الصفحة الرئيسية باكستان Cyber Risk Analyst - Information Security

الصفحة الرئيسية باكستان Cyber Risk Analyst - Information Security

Cyber Risk Analyst - Information Security

دوام كامل في a Laimoon Verified Company في Pakistan
نُشرت يوم September 4, 2024

تفاصيل الوظيفة

About the Role:Grade Level (for internal use):09

This role helps reduce the cyber risk posed by third parties and protects S&P Global brands against possible attacks against our information assets by threat actors via backdoor created by our vendors. Primary responsibilities will include assessing Cybersecurity, Business Continuity controls for S&P third parties by conducting control risk assessments, risk recertifications, and continuously monitoring the vendors engaged by S&P.

The Team:As part of Vendor Risk Management, the Vendor Cyber Risk Management team manages the Supply Chain Cyber risks by performing risk assessments of third-party engagements to identify and reduce the risks posed by third parties. This is an extremely important role, considering the fact that large number of data breaches happen due to third parties. It involves working with internal stakeholders as well as third parties to achieve the results.

Responsibilities and Impact:Working in Vendor Risk Management offers the opportunity to continuously enhance processes to meet the evolving requirements of various regulators. This challenging environment provides ample opportunities to expand your knowledge and expertise.

In addition to risk assessments, recertification, and continuous monitoring, you will participate in various projects, allowing you to showcase and further develop your skills and experience.

Key responsibilities:Conduct thorough Cybersecurity, Business Continuity, Artificial Intelligence, Cloud Service Provider and Privacy assessments for Vendors, evaluating their information security policies, procedures, and controls.

Effectively collaborate with internal teams to identify critical vendors and assess their potential impact on the organization's cyber risk profile.

Communicate risk assessment findings and recommendations to key stakeholders, including senior management, legal, and compliance teams.

Work closely with vendors to address identified security gaps and ensure they meet the organization's cybersecurity requirements.

Review the vendors on the continuous monitoring program and assist in driving the periodic review of the vendors.

Monitor and stay abreast of evolving cybersecurity threats and industry trends to enhance the effectiveness of the risk assessment process.

Lead and support enhancement projects within Vendor Risk Management to meet various business and regulatory requirements.

Assist the team members in balancing the load and managing Ad-hoc projects.

What We're Looking For:Basic Required Qualifications:Bachelor's degree in computer science or engineering or equivalent

Minimum 5 years of experience in Information Security or Technology Risk Management

Any prior exposure to vendor risk management and/or privacy laws and regulations is a plus.

Demonstrable understanding of the concepts of technology controls and information security controls.

Exposure to cloud technologies and cloud security is highly desired; familiarity with public cloud technologies such as Amazon Web Services (AWS) or Microsoft Azure or Google Cloud is highly preferred.

Excellent communication skills - a must. The resource should have the ability to communicate with cross-functional teams and vendors; both written and oral communication is critical.

Additional Preferred Qualifications:This position is required to work in UK Shift; flexibility is a must, especially when it comes to vendor and internal meetings held during US business hours.

Strong organizational skills with the ability to multitask and prioritize while maintaining close attention to detail.

Ability to build strategic partnerships with internal stakeholders.

Must be a critical thinker with strong qualitative skills.

Information Security/Risk Management certification would be an advantage.

What's In It For You?Our Purpose:Progress is not a self-starter. It requires a catalyst to be set in motion. Information, imagination, people, technology-the right combination can unlock possibility and change the world.

Our People:We're more than 35,000 strong worldwide—so we're able to understand nuances while having a broad perspective. Our team is driven by curiosity and a shared belief that Essential Intelligence can help build a more prosperous future for us all.

Our Values:Integrity, Discovery, Partnership

Benefits:We take care of you, so you can take care of business. Our benefits include:

Health & Wellness: Health care coverage designed for the mind and body.

Flexible Downtime: Generous time off helps keep you energized for your time on.

Continuous Learning: Access a wealth of resources to grow your career and learn valuable new skills.

Invest in Your Future: Secure your financial future through competitive pay, retirement planning, and a continuing education program with a company-matched student loan contribution.

Family Friendly Perks: It's not just about you. S&P Global has perks for your partners and little ones, too.

Beyond the Basics: From retail discounts to referral incentive awards—small perks can make a big difference.

Equal Opportunity Employer:S&P Global is an equal opportunity employer and all qualified candidates will receive consideration for employment without regard to race/ethnicity, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, marital status, military veteran status, unemployment status, or any other status protected by law.#J-18808-Ljbffr

Apply safely

To stay safe in your job search, information on common scams and to get free expert advice, we recommend that you visit SAFERjobs, a non-profit, joint industry and law enforcement organization working to combat job scams.

Share this job
See All Cyber Jobs
تعليقات وملاحظات تعليقات وملاحظات