Information Security Policy Tester
TEKsystems
Our Information and Cyber Security team is looking for an Information Security Analyst to join our Data Loss Prevention Team. This role will support DLP Program within the bank to support DLP monitoring and DLP policy management across different environments and provide consultation on improvisation of the program through identification of gaps and recommend policy tuning. This role will also include monitoring, analyzing, reviewing, and reporting of DLP key controls; and will also closely work with the team on development, analysis, and review of leadership reports.
We are looking for an Information Security Analyst 3 (a Policy Tester) to join our DLP group within the Cyber Security organization. We are looking for individuals to come in and help with testing of new policies and controls within Splunk, SharePoint and Broadcom Enforce, testing and doing QA for those policies and controls within those tools, and being able to tell the developers who wrote the code if things need to be fixed or changed.
Responsibilities:
• Identifies security risks to the organization and ensures that appropriate data security procedures and products are implemented.
• Maintains an awareness of bank security policies and government regulations pertaining to information security.
• Analyze event/alert patterns to properly interpret and prioritize threats with available DLP tools and other devices
• Identify trends and derive requirements aimed at improving and enhancing existing data loss prevention and detection policies
• Provide support to projects that enhance reporting, workflow, change or problem management
• Ability to create quality metrics to accurately display the true posture of the environment
• Investigates and recommends appropriate corrective actions for data security incidents.
• Ability to integrate industry standard frameworks on cyber security platform services catering to Infrastructure security (e.g. NIST), security architecture configuration into the organization’s processes
• Present/Document key findings, progress and hurdles to leadership on regular basis
• Influence stakeholders to prioritize and execute risk management initiatives and drive remediation of process and technology gaps.
• Communicating security issues to a wide variety of internal key stakeholders to include technical teams, executives, risk groups
• Foster and maintain relationships with key stakeholders and business partners both regionally and globally
Essential Qualifications:
• A Bachelor's Degree in Information Systems, Computer Science, Engineering and/or other related discipline or equivalent experience
• 5+ years of progressive experience in implementation of Data Loss Prevention in any tool
• 3+ years’ experience in Data Loss Prevention in policy creation, tuning and testing
• 1+ years’ experience in any one of SIEM tools
• Experience in Creating new DLP/Cloud Policies as per use case.
• Strong experience in policy management like fine tuning of policies and false positives and creating new policies based on requirements and business demands.
• Experience working with cloud security and cloud access security broker (CASB).
• Experience working on Microsoft purview and Symantec/Broadcom DLP an advantage
• Proven experience in internal audits, evidence preparation and gathering
• Knowledge and understanding of cloud computing and Office 365
• Ability to prioritize work, meet deadlines, achieve goals, and work under pressure in a dynamic and complex environment
• Knowledge on industry cybersecurity standard frameworks (e.g. NIST)
• Ability to present reports to and interact with senior leadership
• Strong hands-on skill with MS Excel, Power point
• Excellent communication and documentation skills with good attention to detail
Additional Qualifications:
• Industry recognized certifications like CISM, CISSP, ITIL or any other Security related certifications
• Knowledge of Security Configuration for various platforms/servers
• Good understanding of networking concepts like ICMP, DNS, TCP/IP, DHCP, traceroute.
• Good understanding of threat, vulnerabilities, attacks and countermeasures
• Understanding of OWASP and Vulnerability management
Pay and Benefits
The pay range for this position is $53.59 - $53.59/hr.
Eligibility requirements apply to some benefits and may depend on your job classification and length of employment. Benefits are subject to change and may be subject to specific elections, plan, or program terms. If eligible, the benefits available for this temporary role may include the following: • Medical, dental & vision • Critical Illness, Accident, and Hospital • 401(k) Retirement Plan – Pre-tax and Roth post-tax contributions available • Life Insurance (Voluntary Life & AD&D for the employee and dependents) • Short and long-term disability • Health Spending Account (HSA) • Transportation benefits • Employee Assistance Program • Time Off/Leave (PTO, Vacation or Sick Leave)
Workplace Type
This is a hybrid position in Charlotte,NC.
Application Deadline
This position is anticipated to close on Feb 28, 2025.
About TEKsystems:
We're partners in transformation. We help clients activate ideas and solutions to take advantage of a new world of opportunity. We are a team of 80,000 strong, working with over 6,000 clients, including 80% of the Fortune 500, across North America, Europe and Asia. As an industry leader in Full-Stack Technology Services, Talent Services, and real-world application, we work with progressive leaders to drive change. That's the power of true partnership. TEKsystems is an Allegis Group company.
The company is an equal opportunity employer and will consider all applications without regards to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law.
Confirm your E-mail: Send Email
All Jobs from TEKsystems