What are the responsibilities and job description for the Information Security Analyst - W2 position at eTek IT Services, Inc.?
Job Description
Job Description
Required Skills
- Describe Project Background and Details? o Oversee risk issue – control structure, what are we going to do to fix it ? o Inherent risk of what the team is doing? o Need to understand GRC cyber controls ? IAM, vulnerability, info sec operations
- What are the Day to Day Responsibilities? o Oversee risk issue – control structure, what are we going to do to fix it ? o Inherent risk of what the team is doing? o Will work on Discoverable records, supporting Cyber – ? identify the problem – ? open it as open risk item, ? and evaluate o
- 3-5 Must Haves Skills Technologies (Break down each skill or tech stack / flexibility levels) : o Need to understand and oversee GRC cyber controls ? IAM, vulnerability, info sec operations o Creating plan and major milestones and be able to document o Create presentations and present to SR Leadership / internal stakeholders
- Familiarity with ServiceNow in a control environment is a high preference
- o Exports from service now and manipulate data o Entering – familiar and using the tool
- Microsoft Suite – can use V look ups
- Jr., Mid, or Sr. level and how many years of experience on each skill? o SR – MID 5 – 8 years
- Drill down on how they will use the skill : Governance risk and compliance.
Job Description Senior Specialist Info Sec Analyst
The Bank has established baseline standard for controls, including resolution of security vulnerabilities, which serve to minimize residual cyber risk. Utilizing a risk prioritized approach based upon industry standards (NIST Domains; Identify, Detect, Protect, Respond, and Recover,) the IS Cyber Problem Mgt team provides a cohesive global process for identification, notification, awareness, problem resolution, and mitigation of cybersecurity control breaks and vulnerabilities. Leveraging a framework built upon the principles of ITIL, ISD Cyber Problem Mgt helps BNYM in maintaining normal service availability and prevention of system / data corruption and / or compromise while proactively reducing the residual risk and technical debt of control breaks.
Responsibilities
Qualifications