Search jobs > Sandy, UT > Information security

Information Security Analyst

NICE
USA - Sandy, UT
Full-time

At NICE, we don’t limit our challenges. We challenge our limits. Always. We’re ambitious. We’re game changers. And we play to win.

We set the highest standards and execute beyond them. And if you’re like us, we can offer you the ultimate career opportunity that will light a fire within you.

So, what’s the role all about?

The IT Internal Auditor will conduct internal audits focused on verifying and enhancing the company’s compliance and information technology controls.

Help facilitate 3rd party audits and coordinate and work with audit teams, and internal control owners. Conduct timely and effective audit planning, execution, and reporting.

Conduct training and process analysis with control owners and operators. Assist with other audit matters and projects. Provide updates and escalate issues in a timely manner.

And other tasks as required.

How will you make an impact?

  • Act as lead for future audit success by preparing internal control owners for external audits.
  • Help internal control owners scope appropriate evidence samples for external auditors.
  • Establish consistent and sustainable processes for conducting internal audits.
  • Track and ensure visibility of developing compliance framework standards.
  • Help facilitate and or conduct internal gap assessments and audit readiness assessments.
  • Assess inherent and residual risks, evaluate control designs, develop, and execute audit tests.
  • Document control narratives and walkthroughs.
  • Comfortably assume core audit responsibilities in all audit phases.
  • Participate as a key team member on audit projects, having responsibility for more complex areas.
  • Assist team leaders, managers, senior and staff auditors in accomplishing team objectives.
  • Identify and assess the impact of control deficiencies.
  • Draft audit reports.
  • Present audit findings to management through status updates and closing meetings.
  • Assist in the development of cost-justified, value-added management actions.
  • Effectively handle larger and more challenging workloads on successive assignments.
  • Produce excellent results in audit projects across multiple business areas and for different team leaders.
  • Proficient in the use of automated work papers and other department and company tools.
  • Ensure effective and efficient execution of audits in conformance with professional and department standards, budgets, and timelines.
  • Maintain internal audit competency through ongoing professional development.
  • Participate in the review of co-worker’s work.
  • Always follow the company Code of Ethics and NICE CXone policies and procedures.
  • Communicate in an effective and professional way with customers in and outside of NICE CXone.
  • This job description is not intended to be all-inclusive, and the employee will also perform other reasonable related business duties as assigned by immediate supervisor and other management as required.

Have you got what it takes?

  • High School Diploma
  • Common entry-level information security certifications include CompTIA Security+, CISSP Associate, CEH, CISM, CISA, GSEC, CCT, ENSA, SSCP, Cisco Certified CyberOps Associate, or similar.
  • 2+ years of experience in information security audits.
  • Experience of common compliance frameworks. (GDRP, ISO 27000, Cyber Essentials, PCI-DSS, SOC 2 Type 2, etc...)
  • Experience testing compliance controls with control owners.
  • Strong written, verbal, and interpersonal communication skills.
  • High level of energy, and the desire to work in a fast-changing environment.
  • Proficient knowledge of PCs and Servers Windows, Linux, and Unix preferred.
  • Experience in auditing the security of deployments in AWS and / or Azure environment.
  • Ability to plan and prioritize tasks efficiently and effectively.

Preferred but not required Experience :

  • Experience in domestic & international privacy laws such as HIPAA, PCI, NIST security framework.
  • Familiarity with industry best practices and regulations for software and / or telecom industry.
  • Understanding of MaRISK, BaFin, BSI C5, IRAP
  • Bachelor’s Degree, Master’s degree preferred. CISSP, CISA, CISM or equivalent

What’s in it for you?

Join an ever-growing, market-disrupting, global company where the teams comprised of the best of the best work in a fast-paced, collaborative, and creative environment! As the market leader, every day at NICE is a chance to learn and grow, and there are endless internal career opportunities across multiple roles, disciplines, domains, and locations.

If you are passionate, innovative, and excited to constantly raise the bar, you may just be our next NICEr!

Enjoy NICE-FLEX!

At NICE, we work according to the NICE-FLEX hybrid model, which enables maximum flexibility : 2 days working from the office and 3 days of remote work, each week.

Naturally, office days focus on face-to-face meetings, where teamwork and collaborative thinking generate innovation, new ideas, and a vibrant, interactive atmosphere.

30+ days ago
Related jobs
NICE
Sandy, Utah

Common entry-level information security certifications include CompTIA Security+, CISSP Associate, CEH, CISM, CISA, GSEC, CCT, ENSA, SSCP, Cisco Certified CyberOps Associate, or similar. The IT Internal Auditor will conduct internal audits focused on verifying and enhancing the company’s compliance ...

Utah Department of Human Services
Salt Lake County, UT

This position will work on the Security Operations team that has responsibility for technical components of Information Security projects for the Department of Workforce Services (DWS) as well as coordination of DTS security efforts. Drafting information security policy, procedures and resources bas...

Promoted
L3Harris Technologies
Cottonwood Heights, Utah

Leads and contribute to all Product or Network Information Security Engineering activities pertaining to CDRLs, trade studies, security requirements analysis, secure architecture development, management & compliance with security controls, design review milestones (SRR, SDR, PDR, CDR) and security t...

Promoted
bioMerieux Inc.
Salt Lake City, Utah

Focus on identifying trends and effectively communicating insights through data storytelling. Business Administration, Economics, or Data Science. Must have 4-6 years of data analysis experience in sales, finance, and/or marketing field, preferably within a life sciences company within the past five...

Promoted
Western Governors University
Salt Lake City, Utah

Develops and updates policies and procedures to ensure compliance with external laws and regulations. Investigates complaints or allegations of non-compliance, suggesting steps to address and prevent future violations. Five (5) years of related experience in higher education compliance, accreditatio...

Promoted
Red Games Co.
Salt Lake City, Utah

This person is adept at analyzing and drawing conclusions from player behavioral data that directly influences, game design, player retention, monetization and user acquisition. Translate game data into actionable insights and recommendations to help inform marketing, user acquisition and product st...

Promoted
VLCM
Salt Lake City, Utah

As a Network Security Engineer, you will be responsible for designing, implementing, and managing firewall solutions to protect our clients' networks. We are an IT solution provider for cybersecurity, data center infrastructure, networking, cloud, VOIP, end-user computing, audio-visual, physical...

Promoted
Canonical - Jobs
Salt Lake City, Utah

This is a unique opportunity to use your software engineering and cryptography skills to build and maintain the security foundation that enables Ubuntu and its users to operate securely and remain compliant to international information security standards such as FIPS 140-3 and Common Criteria. Colla...

Promoted
Slalom Consulting
Salt Lake City, Utah

Collaborate with IT and security teams to ensure compliance with security policies. Experience as a Microsoft Security Engineer or similar role. Proficiency in Microsoft security technologies and tools, including Purview Information Protection, DLP, data lifecycle management, records management, and...

Promoted
VLCM Tech
Salt Lake City, Utah

As a Network Security Engineer, you will be responsible for designing, implementing, and managing firewall solutions to protect our clients' networks. We are an IT solution provider for cybersecurity, data center infrastructure, networking, cloud, VOIP, end-user computing, audio-visual, physical sec...