Role Description
Associate III - Cloud Security Solutions
Who We Are
At UST, we help the world’s best organizations grow and succeed through transformation. Bringing together the right talent, tools, and ideas, we work with our client to co-create lasting change. Together, with over 30,000 employees in 25 countries, we build for boundless impact—touching billions of lives in the process. Visit us at .
You Are
Cyber Security assessment Analyst conducts and supports the cyber security controls risk assessment and management process across all our suppliers. Responsibilities include assessing our suppliers’ current adequacy of the security controls & strategy, business continuity /disaster recovery plans, threats to the systems, and then calculating the impact of potential adverse events. Audits and assessments must be continual, as the threat profiles change constantly. The Analyst will keep executive management up to date on the results of the risk assessment and make recommendations for mitigations, or projects, to protect supplier and customer systems .
The Opportunity
- Demonstrate strong knowledge in IT controls, risk assessments, and assessment of security measures
- Identify opportunities to continuously innovate and improve the program and value delivered to organization
- Ensure successful completion of the annual supplier cyber security assessments
- Independently and proactively plans and performs assigned audit engagements related to security, confidentiality, integrity, information protection and availability of data
- Conduct cyber security assessments & evaluate in alignment to the supplier security control framework
- Ensure effectiveness of approved controls and drive risk remediations or changes from previous audit for existing certified suppliers
- Inform and advise business leaders on supplier’s information security risks
- Provide subject matter expertise in third-party risk management.
- Proactively research and work in enhancing improvements to our existing process related to documentation and security assessments.
- Automate security assessment processes & tools to review the security controls for cloud-based applications
- Ability to multi-task and manage multiple global projects at the same time.
- Ability to work collaboratively across diverse team in a matrix type organization
What Are We Looking For
- Bachelor’s degree in Science & Engineering or technical discipline is required.
- 7 years of information security & assessment experience with increased responsibilities Mandatory Skills and Technologies, framework, and Methodologies:
- In-depth knowledge of security assessment/audit principles
- Understanding of networking principles and data protection
- Ability to identify problems, analyze data and present conclusions
- Strong verbal, written and presentations skills
- Knowledge of information security frameworks such as ISO 27001 /NIST CSF is preferred
- Experience in supply chain cyber assessment and related tools usage is preferred
- CISA, CISM, certifications are preferred
- Excellent communication skills.
- Able to work as part of a virtual global team with cultural, language, and time zone differences.
- Able to deal with ambiguity and work independently with minimal supervision/guidance.
What We Believe
We’re proud to embrace the same values that have shaped UST since the beginning. Since day one, we’ve been building enduring relationships and a culture of integrity. And today, it's those same values that are inspiring us to encourage innovation from everyone to champion diversity and inclusion and to place people at the centre of everything we do.
Humility
We will listen, learn, be empathetic and help selflessly in our interactions with everyone.
Humanity
Through business, we will better the lives of those less fortunate than ourselves.
Integrity
We honour our commitments and act with responsibility in all our relationships.
Equal Employment Opportunity Statement
UST is an Equal Opportunity Employer. We believe that no one should be discriminated against because of their differences, such as age, disability, ethnicity, gender, gender identity and expression, religion, or sexual orientation.
All employment decisions shall be made without regard to age, race, creed, colour, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law.
UST reserves the right to periodically redefine your roles and responsibilities based on the requirements of the organization and/or your performance.
- To support and promote the values of UST.
- Comply with all Company policies and procedures
Skills
Cyber Security,Risk Management,Framework