See all roles

Information Security Expert, Client Security Assurance

Work from home Full-time role Hiring

About the position Reporting to the Regional Lead-Client Security Assurance. With a client-focused attitude you will: Lead client audits (onsite/virtual) including presentation of evidence, explanation of controls, planning and execution of pre and post audit activities (coordinate needed remediation, etc.). Support commercial teams to present Experian's security controls and risk posture to clients through Requests for Information / Requests for Proposal and/or pre-sales consultancy. Review contractual security clauses & deliverables under contractual agreements to ensure Experian does not exceed risk tolerance or be put in a position where it fails in its ability to meet client requirements. Take the lead on articulating Experian's security posture to justify any changes with clients. Analyze audit results and post audit reports and follow up on security items. Conduct gap analysis and articulate contractual risks to internal stakeholders to enable risk-informed contractual decisions. Maintain current and up-to-date evidence repository Provide accurate, valid, and appropriate responses in a timely manner to security questionnaires and ad-hoc inquiries sent by prospective and existing clients and business partners. Provide SME consultancy to Business Units on Experian information security governance and risk management framework in the context of the above. Maintain client-facing security documentation ensuring its continued relevance and accuracy. Collaborate with global team members across regions to ensure consistent experiences for clients around the world, and act as a mentor to junior members in sharing knowledges and experiences.

Responsibilities

  • Lead client audits (onsite/virtual) including presentation of evidence, explanation of controls, planning and execution of pre and post audit activities (coordinate needed remediation, etc.).
  • Support commercial teams to present Experian's security controls and risk posture to clients through Requests for Information / Requests for Proposal and/or pre-sales consultancy.
  • Review contractual security clauses & deliverables under contractual agreements to ensure Experian does not exceed risk tolerance or be put in a position where it fails in its ability to meet client requirements.
  • Analyze audit results and post audit reports and follow up on security items.
  • Conduct gap analysis and articulate contractual risks to internal stakeholders to enable risk-informed contractual decisions.
  • Maintain current and up-to-date evidence repository
  • Provide accurate, valid, and appropriate responses in a timely manner to security questionnaires and ad-hoc inquiries sent by prospective and existing clients and business partners.
  • Provide SME consultancy to Business Units on Experian information security governance and risk management framework.
  • Maintain client-facing security documentation ensuring its continued relevance and accuracy.
  • Collaborate with global team members across regions to ensure consistent experiences for clients around the world, and act as a mentor to junior members in sharing knowledges and experiences.

Requirements

  • At least 8 years of experience working in an enterprise IT environment with at least 5 of those years executing internal or external audits, with exposure to supporting roles
  • Project management skills
  • Experience leading different cyber security audits of varying complexity
  • Hands-on experience auditing cloud environments and tactically implementing cloud controls (AWS, GC, Azure, etc.)
  • Experience reviewing, redlining and negotiating security terms in contracts (SOW, STAC, etc.)
  • Experience with cloud-native tools such as AWS Security Hub, Azure Security Center, or other 3rd party tools to assess the security posture of cloud environment against industry benchmarks (such as NIST 800-53, CIS, MITTRE ATT&CK, CSA CSM, ISO27002, etc.)
  • Professional security certification such as CCSP/CCSK/CISSP/CISM/CISA/ISO27001LA or other equivalent, or willingness to pursue other relevant accreditations (company supported)

Benefits

  • Great compensation package and bonus plan.
  • Core benefits including medical, dental, vision, and matching 401K.
  • Flexible work environment, ability to work remote, hybrid or in-office.
  • Flexible time off including volunteer time off, vacation, sick and 12-paid holidays.

Apply tot his job Apply To this Job

You might like

Cyber Security Automation Engineer

Work from home Full-time role

Principal Security Engineer, Emerging Technology

Work from home Full-time role

Head of Security, Compliance & GRC

Work from home Full-time role

Regulatory & Security Compliance Analyst

Work from home Full-time role

Information Security and Compliance Analyst

Work from home Full-time role

Sr. Security Engineer 1 (Customer Trust)

Work from home Full-time role

Security Engineer, Incident Response

Work from home Full-time role

[Remote] SOC Security Analyst L2

Work from home Full-time role

Sr. Cyber Detection Incident Analyst - Security Operations

Work from home Full-time role

Security Operations Analyst

Work from home Full-time role

Attorney Employment Law Remote

Work from home Full-time role

[Remote] Associate Engineer I

Work from home Full-time role

Experienced Customer Service Agent – Remote Opportunity with arenaflex

Work from home Full-time role

Experienced Customer Service Representative – Virtual Call Center Operations

Work from home Full-time role

Experienced Customer Service Representative I – Student Loan Support

Work from home Full-time role

Hiring Now: Corporate Title Attorney - Nevada

Work from home Full-time role

Special Counsel – Employment Litigation (Remote + Flexible) | No BD | Partn

Work from home Full-time role

[PART_TIME Remote] Looking for Eagles Homework Help and Tutoring

Work from home Full-time role

[Remote] Staff Project Manager Engineer - Data Center, AI, Telecom Experience - Remote within the US

Work from home Full-time role

Customer Success Officer – Part-Time Client Experience & Retention Specialist (Fort Worth, Texas)

Work from home Full-time role