Junior Security Analyst / Full-time (Remote)

Finance
Gold Coast (Remote)
Director, Entry level

Refer a Friend

Why join

Important : After Applying , Check Inbox or Spam Folder For Next Steps.


Job Description

The Junior Security Analyst (Compliance and Risk Security Analyst) will report to the Chief Information Security Officer (CISO) and has responsibility for evaluating and managing the security and privacy risk posed by third parties. This position requires a high-level knowledge of all information technology verticals, the ability to quickly ascertain whether security and privacy controls are implemented, and the ability to positively influence others to implement the controls. Essential Duties/Responsibilities: 

  • Conduct third party risk assessments and audits through application of established criteria.
  • Identify methods to document and track third-party risk and get third party commitment to implement risk controls.
  • Conduct privacy impact assessments of third parties using established processes.
  • Ensure that proper documentation for new and existing third-party relationships is properly completed, maintained, and retained.
  • Perform reconciliation between vendor payment records and the third-party risk database.
  • Perform Incident Response on reported incidents to the security team.
  • Evaluate suspicious threats and activities in email and systems.
  • Assists in the evaluation of suspected malware and provides recommendations of remediation.
  • Assist with developing and maintaining information and privacy security policies, procedures, standards, and guidelines.
  • Tracks and correlates our security and privacy commitments to other parties (clients).
  • Participate in client audits and assessments to ensure the firm’s security and privacy program meets client expectations.
  • Routinely interfaces with the CISO, DPO, IT Security team, IT Operations, IT Applications, Legal, and third parties to determine the applicable obligations, initial and on-going risks, recommends mitigations, and tracks risks to closure.
  • Maintain an active working knowledge of emerging third-party security trends including the latest attack methods, vulnerabilities, and remediation techniques.
  • Maintain an understanding of privacy concepts and legal obligations, including GDPR, HIPAA, and new or evolving privacy obligations.
  • Maintain a database or GRC system of our security and privacy client commitments.
  • Other duties as may be assigned. 

Benefits: 

  • 401(k)
  • 401(k) matching
  • Dental insurance
  • Employee assistance program
  • Flexible spending account
  • Health insurance
  • Health savings account
  • Life insurance
  • Paid time off
  • Parental leave
  • Retirement plan
  • Tuition reimbursement
  • Vision insurance


Skills

Data Analysis
By clicking ‘Submit application’ you consent to dayone processing your data and reach out to you using the data provided.
Powered By