Third Party Risk Analyst (Incident Response)
Insight Global
Job Description
The individual for this role will lead third party incident response and management activities for BMOFG third and fourth-party suppliers. The analyst will provide cybersecurity subject matter expertise to execute on the following:
*Executes end to end cyber security processes for monitoring, engaging, tracking, and remediation activities related to third-party and fourth-party incident response
*Reviews technical artifacts to determine if they satisfy remediation requirements, align to industry standard framework requirements, and submit reports with written and detailed analysis surrounding each incident
*Uses analysis to identify risks, understands the scope of complexity that exists in computing environments, across all layers, and the ways which a security incident may impact that environment. Equipped with the technical skills to determine necessary risk mitigations associated with cyber security incidents and root cause analysis
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com .
To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/ .
Skills and Requirements
*3-5 years of relevant experience within cyber security for third-party incident response and third party risk management
* Experience with third-party incident response, reviewing vulnerability management and penetration test reports, familiarity with OWASP, and ability to identify both risks and root causes
*Experience with conducting cybersecurity assessments on third-party suppliers using common industry frameworks, including NIST Cyber Security Framework (CSF), NIST 800-53, ISO 27001 and 27002, Payment Card Industry (PCI) Data Security Standard (DSS), CIS Top 18/20, or OWASP
*Preference for candidates with at least one certification in a related field, with strong preference for Information Security certifications from a well-recognized institution (e.g. (ISC)2, ISACA, SANS)
*Experience with tools such as BitSight, Nessus, SecurityScorecard, Black Kite, Risk Recon, Recorded Future, Threat Connect, Flashpoint, RSA Archer, or Shodan
*Strong proficiency in Microsoft Excel, Word, and Outlook and closely tracking of tasks with frequent status updates null
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal employment opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment without regard to race, color, ethnicity, religion,sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military oruniformed service member status, or any other status or characteristic protected by applicable laws, regulations, andordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or the recruiting process, please send a request to HR@insightglobal.com.
Confirm your E-mail: Send Email
All Jobs from Insight Global