
Security And Risk Governance Analyst
- Heredia
- Permanente
- Tiempo completo
At IBM, work is more than a job - it's a calling: To build.
To design.
To code.
To consult.
To think along with clients and sell.
To make markets.
To invent.
To collaborate.
Not just to do something better, but to attempt things you've never thought possible.
Are you ready to lead in this new era of technology and solve some of the world's most challenging problems?
If so, lets talk.
**Your Role and Responsibilities**
Security and Risk Governance analyst for our public cloud.
The security governance program for public cloud is aimed to establish and maintain a framework to provide assurance that information security strategies are aligned with and support business objectives, are consistent with applicable laws and regulations through adherence to policies and internal controls, and provide assignment of responsibility, all in an effort to manage risk.
A Security and Risk Governance analyst in our team will participate in some or all of the following:
- Contribute to define and establish security strategies and ensure those are aligned with IBM standards, public cloud business objectives and are consistent with regulations
- Identify, assess, monitor, and report risk on enterprise-wide basis for public cloud
- Support the development and implementation of public cloud policy, standards, guidelines, tools, and documentation based on industry-standard best practices and compliance requirements, for consistent execution of risk management activities
- Define metrics and perform metrics measurement of the governance structure, of the security policies, etc.
- Create and monitor awareness and training program throughout the public cloud organisation to ensure continuous adherence to security governance
- Interact with business leaders to ensure required awareness and accountability for risk
**Required Technical and Professional Expertise**
- Bachelor's in technical discipline, Computer Science (or relevant)
- Strong knowledge of main Information Security standards and framework (NIST series, ISO 27000 series, CSA, etc.)
- Ability to understand enterprise business computing operations/requirements, and in particular, Cloud
- Basic technical knowledge and experience on security technologies (like Endpoint protection, Data Protection, Cloud Security, etc.) and on cyber security capabilities (SIEM, SOC, Vulnerability Management, Threat intelligence etc.)
- 5+ years' experience Cyber security program and management
- Extensive experience on IT Risk, Information Security governance and management
- Experience in risk assessment processes, policy development, proposals, work statements, product evaluations, and delivery of technology
- Experience developing and managing a security metrics program
- Experience on regulatory compliance programs (like GDPR, FBA, FedRAMP/ FISMA, HIPAA, SOC 2, PCI, etc.) and audit procedures
**Preferred Technical and Professional Expertise**
- Security/privacy specific training/certification such as CRISC, CIPT, CISSP
- Experience with operations of data centers or Cloud, and network security, including security systems such as firewalls, intrusion detection, vulnerability scanning, OS patching, healthchecking
- Experience with container-based architectures and implementations such as kubernetes, docker, etc.
- Project Management knowledge and experience
**About Business Unit**
Digitization is accelerating the ongoing evolution of business, and clouds - public, private, and hybrid - enable companies to extend their existing infrastructure and integrate across systems.
IBM Cloud provides the security, control, and visibility that our clients have come to expect.
We are working to provide the right tools and environment to combine all of our client's data, no matter where it resides, to respond to changing market dynamics.
Are you craving to learn more?
Prepared to solve some of the world's most unique challenges?
And ready to shape the future for millions of people?
If so, then it's time to join us, express your individuality, unleash your curiosity and discover new possibilities.
Every IBMer, and potential ones like yourself, has a voice, carves their own path, and uses their expertise to help co-create and add to our story.
Together, we have the power to make meaningful change - to alter the fabric of our clients, of society and IBM itself, to create a truly positive impact and make the world work better for everyone.
It's time to define your career.
**About IBM**
Restlessly reinventing since 1911, we are not only one of the largest corporate organizations in the world, we're also one of the biggest technology and consulting employers, with many of the Fortune 50 companies relying on the IBM Cloud to run their business.
At IBM, we pride ourselves on being an early adopter of artificial intelligence, quantum computing and blockchain.
Now it's time for you to join us on our journey to being a responsible technology innovator and a force for good in the w
Buscojobs