Security Specialist, Corrective Action

2 Months ago • 3 Years + • Cyber Security

Job Summary

Job Description

The Security Specialist, Corrective Action at Disney's Global Information Security (GIS) group will facilitate remediation and corrective action for security gaps and vulnerabilities identified through assessments. This includes addressing issues found in internal assessments, vulnerability scans, penetration tests, and regulatory compliance checks (PCI, EU data privacy). Responsibilities involve collaborating with IT and business partners, developing remediation plans, verifying compliance with security standards (CIS Benchmarks, NIST, TWDC policies), documenting progress, communicating results, and recommending security improvements. The role requires strong communication, problem-solving, and analytical skills.
Must have:
  • 3+ years cybersecurity experience
  • Corrective action facilitation
  • Security framework understanding
  • Analytical & problem-solving skills
  • Experience with Archer
  • Excellent communication skills
Good to have:
  • PCNSE, Security+, CySA+, CCNA Cyber Ops, AWS, GSEC, GICSP, CISSP
  • CISSA, CISM, GCCC, GSNA certifications

Job Details

Job Summary:

At Disney, we’re storytellers. We make the impossible, possible. The Walt Disney Company is a world-class entertainment and technological leader. Walt’s passion was to continuously envision new ways to move audiences around the world—a passion that remains our touchstone in an enterprise that stretches from theme parks, resorts and a cruise line to sports, news, movies and a variety of other businesses. Uniting each endeavor is a commitment to creating and delivering unforgettable experiences — and we’re constantly looking for new ways to enhance and protect these exciting experiences.

The Global Information Security (GIS) group provides services and solutions to protect the value and use of Disney’s information through risk evaluation, collaboration, standardization, enforcement, and education across the enterprise. We protect the brand and reputation while enabling and supporting business objectives. GIS teams are located in Seattle, Burbank, and Orlando.

Disney Experiences is required to address security control gap issues identified through various assessment programs.  A cybersecurity corrective action job involves developing and implementing plans to address security gaps and vulnerabilities.  This includes issues identified through internal assessments against corporate policy, vulnerability scanning, penetration testing, and regulatory issues identified through compliance program assessments such as PCI and EU data privacy.

This role is responsible for facilitating remediation and corrective action activities with IT and business partners. This role involves communication, collaboration, negotiation, and holding partners accountable. This role collaborates with multiple teams to coordinate the implementation of security improvements that mitigate risks and enhance the organization's overall security posture.

Develops and evaluates compliance with programs and processes to mitigate cybersecurity risk and ensure protection of company and allied assets and information.  Reviews and enhances network systems and processes for compliance with external regulations and internal standards.  Proactively identifies non-conforming areas and assesses risk.  Recommends and implements compliance measures.  Provides leadership on compliance issues to solve challenging security compliance problems.  Ensures documentation and reporting in support of analysis.  Stays current on evolving legislative / regulatory changes related to security compliance. 

What You'll Do

  • Review reports, assessments, and findings to identify remediation and/or corrective action needed.
  • Coordinate with IT and business partners to facilitate necessary remediation and corrective action.
  • Verify remediation and corrective action activity achieves compliance against security standards such as CIS Benchmarks, NIST, and TWDC policies and standards.
  • Document open items in status reports, including next steps, dependencies, and stakeholders.
  • Communicate results to stakeholders, including technical and non-technical audiences.
  • Provide recommendations to improve security posture.
  • Assist in improving security baselines and standards.
  • Stay updated on evolving security guidelines and incorporate them into IT and business practices.
  • Stay informed on emerging threats and vulnerabilities.
  • Proactively recommend adjustments to mitigate risks.

Required Qualifications & Skills 

  • 3+ years of related cybersecurity experience
  • Demonstrated experience facilitating corrective action.
  • Ability to work well with individuals and teams with varying technical and business backgrounds.
  • Understanding of security frameworks and standards.
  • Analytical thinking and attention to detail.
  • Established problem-solving skills with an ability to develop creative alternatives to complex problems, as well as continuous improvement process skills 
  • Demonstrated ability to handle confidential information. 
  • Experience with IT security venerability programs (specifically Archer) within a large and complex organization.
     

Required Education 

  • Bachelor’s degree and/or equivalent work experience

Preferred Education:

  • One or more general security certifications including PCNSE, Security+, CySA+, CCNA Cyber Ops, AWS, GSEC, GICSP, CISSP, or other relevant certifications
  • One or more vulnerability assessment or auditing certification including CISSA, CISM, GCCC, GSNA or other relevant certifications

Similar Jobs

Crazy games  - [REMOTE] Product Engineer

Crazy games

Leuven, Flanders, Belgium (Remote)
6 Months ago
Twitch - Software Engineer II - iOS

Twitch

Seattle, Washington, United States (On-Site)
5 Months ago
Playtika - IT Engineering Team Lead

Playtika

Ukraine (On-Site)
2 Months ago
Blinkhealth - Senior Manager, Cloud Engineering

Blinkhealth

(Remote)
2 Months ago
ION - Network Security Engineer

ION

Milan, Lombardy, Italy (Hybrid)
6 Months ago
PwC - ETIC, Cybersecurity Graduate Program (German Speaker)

PwC

Cairo, Cairo Governorate, Egypt (On-Site)
5 Months ago
PwC - IN-Senior Associate _ ITGC _ITRA_ Advisory _Mumbai

PwC

Mumbai, Maharashtra, India (On-Site)
6 Months ago
Take-Two Interactive - Product Security Architect

Take-Two Interactive

England, United Kingdom (Remote)
1 Month ago
Varonis  - Cloud Security Research Team Leader

Varonis

Herzliya, Tel Aviv District, Israel (On-Site)
6 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

ION - Cloud Network Engineer

ION

Italy (Hybrid)
6 Months ago
Electronic Arts - Senior Manager, Generative AI Software Engineering

Electronic Arts

Austin, Texas, United States (On-Site)
1 Month ago
The Walt Disney Company - Quality Assurance Manager, Business Technology

The Walt Disney Company

Minato City, Tokyo, Japan (On-Site)
2 Months ago
Bigpoint - Associate DevOps Engineer (m/f/d) - #5720

Bigpoint

Hamburg, Hamburg, Germany (Remote)
8 Months ago
Metyis - Lead Devops Engineer

Metyis

Bengaluru, Karnataka, India (On-Site)
5 Months ago
PwC - Senior Data Scientist

PwC

Kuala Lumpur, Federal Territory Of Kuala Lumpur, Malaysia (On-Site)
6 Months ago
The Walt Disney Company - Sr Software Engineer

The Walt Disney Company

Washington, United States (On-Site)
2 Months ago
PAPAYA - SW Infrastructure Team Lead

PAPAYA

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
1 Month ago
Fortis Games - Senior QA Automation Engineer

Fortis Games

Portugal (On-Site)
2 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Orlando, Florida, United States

The Pokemon Company International - Sr. Brand Marketing Manager (Bilingual Japanese/English)

The Pokemon Company International

Bellevue, Washington, United States (Hybrid)
4 Months ago
Netflix - Senior Researcher - Live Incremental Product Experience

Netflix

Los Gatos, California, United States (On-Site)
3 Months ago
Netflix - Manager, Ads Marketing - Client Engagement & Audience Development

Netflix

Los Angeles, California, United States (On-Site)
3 Months ago
Mobalytics - Senior Frontend Engineer (React)

Mobalytics

Santa Monica, California, United States (Remote)
1 Month ago
ZeniMax Media - Level Designer

ZeniMax Media

Rockville, Maryland, United States (On-Site)
6 Months ago
Netflix - Engineering Manager - OnlineDataStores (Caching)

Netflix

Los Gatos, California, United States (On-Site)
3 Months ago
Bitwise Alchemy - General

Bitwise Alchemy

Texas, United States (Remote)
6 Months ago
DraftKings - Director of Data Science

DraftKings

Boston, Massachusetts, United States (On-Site)
1 Month ago
Trek - Service Technician/Advisor

Trek

Dayton, Ohio, United States (On-Site)
2 Months ago
Framestore - FREELANCE: FLAME - CHICAGO

Framestore

Chicago, Illinois, United States (On-Site)
10 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

PwC - Manager - Assurance - IT Audit

PwC

Jakarta, Jakarta, Indonesia (On-Site)
6 Months ago
PwC - Financial Sector Cyber Security Senior Manager

PwC

Amsterdam, North Holland, Netherlands (On-Site)
3 Months ago
Jagex - Senior Cyber Security Manager - GRC

Jagex

Cambridge, England, United Kingdom (Hybrid)
1 Month ago
Axinous - Transformation Architect - South East

Axinous

Georgia, United States (Remote)
1 Month ago
Netflix - Engineering Manager, Identity & Authentication Security

Netflix

United States (Remote)
2 Months ago
Trek - IT Security Operations Analyst

Trek

Haryana, India (On-Site)
2 Months ago
PwC - Financial Services GRC Senior Associate

PwC

Makati, Metro Manila, Philippines (On-Site)
6 Months ago
ByteDance - Cloud Security Solution Architect, APAC

ByteDance

Singapore (On-Site)
5 Months ago
The Walt Disney Company - Senior Security Specialist, Information Security - Security Solution Architect

The Walt Disney Company

Orlando, Florida, United States (On-Site)
2 Months ago

Get notifed when new similar jobs are uploaded

About The Company

From classic animated features and exhilarating theme park attractions to cutting edge sports coverage, and the hottest shows on television, The Walt Disney Company has been making magic since 1923, creating unforgettable stories that connect with audiences around the world. And we’re just getting started!

The key to our success…. The Cast, Crew, Imagineers and Employees who honor Disney’s rich legacy by stretching the bounds of imagination to create the never-before-seen, bringing unparalleled entertainment experiences to people of all ages. Begin a career that delivers unparalleled creative content and experiences to audiences around the world and just imagine the stories you could be part of…

What is #LifeAtDisney like? It’s a series of magical moments with cast members and employees developing and telling our stories in the most innovative ways. Whether it’s a day spent as a Disney VoluntEAR, or celebrating the release of a new interactive experience, retail product or movie, our days are filled with the knowledge that we are creating entertainment experiences the whole family can enjoy. Follow @DisneyCareers on Facebook, Twitter and Instagram for a peek behind-the-curtain, and discover how you could connect to a world of stories with Disney!

Glendale, California, United States (On-Site)

Île-de-France, France (On-Site)

London, England, United Kingdom (Hybrid)

Burbank, California, United States (Hybrid)

Lake Buena Vista, Florida, United States (On-Site)

New York, New York, United States (On-Site)

Connecticut, United States (On-Site)

Lake Buena Vista, Florida, United States (On-Site)

California, United States (On-Site)

Rancho Mirage, California, United States (On-Site)

View All Jobs

Get notified when new jobs are added by The Walt Disney Company

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug