Cybersecurity Risk Analyst Job at Sharp Decisions, Jersey City, NJ

SWE0c1h0OFZKbnFyR1FTQnN5YXV5Y1lSNVE9PQ==
  • Sharp Decisions
  • Jersey City, NJ

Job Description

Cybersecurity Risk Analyst

The Information Risk Analyst/Consultant is responsible for creating risk assessment questionnaires, performing risk assessments of applications (on-premises and cloud), infrastructure (on-premises and cloud), as well as vendors assessments against a defined risk framework. These assessments will be conducted through a formalized risk assessment program. The Information Risk Analyst will have the ability to identify risks that are associated how business and technology workforce utilize information technology and in supporting technological systems.

Principal Responsibilities:

  • Research technology security issues, cybersecurity best practices, and create risk assessments questionnaires that can be used to assess applications and infrastructure.
  • Schedule and perform information risk assessments using company methodology; identify, document and communicate control deficiencies in business processes and technology systems.
  • Partner with the Enterprise IT to agree on cybersecurity risk findings identified through the risk assessment (e.g., Databases, Operating Systems, Networking Devices, Storage Systems, Cloud Systems, etc.), new initiatives, and ad hoc processes.
  • Provide risk remediation recommendations that the business and technology may implement to mitigate identified control gaps.
  • Partner with business and IT to ensure that risks are clearly articulated in a manner that is understood by business and technology audiences.
  • Evaluate management responses to ensure that remediation plans and tasks adequately address identified control gaps.
  • Create assessment reports and dashboards that will be communicated with various IT owners.
  • Document risk issues in the designated risk register
  • Assist the business and technology groups through the company process for policy exceptions and risk acceptance.
  • Participate in and influence information risk assessment process improvement.

Experience:

  • 5+ years of risk assessment experience in one or more areas: application, infrastructure, vendor risk management
  • Financial Services Industry experience a plus but not required.
  • Proficiency with Information Risk Management best practices
  • Proficiency with information technology in general and cybersecurity technical issues

Knowledge and Skills Required:

  • Proven technical knowledge of infrastructure, networks, databases and systems and how they affect an organizations cybersecurity risk.
  • Proven knowledge of security methodologies, policies, standards and best practices.
  • Proven knowledge of information technology systems, infrastructure and operations.
  • Ability to explain and articulate technical concepts using both technical and non-technical terms.
  • Critical thinking and analytical skills.
  • Excellent presentation skills (MS PowerPoint)
  • Ability to manipulate data in a spreadsheet (MS Excel)
  • Ability to work collaboratively by building consensus and influencing decision making to foster forward progress with projects and initiatives.
  • Strong oral and written communication skills.
  • Excellent organizational skills, coupled with ability to be versatile and flexible.
  • Sound business judgment and the ability to work successfully with all levels of management.
  • Excellent grammar and style skills; ability to adapt writing style for different audiences and media.

Education, Training and Certification:

  • Bachelors degree preferred.
  • CISSP/CISM/CRISC/CCSP certification preferred

Job Tags

Flexible hours,

Similar Jobs

Department of Forestry & Fire Protection

Forestry Equipment Manager I Job at Department of Forestry & Fire Protection

Job Description and Duties For questions related to the duties of the position, please contact Deputy Chief Tiffany Tracyby phone at (***) ***-**** or by email at ****@*****.***. This position is located in Auburn, CA. You will find additional information...

Incendia Partners

Legal Counsel & Compliance Officer Job at Incendia Partners

A globally respected manufacturing company is seeking a Legal Counsel & Compliance Officer to lead and elevate their legal and compliance strategy across their North American operations. This is a high-impact role for an experienced legal professional with strong business... 

The Okonite Company

Industrial Maintenance Mechanic Job at The Okonite Company

 ...Description JOB SUMMARY: The Industrial Maintenance Mechanic is responsible for providing maintenance support to the Okonite Cable and Compound Manufacturing Plants. This position requires a detail-oriented individual who has a thorough understanding of industrial... 

Dexian

AS400 Technical Lead Job at Dexian

AS400 Technical Lead AS400 Technical Lead with extensive experience in architecting, designing, and developing in IBMi (AS400). Required Qualifications: ~ A minimum of 7 years of experience with a deep understanding of AS/400 application development. ~ At least...

IERUS Technologies, Inc.

Flight Termination System Engineer Job at IERUS Technologies, Inc.

Description: This position provides engineering support to the development of an automated Flight Termination System (FTS) system for a rocket that is the cornerstone of an exciting space program in the new era of human exploration beyond Earths orbit. This position supports...