Security Risk Analyst IV

1 Month ago • 6-8 Years • Cyber Security • $115,000 PA - $125,000 PA

Job Summary

Job Description

This role is for a Sr. Manager, Security Risk Analyst IV, focusing on protecting the organization's information systems and technology assets. The primary responsibility is to create and execute strategies that safeguard digital resources and maintain a robust security framework. This includes overseeing security efforts, assessment outcomes, and ensuring the effective implementation of governance, risk management, and compliance programs. The analyst will identify, evaluate, and mitigate security risks, aligning security strategies with business goals and collaborating with IT leadership. Key duties involve conducting risk assessments, leveraging GRC tools, reviewing cybersecurity controls, and ensuring adherence to industry standards, regulations, and data protection requirements.
Must have:
  • Six to eight years of experience in information security.
  • At least five years in technical audit or security compliance.
  • Deep understanding of security frameworks (NIST, ISO 27001, CIS).
  • Strong expertise in risk assessment methodologies and tools.
  • Knowledge of IP networking, operating systems, and cloud environments.
  • Understanding of security principles: authentication, access control, secure configurations, network traffic analysis, endpoint security, application security, encryption, cloud security.
Good to have:
  • Bachelor's degree in an IT-related field or equivalent work experience.
  • Advanced security certification (CISSP, CISM, CRISC, CISA, CGEIT).
  • Extensive knowledge of security risk assessment techniques, vulnerability management, and threat modeling.
  • Familiarity with database management systems (SQL, NoSQL) and data modeling.
  • Experience with workflow design, basic development, and API integration.
  • Proficiency in using GRC/ERM tools.
  • General working knowledge of web application and network technologies, programming languages, databases, and operating systems (Linux, Unix, Mac OS X, Windows).
Perks:
  • bonus
  • benefits

Job Details

Title: Sr. Manager, Security Risk Analyst IV

Location: Orlando, FL

Salary: $115,000 - $125,000 + bonus + benefits

Phaidon International is partnered with a leading global provider of vacation ownership, rental, and resort experiences, who are known for their vacation club memberships, timeshare properties, and luxury travel options across a portfolio of high-end resorts and destinations. With a strong focus on customer service, they offer flexible vacation solutions such as points-based systems and exchange programs while operating under multiple well-known hospitality brands.

They are currently undergoing a technology transformation, with a focus on modernization to improve relationships with customers and further expand their accessibility across all experiences and destinations. The goal is to be a technology leader in hospitality, and they are looking for individuals eager to bring their expertise to the organization long-term.

Under the new leadership of the CIO, the team has been reinvigorated and are primed for growth across their entire Global Technology organization including Engineering & Operations, Data Platforms & Engineering, Artificial Intelligence, Information Security, Privacy, Infrastructure, Products & Platforms, Delivery Office, and the Office of the CIO. The business intends to double it's spending on Technology across the organization for each of the next 3 years. This is your opportunity to be a part of the journey and drive innovation through technology adoption.

In this role you will be responsible for creating and executing strategies that protect the organization's information systems and technology assets. This role focuses on securing digital resources and maintaining a strong security framework. You will oversee efforts and assessment outcomes, ensuring the effective implementation of security governance, risk management, and compliance programs to identify, evaluate, and mitigate security risks. Key responsibilities include:

  • Partnering with IT leadership to ensure security strategies are aligned with business goals and objectives.
  • Identifying and evaluating security risks within the organization's technology infrastructure and processes.
  • Offering guidance and oversight on security risk assessments, ensuring they align with industry standards and company policies.
  • Leveraging tools and software to facilitate governance, risk assessment, and compliance management, including risk assessment systems, compliance tracking platforms, and reporting dashboards.
  • Continuously reviewing cybersecurity controls to ensure their effectiveness, compliance, and alignment with key policies, and leading efforts to address any gaps.
  • Identify, assess, and mitigate internal and external risks.
  • Conduct more advanced quantitative and qualitative analysis for business processes and/or projects. Often oversees smaller projects, business processes, or segments of larger initiatives.
  • Provide leadership and oversight for security risk assessment projects, ensuring they follow industry best practices and company policies.
  • Collaborate closely with legal, compliance, and regulatory teams to ensure adherence to industry standards, regulations, and data protection requirements.
  • Identify opportunities to enhance processes within the GRC development lifecycle, recommending and implementing improvements to optimize workflows and increase efficiency.
  • Develop and maintain technical security configuration standards.
  • Create and communicate security policies, standards, and procedures to ensure consistent security practices across the organization.
  • Stay informed about relevant regulations, standards, and industry best practices, and implement necessary updates to GRC systems to ensure ongoing compliance.
  • Coordinate and participate in security audits and assessments, managing responses to audit findings.

Required Experience:

  • Bachelor's degree in an IT-related field or equivalent work experience (preferred).
  • Advanced security certification (preferred), such as CISSP, CISM, CRISC, CISA, CGEIT.
  • Six to eight years of progressively responsible experience in information security roles.
  • At least five years in a technical audit, security compliance, or similar role.
  • Deep understanding of security frameworks (e.g., NIST, ISO 27001, CIS), regulatory requirements, and industry standards.
  • Strong expertise in risk assessment methodologies and tools.
  • Extensive knowledge of security risk assessment techniques, vulnerability management, and threat modeling.
  • Familiarity with database management systems (SQL, NoSQL) and data modeling.
  • Experience with workflow design, basic development, and API integration functionality.
  • Proficiency in using GRC/ERM tools.
  • Solid knowledge of IP networking concepts, major operating systems, and cloud computing environments.
  • General working knowledge of web application and network technologies, programming languages, databases, and operating systems (Linux, Unix, Mac OS X, Windows).
  • Advanced understanding of security principles, standards, and processes, including authentication and access control, secure configurations, network traffic analysis, endpoint security, platform architecture, application security, encryption and key management, and cloud security.

Similar Jobs

Figma - Customer Enablement Manager

Figma

Tokyo, Japan (On-Site)
3 Weeks ago
Apple - PMIC Engineering Program Specialist

Apple

Cupertino, California, United States (On-Site)
1 Month ago
Gallagher - Sr. QA Analyst

Gallagher

Chandigarh, Chandigarh, India (On-Site)
9 Months ago
Mcdonalds - Full Stack Software Engineer II (C#/.NET)

Mcdonalds

Mexico City, Mexico (On-Site)
6 Months ago
Rolls-Royce - Manufacturing Services Engineer

Rolls-Royce

Singapore (On-Site)
3 Weeks ago
Lilt - Staff DevOps Engineer (Security Clearance Required)

Lilt

Washington, District Of Columbia, United States (Hybrid)
5 Months ago
Jane Street - Cybersecurity Detection and Response Analyst

Jane Street

Singapore (On-Site)
3 Months ago
Valeo - Cybersecurity Architect

Valeo

Cairo, Cairo Governorate, Egypt (On-Site)
2 Years ago
Loft Orbital - Senior Security Engineer

Loft Orbital

France (Remote)
2 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

London stock Exchange - Senior Specialist Market Supervision

London stock Exchange

Philippines (On-Site)
2 Months ago
LMArena - Senior Security Engineer

LMArena

California, United States (Remote)
4 Months ago
Activision - Lead Producer

Activision

Los Angeles, California, United States (On-Site)
1 Month ago
Sailpoint - Manager, Developer Relations

Sailpoint

United States (On-Site)
2 Months ago
CME Group - Senior Quantitative Development Associate

CME Group

Chicago, Illinois, United States (On-Site)
1 Year ago
Tide - Senior Reconciliations Planning and Strategy

Tide

Hyderabad, Telangana, India (On-Site)
2 Months ago
Palo Alto Networks - Consulting Director, Incident Recovery Operations (Unit 42)

Palo Alto Networks

California, United States (Remote)
3 Months ago
Luxoft - Business Analyst - Treasury

Luxoft

Bengaluru, Karnataka, India (On-Site)
9 Months ago
entrata - Deputy Bank Secrecy Officer

entrata

United States (Remote)
3 Weeks ago

Get notifed when new similar jobs are uploaded

Jobs in Orlando, Florida, United States

Shield AI - Director of Production (R3072)

Shield AI

Dallas, Texas, United States (On-Site)
3 Weeks ago
CharacterAI - Social Media Manager

CharacterAI

Menlo Park, California, United States (Remote)
4 Months ago
Loft Orbital - Test Infrastructure Technical Lead

Loft Orbital

Golden, Colorado, United States (Hybrid)
1 Month ago
Interactive Brokers - Regulatory Correspondence Counsel

Interactive Brokers

Chicago, Illinois, United States (Hybrid)
3 Months ago
Meow Wolf - Area Sales Assistant Manager

Meow Wolf

Grapevine, Texas, United States (On-Site)
1 Year ago
Fashionphile - Retail Sales Specialist

Fashionphile

New York, United States (On-Site)
1 Month ago
Mark43 - Staff Engineer

Mark43

New York, United States (Remote)
4 Weeks ago
CD PROJEKT RED - Senior Rendering Engineer

CD PROJEKT RED

Boston, Massachusetts, United States (Remote)
2 Months ago
Absurd Ventures - Quality Assurance (QA) Lead

Absurd Ventures

Santa Monica, California, United States (On-Site)
3 Months ago
CyberArk - Automation Engineer

CyberArk

United States (Hybrid)
2 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Forescout Technologies  Inc  - Security Analyst

Forescout Technologies Inc

United States (On-Site)
3 Months ago
FlockSafety - Cyber Security Operations Manager

FlockSafety

United States (Remote)
1 Month ago
Plaid  - Software Engineer - Security Engineering

Plaid

New York, United States (On-Site)
3 Weeks ago
Kyruus Health - Staff Application Security Engineer

Kyruus Health

United States (Remote)
2 Weeks ago
GHX - Senior Cybersecurity Risk Governance Analyst

GHX

Hyderabad, Telangana, India (On-Site)
3 Months ago
bytedance - Senior Software Engineer - Network Security

bytedance

San Jose, California, United States (On-Site)
4 Months ago
Canonical - Staff Security Operations Engineer

Canonical

(Remote)
3 Months ago
Varonis  - Full-Stack engineer - AI Security

Varonis

Herzliya, Tel Aviv District, Israel (Hybrid)
4 Months ago
Crowd Strick - Security Engineer, Observability

Crowd Strick

Bucharest, Bucharest, Romania (Remote)
2 Months ago
Veeam Software - Application Security Engineer

Veeam Software

California, United States (Remote)
1 Month ago

Get notifed when new similar jobs are uploaded