Risk Analyst

TEKsystems
Chicago, IL, US
Full-time

Job Description

Job Description

Top Skills' Details

  • Overall security knowledge, specifically in Encryption tools and techniques, Systems Support / Server Admin experience, Identify Access Management, and Third Party Evaluation process
  • Must have security controls experience on the supplier side- Third Party risk management( A risk analyst at third party)
  • Able to evaluate and articulate supplier information security requirements; Review supplier evidence / answers to Third Party Evaluations and provide information security expertise and guidance to business owners to ensure appropriate understanding of information security risks
  • Able to work across the different business units / functions at all levels of the organization. The candidate will be attending / assisting meetings with business owners, sr.

management and suppliers to understand risk, remediation activities, and effectiveness of remediation plans against our security controls in an effort to close open security issues / gaps.

Demonstrated skills in project management, collaboration, communication and organizational skills

Job Description

The Sr. Analyst, Information Security works with various internal and external groups to ensure that AbbVie information security policies, practices, and procedures are properly implemented within AbbVie Business Programs.

The analyst reviews business programs, projects, and initiatives from inception, throughout the implementation, to end of life, to ensure that appropriate security controls are applied throughout the entire lifecycle.

Establishes and maintains strong relationships with IT and Business group leaders to understand goals, programs and strategic objectives.

Evaluates and articulates program security requirements; identifies potential security risk factors and business impacts.

  • Engages AbbVie Third Party Suppliers to assess security posture, remediation requirements and compensating controls as they apply to Business Programs.
  • Develops in-depth knowledge of AbbVie Information Security policies, processes and procedures, as well as compliance processes and initiatives in order to provide subject matter expertise and guidance to other organizations (Commercial, R&D, Audit, Legal, Purchasing, etc.) within AbbVie.
  • Provides Information Security expertise and guidance to Business group leaders and IT Owners to ensure an appropriate balance between security risks and business enablement for identified business programs and initiatives.
  • Acts as central point of contact with regard to Information Security matters and AbbVie security policies for AbbVie Purchasing, Legal / Privacy and Quality during the supplier evaluation and contract negotiation process.
  • Reviews current technology and information policies and practices for continued applicability with respect to AbbVie commercial and R&D business programs.

Provides recommendations for improvements.

Qualifications :

  • Minimum of 5 years Information Security experience or equivalent experience in Information Risk Management.
  • Good experience in Information Security or Information Risk Management.
  • Certified Information Systems Security Professional (CISSP) or other equivalent certifications required.
  • Strong experience and up to date knowledge in Open Systems, Windows, Mobility, Internet and network security products and platforms, including user authorization, encryption tools and techniques, communication protocols, vulnerability assessments, data loss and penetration testing, and secure coding.
  • Mix of IT operations and business program experience required.
  • Demonstrated skills in project management, collaboration, communication and organizational skills required.
  • Information Security Consulting background and experience preferred.
  • Written and verbal communication skills are critical.
  • Adept at communicating concepts to diverse audiences with varying skill sets.

Education :

Bachelor’s Degree with 6 years of total experience or Master’s degree with 5 years of experience

What are the top 3-5 skills requirements should this person have?

  • Overall security knowledge, specifically in Encryption tools and techniques, Systems Support / Server Admin experience, Identify Access Management, and Third Party Evaluation process
  • Must have security controls experience on the supplier side- Third Party risk management( A risk analyst at third party)
  • Able to evaluate and articulate supplier information security requirements; Review supplier evidence / answers to Third Party Evaluations and provide information security expertise and guidance to business owners to ensure appropriate understanding of information security risks
  • Able to work across the different business units / functions at all levels of the organization. The candidate will be attending / assisting meetings with business owners, sr.

management and suppliers to understand risk, remediation activities, and effectiveness of remediation plans against our security controls in an effort to close open security issues / gaps.

Demonstrated skills in project management, collaboration, communication and organizational skills

What is a nice to have (but not required) regarding skills, requirements, experience, education, or certification?

  • CISA and / or CISSP experience / certifications
  • Mix of IT operations and business programs
  • 30+ days ago
Related jobs
Promoted
Calculated Hire
Chicago, Illinois

Supports an efficient and effective risk management function which uses common information sources and practices, reduces ongoing costs, increases service level performance and minimizes risk. Supports the execution of accurate and efficient reporting solutions for risk, regulatory and management in...

Promoted
College of Charleston
Chicago, Illinois

In this role, you will have the opportunity to lead processes related to Governance, Risk, and Controls and act as the Compliance liaison to operational risk, technology risk, and the Legal Department. Managing core Compliance processes, while modernization and streamlining procedures leveraging our...

Optiver
Chicago, Illinois

Comprehensive risk assessment to identify and evaluate potential risks. You are viewing: Operational Risk Analyst. Are you curious to find out how we manage to send out thousands of orders each second towards dozens of exchanges all across the globe, and what we do to make sure our systems keep oper...

Preferred Risk Insurance
Bedford Park, Illinois
Remote

The Business Analyst / Quality Assurance Analyst will work on a team of analysts to learn our business and full life-cycle analysis, using testing tools and quality practices to deliver end-to-end customer satisfaction. Preferred Risk Insurance Services is seeking a bright and highly motivated Busin...

Selby Jennings
Chicago, Illinois

Conduct risk assessments to support the firm's Operational Risk Management framework. Work closely with senior leadership to identify and accurately report risks, as well as develop a plan for remediation. Collaborate with cross functional teams to ensure that adequate plans are in place to minimize...

Northern Trust Corporation
Chicago, Illinois

We are actively seeking an experienced Senior Analyst of Investment Risk, specializing in Equities, to support our independent risk management initiatives and contribute to the success of our investment strategies. The Senior Analyst, Investment Risk will be working with AM investment professionals ...

Katalyst HealthCares & Life Sciences
Chicago, Illinois

Background in Compliance, Risk, Audit and Control. ...

Cook County Government
Chicago, Illinois

Knowledge of external regulations related to risk management, risk management software, and data mitigation. Support operations and conduct analyses and operational studies related to employee benefits, workers compensation, general liability, and overall risk management. Coordinate procurement acti...

Northern Trust Corporation
Chicago, Illinois

The Analyst will work within the team to closely interact with different stakeholders across the organization to ensure that Third Party risks are appropriately managed, and that Corporate Risk Policy and supporting guidelines are embedded and adhered to. Assists in the Third-Party Risk governance f...

CIBC
Chicago, Illinois

We’re building a relationship-oriented bank for the modern world.We need talented, passionate professionals who are dedicated to doing what’s right for our clients.At CIBC, we embrace your strengths and your ambitions, so you are empowered at work.Our team members have what they need to make a meani...