Home

Information Risk Analyst, Jersey City, NJ (Local) at Remote, Remote, USA
Email: [email protected]
From:

abhishek,

StellentIT

[email protected]

Reply to:   [email protected]

Information Risk Analyst,

Jersey City, NJ 

12+ Months

Phone + Skype

The Information Risk Analyst/Consultant is responsible for creating risk assessment questionnaires, performing risk assessments of applications (on-premises and cloud), infrastructure (on-premises and cloud), as well as vendors assessments against a defined risk framework. These assessments will be conducted through a formalized risk assessment program. The Information Risk Analyst will have the ability to identify risks that are associated how business and technology workforce utilize information technology and in supporting technological systems.

Principal Responsibilities:

Research technology security issues, cybersecurity best practices, and create risk assessments questionnaires that can be used to assess applications and infrastructure.

Schedule and perform information risk assessments using DTCC methodology; identify, document and communicate control deficiencies in business processes and technology systems.

Partner with the Enterprise IT to agree on cybersecurity risk findings identified through the risk assessment (e.g., Databases, Operating Systems, Networking Devices, Storage Systems, Cloud Systems, etc.), new initiatives, and ad hoc processes.

Provide risk remediation recommendations that the business and technology may implement to mitigate identified control gaps.

Partner with business and IT to ensure that risks are clearly articulated in a manner that is understood by business and technology audiences.

Evaluate management responses to ensure that remediation plans and tasks adequately address identified control gaps.

Create asse3ssment reports and dashboards that will be communicated with various IT owners.

Document risk issues in the DTCC designated risk register

Assist the business and technology groups through the DTCC process for policy exceptions and risk acceptance.

Participate in and influence information risk assessment process improvement.

Experience:

5+ years of risk assessment experience in one or more areas: application, infrastructure, vendor risk management

Financial Services Industry experience a plus but not required.

Proficiency with Information Risk Management best practices

Proficiency with information technology in general and cybersecurity technical issues

Knowledge and Skills Required:

Proven technical knowledge of infrastructure, networks, databases and systems and how they affect an organizations cybersecurity risk.

Proven knowledge of security methodologies, policies, standards and best practices.

Proven knowledge of information technology systems, infrastructure and operations.

Ability to explain and articulate technical concepts using both technical and non-technical terms.

Education, Training and Certification:

Bachelors degree preferred.

CISSP/CISM/CRISC/CCSP certification preferred

Keywords: active directory information technology New Jersey
[email protected]
View all
Wed Nov 01 23:52:00 UTC 2023

To remove this job post send "job_kill 815730" as subject from [email protected] to [email protected]. Do not write anything extra in the subject line as this is a automatic system which will not work otherwise.


Your reply to [email protected] -
To       

Subject   
Message -

Your email id:

Captcha Image:
Captcha Code:


Pages not loading, taking too much time to load, server timeout or unavailable, or any other issues please contact admin at [email protected]
Time Taken: 0

Location: ,