Staff Security Specialist, Information Security

7 Months ago • 7-7 Years • $126,400 PA - $169,500 PA
Cyber Security

Job Description

The Staff Security Specialist at Disney's Global Information Security (GIS) group will lead security reviews, assessments, and remediation efforts for new and existing systems and third-party providers. Responsibilities include coordinating with IT and business partners to ensure compliance with security standards (CIS Benchmarks, NIST, TWDC policies), documenting progress, communicating findings to stakeholders, and improving security baselines. The role requires leading projects from conception to implementation and proactively identifying and mitigating emerging risks. This position requires strong analytical, problem-solving, and communication skills, along with experience in a large, complex organization.
Good To Have:
  • PCNSE, Security+, CySA+, CCNA Cyber Ops, AWS, GSEC, GICSP, CISSP
  • CISSA, CISM, GCCC, GSNA certifications
Must Have:
  • 7+ years experience in security
  • Lead remediation activities
  • Risk identification and mitigation
  • Knowledge of security frameworks
  • Strong analytical and problem-solving skills
  • Excellent communication skills
Perks:
  • Bonus
  • Long-term incentives
  • Medical, financial, and other benefits

Add these skills to join the top 1% applicants for this job

aws
internal-audit

Job Summary:

At Disney, we’re storytellers. We make the impossible, possible. The Walt Disney Company is a world-class entertainment and technological leader. Walt’s passion was to continuously envision new ways to move audiences around the world—a passion that remains our touchstone in an enterprise that stretches from theme parks, resorts and a cruise line to sports, news, movies and a variety of other businesses. Uniting each endeavor is a commitment to creating and delivering unforgettable experiences — and we’re constantly looking for new ways to enhance and protect these exciting experiences.

The Global Information Security (GIS) group provides services and solutions to protect the value and use of Disney’s information through risk evaluation, collaboration, standardization, enforcement, and education across the enterprise. We protect the brand and reputation while enabling and supporting business objectives. GIS teams are located in Seattle, Burbank, and Orlando.

This role will provide security expertise to ensure new projects, existing systems and third-party service providers have required security, privacy and compliance controls in place. The Staff Security Specialist will review system architecture, data flow and operational processes when evaluating systems. The Staff Security Specialist will also conceptualize and develop solutions to improve security posture and lead projects from conception to design to implementation. Without this additional support security work will not be completed timely resulting in project delays or new systems potentially going live with security vulnerabilities.

What You'll Do:     

  • Lead the review reports, assessments, and findings to identify remediation and/or corrective action needed.
  • Drive coordination with IT and business partners to facilitate necessary remediation and corrective action.
  • Verify remediation and corrective action activity achieves compliance against security standards such as CIS Benchmarks, NIST, and TWDC policies and standards.
  • Document open items in status reports, including next steps, dependencies, and stakeholders.
  • Lead communication of results to stakeholders, including technical and non-technical audiences.
  • Provide recommendations to improve security posture.
  • Lead in improving security baselines and standards.
  • Stay updated on evolving security guidelines and incorporate them into IT and business practices.
  • Stay informed on emerging threats and vulnerabilities.
  • Proactively recommend adjustments to mitigate risks.
  • Work closely with business partners, key stakeholders, and internal departments to evaluate current and future security and compliance strategies.
  • Stay informed about information security trends, directions, and technologies in the technology industry.
  • Monitor industry trends and identify best practices and/or methodologies to implement in-house.

Required Qualifications & Skills:

  • Minimum of 7 years' experience of related experience leading and facilitating corrective action
  • Highly skilled in coordinating remediation activities across a wide range of technologies.  
  • 7+ years experience in identifying risk and execution of mitigation plans.  
  • Demonstrated experience in a security program for a large and complex organization. 
  • Knowledge of security frameworks and standards.
  • Strong analytical thinking and attention to detail.  
  • Demonstrated problem solving skills with an ability to develop creative alternatives to complex problems, as well as continuous process improvement skills. 
  • Demonstrated ability to handle sensitive information. 
  • Ability to establish credibility and working relationships with a wide range of personnel, including operations, management, executive, and legal staff.  
  • Demonstrated professional written, verbal, and presentation communications skills. 
  • Solid understanding of project management principles, including a demonstrated ability to multi-task effectively. 
  • Proven ability to work effectively in a fast-paced environment as part of a high performance team. 

Required Education:

  • Bachelor's degree or equivalent experience in Cyber Security, Computer Science, Management Information Systems, or related field. 

Preferred Education:

  • One or more general security certifications including PCNSE, Security+, CySA+, CCNA Cyber Ops, AWS, GSEC, GICSP, CISSP, or other relevant certifications
  • One or more vulnerability assessment or auditing certification including CISSA, CISM, GCCC, GSNA or other relevant certifications

The hiring range for this position in California is $126,400.00 to 169,500.00 per year. The base pay actually offered will take into account internal equity and also may vary depending on the candidate's geographic region, job-related knowledge, skills and experience among other factors. A bonus and/or long-term incentive units may be provided as part of the compensation package, in addition to the full range of medical, financial, and/or other benefits, dependent on the level and position offered.

Set alerts for more jobs like Staff Security Specialist, Information Security
Set alerts for new jobs by The Walt Disney Company
Set alerts for new Cyber Security jobs in United States
Set alerts for new jobs in United States
Set alerts for Cyber Security (Remote) jobs

Contact Us
hello@outscal.com
Made in INDIA 💛💙