Technical Risk Assurance Analyst within Vanguard focusing on governance, risk, compliance, and security assessments in IT. Engaging with senior leaders and managing security requirements effectively.
Responsibilities
Lead and conduct security assessments to measure the adequacy of existing information security controls
Identify potential and actual system vulnerabilities, integration requirement and ramifications, and emerging strategic security needs and recommends corrective measures
Coordinate reporting on information security risks and works with IT sub-divisions, third party partners, and business units in identifying the impact of technology implementations on IT and business unit operations
Lead and maintain the evaluation and assessment process of in determining security requirements for data systems, networks, or websites
Identify system issues and recommend technical security solutions
Coordinate and lead the adoption of new security initiatives and solutions
Lead technical support for assessments of assets, risks, and the implementation of appropriate data security procedures and products
Ensure security requirements are met during implementation
Ensure the adequacy of development, testing and implementation processes for security plans, risk assessments, products, and control techniques
Evaluate Vanguard technical acquisitions, infrastructure and development processes, and investigate complex potential or actual information security violations to ensure that adequate security measures are established and maintained, according to established policies
Lead and coordinate security assessment plans, participate in the security vulnerability mitigation and acceptance process, and assist with managing vendor relationships
Participate in special projects and perform other duties as assigned
Requirements
Minimum five years related work experience
Three years experience in IT security or application development
Undergraduate degree in related field or equivalent combination of training and experience
Preferred security certification such as ISC2 CISSP, GIAC Security, Essentials Certification (GSEC), GIAC Penetration Tester Certification (GPEN), GIAC Web App Pen Tester (GWPN), or Certified Ethical Hacker (CEH)
Leading a team of operational process analysts ensuring process governance execution for S&P Global Energy's operational areas. Collaborating to deliver insights for a sustainable future.
Tech Governance Pleno enhancing OKR and Portfolio management at a leading digital marketplace. Join us in an inclusive environment focused on equity and innovation.
Data Governance Specialist implementing programs and managing data quality at Azul Airlines. Collaborating with teams to ensure compliance with corporate and regulatory standards.
Corporate Governance Specialist providing strategic support and managing global governance actions at Westinghouse. Leading compliance with corporate governance laws in multiple jurisdictions.
Senior Consultant implementing SAP Master Data Governance solutions at Wavestone. Collaborating with clients to optimize data processes and strategies in a hybrid work environment.
Data & Process Analyst optimizing SCM processes and data in Dortmund for Elmos Semiconductor. Ensuring data integrity in S/4HANA and improving operational efficiency.
SAP Authorization & Governance Inhouse Consultant managing roles and permissions in SAP environments for MERKUR GROUP. Enhancing security and compliance across SAP systems.
Risk Analyst at PayJunction monitoring and investigating merchant processing activities. Offering support to active merchants and ensuring compliance in risk management.
Operational Risk Advisor responsible for delivery of risk management services and implementation of Operational Risk program elements. Collaborating with teams to ensure compliance with policies and industry standards.