- Develop and maintain key Information Security Policies and standards in conjunction with Policy SMEs
- Define and operationalize routine program metrics to understand program health and increase program adoption and report out on those metrics to key stakeholders
- Ability to provide guidance and support on the use of the GRC platform (Onspring)
- Administer the GRC platform and hold monthly meetings with Security team members to keep security risk register up to date
- Prepare monthly reports on enterprise security risks for Chief Security Officer utilizing Onspring
- Excellent conceptual, organizational, analytical, and problem-solving skills with the ability to influence the behavior of peers and build relationships with other teams.
- Experience collaborating and influencing with stakeholder and partner organizational leadership and management, including vendors and third parties.
- Bachelor's degree in Information Security, Computer Science, or related field, or equivalent experience or expertise required.
- Minimum 4 years of cybersecurity experience or related experience in IT, or IT Audit.
- One of the following certifications, or equivalent certifications preferred: CISSP, CISM, GIAC, CISA, CRISC.
- Experience reviewing and interpreting information security data and processes for potential control or framework compliance issues (PCI, NIST, CIS V.8).
- Working knowledge of Governance Risk and Compliance (GRC) tools (ideally Onspring) and automation of risk evaluation, integration with enterprise risk functions, and reporting.
- Experience populating and maintaining a risk register
- Experience and working knowledge of security risk assessment and control frameworks, good understanding of the role and function of regulations, data management practices, and cybersecurity tooling.
- Experience writing Security Policies
- Working knowledge of the role of firewalls, vulnerability management, penetration testing, server and desktop configuration and controls, and encryption, and broad understanding of various security domains.
- Strong sense of ownership and comfortable with autonomy and ambiguity
- Outstanding communication and writing skills that enable you to proactively build relationships, inform others, and clearly explain security requirements to people
- Bachelor's degree in Information Security, Computer Science, or related field, or equivalent experience or expertise required.
- Minimum 4 years of cybersecurity experience or related experience in IT, or IT Audit.
- One of the following certifications, or equivalent certifications preferred: CISSP, CISM, GIAC, CISA, CRISC.
- DATA GOVERNANCE
- RISK ASSESSMENT
- SECURITY POLICIES
- CISSP
- COMPLIANCE MONITORING
-
Engineer III
3 weeks ago
Wilson Workforce Solutions LLC West Valley City, United StatesAbout the job Engineer III · By joining a team of more than 11,000 people working across more than 60 countries, you will be part of an agile network of talented and ambitious people. In fact, we count on you to engage, connect and collaborate with colleagues all over the world. ...
-
Engineer III
2 weeks ago
CrowdStrike Holdings, Inc. San Francisco, United States#WeAreCrowdStrike and our mission is to stop breaches. As a global leader in cybersecurity, our team changed the game. Since our inception, our market leading cloud-native platform has offered unparalleled protection against the most sophisticated cyberattacks. We work on large s ...
-
Engineer III
5 days ago
Cowlitz County San Francisco, United StatesJob Description · This is a professional civil engineering position that functions as a Civil Engineer for Cowlitz County. The position consists of two divisions that provide engineering and planning services for the Utilities and Stormwater Division, and the Diking and Developm ...
-
Engineer III
2 days ago
Cowlitz County San Francisco, United StatesJob Description · This is a professional civil engineering position that functions as a Civil Engineer for Cowlitz County. The position consists of two divisions that provide engineering and planning services for the Utilities and Stormwater Division, and the Diking and Developm ...
-
Electrical Engineer III
6 days ago
Syska Hennessy San Francisco, United StatesAs an Electrical Engineer III- IV you will be responsible for creating basic designs under the direction of senior engineers and/or senior designers, performing equipment selections, and load/energy and pressure drop calculations for a variety of pro Electrical Engineer, Engineer ...
-
Engineering Technician III
3 days ago
PSG Global Solutions San Francisco, United StatesWe're looking for an · Engineering Technician III , working in · Biotechnology/Medical Devices · industry in · 269 E Grand Avenue, South San Francisco, California, 94080, United States . · Manages and performs device QC testing of electronics assemblies to ensure compliance ...
-
Quality Engineer III
4 weeks ago
BioFire Diagnostics West Valley City, United StatesThis is a full-time exempt position. The Quality Engineer III is responsible for assisting with the maintenance of technical aspects of the Quality Management System, specifically the control of Design and Development Changes. This person will be wor Quality Engineer, Continuous ...
-
Design Engineer III
3 weeks ago
Sherwoodengineers San Francisco, United StatesDesign Engineer III Civil Engineering - Careers at Sherwood Design Engineers · Career Opportunities with Sherwood Design Engineers · Careers at Sherwood Design Engineers · Current job opportunities are posted here as they become available. · Back To Openings · Design Engineer ...
-
Design Engineer III
2 weeks ago
Sherwood Design Engineers San Francisco, United StatesDesign Engineer III - Civil Engineer · CA | GA | NY | CR · About Sherwood · Sherwood is a civil and environmental engineering firm that is committed to investing in and embracing people, communities and the environment. · Our team has delivered net zero energy and net zero ca ...
-
Process Engineer III
3 weeks ago
Hexcel West Valley City, United StatesWith our strong investment in research and development and our culture of continuous improvement, Hexcel is the industry leader in the manufacturing of advance composite materials, including carbon fiber, woven reinforcements, resins, prepregs, honeycombs and additive manufacture ...
-
Project Engineer III
3 weeks ago
Veolia North America San Francisco, United StatesProject Engineer III - Electrical · Veolia North AmericaSan Francisco, CA (Onsite)Full-Time · Apply on company site · Company Description · About Veolia North America · A subsidiary of Veolia group, Veolia North America (VNA) offers a full spectrum of water, waste and energy mana ...
-
Design Engineer III
2 weeks ago
Sherwood Design Engineers San Francisco, United StatesDesign Engineer III - Civil Engineer · CA | GA | NY | CR · About Sherwood · Sherwood is a civil and environmental engineering firm that is committed to investing in and embracing people, communities and the environment. · Our team has delivered net zero energy and net zero ca ...
-
Design Engineer III
2 weeks ago
Sherwood Design Engineers San Francisco, United StatesDesign Engineer III - Civil Engineer · CA | GA | NY | CR · About Sherwood · Sherwood is a civil and environmental engineering firm that is committed to investing in and embracing people, communities and the environment. · Our team has delivered net zero energy and net zero ca ...
-
Software Engineer III
2 weeks ago
Mindlance San Francisco, United StatesJob Description: Summary: · The main function of a software engineer is to apply the principles of computer science and mathematical analysis to the design, development, testing, and evaluation of the software and systems that make computers work. A typical software engineer res ...
-
Data Engineer III
3 weeks ago
GoodRx San Francisco, United StatesGoodRx is America's healthcare marketplace. Each month, millions of people visit to find reliable health information and discounts for their healthcare — and we've helped people save $60 billion since 2011. We provide prescription discounts that are accepted at more than 70,000 ...
-
Data Engineer III
2 weeks ago
ZoomInfo San Francisco, United StatesAt ZoomInfo, we encourage creativity, value innovation, demand teamwork, expect accountability and cherish results. We value your take charge, take initiative, get stuff done attitude and will help you unlock your growth potential. One great choice can change everything. Thrive w ...
-
Security Engineer III
6 days ago
Ask Staffing San Francisco, United StatesRole Title: Security GRC Senior Analyst · Pinterest's Security team is seeking an experienced Security Governance, Risk, and Compliance Senior Analyst to further build and maintain Pinterests's Security GRC Program. This is a contractor role to cover temporary leave of the Secur ...
-
Automation Engineer III
1 week ago
E Tech Group San Francisco, United StatesAt E Tech Group, joining our team means joining a group of passionate and forward-thinking experts. We're one of the largest engineering and system integration firms in the United States providing value for our clients through IT automation and control solutions for more than 25 ...
-
Software Engineer III
2 weeks ago
Mindlance San Francisco, United StatesJob Description: Summary: · The main function of a software engineer is to apply the principles of computer science and mathematical analysis to the design, development, testing, and evaluation of the software and systems that make computers work. A typical software engineer rese ...
-
Electrical Engineer III
2 weeks ago
ACL Digital San Francisco, United StatesStrong electrical engineering background with experience in designing high quality hardware and software for computer systems. Responsibilities include: Design and development of power electronics, analog circuitry, AC/DC power supplies and adapters for computer systems. Developm ...
Security Engineer III - San Francisco, United States - Ask Staffing
Description
Role Title: Security GRC Senior AnalystPinterest's Security team is seeking an experienced Security Governance, Risk, and Compliance Senior Analyst to further build and maintain Pinterests's Security GRC Program. This is a contractor role to cover temporary leave of the Security GRC manager. The ideal candidate will partner with Pinterest's Security colleagues to create culture change and ensure security best practices company wide are reflected in Pinterest US and International activities. The Security GRC Senior Analyst will have responsibility for the composition of Pinfosec policies and the administration of the Pinfosec GRC tool (Onspring) and will be an overall advocate for Security Governance, Risk & Compliance across Pinterest.
What you'll do
Required