Third Party Information Security Assessor
hace 20 horas
As a bank with a brain and a soul, Citi creates economic value that is systemically responsible and in our clients' best interests.
As a financial institution that touches every region of the world and every sector that shapes your daily life, our Enterprise Operations & Technology teams are charged with a mission that rivals any large tech company.
Our technology solutions are the foundations of everything we do.
We keep the bank safe and provide the technical tools our workers need to be successful.
We design our digital architecture and ensure our platforms provide a first-class customer experience.
Our operations teams manage risk, resources, and program management.
We focus on enterprise resiliency and business continuity.
We develop, coordinate, and execute strategic operational plans.
Essentially, Enterprise Operations & Technology re-engineers client and partner processes to deliver excellence through secure, reliable, and controlled services.
Trust is part of our DNA at Citi.
As such, we take safeguarding our customer data very seriously.
The Chief Information Security Office (CISO) is made up of deeply dedicated and talented colleagues who work together to ensure the safety of Citi's and our clients' assets and information.
We manage information security as an end-to-end program - one with a clear mandate and accountability.
Our mission is to continually execute and enhance a global security program that is fully anchored to modern control and security frameworks, fully aligned with the technology of the firm, threat-focused and data-driven, and deeply integrated across all Citi businesses globally.
Being talent-driven, we are focused on attracting, developing, and retaining diverse and inclusive talent with a high technical skill level.
As a member of our team we will provide you with career development opportunities at all stages of your career.
Our employees model a passion for protecting Citi and our clients and believe in treating others with dignity and respect.
CISO
Third Party Information Security Assessor
**Description**:
The Third Party Information Security Assessor performs detailed examinations of Citi's North America suppliers' information security practices and controls.
IS Assessor responsibility is to confirm supplier adherence to the same high information security standards to which Citi holds itself accountable and to identify & communicate information security risks related to our customer and business sensitive information.
In accordance with Citi's established Third Party Information Security Assessment (TPISA) process and framework, the essential duties are as follows.
Coordinate with TPISA stakeholders to initiate, scope and plan controls assessments of new and existing suppliers.
Perform assessments on-site at supplier locations or remotely via conference calls.
Obtain and review supplier responses and supporting documentation to validate supplier appropriate implementation of information security controls.
Analyze the information to identify information security weaknesses or non-compliance with Citi standards.
Produce detailed documentation of assessments and perform threat analyses of gaps identified.
Communicate supplier information security issues to stakeholders, ensuring their understanding of associated risks and actions needed to remediate those risks.
**Qualifications**:
Industry certification such as CISSP, CISA or CISM required.
6+ years experience in a similar IT Audit, Assessor, or Information Security Officer role.
Strong technical and/or IT audit background in/practical knowledge of a wide variety of technologies.
Technologies include server infrastructure & operating systems, network & web infrastructures, database architecture and intrusion detection/prevention systems.
Self-starter with the ability to manage and prioritize responsibilities through the effective use of time management techniques.
Team player with proven skills in influencing people without having direct management authority and motivating them to successfully complete tasks within required timelines.
Self-driven performer with established skills in tracking self and project performance, anticipating and recognizing problems and escalating issues appropriately.
Exemplary ability to interact and communicate both written and verbally with people at all levels, both technical and non-technical, in a dynamic environment where interactions are not always in person.
Excellent risk analysis and problem solving skills.
Must be flexible to ensure assessments are performed by the mandated compliance date and be able to manage multiple assessments simultaneously.
**Critical competencies**:
Must be able to communicate fluently in English
Education
Bachelor's Degree (in Technology, Information Security or related major), or equivalent work experience.
--------------------------------------------
- **Job Family Group**: Technology
--------------------------------------
-
Third Party Information Security Assessor
hace 1 semana
Heredia, Costa Rica Citi A tiempo completoAs a bank with a brain and a soul, Citi creates economic value that is systemically responsible and in our clients' best interests.As a financial institution that touches every region of the world and every sector that shapes your daily life, our Enterprise Operations & Technology teams are charged with a mission that rivals any large tech company.Our...
-
Third Party Risk Coordinator
hace 4 semanas
Heredia, Costa Rica Experian A tiempo completoCompany Description Experian is the world’s leading global information services company. During life’s big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence. We help individuals to take financial control...
-
Third Party Risk Coordinator
hace 4 semanas
Heredia, Costa Rica Experian A tiempo completoCompany Description Experian is the world’s leading global information services company, unlocking the power of data to create more opportunities for consumers, businesses and society. We are thrilled to share that FORTUNE has named Experian one of the 100 Best Companies to work for. In addition, for the last five years we’ve been named in the 100...
-
Tpu Third Party Risk Analyst Ii
hace 1 semana
Heredia, Costa Rica Citi A tiempo completo**Key Responsibilities**:- Facilitate Citi businesses' ongoing compliance with Third Party Management requirements outlined in Citi policies and standards- Perform pre-contract due diligence and post-contract ongoing monitoring activities based on specific third-party risk profile, country, and / or business requirements- Monitor reports to ensure...
-
Third Party Management Risk Analyst
hace 3 semanas
Heredia, Costa Rica Citi A tiempo completoThe TPM Business Risk Analyst will be responsible for executing third party risk management activities and liaising with the **Business Activity Owner **/ **Third Party Officer** to ensure that all the controls are handled in a controlled and compliant manner according to all internal policies and procedures, and external rules and regulations in support of...
-
Senior Manager Third Party Officer
hace 3 semanas
Heredia, Costa Rica Citi A tiempo completoThe Third Party Officer (“TPO”) is a dedicated role as part of Citi’s Third Party Risk Management program. The Third Party Officer will dedicate the majority of their time focused on ensuring effective risk management practices are in place for those external third party relationships which carry the highest degree of risk for Citi’s businesses. The...
-
Third Party Management Officer C13
hace 3 semanas
Heredia, Costa Rica Citi A tiempo completoThe Third Party Officer (“TPO”) is a dedicated role part of Citi’s Third Party Risk Management program, responsibility for ensuring effective risk management practices are in place for external third party relationships which carry the highest degree of risk for Citi’s businesses. The TPO will be supported by the Enterprise Supply Chain** Third...
-
Third Party Risk
hace 4 semanas
Heredia, Costa Rica Moody's Investors Service A tiempo completoThe Third Party Risk - Manager will work directly with the SVP of Third party risk to operationalize an approach to tier, monitor, assess and drive mitigating actions related to third party risk. Working with the business areas to understand their requirements and implement an approach to identify critical suppliers and use internal and external resources to...
-
Senior Cyber Analyst Mergers and Acquisitions
hace 3 semanas
Heredia, Costa Rica Sysco Costa Rica A tiempo completoThis role is responsible for executing Cybersecurity M&A due diligence and leading cyber integration planning, coordination, and reporting while partnering across multiple Cyber, business, and technology cross function teams. **Requirements**: - Execute Cybersecurity M&A due diligence activities partnering with business and technology deal teams to...
-
Third Party Utility
hace 3 semanas
Heredia, Costa Rica Citi A tiempo completoThird Party Utility (TPU) is integral to Citi's Third-Party Management Program's capabilities by delivering common operational Third-Party Risk Management (TPRM) processes for Citi's external and internal third party relationships globally. TPU also assists Business Activity Owner's (BAO) globally with the completion of assigned controls and issue...
-
Manager, Marketing, Customer
hace 3 semanas
Heredia, Costa Rica LSEG (London Stock Exchange Group) A tiempo completoThe Content Marketing Manager role will be responsible for designing and creating multimedia content to support the marketing strategy of the Customer & Third-Party Risk business of LSEG. Key responsibilities: - Partner with Marketing, Sales and Product teams to determine content marketing deliverables. - Collaborate closely with design and writing teams to...
-
Manager, Marketing, Customer
hace 1 semana
Heredia, Costa Rica Lseg (London Stock Exchange Group) A tiempo completoThe Content Marketing Manager role will be responsible for designing and creating multimedia content to support the marketing strategy of the Customer & Third-Party Risk business of LSEG.Key responsibilities: - Partner with Marketing, Sales and Product teams to determine content marketing deliverables.- Collaborate closely with design and writing teams to...
-
Senior Information Security Specialist
hace 2 semanas
Heredia, Costa Rica Experian A tiempo completoCompany Description Experian is the world’s leading global information services company. During life’s big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence. We help individuals to take financial control...
-
Information Security Assurance Engagement Lead
hace 8 horas
Heredia, Costa Rica Experian A tiempo completoCompany DescriptionExperian is the world's leading global information services company, unlocking the power of data to create more opportunities for consumers, businesses and society.We are thrilled to share that FORTUNE has named Experian one of the 100 Best Companies to work for.In addition, for the last five years we've been named in the 100 "World's Most...
-
Senior Information Security Specialist
hace 3 semanas
Heredia, Costa Rica Experian A tiempo completoFull-time Employee Status: Regular Role Type: Hybrid Department: Legal & Compliance Schedule: Full Time Shift: Day Shift **Company Description**: Experian is the world’s leading global information services company. During life’s big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new...
-
Business Sr. Analyst
hace 1 semana
Heredia, Costa Rica Citi A tiempo completoThe Business Sr. Analyst - Third Party and Financial Market Infrastructure is a seasoned professional global role.Applies in-depth disciplinary knowledge, contributing to the development of new techniques and the improvement of processes and work-flow for the area or function.This is an opportunity to implement and drive solutions globally.The position will...
-
Senior Information Security Specialist
hace 5 días
Heredia, Costa Rica Experian A tiempo completoFull-timeEmployee Status: RegularRole Type: HybridDepartment: Legal & ComplianceSchedule: Full TimeShift: Day Shift**Company Description**:Experian is the world's leading global information services company.During life's big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we...
-
Vendor Application Onboarding Project Manager
hace 3 semanas
Heredia, Costa Rica Citi A tiempo completo**Responsibilities**: - Ensures compliance with the Citi's Third Party Risk Management objectives. - Gathering data and documentation necessary to complete the Third Party onboarding and ongoing Citi security policy requirements. - Planning and facilitating meetings with Third Party and internal stakeholders, taking all meeting minutes and managing any...
-
Principal Engineer Security Services
hace 4 semanas
Heredia, Costa Rica 360training A tiempo completo**Principal Engineer Security Services** The Principal Engineer Security Services will play a crucial role in ensuring the ongoing security and protection of our company's information assets. They will be responsible for designing, developing, and overseeing the implementation of cybersecurity solutions to safeguard our systems, networks, and data. The...
-
Senior Analyst, Information Security
hace 3 semanas
Heredia, Costa Rica BCD Meetings & Events A tiempo completo**Work-life balance does exist: Join the journey at BCD!** **Senior Analyst, Information Security (Remote)** - Full time, Costa Rica_ As the Senior Risk Assessment Analyst, you will work within Information Security and collaboratively across the BCD Travel organization to support and enforce security controls in alignment with established security policies...