Search jobs > Atlanta, GA > Information security

Engineer, Information Security GRC

Ladders
Atlanta, GA
Full-time

Overview

Job Purpose

The Engineer, Information Security GRC is part of a team responsible for the global Information Security program. The role would gain exposure to the full suite of businesses and products which underpin the Parent ICE company.

Information Security ("IS") is charged with :

  • Preventing impactful cybersecurity and physical security incidents,
  • maintaining a reputation with customers, regulators, and key stakeholders as running a best-in-class cybersecurity and physical security program, and
  • avoiding negative impact to business agility and growth from cybersecurity and physical security policies and controls.

Governance, Risk, and Compliance maintain said policies, ensure controls are operating effectively via assessment and attestation, and own the vulnerability management program to identify and correct any problems within.

Responsibilities

  • Security Metrics - Uses automated and manual processes to produce regular reports communicating the status of the Information Security program
  • Policies and Procedures - Maintains corporate Information Security policies and departmental procedures and maps them to relevant control standards
  • Regulator, Audit, and Customer Inquiries - Organizes and updates departmental documentation and responds to inquiries in an organized and repeatable fashion
  • Recertification - Operates periodic processes to ensure hire, transfer, and termination protocols are complied with and regular access reviews are conducted
  • Security Awareness - Builds and maintains company awareness and education programs
  • Risk Assessment - Builds and operates the company platform to document, measure, and report assessments, risks, controls, findings, and remediation activity

Knowledge and Experience

  • University degree in Information Security, Engineering, MIS, CIS, or related discipline
  • 3 or more years of relevant work experience
  • Experience in Cybersecurity Framework (such as NIST, COBIT)
  • Experience with Systems Administration and / or IP Networking is a plus
  • Experience with Regulatory Compliance
  • Experience in an exchange, trading facility, or financial services a plus
  • Experience in Customer communication and Vendor evaluation
  • Experience with senior management and board metrics generation and communication
  • Advanced certifications (for example, the CISSP)
  • Advanced technical writing and / or communication education and experience

Specific Technologies

Excel, Workflow automation tools, Data collection, normalization, indexing, correlation, and visualization. Scripting, regular expressions, string-parsing, light SDLC, and project management.

NIST Cyber Security Framework, CIS, and GRC Platforms.

Schedule

This role offers work from home flexibility of 1 day per week.

Intercontinental Exchange, Inc. is an Equal Opportunity and Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation, gender identity, national origin or ancestry, age, disability or veteran status, or other protected status.

LI-AR1

LI-Hybrid

30+ days ago
Related jobs
Promoted
InsideHigherEd
Atlanta, Georgia

Information Security Engineer Lead. This position will interact on a consistent basis with: units' management and staff, campus and OIT security leadership and security engineering staff. Certified Information Systems Security Professional (CISSP); Global Information Assurance Certification (GIAC). ...

Promoted
Georgia Tech
Atlanta, Georgia

This position will interact on a consistent basis with: units' management and staff, campus and OIT security leadership and security engineering staff. Certified Information Systems Security Professional (CISSP); Global Information Assurance Certification (GIAC). Skills in developing architecture f...

Promoted
VirtualVocations
Marietta, Georgia

Key Responsibilities:Provide technical analysis and support for mainframe security in a complex multi-LPAR RACF environmentConduct mainframe security risk assessments and remediationUtilize RACF, zSecure, RACF/DB2, and CICS for security operationsRequired Qualifications:5+ years of Information Secur...

Tata Consultancy Services
Atlanta, Georgia

Interacting with development teams to articulate security requirements and processes while collaborating on architecture and engineering design options, implementation, testing, and user acceptance. Overview of current threats, risks, information security techniques, and controls to mitigate them. W...

Promoted
VirtualVocations
Marietta, Georgia
Remote

...

Windstream
Atlanta, Georgia
Remote

We are looking for a dynamic and highly motivated Information Security Engineer to join our IT Security team. The perfect candidate for this role will possess a solid background in IT security, exceptional networking capabilities, a comprehensive understanding of information security risks, and a de...

Promoted
VirtualVocations
Norcross, Georgia

A company is looking for an Information Security Engineer II. ...

GDIT
McPherson, Fort, GA, USA

The ISSE employs best practices when implementing security requirements within an information system including software engineering methodologies, system/ security engineering principles, secure design, secure architecture, and secure coding techniques. The position will collect and process the capt...

ServiceNow
Atlanta, Georgia

Hands-on experience with Security Information and Event Management (SIEM) systems for monitoring, analyzing, and responding to security incidents. The ServiceNow Security Organization delivers world-class, innovative security solutions to reduce risk and protect the company and our customers. E...

ServiceNow
Atlanta, Georgia

Hands-on experience with Security Information and Event Management (SIEM) systems for monitoring, analyzing, and responding to security incidents. The ServiceNow Security Organization delivers world-class, innovative security solutions to reduce risk and protect the company and our customers. E...