217 Database Security jobs in Ireland
Information Security Officer
Posted today
Job Viewed
Job Description
The Information Security Officer will play a key role in promoting cybersecurity best practices and ensuring regulatory compliance across two closely aligned business units. The position focuses on IT risk management, policy alignment, security operations, and user access governance, helping to protect systems, data, and users while enhancing the overall security posture. This is a mid level role.
Key Responsibilities:
IT Risk Management
- Identify, assess, document, and treat IT risks across systems, infrastructure, and processes.
- Maintain and update risk registers and Level 1 controls.
- Lead risk assessments, remediation efforts, and control improvement.
Policy & Compliance
- Ensure alignment with global and regulatory security standards (ISO 27001, NIST, GDPR).
- Enforce IT security policies and support audit and compliance readiness.
Security Operations
- Respond to and manage IT security incidents and escalations.
- Oversee identity and access management, including privileged access and user reviews.
- Deliver organisation-wide security awareness training.
Reporting & Governance
- Produce dashboards and reports detailing risk exposure and control effectiveness.
- Provide regular updates to management and leadership.
Candidate Profile:
Experience:
- Minimum 3 years in IT risk management, cybersecurity, or compliance.
- Proven ability to work across multiple teams or business units.
Skills:
- Familiar with security frameworks (ISO 27001, NIST), IT general controls, and GDPR.
- Strong analytical, organisational, and communication skills.
- Ability to explain technical risks in simple, business-focused terms.
Qualifications (Desirable):
- Degree in IT, Cybersecurity, or a related field.
- Security certifications such as ISO 27001, CISM, or CompTIA Security+.
What the Role Offers:
- Flexible working and a balanced work environment.
- Ongoing training and professional development support.
- Competitive salary with performance-based bonus.
- Strong internal culture focused on innovation, learning, and collaboration
Information Security Specialist
Posted today
Job Viewed
Job Description
Our client is looking for a
Cloud and Compliance Specialist
to join their team in Dublin for an 11 month hybrid position (3 days on site, 2 days remote)
Responsibilities:
- Support significant programs of work across various levels of XFNs in Cloud Security and Cloud GRC areas.
- Collaborate with team members and stakeholders to understand or identify defined work problems and program goals, obtain prioritized deliverables, and discuss program impact.
- Designing, implementing, and/or assessing security controls and frameworks
- Implement maturity frameworks across multiple programs factoring in emerging regulations and proactive detection of risks.
- Assess and document emerging regulatory impact on established policy and control frameworks
- Identify, communicate, and collaborate with relevant stakeholders within one or more teams to drive impact and work toward mutual goals.
- Establish learnings, best practices, standardized frameworks and tools across GRC and related teams.
- Develop detailed program/project plans in partnership with XFN teams.
- EU Security Office - Document compliance positions for NIS 2 and RED, support SRA delivery
- Cloud Security GRC - Conduct deep-dives into Cloud environments; document GRC-driven positions, and look for opportunities to improve Cloud Security Posture
Requirements:
- At least 5-7 years in Information Security.
- Deep and demonstrable familiarity with key Cloud Security, Risk Management and Compliance concepts Several years
- (5+) of hands-on security experience with at least one of the major CSPs (AWS, GCP, Azure)
- Experience in a GRC function overseeing Cloud implementations at scale
- Experience in designing and implementing control frameworks
- Experience in assessing security deficiencies in information systems and recommending mitigating controls in a corporate environment
Benefits:
- Competitive salary
- Healthcare contribution and inclusion in company pension scheme
- Work laptop and phone
- 25 days annual leave (pro-rata) plus paid bank holidays
- Expanding workforce with potential for career progression for top performers
Information Security Analyst
Posted today
Job Viewed
Job Description
Information Security (InfoSec) Analyst
12 month fixed term ( very likely to go longer)
Location:
Dublin West - 3 Days on site, Dublin West outside of the M50
Eligibility:
Open to candidates who do
not
require visa sponsorship
Stamp 1G (Spouse), Stamp 1G (Graduate, 12+ months remaining), Stamp 4 or EU passport holders.
We're looking for an Information Security Analyst to join a growing Cyber Security team, playing a key role in strengthening the organisation's security posture.
This role focuses on risk management, compliance, documentation and preparation for the upcoming NIS2 Directive.
Reporting into a Senior Information Security Manager, you'll help ensure the confidentiality, integrity and availability of data across a complex vendor ecosystem.
It's a hands-on governance and assurance role with a strong focus on vendor compliance, policy development and the continuous improvement of security controls and practices.
About You
- Previous experience in Information Security, Risk Management or Compliance.
- Previous experience vendor risk and third-party compliance.
- Excellent communication and stakeholder management skills.
- Knowledge of GDPR, ISO/IEC 27001 or NIS2 requirements. (Not a major thing if you don't)
- (Bonus) Certifications such as CISSP, CISM, or ISO 27001 Lead Implementer.
Key Responsibilities
- Support audits, assurance activities and evidence collection for compliance frameworks.
- Conduct and maintain risk assessments to identify and address threats and vulnerabilities.
- Collaborate across Legal, Compliance and IT to embed effective security governance.
- Foster a strong security and compliance culture across the organisation and partner network.
- Monitor and improve third-party/vendor compliance obligations.
This is a great role someone who has wants to grow their experience in security, governance, vendor risk and compliance
Information Security Architect
Posted today
Job Viewed
Job Description
Our Dublin based client is looking for an Information Security Architect to join their team. This role requires technical expertise in security architecture combined with proven consultancy experience. This is a daily rate contract role offering excellent daily rates.
Key Responsibilities:
- Design, document, and maintain enterprise-level security architectures, reference models, and security controls frameworks.
- Align security architecture with business and IT strategies, ensuring consistency across on-premise, cloud, and hybrid environments.
- Act as a trusted advisor to senior stakeholders, translating business needs into secure technology solutions.
- Deliver workshops, assessments, and security briefings to executive and technical audiences.
- Provide independent security consultancy to multiple projects and programmes simultaneously.
- Develop business cases and roadmaps for security improvement initiatives.
- Lead risk assessments, threat modelling, and security gap analyses for projects and existing systems.
- Guide IT and development teams in implementing secure architectures and controls.
- Oversee the selection and deployment of security tools and technologies.
- Support incident response, forensic investigations, and remediation planning when required.
Essential Experience:
- 5+ years of professional experience in Security Architecture.
Educational Requirements:
- Degree in Computer Science, Information Technology, or a related discipline.
Benefits:
- Competitive daily rate.
Information Security Architect
Posted today
Job Viewed
Job Description
Senior Information Security Architect
.
Contract position - Dublin
Realtime are looking for a
Senior Information Security Architect
. You will be responsible for crafting and executing a comprehensive security strategy. You will lead the development of security architecture, policies, and processes, ensuring compliance and addressing emerging threats. Your role will be crucial in minimizing risks and safeguarding the company's operational capabilities and reputation. This is an exciting opportunity to develop and implement security strategies and lead form the front.
Skills & Responsibilities:
- Proven experience in cybersecurity, developing/ implementing security strategies & policies.
- Strong experience implementing Zero trust architecture (ZTA)
- Extensive experience of IT security practices and standards.
- IT security technologies: encryption, authentication, EDR, XDR…
- Experience implementing multi-factor authentication.
- GDPR compliance and security best practices.
- Experience working with 3rd party suppliers to conduct penetration tests.
- Legal security requirements: Data Protection acts, PCI DSS, NIS2
- Security control frameworks: NIS2, ISO 27000, ENISA ISF, COBIT.
- Experience with risk assessment, incident management, and compliance.
- Create and implement security strategies, architectures, and policies.
- Lead IT security projects to enhance overall security posture.
- Develop and maintain IT security policies, standards, and guidelines.
- Work closely with managed security partners and oversee their services.
- Conduct IT security risk assessments and manage security-related incidents.
- Monitor and assess emerging threats and their potential impact.
- Develop materials to promote security awareness among staff.
- Ensure compliance with GDPR, health & safety, and other regulatory requirements.
- Implement secure design, threat modeling, & security control frameworks: NIS2, ISO27000.
If you are interested send your CV to
Information Security Analyst
Posted today
Job Viewed
Job Description
Every day, Global Payments makes it possible for millions of people to move money between buyers and sellers using our payments solutions for credit, debit, prepaid and merchant services. Our worldwide team helps over 3 million companies, more than 1,300 financial institutions and over 600 million cardholders grow with confidence and achieve amazing results. We are driven by our passion for success and we are proud to deliver best-in-class payment technology and software solutions. Join our dynamic team and make your mark on the payments technology landscape of tomorrow.
Summary of This RoleEvaluates, tests, recommends, develops, coordinates, monitors, and maintains information security policies, procedures and systems, including hardware, firmware and software . Ensures that IS security architecture/designs, plans, controls, processes, standards, policies and procedures are aligned with IS standards and overall IS security . Identifies security risks and exposures, determines the causes of security violations and suggests procedures to halt future incidents. Investigates and resolves security incidents and recommends enhancements to improve security. Develops techniques and procedures for conducting IS security risk assessments and compliance audits, the evaluation and testing of hardware, firmware and software for possible impact on system security, and the investigation and resolution of security incidents.
What Part Will You Play?- Gains and maintains knowledge of how to monitor complex systems and response to known and emerging threats against the Global Payments network via intrusion detection software
- Assists in detailed, comprehensive investigation of security issues by reviewing security log data, interpreting data in support of security event management process from various data feeds and triages on a wide variety of security events.
- Under close supervision performs incident handling process by gaining knowledge in implementation of containment, protection and remediation activities.
- Gains and maintains knowledge of new and emerging threats that can affect the organization's information assets by assisting in analysis of third party software/solutions, IT configuration changes (including access control requests), and network/system architecture from risk perspective
- Under close supervision designs and configures security systems, including proxy, remote access, mail gateway, intrusion prevention, wireless networking, data leak prevention, security information and event management and web application firewalls.
- Assists in assessing and disseminating threats related to the enterprise in regard to current vulnerability by managing and developing an emerging threat model.
- Develops an understanding of how to assess risks based on changes to implementation of ISO(International Organization for Standardization)/BSO(Business Services Online); gains knowledge of PCI(Payment Card Industry)/Logical Security guidelines and models, HIPPA(health insurance portability and accountability act), PII(Personally Identifiable Information), and Card personalization.
- Gains knowledge of how to create cost effective solutions for system/application development regarding Information Security processes and concepts in applicable systems and software.
- Works under close supervision to perform day-to-day Information Security functions pertaining to numerous security software products and processes.
Minimum Qualifications
- Bachelor's Degree
- Relevant Experience or Degree in: Bachelor's degree in Computer Science, Info Security, or related field. Or relevant work experience in a related field.
- Typically No Relevant Experience Required
Preferred Qualifications
- Typically Minimum 2 Years Relevant Exp
- Including network operations or engineering or system administration on Unix, Linux, MAC(Message Authentication Code), or Windows; common security operations, intrusion detection systems, Security Incident Even Management systems, and anti-virus collection logs; including knowledge of industry standard security compliance programs PCI(Payment Card Industry), SOX(Sarbanes-Oxley) , GLBA(Gramm Leach Bliley Act), etc.))
- Skills / Knowledge - Learns to use professional concepts. Applies company policies and procedures to resolve routine issues.
- Job Complexity - Works on problems of limited scope. Follows standard practices and procedures in analyzing situations or data from which answers can be readily obtained. Builds stable working relationships internally.
- Supervision - Normally receives detailed instructions on all work.
- Risk Assessment - Ability to identify, communicate, and mitigate risk within technical solution designs
- Industry Knowledge - Continued self-education of new and emerging threats and relevant processes, controls, or technologies to mitigate them.
- Incident Response - Knowledge and skills to contribute to all phases of Incident Response.
Global Payments Inc. is an equal opportunity employer. Global Payments provides equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex (including pregnancy), national origin, ancestry, age, marital status, sexual orientation, gender identity or expression, disability, veteran status, genetic information or any other basis protected by law. If you wish to request reasonable accommodations related to applying for employment or provide feedback about the accessibility of this website, please contact
Information Security Analyst
Posted today
Job Viewed
Job Description
Information Security Analyst - Dublin
ICON plc is a world-leading healthcare intelligence and clinical research organization. We're proud to foster an inclusive environment driving innovation and excellence, and we welcome you to join us on our mission to shape the future of clinical development.
Information Security Analyst
At ICON, it's our people that set us apart. Our diverse teams enable us to become a better partner to our customers and help us to fulfil our mission to advance and improve patients' lives.
Our 'Own It' culture is driven by four key values that bring us together as individuals and set us apart as an organisation: Accountability & Delivery, Collaboration, Partnership and Integrity. We want to be the Clinical Research Organisation that delivers excellence to our clients and to patients at every touch-point. In short, to be the partner of choice in drug development.
That's our vision. We're driven by it. And we need talented people who share it.
If you're as driven as we are, join us. You'll be working in a dynamic and supportive environment, with some of the brightest and the friendliest people in the sector, and you'll be helping shape an industry.
The Role
We are currently recruiting for an Information Security Analyst to work in the Governance, Risk & Compliance segment of our Cyber Security Team. This is a really great time to join this division as it is undergoing significant development and you will be joining at a time of exciting change with lots of opportunities for growth and development.
Responsibilities
- Perform activities in the support of one or more information security management practices, such as security compliance, security risk assessment and management, security policy management.
- Ensure activities are performed in accordance with company policies and industry standard frameworks (e.g., NIST CSF, NIST RMF and ISO
- Perform information security risk assessments, security compliance continuous monitoring, and/or various regulatory or contractual compliance activities.
- Work with other key stakeholders (e.g., quality assurance, legal, data protection office, business continuity, and other information technology business units) to ensure the organization analyzes and communicates information security risks and status of controls compliance effectively.
- Participate in the development of training and communication materials for key stakeholders of the process within your area of control or expertise.
- Advise and educate stakeholders on managing cybersecurity risks and information assurance activities in accordance with ICON's policies and procedures.
- Participate in authoring and reviewing information security policies and procedures pertaining to information security risk management and information assurance activities.
- Assist in the development of reports relating to the effectiveness of the cybersecurity risk management and assurance program.
- Perform ancillary tasks to support the strategic mission and objectives of the Cyber and Information Security department, as needed.
- Research and stay current on new technical literature applicable to information security, risk management, and information assurance.
- Assist in the development of metrics relating to the Cybersecurity Risk Management and Assurance team's business functions/processes.
Desired Qualifications
- Working technical knowledge of industry best practices and commonly used frameworks & standards (e.g., NIST 800-53/171, COSO, SOC/SSAE 18, COBIT, ISO ,) and various regulations pertaining to information security, cyber risk management, compliance, and data privacy (e.g., SOX, GDPR, HIPAA, GxP/GALP/GMP).
- Prior experience using an integrated risk management tool (e.g., ServiceNow) and/or vendor risk management tool (e.g., Process Unity) is a plus.
- Possess basic-to-intermediate understanding of risks and controls pertaining to technical, management, and operations security controls, system development lifecycle, business continuity, disaster recovery, data center controls, cloud computing, third-party risk management and privacy.
- Holds a CISSP, CISM, CISA, CRISC, ISO 27001 Lead Auditor or Implementer or similar certification; desirable but not required.
Minimum Requirements
- Fundamental relationship management and communications skills.
- Fundamental ability to solve problems and apply skills to determine risk or compliance deviations.
- Bachelor's degree in Computer Science, Information Systems, Cybersecurity, Enterprise Risk Management or related field or equivalent experience and one year of risk management, cybersecurity, compliance or related experience (or combined equivalent education, training, and experience).
- Excellent written and verbal communication skills.
- Read, write and speak fluent English, with strong documentation and organizational skills.
Benefits Of Working In ICON
Our success depends on the quality of our people. That's why we've made it a priority to build a culture that rewards high performance and nurtures talent.
We offer very competitive salary packages. And to keep them competitive, we regularly benchmark them against our competitors. Our annual bonuses reflect delivery of performance goals – both ours and yours.
We also provide a range of health-related benefits to employees and their families and offer competitive retirement plans – and related benefits such as life assurance – so you can save and plan with confidence for the years ahead.
But beyond the competitive salaries and comprehensive benefits, you'll benefit from an environment where you are encouraged to fulfil your sense of purpose and drive lasting change.
ICON is an equal opportunity and inclusive employer and is committed to providing a workplace free of discrimination and harassment. All qualified applicants will receive equal consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status.
If, because of a medical condition or disability, you need a reasonable accommodation for any part of the application process, or in order to perform the essential functions of a position, please let us know through the form below.
What ICON Can Offer You
Our success depends on the quality of our people. That's why we've made it a priority to build a diverse culture that rewards high performance and nurtures talent.
In addition to your competitive salary, ICON offers a range of additional benefits. Our benefits are designed to be competitive within each country and are focused on well-being and work life balance opportunities for you and your family.
Our Benefits Examples Include
- Various annual leave entitlements
- A range of health insurance offerings to suit you and your family's needs.
- Competitive retirement planning offerings to maximize savings and plan with confidence for the years ahead.
- Global Employee Assistance Programme, LifeWorks, offering 24-hour access to a global network of over 80,000 independent specialized professionals who are there to support you and your family's well-being.
- Life assurance
- Flexible country-specific optional benefits, including childcare vouchers, bike purchase schemes, discounted gym memberships, subsidized travel passes, health assessments, among others.
Visit our careers site to read more about the benefits ICON offers.
At ICON, inclusion & belonging are fundamental to our culture and values. We're dedicated to providing an inclusive and accessible environment for all candidates. ICON is committed to providing a workplace free of discrimination and harassment. All qualified applicants will receive equal consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status.
If, because of a medical condition or disability, you need a reasonable accommodation for any part of the application process, or in order to perform the essential functions of a position, please let us know or submit a request here
Interested in the role, but unsure if you meet all of the requirements? We would encourage you to apply regardless – there's every chance you're exactly what we're looking for here at ICON whether it is for this or other roles.
Are you a current ICON Employee? Please click here to apply
Be The First To Know
About the latest Database security Jobs in Ireland !
Information Security Governance
Posted today
Job Viewed
Job Description
COMPANY OVERVIEW
KKR is a leading global investment firm that offers alternative asset management as well as capital markets and insurance solutions. KKR aims to generate attractive investment returns by following a patient and disciplined investment approach, employing world-class people, and supporting growth in its portfolio companies and communities. KKR sponsors investment funds that invest in private equity, credit and real assets and has strategic partners that manage hedge funds. KKR's insurance subsidiaries offer retirement, life and reinsurance products under the management of Global Atlantic Financial Group. References to KKR's investments may include the activities of its sponsored funds and insurance subsidiaries.
POSITION SUMMARY
KKR is seeking an Information Security Risk Analyst to join the Information Security Governance, Risk, and Compliance (GRC) organization. This role offers exciting opportunities for growth and impact as KKR scales its business and continues to innovate. This role will assist in identifying, assessing, and tracking cybersecurity risk across the organization. You will help manage risk issues, collaborate with business and IT stakeholders, and support ongoing risk and compliance initiatives. This is an excellent opportunity for candidates looking to grow their career in information security and risk management. You will also be looking over the horizon, identifying future needs and exploring leading edge solutions.
RESPONSIBILITIES:
Support Cyber Risk Management Activities
- Assist in conducting cyber risk assessments on internal systems, third-party vendors, and emerging technologies.
- Help document and track identified risks, mitigation plans, and risk acceptances.
- Monitor remediation efforts and follow up on open risk issues with stakeholders.
Stakeholder Engagement
- Participate in meetings with business and technical stakeholders to gather information, identify, communicate risk issues, and support decision-making processes.
- Collaborate with internal teams to communicate risk findings and support risk-based decision-making in projects, operations, and vendor engagements.
Risk Documentation & Reporting
- Maintain accurate risk registers and documentation using GRC tools or tracking systems.
- Contribute to the development of risk reports and dashboards for management and audit purposes.
Compliance & Policy Support
- Help ensure alignment with internal security policies, standards, and applicable regulatory requirements (e.g., SOX, GDPR, NIS2 etc.).
- Assist in documenting and maintaining security governance artifacts including policies, procedures, and control mappings.
Continuous Improvement
- Identify opportunities for improving risk processes, tools, and reporting.
- Stay current on cybersecurity trends, threats, and regulatory developments.
QUALIFICATIONS
- Bachelor's degree in Information Security, Information Systems, Computer Science, or a related field—or equivalent work experience.
- Foundational understanding of cybersecurity principles and risk management concepts.
- Strong written and verbal communication skills, especially with non-technical audiences.
- Ability to present ideas in a user and business-friendly manner
- Detail-oriented with outstanding organizational and documentation skills.
- Ability to work effectively in a team environment and build positive relationships.
- Team-player who enjoys working in a collaborative and collegial environment and is an active contributor as part of a global team
- Ability to work calmly under pressure and meet deadlines and solve problems requiring creativity, initiative and drive; self-motivated and enjoys a sense of pride in their accomplishments
- Strategic self-starter with an innovative mindset
KKR is an equal opportunity employer. Individuals seeking employment are considered without regard to race, color, religion, national origin, age, sex, marital status, ancestry, physical or mental disability, veteran status, sexual orientation, or any other category protected by applicable law.
Information Security, Risk
Posted today
Job Viewed
Job Description
Information Security, Risk & Compliance Officer
Glanbia plc
Join this dynamic team focused on delivering better nutrition for every step of life's journey
The Opportunity
The Information Security, Risk & Compliance Officer is responsible for defining and executing the organisation's security strategy, ensuring robust protection against cyber threats while maintaining regulatory and legal compliance. They are a senior IT leader and the principal advisor to the Chief Digital Transformation Officer (CDTO) on information security, risk, and compliance topics. This role ensures security policies and frameworks are embedded into IT operations, while proactively mitigating emerging threats and safeguarding critical systems and data
Primary responsibilities for this role will include
- Defines, implements, and executes an enterprise-wide security strategy that aligns with business goals and regulatory requirements
- Oversees the development and management of risk management and compliance programmes to enable proactive identification, assessment, and mitigation of risks to the business
- Accountable for monitoring the effectiveness of security controls that safeguard the security of the organisation's information assets, systems, data, and technologies
- Develop, maintain and enforcement of Information Security policies and standards thar are aligned to the organisation's regulatory obligations, strategic goals and security risk objectives
- Leads security incident response efforts, ensuring timely and effective resolution of security incidents and breaches
- Defines security architecture principles and guardrails to ensure the secure design, implementation, and management of IT services
- Defines and executes information security assessments and action plan responses (e.g., disaster recovery strategies), to be communicated to Business C-Suite and IT Leadership
- Leads the organisation's Information Security awareness process
- Acts as a senior advisor to the executive team on information security, risk, and compliance-related topics
- Ensures the effective management of information security, risk, and compliance talent, including maintaining a clear structure to attract, develop, and retain the best talent in this area
- Lead business continuity planning efforts to ensure resilience and operational continuity in the face of business disruptions
The Skills you will bring to the to team
- Bachelor's or Master's degree in a relevant field (e.g., Information Security, Risk Management, Computer Science, Information Technology), or equivalent experience
- Professional certifications in Security and Risk & Compliance domains (e.g., CISSP, CISM, CRISC) are highly desirable
- 10+ years of experience in defining and maintaining enterprise security strategy, aligning cybersecurity initiatives with business and IT objectives
- Proven track record in selecting and managing strategic IT and security vendors
- Strong background in security architecture and security monitoring & operations (incl. threat intelligence and incident response
- Experience in developing and maintain security controls for Operational Technology (OT) and manufacturing environments
- Proven track record in building out IT risk management frameworks and leading regulatory compliance activities
- Adept at conveying complex technology ideas to C-Suite level Business executives
Where and how you will work
The opportunity will be based in our office
s in Citywest, Dublin
with hybrid working arrangements in place
About Glanbia
Glanbia is a better nutrition company with three divisions: Performance Nutrition, Health & Nutrition and Dairy Nutrition. Collectively and with our partners we offer an incredible breadth of expertise in nutrition. We employ a team of 5800 people, work with global food and beverage companies, and sell our award-winning and market-leading brands and ingredients in more than 100 countries worldwide
At Glanbia, we celebrate diversity, because we know that our individual strengths make us stronger together. We welcome and encourage interest from a variety of candidates, we will give your application consideration, without regard to race, color, religion, sex, sexual orientation, gender perception or identity, national origin, age, marital status, or disability status.
At Glanbia, our culture celebrates individuality, knowing that together we are more.
Information Security Analyst
Posted today
Job Viewed
Job Description
Summary
Description
Summary of This Role
Evaluates, tests, recommends, develops, coordinates, monitors, and maintains information security policies, procedures and systems, including hardware, firmware and software . Ensures that IS security architecture/designs, plans, controls, processes, standards, policies and procedures are aligned with IS standards and overall IS security . Identifies security risks and exposures, determines the causes of security violations and suggests procedures to halt future incidents. Investigates and resolves security incidents and recommends enhancements to improve security. Develops techniques and procedures for conducting IS security risk assessments and compliance audits, the evaluation and testing of hardware, firmware and software for possible impact on system security, and the investigation and resolution of security incidents.
What Part Will You Play?
- Gains and maintains knowledge of how to monitor complex systems and response to known and emerging threats against the Global Payments network via intrusion detection software
- Assists in detailed, comprehensive investigation of security issues by reviewing security log data, interpreting data in support of security event management process from various data feeds and triages on a wide variety of security events.
- Under close supervision performs incident handling process by gaining knowledge in implementation of containment, protection and remediation activities.
- Gains and maintains knowledge of new and emerging threats that can affect the organization's information assets by assisting in analysis of third party software/solutions, IT configuration changes (including access control requests), and network/system architecture from risk perspective
- Under close supervision designs and configures security systems, including proxy, remote access, mail gateway, intrusion prevention, wireless networking, data leak prevention, security information and event management and web application firewalls.
- Assists in assessing and disseminating threats related to the enterprise in regard to current vulnerability by managing and developing an emerging threat model.
- Develops an understanding of how to assess risks based on changes to implementation of ISO(International Organization for Standardization)/BSO(Business Services Online); gains knowledge of PCI(Payment Card Industry)/Logical Security guidelines and models, HIPPA(health insurance portability and accountability act), PII(Personally Identifiable Information), and Card personalization.
- Gains knowledge of how to create cost effective solutions for system/application development regarding Information Security processes and concepts in applicable systems and software.
- Works under close supervision to perform day-to-day Information Security functions pertaining to numerous security software products and processes.
What Are We Looking For in This Role?
Minimum Qualifications
- Bachelor's Degree
- Relevant Experience or Degree in: Bachelor's degree in Computer Science, Info Security, or related field. Or relevant work experience in a related field.
- Typically No Relevant Experience Required
Preferred Qualifications
- Typically Minimum 2 Years Relevant Exp
- Including network operations or engineering or system administration on Unix, Linux, MAC(Message Authentication Code), or Windows; common security operations, intrusion detection systems, Security Incident Even Management systems, and anti-virus collection logs; including knowledge of industry standard security compliance programs PCI(Payment Card Industry), SOX(Sarbanes-Oxley) , GLBA(Gramm Leach Bliley Act), etc.))
What Are Our Desired Skills and Capabilities?
- Skills / Knowledge - Learns to use professional concepts. Applies company policies and procedures to resolve routine issues.
- Job Complexity - Works on problems of limited scope. Follows standard practices and procedures in analyzing situations or data from which answers can be readily obtained. Builds stable working relationships internally.
- Supervision - Normally receives detailed instructions on all work.
- Risk Assessment - Ability to identify, communicate, and mitigate risk within technical solution designs
- Industry Knowledge - Continued self-education of new and emerging threats and relevant processes, controls, or technologies to mitigate them.
- Incident Response - Knowledge and skills to contribute to all phases of Incident Response.