Cyber Security Specialist supporting Clients US Consumer Banking Business with Cyber deliverables. Handling security assessments, governance activities and working on integration control enhancements.
Responsibilities
Support gap assessment against Clients Cyber policies and standards and help define remediation plans to address the gaps
Ensure gaps and risks are recorded as per Clients governance framework and are tracked to closure.
Co-ordination of penetration testing of Best Egg networks and applications, and security reviews related to third party security, data security, vulnerability management, secure configuration, and other cyber domains.
Support Cyber Security activities and other related activities to ensure the organizations assets and IT systems are appropriately protected against unauthorized activities including deliberate or accidental loss.
Execution of security risk assessments during the change & development lifecycle to identify vulnerabilities within Best Egg systems, applications and infrastructure, ensuring compensating security controls and countermeasures are embedded to enhance security posture and resilience against cyber threats.
Support and provide guidance to Chief Information Security Office (CISO), Business information Security Office (BISO), Chief Information Office (CIO) and Product Team functions providing security reviews and recommendations for risk mitigation.
Contribute to the design of security solutions
Work with the business and project team(s) to ensure residual risks are adequately mitigated to the degree that meets the risk appetite of the business.
Handling complex information. 'Complex' information could include sensitive information.
Influence or convince stakeholders to achieve outcomes.
Requirements
5 to 7 years of experience in cyber and information security domain preferably in CISO or Security consultancy roles
Broad domain expertise across network security, cloud, IAM, data protection, application security, third-party security and artificial intelligence.
Understanding of security strategies and technologies including secure network design, e-Channels, remote computing, desktop and server hardening, secure web services, Compliance Auditing, Penetration Testing, Security Monitoring, Access Controls (identification, authentication and authorization) and Encryption.
Expertise in Technology and cyber standards and control framework and experience performing gap assessments against these framework as well as recommending risk mitigation measures.
Working knowledge of NIST CSF, ISO/IEC 27001/27002, PCI DSS/PED and CIS Controls, and their application into diverse environments.
Understanding of the security mechanisms associated with Windows or Unix operating systems, switched networks, web based applications and databases.
Competent to discuss the underlying technology with product developers.
Contribute to formulation of controls and best practices for security management.
Can describe all key Cyber Security functions, major roles, responsibilities and their inter-dependencies.
Has contributed to the creation of technology-related security best practices and processes.
Understands security operations from a people, process and technology perspective.
Understands routine Cyber Security monitoring and administration tools.
Senior Software Engineer driving development of privacy features in security platform. Leading technical direction and mentoring engineers for a rapidly growing company.
IT Systemadministrator managing hybrid IT infrastructure and Microsoft 365 services in a dynamic IT team. Responsibilities include security, administration, and support for IT infrastructure.
Expert in Application Security at Deloitte focused on secure development practices and end - to - end risk management. Leading strategic solutions and technical communication for software security.
Join Deloitte as a Senior in Security Architecture, tackling cybersecurity challenges and advising CISO. Collaborate within a multidisciplinary team, defining security frameworks and conducting audits.
AI Infrastructure Security Engineer assessing AI deployment architectures and conducting security testing. Collaborating with engineering teams to ensure AI products meet enterprise security standards.
AI Infrastructure Security Engineer assessing and strengthening AI systems across varied infrastructures. Ensuring security controls in deployment architectures, APIs, and cloud environments in a hybrid workplace.
Engenheiro de Segurança do Trabalho na Capco, consultoria global no setor de serviços financeiros e energia. Foco em segurança ocupacional, operacional e vigilância sanitária.
Privacy and Cybersecurity Counsel providing legal advice on privacy laws and cybersecurity regulations for a global financial services firm. Advise on legal frameworks and support compliance initiatives across teams.
Security Guard monitoring premises to prevent theft and violence for Logan Health. Engaging with staff, patients, and visitors while ensuring safety and compliance.