Supply Chain Security Analyst
Job DescriptionJob DescriptionAt ALLERE GROUP, we pride ourselves in creating the perfect match for our candidates. We work tirelessly to build relationships with top companies across the nation, so we always have exciting opportunities for the right candidates. If you are excited about emerging technologies and would love to be a part of a progressive company, we want to talk to you!Job Title: Supply Chain Cyber Security AnalystLocation: Wilmington, DE, Princeton, NJ or Atlanta, GA - HybridResponsibilities
- Perform focused risks assessments of existing or new service providers, and technologies being introduced into the firm’s technology environment
- Provide governance and oversight over existing and new SaaS and IaaS products
- Influence the overall direction for securing infrastructure, applications and third parties service providers for the firm
- Communicate risk assessment findings to information security stakeholders or business partners and influences the risk mitigation
- Provide consultative advice to information security customers that enables them to make informed risk management decisions
- Performing assessments of new and existing Internet of Things (IoT) Deployments
- Identify appropriate controls to effectively manage information risks as needed
- Identify opportunities to improve risk posture, developing solutions for remediating or mitigating risks and assessing the residual risk
- Maintain strong working relationships with individuals and groups involved in managing information risks across the organization
- Support the documentation of Information Security Policies and Standards
- Security assessments of third-party software packages deployed on machines
- Perform vulnerability impact analysis of newly identified vulnerabilities of the firm’s critical service providers
Qualifications Required
- Degree in Business, Computer Engineering, Computer Science, Information Security, or a related field
- Working knowledge of data analysis techniques, including Excel, and basic SQL skills
- Must have Cloud Platform experience in either: Azure security, AWS security, web security, including API and token security
- 5+ years Information Security experience
- 3+ years with risk advisory and senior management communication, metrics, collaboration to drive risk-based results
- 3+ years of experience with documenting, project management, written analysis for Information Security risk assessments
- 3+ years of experience in an Enterprise Risk Management and/or assessing controls within a Technology and/or Financial Services firm
- Experience with information security management frameworks (e.g., IS027001, COBIT, NIST 800)
- Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), and/or Certified Information Systems Auditor (CISA) are a plus
- AWS, GCP, or Azure security certifications are a plus
Knowledge and Skills/Expected Competencies
- Strong documentation and process-oriented background with experience working on complex technology projects
- An ability to effectively influence others to account for the plans and collaborative behaviors for results
- An ability to communicate complex and technical issues to diverse audiences, orally and in writing, in an easily understood, authoritative, and actionable manner
- An ability to identify and assesses the severity and potential impact of risks and communicate risk assessment findings to risk owners in a way that influences optimum risk mitigation
- Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one
- Ability to react to high pressure dynamic changing environments
- Excellent prioritization capabilities, with an aptitude for breaking down work
ALLERE GROUP is committed to our community and . We are a proud woman-owned business (WBENC certified) and active supporters of numerous philanthropic, volunteer, and fundraising endeavors. ALLERE GROUP offers direct hire, contract to hire, and statement of work placements. We offer access to employer healthcare benefits, and a 401k retirement plan. Allere Group provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to , , , , , , status, genetics, protected veteran status, , or expression, or any other characteristic protected by federal, state, or local laws.