Demo

Analyst, Cybersecurity

The Estee Lauder Companies
Queens, NY Full Time
POSTED ON 1/30/2025
AVAILABLE BEFORE 4/29/2025

Description

Member of the Enterprise Cybersecurity and Risk team with responsibility for execution of the TPRM (third⁃party risk management) program. Perform cyber risk⁃based assessments which document key risk areas for third⁃party vendors. Work with both internal Cybersecurity and Vendor points of contact to develop remediation plans and track resolution status.

Job Responsibilities

Partner with program leads to identify vendor due diligence requirements and ensure vendor inventory and status is kept up to date

Able to review vendor due diligence materials (i.e., SOC1 / SOC2, Vulnerability Scan, ISO 27001, etc.) and identify potential risks

Familiarity with the difference between SaaS and COTS based applications and the unique risks of each

Awareness of emerging cyber threats including zero⁃day vulnerabilities and supply chain related risks

Able to understand details of vendor's cyber security program and identify where gaps exist with internal company policy requirements

Ability to perform root cause analyses on issues identified and clearly articulate to a less technical user

Identify potential vendor related issues and follow up with internal stakeholders and external vendor to develop remediation plan for unresolved issues

Able to triage use cases and prioritize risk based on scope and impact

Produce risk assessment reports and work with vendors to implement remediation responses

Work with brands, procurement, supply chain, R&D and others to document specific use cases and third⁃party engagements

Work with program lead and legal / privacy team to identify required contract security provisions to remediate risks identified in vendor assessment

Experience with industry⁃recognized Cyber, Privacy, Governance, Risk and Compliance (GRC) applications

Experience with Shared Assessments ( ) methodology including use of their Standardized Information Gathering (SIG) questionnaire

Professional verbal and written communications

Able to develop effective relationships with all levels of internal and external stakeholders

Qualifications

CTPRP / CISSP / CISM / CRISC certification or equivalent desired

Experience in Information Technology and Cyber Security highly desired

Internal Audit related experience a plus

Bachelor's Degree (preferably in Information Technology or Cyber Security) or equivalent work experience

Skills : IT Audit, Risk Assessment, Cybersecurity, SOX compliance, GxP Compliance, SOC1, SOC2, ISO 27001 certification

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Analyst, Cybersecurity?

Sign up to receive alerts about other jobs on the Analyst, Cybersecurity career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$70,462 - $84,818
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$164,835 - $201,088
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$70,462 - $84,818
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at The Estee Lauder Companies

The Estee Lauder Companies
Hired Organization Address Melville, NY Full Time
The Estée Lauder Companies Inc. is one of the world’s leading manufacturers, marketers, and sellers of quality skin care...
The Estee Lauder Companies
Hired Organization Address Bristol, PA Full Time
Description Description - External Performs various tasks related to picking, packing, and shipping product orders to re...
The Estee Lauder Companies
Hired Organization Address Minneapolis, MN Full Time
The Estée Lauder Companies Inc. is one of the world’s leading manufacturers, marketers, and sellers of quality skin care...
The Estee Lauder Companies
Hired Organization Address Melville, NY Full Time
Key activities for this position include Every Day Great Execution (EDGE) of managing a team of Supervisors and hourly e...

Not the job you're looking for? Here are some other Analyst, Cybersecurity jobs in the Queens, NY area that may be a better fit.

Cybersecurity Analyst

Breadcrumb Cybersecurity, Albany, NY

Cybersecurity Analyst

Breadcrumb Cybersecurity, Tampa, FL

AI Assistant is available now!

Feel free to start your new journey!