Anticipated End Date:
2026-09-16
Position Title:
Information Security Advisor
Job Description:
Information Security Advisor
Location: This role requires associates to be in-office 1 - 2 days per week, fostering collaboration and connectivity, while providing flexibility to support productivity and work-life balance. This approach combines structured office engagement with the autonomy of virtual work, promoting a dynamic and adaptable workplace.
Please note that per our policy on hybrid/virtual work, candidates not within a reasonable commuting distance from the posting location(s) will not be considered for employment, unless accommodation is granted as required by law.
TheInformation Security Advisoris responsible for supporting Periodic Access Certifications, ensuring the quality and compliance of identities, applications, and entitlements, while providing strategic support for IAM processes.
How you will make an impact:
- Support the Periodic System Access Certifications in compliance with internal policy requirements and external standards like SOX, SOC1, SOC2, Hi-Trust, PCI-DSS, and statutory audits.
- Ensure that identity, application, and entitlement data utilized in periodic system access reviews meet our internal controls for completeness and accuracy, adhering to policy requirements.
- Partner with internal and external IAM stakeholders to analyze and improve Identity Management System data points.
- Maintain standard templates for audit process consistency and address data gaps with IT/business teams.
- Advocate for best practices in Centralized Access Provisioning/Termination, Modern Authentication, Role-Based Access Control, and Periodic Access Certifications, enhancing IAM posture and customer delivery.
- Provide first level engineering design functions and trouble resolution.
- Provide trouble resolution and serve as point of technical escalation on complex problems.
- Lead or plan implementations for access management and network security technologies.
- Develop testing plans to ensure quality of implementation.
- Lead the investigation and reporting of data security events and incidents.
- Provide system and network architecture support for information and network security technologies.
- Provide technical support to business and technology associates in risk assessments and implementation of appropriate information security procedures, standards and technologies.
- Maintain security incident response plans.
- Represent major upgrades and business system replacements in change control.
- Oversee enterprise mix of vendor services.
- Recommend changes and updates to strategy.
- Act as a key contact for setting vendor strategy.
- Design and engineer repetitive technical solutions based on business requirements and defined technology standards.
- Develop support procedures and performance metrics reports.
- Lead level 1 and 2 incident recoveries.
- Organize the efforts of other analysts as part of incident recovery.
- Lead root cause analysis efforts.
Minimum Requirements:
- Requires BS/BA degree in Information Technology or related field of study and a minimum of 5 years experience in systems support, system administration, system engineering, system security, access management, network security, network communications, computer networking, telecommunications, systems development and management, hardware, software, and/or data; or any combination of education and experience, which would provide an equivalent background.
- Requires experience in planning and designing highly complex systems.
Preferred Skills, Capabilities and Experiences:
- 4 years of experience in Identity Access Management (IAM) or IT/Audit Controls.
- Proven experience with system access certifications, privileged access controls, and audit support is highly preferred.
- Proficiency with IAM tools and systems, including SailPoint, ServiceNow, Jira, DataGrip/Toad, Tableau, MS Office Suite, and other relevant tools for data management.
- Strong communication and collaboration skills, able to engage effectively with both technical and non-technical teams.
- Detail-oriented with strong problem-solving abilities, capable of managing complex priorities and driving results in a dynamic environment.
If this job is assigned to any Government Business Division entity, the applicant and incumbent fall under a `sensitive position' work designation and may be subject to additional requirements beyond those associates outside Government Business Divisions. Requirements include but are not limited to more stringent and frequent background checks and/or government clearances, segregation of duties principles, role specific training, monitoring of daily job functions, and sensitive data handling instructions. Associates in these jobs must follow the specific policies, procedures, guidelines, etc. as stated by the Government Business Division in which they are employed.
Job Level:
Non-Management Exempt
Workshift:
1st Shift (United States of America)
Job Family:
IFT > IT Security & Compliance