Security Analyst | Sacramento, CA, 95817-Onsite at Sacramento, California, USA |
Email: [email protected] |
ROLE:Security Analyst Location : Sacramento, CA, 95817-Onsite Client :Tech Mahindra/ Chevron Description Chevron is one of the world's leading energy companies, with approximately 60,000 employees working in countries around the world We explore, produce and transport crude oil and natural gas; refine, market and distribute fuels and other energy products; manufacture and sell petrochemical products; generate power; and develop future energy resources, including biofuels and geothermal energy Role Description: The Risk Analyst position is responsible for assessing risks, analyzing cyber threats, and assisting in preventing cyber-attacks before they occur They provide guidance on tools to measure and manage risk, identify/mitigate threats, and protect against unauthorized disclosure of confidential information Risk Analysts duties include assessing the adequacy of security strategies, adherence to security guardrails and calculating the impact of adverse events or threats Ideal candidates will assist in ensuring effective execution of cybersecurity strategies and our risk management framework by managing relationships with key stakeholders, verifying that IT risks are appropriately mitigated, as well as providing periodic updates on the state of compliance Responsibilities: Advises on cybersecurity initiatives that support the latest trends in IT & OT security, risk, and controls Maintains cybersecurity documentation including Business Continuity and Disaster Recovery Plans Facilitates risk assessment exercises, perform compliance and risk monitoring/validation, and other compliance assurance exercises as required Leads awareness and training for the information technology risk program elements to ensure responsibilities are understood and executed Provides guidance to ensure adherence to Policy 575 and Policy 564 Cyber concurrence for new or upgraded solutions Coordinates external and internal assurance or advisory audits, representing information technology throughout the lifecycle of the audit (from planning through remediation strategy) Monitors, tracks, and reports mitigation and resolution of IT risks Facilitates compliance of all equipment utilized in the IT, Process Control Network (PCN)/Operational Technology (OT) and Demilitarized Zone (DMZ), including timely remediation of critical vulnerabilities Supports and integrates cybersecurity standards into the IT and OT environments Serves as site representative for internal and external cyber initiatives Works closely with other technical, incident management, and forensic personnel to develop a broader understanding of the intent, objectives, and activities of cyber threat actors and supports the cyber defense program Required Qualifications/Skills: Minimum 3 to 5 years related work experience in Information Technology field Work experience in Operational Technology/Industrial Controls Systems field Knowledge of and experience with Industry Policies, Standards and Controls (eg, NIST 800 53, IEC 62443 in an ICS environment, ISO 27001, COBIT, ITIL, SOX, PCI DSS, SANS, etc) Understanding of key technology/data concepts such as access control, confidential data, encryption, data privacy, information management, intellectual property, business continuity, disaster recovery, security scans, and 3rd party/vendor applications Strong knowledge of IT organization business processes and systems including (IT Security, data management, architectural and planning, technology life cycle management, regulatory concerns) Certifications: Desired but not Required Certifications : in Industrial Control Systems Cybersecurity, Certified Information Systems Security Professional (CISSP), Certified Information Security Manager, (CISM), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC), or other Cybersecurity Certifications (eg GISCP, GCIP, or similar certifications) Preferred Qualifications/Skills: Vendor specific training on Operational Technology, ICS equipment manufacturers and inter Thanks & Regards, Irfan Shaik P : 972-440-0069 Cell No: 647-375-2228 Agile Enterprise Solutions Inc. 7460 Warren Pkwy,Suite 100, Frisco, TX 75034. Email: [email protected] Website: www.aesinc.us.com Keywords: information technology California Texas Security Analyst | Sacramento, CA, 95817-Onsite [email protected] |
[email protected] View all |
Wed Mar 27 21:27:00 UTC 2024 |