Information Security Specialist Lead
hace 1 semana
Lead member of the risk and controls team reporting to the Information Security Director. You will lead the identification, documentation, and formalization of security risk and controls framework across the Enterprise to meet the cybersecurity and risk requirements set by Experian.
The Information Security Specialist Lead will contribute to the team's goals of ensuring a sound security posture by assessing the risk-based design of security controls and security capabilities.
You will contribute the design and operation of best practice cyber risk management practices, collaborating with partners across all Security and IT teams in the Enterprise.
Responsibilities:
- Lead the security risk and controls team in engaging with Regional BU and Centralized security and IT control owners across the Enterprise to populate the controls library.
- Maintain and update the integrated risk and controls framework based on information security policies and industry best practices and standards.
- Review control activities populated by control owners to ensure they align with requirements outlined in control standards and goals.
- Identify, document, and report control activity gaps and provide recommendations for remediation.
- Compile management reports, summary analysis, and detailed presentations to describe risk and controls program.
- Develop and present content for controls implementation workshops with control owners across the Enterprise.
- Ensure information security controls are aligned and mapped to applicable risks (risk types and risk register entries) in Archer GRC platform.
- Monitor and stay informed about internal and external risk indicators for impacts and potential disruptions to Experian and our mission. Provide these risk indicators as inputs to control assurance and other EGSO activities.
- Contribute to the efficiency of the risk and controls program by ensuring that processes and methodologies are standardized, and stakeholder feedback is captured to ensure improvement and an engagement model.
About Experian
Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and software. We also assist millions of people to accomplish their financial goals and help them save time and money.
We operate across a range of markets, from financial services to healthcare, automotive, agribusiness, insurance, and many more industry segments.
We invest in people and new advanced technologies to unlock the power of data. As a FTSE 100 Index company listed on the London Stock Exchange (EXPN), we have a team of 22,500 people across 32 countries. Our corporate headquarters are in Dublin, Ireland. Learn more at
Experience and Skills
- 5+ years of experience performing IT Audit, Information Security control assessments.
- Experience with GRC tools, such as Archer.
- Knowledge of information security frameworks such as ISO 27001/2, NIST CSF, PCI DSS, and HIPAA.
- Knowledge of information security risk management management/analysis frameworks such as Open FAIR, NIST 800-37, NIST
- Knowledge of governance, risk, and controls principles and operational impacts of cybersecurity lapses.
- Knowledge of IT technologies and methods to secure them with a knowledge of Cloud security. A working knowledge of AWS cloud environment is beneficial.
- Guide the Risk and Control teams continuing maturity using new technologies such as AI and ML.
- Proficient in security control design, implementation, and evaluation.
- Proficient in performing impact/risk assessment.
- Experience facilitating small to medium size group meetings with senior leadership audiences.
- Bachelor's degree in computer science, management information systems or relevant field or equivalent demonstrable experience.
- Certifications: CISA, CISM, CRISC, CISSP, ISO 27001 Lead Auditor, or comparable certifications.
Additional Information
Our benefits include: Medical, life and dental insurance, Asociación Solidarista, International Share Save Plan, Flex Work/Work from home, Paid time off, Birthday day off, Annual Performance Bonus, Education Reimbursement, Family Bonding, Bereavement Leave, Referral Program, and more.
Our uniqueness is that we celebrate yours. Experian's culture and people are important differentiators. We take our people agenda very seriously and focus on what matters; DEI, work/life balance, development, authenticity, collaboration, wellness, reward and recognition, volunteering... the list goes on. Experian's people first approach is award-winning; World's Best Workplaces 2024 (Fortune Top 25), Great Place To Work in 24 countries, and Glassdoor Best Places to Work 2024 to name a few. Check out Experian Life on social or our Careers Site to understand why.
Experian is proud to be an Equal Opportunity and Affirmative Action employer. Innovation is an important part of Experian's DNA and practices, and our diverse workforce drives our success. Everyone can succeed at Experian and bring their whole self to work, irrespective of their gender, ethnicity, religion, colour, sexuality, physical ability or age. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.
LI-RemoteThis is a remote position.
-
Information Security Specialist Lead
hace 2 semanas
San Francisco, Heredia, Costa Rica Experian A tiempo completoCompany Description Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and...
-
Information Security Controls Automation Specialist
hace 2 semanas
San Francisco, Heredia, Costa Rica Experian A tiempo completoCompany DescriptionExperian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and...
-
Information Security Specialist Junior
hace 2 semanas
San Francisco, Heredia, Costa Rica Experian A tiempo completoCompany Description Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and...
-
Senior SAP Security Specialist
hace 2 semanas
San Francisco, Heredia, Costa Rica B&T Consulting Group A tiempo completoB&T Consulting is recruiting top SAP professionals for a local company.We're recruiting aSenior SAP Security Specialistprofessional on behalf of a local company. This role will lead high-impact security and technology initiatives. You'll be in charge of ensuring the security of SAP systems through the implementation, management, and auditing of roles,...
-
Security Controls Automation Engineer
hace 1 día
San Francisco, Heredia, Costa Rica Experian A tiempo completoCompany DescriptionExperian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and...
-
Security Controls Automation Engineer
hace 2 semanas
San Francisco, Heredia, Costa Rica Experian A tiempo completoCompany DescriptionExperian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and...
-
Security Architect
hace 2 semanas
San Francisco, Heredia, Costa Rica B&T Consulting Group A tiempo completoB&T Consulting is recruiting top professionals for a local company.We're recruiting aSecurity Architecton behalf of a local company. This role will lead high-impact security and technology initiatives.TheSecurity Architectwill be responsible for designing, implementing, and maintaining secure architecture for systems, networks, applications, and cloud...
-
Cyber Security Architect
hace 2 semanas
San Francisco, Heredia, Costa Rica B&T Consulting Group A tiempo completoB&T Consulting is recruiting top SAP professionals for a local company.We're recruiting aCybersecurity Architecton behalf of a local company. This role will lead high-impact security and technology initiatives.The Cybersecurity Architect will be responsible for designing, implementing, and overseeing secure architectures for systems, networks, applications,...
-
Accounts Payable Specialist
hace 2 semanas
San Francisco, Heredia, Costa Rica Acuity Knowledge Partners A tiempo completoAcuity Knowledge Partners is seeking an Accounts PayableSpecialist to join our Private Markets team. We are looking for a detail-oriented, proactive, and collaborative professionalwho is comfortable managing the end-to-end accounts payable process, including vendor onboarding, payment processing, and financial reconciliations. The ideal candidate thrives in...
-
Security Analyst
hace 2 semanas
San Francisco, Heredia, Costa Rica Simeio A tiempo completoSecurity AnalystHeredia, Costa Rica (3 days a week onsite) Responsibilities:PIMS Management: Manage the daily operations of the Privacy Information Management System (PIMS) based on ISO27701, ensuring that data minimization and data inventories are accurately maintained and regularly updated.Privacy by Design and Impact Assessments: Conduct comprehensive...