Cybersecurity Risk and Compliance Senior Analyst

3 days ago


Durham, United States ASSA ABLOY Full time

Cybersecurity Risk and Compliance Senior Analyst

Are you looking for an opportunity to apply your business acumen, cybersecurity skills, and organizational transformation experience to help us create a more secure and open world? Do you have a passion for assessing risk, policy design and deployment, and problem-solving? If so, we may have the perfect opportunity for you ASSA ABLOY Americas is looking for a Cybersecurity Risk and Compliance Senior Analyst to enhance the Company’s informationsecurity and cybersecurity risk program. Headquartered in New Haven, CT, the Cybersecurity Risk and Compliance Senior Analyst will be part of the Americas division of ASSA ABLOY Opening Solutions. We are an innovativeand growth-oriented global company. Weoffer a collaborative environment where your ideas and contributions are welcomed. Applicants must be authorized to work for any employer in the U.S. We are unable to sponsor or take over sponsorship of an employment Visa at this time. What you will be doing

The Cybersecurity Risk and Compliance Senior Analyst is a key role in ASSAABLOY’s strategy to accelerate the organization’scyber resilience. The newly created position willreport to ASSA ABLOY America’s Division CISO and will beaccountable for the divisional Cyber Risk and Compliance program.The role will build strong alliances with all functionsand sub-groups across the division to help in theprocess of identifying, analyzing, quantifying, andtreating risks.In addition, this role will be responsible todefine, measure, and report on Informationsecurity compliance within the operation of anISMS, providing relevant KPIs andKRIs.A talented and self-motivated person, who is inviting andcollaborative and can guide business functions to handle organizational cyber risks and transform these intocontrols will find this position a perfect place forsuccess. Position Specific Responsibilities

Establish divisional cyber risk governance Build divisional risk management culture andmethodologies A broad knowledge of IT Services and a tightcollaboration with IT for the transformation ofbusiness requirements into IT Policies andcontrols will ensuresuccess Establish and execute risk assessment and management withbusiness functions Build and maintain Cyber Risk and Compliance Reporting dashboards and reports forstakeholder groups Definition, monitoring and reporting of Key Riskindicators and relevant Key performanceindicators Create, modify and implement divisional policiesand directives based on Information securitystandards ISO27001 and NIST Develop deep coalitions with business partners to anchor InformationSecurity into Policy framework Collaborate with corporate counsels and HRdepartments to monitor enforcement ofstandards and regulations Review policies periodically to identify hiddenrisks or non-conformity issues Develop and oversee control systems to preventor deal with violations of legal guidelines andinternal policies Evaluate the efficiency of controls and improvethem continuously What we are looking for

Professional certification in Information SecurityCISM or CISSP Professional certification in CRISC or ISO27005preferred Minimum 3 years of experience in a global cybersecurity management role Proven experience of implementing and operatinginformation security risk and compliance management within anenvironment of similar size and globalrepresentation Strong knowledge of current digital servicedelivery concepts, technology, and its cyberprotection capabilities Good enterprise business knowledge with theability to articulate risks in clear business language Good knowledge of global regulatory compliancedemands in the areas of privacy, industry orgovernmental segments. (GDPR, CCPA, PCI-DSS, critical infrastructure, Patriot Act…) Engaged, committed, creative, hands-on and self-motivated personality Expert knowledge and proven success inimplementing Information Security ManagementSystem (ISMS) in an enterprise organization Analytical and conceptual ability to identifycompliance risks and develop practical solutionsand adjustments Excellent business and IT communication skills in theEnglish language What we offer We’re passionate about providing amazing opportunities and benefits, so that you can enjoy a lifelong career with us. We are proud to offer: Continuous professional development opportunities and an environment that fosters internal growth and mobility Competitive compensation and benefits package which includes multiple healthcare options, tuition reimbursement,and matching 401k Generous holiday schedule and paid time offto refresh and recharge Employee pricing on our products and discount programs for travel, entertainment, and more We review applications regularly, so don’t hesitate, apply today ASSA ABLOY is an Equal Opportunity Employer/Minorities/Females/Disabled/Veteran #LI-EL1 #LI-OSA #LI-Onsite We are the ASSA ABLOY Group Our people have made us the global leader in access solutions. In return, we open doors for them wherever they go. With nearly 52,000 colleagues in more than 70 different countries, we help billions of people experience a more open world. Our innovations make all sorts of spaces – physical and virtual – safer, more secure, and easier to access. As an employer, we value results – not titles, or backgrounds. We empower our people to build their career around their aspirations and our ambitions – supporting them with regular feedback, training, and development opportunities. Our colleagues think broadly about where they can make the most impact, and we encourage them to grow their role locally, regionally, or even internationally. As we welcome new people on board, it’s important to us to have diverse, inclusive teams, and we value different perspectives and experiences. Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.

#J-18808-Ljbffr



  • Durham, United States Actalent Full time

    Description: The Cybersecurity Compliance Analyst will be responsible for evaluating and ensuring our client's adherence to NERC CIP standards and internal cybersecurity policies at the Remote Operation Center. This position will work closely with the Cybersecurity Compliance Engineers, the Head of Cybersecurity, and other stakeholders to verify that...


  • Durham, North Carolina, United States GlaxoSmithKline Full time

    Site Name: USA - Pennsylvania - Philadelphia, Durham Blackwell StreetPosted Date: Apr Senior Analyst, Business Risk and Compliance Are you looking for an opportunity to learn the US Pharmaceuticals operations in great detail, while applying valuable analytic and business partnering skills to mitigate risks? If so, this is the role for you.This role will...


  • Durham, North Carolina, United States GlaxoSmithKline Full time

    Site Name: USA - Pennsylvania - Philadelphia, Durham Blackwell StreetPosted Date: May Senior Analyst, Business Risk and Compliance Are you looking for an opportunity to learn the US Pharmaceuticals operations in great detail, while applying valuable analytic and business partnering skills to mitigate risks? If so, this is the role for you.This role will...


  • Durham, United States Actalent Full time

    Description: The Cybersecurity Compliance Engineer will be responsible for designing, implementing, and maintaining the systems and technologies required to ensure compliance with NERC CIP standards at our client's Remote Operation Center. This position will work closely with the Cybersecurity Compliance Analysts, the Head of Cybersecurity and other...


  • Durham, United States Actalent Full time

    Description: The Cybersecurity Compliance Engineer will be responsible for designing, implementing, and maintaining the systems and technologies required to ensure compliance with NERC CIP standards at our client's Remote Operation Center. This position will work closely with the Cybersecurity Compliance Analysts, the Head of Cybersecurity and other...

  • Compliance Analyst

    2 weeks ago


    Durham, United States Actalent Full time

    Job Title: Cybersecurity Compliance AnalystJob Description The Cybersecurity Compliance Analyst is integral in evaluating and ensuring adherence to NERC CIP standards and internal cybersecurity policies at the Remote Operation Center. This role involves close collaboration with Cybersecurity Compliance Engineers and the Head of Cybersecurity, along with...


  • Durham, United States Latino Community Credit Union Full time

    The Sr. Cybersecurity Engineer will safeguard LCCU’s enterprise networks, systems, and applications against cyber threats. Will play a critical role in ensuring the security and integrity of LCCU’s digital assets, ensuring the trust and confidentiality of LCCU’s sensitive data and assets. Sr. Information Security Analyst works closely with the...


  • Durham, United States Latino Community Credit Union Full time

    The Sr. Cybersecurity Engineer will safeguard LCCU’s enterprise networks, systems, and applications against cyber threats. Will play a critical role in ensuring the security and integrity of LCCU’s digital assets, ensuring the trust and confidentiality of LCCU’s sensitive data and assets. Sr. Information Security Analyst works closely with the...


  • Durham, United States Boston Consulting Group Full time

    Locations: Atlanta | Austin | Boston | Chicago | Dallas | Denver | Houston | Miami | Nashville | Summit | New York | Philadelphia | Pittsburgh | Durham | WashingtonWho We AreBoston Consulting Group partners with leaders in business and society to tackle their most important challenges and capture their greatest opportunities. BCG was the pioneer in business...


  • Durham, United States MCNC Full time

    Position Summary This is a junior-level position in MCNC's growing cybersecurity operations team. It requires experience with networking, system administration, cybersecurity concepts, and a self-reliance in being able to research new concepts as you encounter them. Direct experience with cybersecurity solutions is a plus but is not required. As part of a...


  • Durham, United States MCNC Full time

    Job DescriptionJob DescriptionPosition SummaryThis is a junior-level position in MCNC’s growing cybersecurity operations team. It requires experience with networking, system administration, cybersecurity concepts, and a self-reliance in being able to research new concepts as you encounter them. Direct experience with cybersecurity solutions is a plus but...

  • Cybersecurity Advisor

    4 weeks ago


    Durham, North Carolina, United States SilverSky Full time

    ABOUT THE ROLEAs Silversky's Cybersecurity Advisor, you will play a key role as part of the Cyber Advisory team as they work to build cyber resilient security programs for our customers. In this role, you will use security frameworks and compliance standards to review the current maturity of our client's cyber program and make strategic recommendations to...


  • Durham, United States Self-Help Full time

    WHO We Are: Self-Help started in 1980 with a focus on economic inequality, especially in communities that have faced systemic barriers in building wealth. At the core of what Self-Help does is a drive to create and protect ownership and economic opportunity. In other words, we're committed to economic justice! Economic Justice means that all communities...


  • Durham, United States restor3d Full time

    Job DescriptionJob DescriptionJob Summary:The Information Security Analyst will be responsible for developing and managing information integrity, confidentiality, and availability through the integration of security policies, security awareness, access controls, environmental controls, and the implementation of security-related technology.This position...


  • Durham, United States restor3d Full time

    Job DescriptionJob DescriptionJob Summary:The Information Security Analyst will be responsible for developing and managing information integrity, confidentiality, and availability through the integration of security policies, security awareness, access controls, environmental controls, and the implementation of security-related technology.This position...


  • Durham, United States Insight Global Full time

    Job Description:Our client is seeking a Senior QC Analyst to join their expanding team in the RTP area. The Analytical Method Lifecycle Senior Associate will support the overall management and delivery of phase appropriate analytical method verification/qualification/validation and method transfer between clients and Resilience stakeholders. The Method...


  • Durham, United States Fidelity Investments Full time

    Job Description : The Role The External Audit Center of Excellence within Fidelity’s Enterprise Technology Risk and Analytics (ETRA) group is seeking a passionate, driven, and experienced professional to help us oversee the technology areas of external audit engagements. You will enhance and run the external audit oversight program activities...

  • Risk Analyst III

    2 weeks ago


    Durham, United States First Citizens Bank Full time

    Overview: This position provides risk analytics and research support for credit loss modeling and credit risk analytics.  Produce automated reports on data quality, model input and output stability, and model outcomes analysis.  Additionally, the position will assist in minimizing risk, evaluating ongoing processes, and maintaining compliance with rules...


  • Durham, United States Velocity Clinical Full time

    Overview Velocity Clinical Research is an owned and integrated research site organization, providing excellence in patient care, high quality data and fully integrated research sites. At Velocity, we align our values and behaviors to give our employees the best chance of delivering on our brand promise: to bring innovative medical treatments to patients. We...


  • Durham, United States JobRialto Full time

    Required: Senior Business Analyst - Health Plan •Health Plan experience is required •Elicit, analyze, document and manage requirements for changes to business processes, policies, information, and information systems for larger and/or more complex business problems. •Develop and elicit requirements for departmental and corporate projects that are more...