Information Security Assurance Analyst I
Alpharetta, GA - USA
Job Summary
Every day Global Payments makes it possible for millions of people to move money between buyers and sellers using our payments solutions for credit debit prepaid and merchant services. Our worldwide team helps over 3 million companies more than 1300 financial institutions and over 600 million cardholders grow with confidence and achieve amazing results. We are driven by our passion for success and we are proud to deliver best-in-class payment technology and software solutions. Join our dynamic team and make your mark on the payments technology landscape of tomorrow.
Ready to take your careerglobal
Make your mark at one of the biggest names in payments. We are seeking a candidate who can providestechnical guidance on information security policies procedures technologies and compliance-related activities through execution of First Line Assurance assessments. Works with stakeholders across Information Security and Technology organizations tovalidatesecurity control implementation and effectivenessidentifyvulnerabilities and control gaps support remediation activities and contribute to certification continuous monitoring and automation programs.
Automation emphasis:This First Line Assurance role supports an automation-first model for control audits evidence collection reporting certification and continuous monitoring. Experience with Power Automate Power BI dashboards and workflow automation is highly desirable.
Whatyoullown
- Collaborates with Information Security Technology Risk Audit and business stakeholders to support First Line Assuranceobjectives. Aligns assessment activities with business priorities and communicates findings in a clear actionable manner.
- Performs targeted control assessments operational assurance reviews post-deployment security validations and certification activities. Evaluates security control implementation and effectivenessidentifiescontrol weaknesses and compliance gapsassistswith remediation tracking and provides detailed findings and recommendations to stakeholders.
- Supports the automation of control audits evidence collection control testing reporting remediation tracking certification and continuous monitoring. Contributes to workflows dashboards data collection and repeatable assessment processes that reduce manual effort and increase assurance coverage.
- Usesautomation and reporting tools to streamline evidence collection control validation assessment execution remediation tracking and recurring assurance activities. ExperiencewithPower Automate Power BI or similar workflow and reporting technologies is desirable.
- Supports continuous monitoring assurance and validation activities by reviewing technical administrative and operational security controls. Analyzes assessment resultsassistsin development of automation opportunities tracks remediation efforts and contributes to recurring certification and reporting activities.
- Reviews business requests assurance findings and control exceptions todeterminelevelof risk andappropriate remediationpath. Informs management of security policy variances and control gaps.
- Not an exhaustive list; other duties as assigned.
Whatyoullbring
- Bachelorsand/orMastersDegree in Computer Science Information Securityor related information technology fieldand/ora combination ofequivalentandrelevantwork experience.
- Minimum7yearsrelevant experience in information security security assurance audit risk compliance security architecture security engineering or related technology functions.
- Knowledge of industry standard securityandcompliance programsand frameworksincluding PCI FFIECFISMASOX GLBA HIPAA ISO-87001 NIST 800-53 NST CSF NIST RMFand/orrelated security control frameworks.
- Ability to work with stakeholders at multiple levels toidentifyrisk collect and evaluate evidence document findings and communicate practical remediation options.
- Required Certification(s) / Licensing- Professional certifications such asCRISCCGRCCISMCISSP CISACySA or equivalent experience are preferred.
Itsa bonus if you have
- Strong familiarity with on-prem cloud and hybrid environments across connected and disconnected environments in a complex and diverse Fortune500.
- Familiarity with multiple cloud hosting environments is preferredor at least strong familiarity in one of the three main cloud provider environments such asGCP AWS or Azure.
- Experience performinginformationsecurityassessments securitycontrol assessments technical control testingcontrol design testing control effectiveness testing KPI/KRI testing & validationoperational assurance reviews or post-deployment validation activities.
- Experiencedesigningimplementingor supporting automated security control validationprocesses tooling and infrastructure to include strategic and continuousmonitoring auditresiliencyand/or evidence collection processes is highly desirable.
- Experience with Microsoft PowerAppsPlatform including Power Automate and Power BIor other metric and reporting data structuresisdesirable.
- Experience developing dashboards metrics assessment reports or recurring assurance reporting from multiple data sources.
- Familiarity with workflow automation platforms such as ServiceNow and assessment or evidence tracking platforms such asOptro(fkaAuditBoard) Archeror similaraudit / GRCtools.
- Knowledge of continuous monitoring control validation compliance automation evidence collection and remediation tracking concepts.
- Strong analytical communication and stakeholder management skills with the ability to translate technical evidence into business-focused recommendations.
- Skills / KnowledgeHaving broad yet in-depthexpertiseand unique knowledge uses skills to set and ensure success of companyobjectivesand principles and to achieve goals in creative and effective ways within environments and situations that are complex and difficult. Having ownership of a function major account or matrix management responsibilities uses knowledge to ensure success strengthen relationships expand the business through key initiatives and lead matrix teams on complex projects.
- Job Complexity- Works on issues that impact security assurance technology risk management control effectiveness automation reporting and future concepts products or technologies. Creates formal networks with key decision makers and serves as a trusted partner to Information Security Technology Risk Audit and business stakeholders.
- Supervision- Exercises wide latitude in determiningobjectivesand approaches to critical assignments.
About the team
Our inclusive and global teams win together every to have the best minds in the industry who you can learn from as you grow your career. The people the energy the connections itsunmatched. Come and be part of an ever-evolving company and get dynamic opportunities that go beyond borders.
What makes aGlobalpayer
Globalpayersthink like a client act like anownerand win as one and innovative always finding better ways to deliver impact. We empower each other to make decisions anditsour passion that drives excellence in everything we set out to do.
Does this sound like you Then you sound like aGlobalpayer. Apply now to take your careerglobal.
must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future; We will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B L-1 TN O-1 E-3 H-1B1 F-1 J-1 OPT CPT or any other employment-based visa).
Diversity and EEO Statements
Global Payments is an organization that stands against racism intolerance and injustice in all its forms one that respects honors and celebrates the diversity of our team members and the differences among us. Our commitment to fostering a company culture that values and respects Inclusion and Diversity is steadfast. Standing together as one company we will continue to work to drive positive change for the communities in which we live and work and stamp out injustice.
-SB
Global Payments Inc. is an equal opportunity employer. Global Payments provides equal employment opportunities to all employees and applicants for employment without regard to race color religion sex (including pregnancy) national origin ancestry age marital status sexual orientation gender identity or expression disability veteran status genetic information or any other basis protected by law. If you wish to request reasonable accommodations related to applying for employment or provide feedback about the accessibility of this website please contact .
Required Experience:
IC