations for third-party AI solutions and provide insights based on policies, standards, and best practices.
• Stay updated on emerging technologies, including AI, to enhance team processes, reporting, and analytical capabilities.
• Bachelor's degree (4 Year) or equivalent experience.
• 1 - 3+ years of hands-on experience in Information Security directly related to this position.
• Capability to read, analyze, and interpret internal and external documents, technical procedures, governmental regulations, policies, proposals, and standard operating procedures.
• Excellent written and verbal communication abilities.
• Strong organizational skills; adept at prioritizing tasks, multitasking, and maintaining meticulous attention to detail.
• Solid project management capabilities, including the coordination and balancing of multiple projects under time constraints while meeting deadlines.
• Strong interpersonal skills with a collaborative approach.
• Ability to exercise sound judgment and discretion concerning confidential information.
• Capacity to foster collaboration and influence outcomes without direct authority.
• Proficiency in Microsoft Office Suite (Word, Excel, PowerPoint, Outlook).
• Successful completion of regulatory and job-specific training requirements.
• Agile mindset with an awareness and understanding of Agile methodologies (Preferred).
• Clearly defined career paths and job levels.
• Opportunities for leadership development and virtual training.
• Paid time off and parental leave.
• Competitive 401K and employee benefits package.
• Complimentary financial counseling, health coaching, and employee assistance program.
• Tuition assistance available.
• Flexible work arrangements offered.
• Access to productivity and technology tools, along with training.
• Eligibility for the Annual Incentive Program.
• Potential long-term incentives available.
• Opportunities for sales incentives.
• Standard benefits package provided by Lincoln.
Sony Interactive Entertainment
Squads
Neo4j
PingWind Inc. (SDVOSB)
Get handpicked remote jobs straight to your inbox weekly.