Cyber Risk Analyst assessing third-party vendor cybersecurity risks for S&P Global. Collaborating with teams to evaluate vendors' security postures and enhance risk management processes.
Responsibilities
Conduct thorough Cybersecurity, Business Continuity, Artificial Intelligence for Cloud Service Prover, Non-Cloud Service Providers Vendors, evaluating their information security posture.
Effectively collaborate with internal teams to identify critical vendors and assess their potential impact on the organization's cyber risk profile.
Communicate risk assessment findings and recommendations to key stakeholders, including senior management, legal, and compliance teams.
Work closely with vendors to address identified security gaps and ensure they meet the organization's cybersecurity requirements.
Review the vendors on the continuous monitoring program and assisting in driving the periodically review the vendors.
Monitor and stay abreast of evolving cybersecurity threats and industry trends to enhance the effectiveness of the risk assessment process.
Support enhancement projects within Vendor Risk Management to meet various business and regulatory requirements.
Assist the team members in balancing the load and managing Ad-hoc projects.
Requirements
Bachelor’s degree in computer science or engineering or equivalent
Minimum 3-5 years of experience in Information Security or Technology Risk Management
Any prior exposure to vendor risk management and/ or privacy laws and regulations is a plus.
Demonstrable understanding of the concepts of technology controls and information security controls.
Exposure to cloud technologies and cloud security is highly desired; the familiarity with public cloud technologies such as Amazon Web Services (AWS) or Microsoft Azure or Google Cloud is highly preferred.
Exposure to Cyber contract reviews is an advantage
Excellent communication skills - a must. The resource should have the ability to communicate with cross-functional teams and vendors, both written and oral communication is critical.
Benefits
Health & Wellness: Health care coverage designed for the mind and body.
Flexible Downtime: Generous time off helps keep you energized for your time on.
Continuous Learning: Access a wealth of resources to grow your career and learn valuable new skills.
Invest in Your Future: Secure your financial future through competitive pay, retirement planning, a continuing education program with a company-matched student loan contribution, and financial wellness programs.
Family Friendly Perks: It’s not just about you. S&P Global has perks for your partners and little ones, too, with some best-in class benefits for families.
Beyond the Basics: From retail discounts to referral incentive awards—small perks can make a big difference.
Information Security Analyst supporting security practices at Silimed, the leading silicone implant manufacturer in Latin America. Ensuring compliance and resilience in critical OT & IT environments.
Security Analyst focusing on incident response and threat intelligence for Infotree Global Solutions. Collaborating on investigations and proactive security analysis across the global enterprise environment.
Security Analyst defending enterprise systems against cyber threats. Supporting threat intelligence and incident response activities in a global biotechnology organization.
Cyber Risk Analyst at Semperis safeguarding organizational assets through risk analysis and mitigation. Collaborating with vendors and cross - functional teams to assess and control Cyber Risks.
Senior Cybersecurity Analyst at Localiza&Co, responsible for securing information systems and data integrity through various cybersecurity measures. Engage in planning and implementing security protocols for cloud integrations.
Information Security Analyst handling security incidents and leading technical initiatives within a retail company. Involves reporting, tool management, and policy development.
Lead Cybersecurity Analyst specializing in Cloud Security for FIS. Assessing security posture of cloud environments and providing actionable remediation strategies.
Network Security Analyst II securing information systems and networks against security threats at Cayuse. Responsible for vulnerability assessments, incident response, and security measures implementation.