DescriptionAs an Associate - Information Security Management within the Cybersecurity Technology Controls Organization, you'll design and implement processes and tools that safeguard the firm's computing environment. Creating action plans, mitigating risks, and resolving control issues, you'll gain key insight into today's complex risk and regulatory landscape. Working with our cybersecurity team, you’ll be at the forefront of innovation designed to strengthen our operations. Additionally, you'll have the chance to participate in steering committees, promote IT security awareness across the firm, advise and support business security risk and control activities, and drive your career in any direction you choose.
This role requires a wide variety of strengths and capabilities, including:
- Obtain formal training and/or Bachelor's degree with 3+ years of applied experience or equivalent expertise in information security, or a related field, with a focus on managing risk identification, assessment, and mitigation.
- Advanced knowledge of multiple IT control and project management practices, plus experience working across large environments
- Ability to collaborate with high-performing teams and individuals throughout the firm to accomplish common goals
- Expertise in application and infrastructure high-availability and resiliency architectures
- Proficiency in information security domains, including policies and standards, risk and control assessments, access controls, regulatory compliance, technology resiliency, risk and control governance and metrics, incident management, secure systems development lifecycle, vulnerability management, and data protection