Principal Information Security Risk Analyst

2 days ago


Dallas, Texas, United States Southern Glazer's Wine & Spirits Full time

Job Summary

The Principal Information Security Risk Analyst will be responsible for assessing IT risk both internally and externally to help secure SGWS data and information. This position requires extensive knowledge of information security risk and third-party risk management, as well as various technologies within the organization.

Key Responsibilities

  • Act as an Information Security Risk Management subject matter expert
  • Assist the Information Security Risk Manager in developing and maintaining the risk hierarchy, risk taxonomy, and risk register
  • Conduct regular risk assessments, document issues, determine risk levels, and coordinate with subject matter experts to monitor remediation of deficiencies
  • Monitor established risks in the IT organization and report on the effectiveness of related mitigating controls
  • Work closely with the Information Security Governance and Compliance team and security leadership to ensure cybersecurity policies and practices are designed to mitigate risk
  • Participate in architecture reviews and project meetings to identify risk impact to the organization
  • Implement and maintain the ServiceNow Risk Management solution

Third-Party Risk Management

  • Engage with third-party relationships to ensure adequate controls are in place to protect SGWS data and information
  • Assist the Information Security Risk Manager in developing, growing, and maturing the risk-based third-party assessment and continuous monitoring program within ServiceNow
  • Conduct annual vendor risk management reviews of existing third parties based on established risk ratings
  • Review new third-party engagements, track issues to resolution, provide feedback on required security controls, and ensure contracts contain Southern Glazers' required content
  • Review SOC1 & SOC 2 Type 2 reports, vulnerability assessments, penetration test results, and additional documentation as required
  • Travel to Southern Glazers' office locations and third-party sites to perform on-site security assessments as needed

Requirements

  • Eight or more years of professional IT/Security experience, including Third-Party Risk Management, IT Risk Management, cybersecurity, and governance, risk, and compliance (GRC)
  • Bachelor's degree in computer science, information security, information assurance, or related field; or equivalent professional work experience
  • Extensive knowledge of IT Risk Management processes and best practices
  • Extensive knowledge of Third-Party Risk Management processes and best practices
  • Skilled at working with diverse teams and promoting enterprise-wide risk management rigor and a security-first culture
  • Proven project management, multitasking, and organizational skills
  • Experience working with industry standards, including NIST Cyber Security Framework (CSF), NIST 800-53, ISO 27001 & 27002, Cloud Security Alliance (CSA), OWASP, TOGAF, IEC 62443, or CIS Benchmark
  • Knowledge of IT systems, network security, application security, identity & access management, vulnerability management, endpoint security, and cloud environments (AWS, Azure, Salesforce, etc.)


  • Dallas, Texas, United States Southern Glazer's Wine & Spirits Full time

    Job Title: Principal Information Security AnalystThe Principal Information Security Analyst is a critical role within Southern Glazer's Wine & Spirits, responsible for assessing and mitigating IT risks to protect the company's data and information.Key Responsibilities:Develop and maintain a comprehensive risk management framework to identify, assess, and...


  • Dallas, Texas, United States Southern Glazer's Wine & Spirits Full time

    About the RoleThe Principal Information Security Risk Analyst will play a critical role in assessing and mitigating IT risk for Southern Glazer's Wine & Spirits. This position requires a strong understanding of information security risk management, third-party risk management, and cybersecurity best practices.Key ResponsibilitiesRisk ManagementDevelop and...


  • Dallas, Texas, United States Southern Glazer's Wine and Spirits Full time

    About the RoleWe are seeking a highly skilled Principal Information Security Risk Analyst to join our team at Southern Glazer's Wine and Spirits. As a key member of our Information Security team, you will be responsible for assessing IT risk both internally and with third-party vendors to help secure our data and information.Key ResponsibilitiesAct as an...


  • Dallas, Texas, United States Southern Glazer's Wine & Spirits Full time

    OverviewSouthern Glazer's Wine & Spirits is seeking a highly skilled Principal Information Security Analyst to join our team. As a key member of our security team, you will be responsible for monitoring and responding to security incidents, analyzing threats, and implementing countermeasures to protect our systems and data.ResponsibilitiesMonitor and respond...


  • Dallas, Texas, United States Southern Glazer's Wine & Spirits Full time

    Job SummaryThe Principal Information Security Risk Analyst will be responsible for assessing IT risk both internally and externally to help secure SGWS data and information. This role requires extensive knowledge of information security risk and third-party risk management, as well as various technologies within the organization.Key ResponsibilitiesAct as an...


  • Dallas, Texas, United States Southern Glazer's Wine & Spirits Full time

    Job OverviewSouthern Glazer's Wine & Spirits is seeking a highly skilled Principal Information Security Analyst to join their team. As a key member of the security team, you will be responsible for responding to incidents that may impact the security of the company.Key ResponsibilitiesMonitor SIEM, IPS, email systems, and other technologies for threatening...

  • Data Security Analyst

    4 weeks ago


    Dallas, Texas, United States Southern Glazer's Wine & Spirits Full time

    Job Title: Principal Data Security AnalystOverviewThe Principal Data Security Analyst plays a critical role in ensuring the confidentiality, integrity, and availability of sensitive data within Southern Glazer's Wine & Spirits. This position requires a strong understanding of data security principles, technologies, and best practices to identify and mitigate...


  • Dallas, Texas, United States University of Texas Southwestern Medical Center Full time

    Job SummaryUT Southwestern Medical Center is seeking a highly skilled Third-Party Security Risk Analyst to join our Information Security team. As a key member of our team, you will be responsible for ensuring the security and compliance of our third-party vendors and partners.Key ResponsibilitiesConduct regular risk assessments and vulnerability assessments...


  • Dallas, Texas, United States Cambium Learning Group Full time

    Job OverviewThe Information Security Analyst II will play a critical role in supporting the company's existing information security programs and providing technical and analytical support for all aspects of our information security management system.Key ResponsibilitiesSchedule and execute recurring IT controls for all enterprise systems.Help manage all...


  • Dallas, Texas, United States TEKsystems co Allegis Group Full time

    About the RoleWe are seeking a highly skilled Cyber Risk Analyst to join our team at TEKsystems c/o Allegis Group. As a Cyber Risk Analyst, you will play a critical role in ensuring the security and integrity of our clients' information systems.Key ResponsibilitiesPerform security risk assessments of third-party vendors and their solutions to ensure...

  • Data Security Analyst

    1 month ago


    Dallas, Texas, United States Southern Glazer's Wine & Spirits Full time

    Job SummaryThe Principal Data Security Analyst will be responsible for gathering and interpreting data, documenting business requirements, defining and documenting processes, and standardizing data and processes. This role will also involve resolving transaction/data/process discrepancies, identifying opportunities to automate, streamline, and standardize...


  • Dallas, Texas, United States Cambium Learning Group Full time

    Job OverviewThe Information Security Analyst II will play a critical role in supporting the company's existing information security programs and providing technical and analytical support for all aspects of our information security management system.Key ResponsibilitiesSchedule and execute recurring IT controls for all enterprise systems.Help manage all...


  • Dallas, Texas, United States Risk Strategies Full time

    Job SummaryThe Risk Management Advisor is responsible for managing a portfolio of clients, developing long-term relationships, and ensuring quality standards are met. This role involves responding to client inquiries, analyzing data, and interfacing with vendors and key clients internally and externally. The ideal candidate will have strong knowledge of...


  • Dallas, Texas, United States UT Southwestern Medical Center Full time

    About UT Southwestern Medical CenterUT Southwestern Medical Center is a world-renowned medical and research center committed to excellence, innovation, teamwork, and compassion. With over 75 years of experience in Dallas-Fort Worth, Texas, we strive to provide exceptional clinical care and create cutting-edge research programs.Job SummaryWe are seeking a...


  • Dallas, Texas, United States United Security, Inc. Full time

    Job Title: Security Center Intelligence AnalystWe are seeking a highly skilled and detail-oriented Security Center Intelligence Analyst to join our team at United Security, Inc. This role is responsible for monitoring the safety and security of employees, assets, and operational footprint throughout the North American region for our prestigious high-tech...


  • Dallas, Texas, United States Hilltop Holdings Full time

    About the RoleWe are seeking a highly skilled and experienced Senior Risk Advisory Analyst to join our team at Hilltop Holdings. As a key member of our risk management team, you will be responsible for assisting the Risk Advisory Director in executing, maintaining, and enhancing our operational and enterprise risk management program.Key...

  • Credit Risk Analyst

    3 days ago


    Dallas, Texas, United States Lakeside Bank Full time

    Job Title: Credit AnalystLakeside Bank is seeking a highly skilled Credit Analyst to join our team. As a Credit Analyst, you will be responsible for evaluating the creditworthiness of loan applicants and assessing associated risks.Key Responsibilities:Evaluate and analyze financial data to determine credit risk levelsPrepare and present in-depth credit...


  • Dallas, Texas, United States Innovayte Full time

    Job OverviewThe Credit and Market Risk Analyst will play a crucial role in ensuring the firm's exposure is managed effectively in areas related to credit risk, market risk, and evaluating new opportunities and potential risks presented by potential new clients or products.Responsibilities and DutiesPerform due diligence on client portfolios to assess...


  • Dallas, Texas, United States Vaco Full time

    KYC Compliance AnalystVaco is seeking a highly skilled KYC Compliance Analyst to join our team. As a key member of our compliance team, you will play a crucial role in ensuring that our organization complies with regulatory requirements regarding customer onboarding, monitoring, and record-keeping.Key Responsibilities:Conduct thorough KYC checks on new and...


  • Dallas, Texas, United States LP Analyst Full time

    Job OverviewLP Analyst is seeking a highly motivated and detail-oriented individual to join our team as a Process Improvement and Business Intelligence (BI) Analyst. This role is responsible for enhancing organizational efficiency and decision-making through the implementation of process improvement strategies and the development and maintenance of business...