Genesis10 is currently seeking a Security Analyst with our client in the transportation industry in their Atlanta, GA location. This is a 12 + month contract position.
Description:
Seeking a Security Analyst
Our client is on a journey to becoming the best IT organization in the airline industry, a journey of transformation. They are changing the way we do business from top to bottom as we strive to create meaningful and innovative solutions and are looking for team members to help us realize our vision.
Responsibilities:
- Analyze the information security environment and assist with the development of security measures to safeguard information against accidental or unauthorized modification, destruction, or disclosure
- Work with management, development personnel, risk staff, auditors, facilities, and security department personnel to identify and implement security plans to ensure that all information assets are appropriately safeguarded, including the following: software applications, hardware, telecommunications, and computer installations
- Determine methods of implementing and enforcing security policies
- Maintain a high level of user trust and confidence in the group's knowledge of and concern for security of systems, while working on multiple network security projects
- Lead development of information security technology tasks and projects
- Communicate with all levels of management
- Generate, coordinate, and maintain project plans
- Develop cost analysis estimates for information security tasks and projects
- Keep project plans updated as required
- Interact with customers as required by project objectives
- Understand business process as it relates to information security
- Define, redesign, and document security processes and procedures
- Coordinate the development and delivery of awareness for information security
- Work with resource owners to determine appropriate security policies for securable resources
- Consult with IT staff to evaluate, select, install, and configure hardware and software systems that provide appropriate security functions
- Assist resource owners in understanding and responding to security failures/problems
- Assist in determining cause of security related events and identify potential security related events
- Communicate to appropriate personnel on normal and exception processing of security authorization requests and/or breaches
- Assist with documentation of security policies; maintain resource classification, may be required to present on security status, project status, and security training to management and IT personnel as needed
- Assist in proactively protecting the integrity, confidentiality, and availability of information in the custody of or processed by the company
- Consult with business units to ensure selection and use of realistic enforcement mechanisms
- Aid in review of security policies and auditing of logs
- Assist in developing and maintaining effective disaster recovery plans, processes, and procedures
- Assist in research, evaluate, design, test, recommend, and plan implementation of new or improved information security research, evaluate, design, test, recommend, and plan implementation of new or improved information security technology
- Train information owners in the implementation of necessary computer security controls
- Conduct applicable due diligence to onboard new vendors into the vendor management system and set appropriate review requirements based on the vendor risk rating and program guidelines
Requirements:
- High school diploma, GED or high school equivalency
- 2-6 years of experience
- 5 or more years of experience with information technology security programs, audits, controls and/or third-party risk management
- Experienced security 3rd party risk analyst who knows general security practices
- Has worked with 3rd party tools on submitting and receiving security questionnaires, and the ability to assess the responses
- Experience speaking with vendors to gain more insights
- Ability to handle pressure and urgent requests
- Ability to identify and assess IT security controls against client policies and standards and Federal/State Regulatory requirements and identify and communicate gaps
- Exceptional written and verbal communication skills
- Advanced computer skills including Microsoft Office suite and other business-related software programs
- Ability to effectively manage time and productivity with competing priorities in a rapidly changing, fast-paced, interactive, results-based team environment
- Proven analytical/problem solving skills and ability to work with cross-functional teams
- Embraces diverse people, thinking and styles
- Consistently makes safety and security, of self and others, the priority
Desired skills:
- Bachelor's degree or 5 plus years of relevant experience in Computer Science, Mathematics, Engineering, Information Systems, Management Information Systems or Information Security
- Key industry certifications such as CISA, CISM, CISSP, CRISC, etc.
- Knowledge of industry standard frameworks such as NIST Cybersecurity Framework, ISO 27001, NIST 800-30, etc.
- Familiarity with third party information security attestations/certifications such as SOC I/II reports, ISO, PCI-DSS, SOX
- Comprehensive knowledge of third-party risk concepts, methodologies, governance structures and experience in managing risk and performing vendor risk assessments
- Experience across Information Security domains such as governance and compliance, incident response, identity and access management, penetration testing, or e-discovery and forensics
- Experience across IT domains such as application development, infrastructure, technical support and operations, cloud technologies and/or continuity of business
- Experience with RSA Archer
If you have the described qualifications and are interested in this exciting opportunity, please apply!
About Genesis10:
Ranked a Top Staffing Firm in the U.S. by Staffing Industry Analysts for six consecutive years, Genesis10 puts thousands of consultants and employees to work across the United States every year in contract, contract-for-hire, and permanent placement roles. With more than 300 active clients, Genesis10 provides access to many of the Fortune 100 firms and a variety of mid-market organizations across the full spectrum of industry verticals.
For contract roles, Genesis10 offers the benefits listed below. If this is a perm-placement opportunity, our recruiter can talk you through the unique benefits offered for that particular client. Benefits of Working with Genesis10:
* Access to hundreds of clients, most who have been working with Genesis10 for 5-20+ years.
* The opportunity to have a career-home in Genesis10; many of our consultants have been working exclusively with Genesis10 for years.
* Access to an experienced, caring recruiting team (more than 7 years of experience, on average.)
* Behavioral Health Platform
* Medical, Dental, Vision
* Health Savings Account
* Voluntary Hospital Indemnity (Critical Illness & Accident)
* Voluntary Term Life Insurance
* 401K
* Sick Pay (for applicable states/municipalities)
* Commuter Benefits (Dallas, NYC, SF and Illinois)
For multiple years running, Genesis10 has been recognized as a Top Staffing Firm in the U.S., as a Best Company for Work-Life Balance, as a Best Company for Career Growth, for Diversity, and for Leadership, amongst others. To learn more and to view all our available career opportunities, please visit us at our website.
Genesis10 is an Equal Opportunity Employer. Candidates will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
|