Security Risk Operations Specialist
Country:
Cities:
Area of expertise:
Job Description
- Demonstrate an advanced understanding of business and information technology internal control risk management, IT security controls and related standards.
- Prioritize and triage security assessments incorporating Delivery and Internal timelines.
- Use the organization’s risk management framework to effectively negotiate risk levels for issues related to control weaknesses and other vulnerabilities.
- Evaluate complex technology risks, controls which mitigate them and related opportunities for control improvement.
- Support efforts and gather requirements for continuous service and /or process improvement projects within the Team’s scope.
- Facilitate the use of technology-based security testing tools or methodologies, synthesize results, and make recommendations for technical remediation.
- Evaluate and coordinate Security and Vendor Risk Assessments for new and existing entities.
- Coordinating security assessment activities with Avanade stakeholders and external suppliers.
- Monitor and manage projects and data in SharePoint, OneTrust or other tools.
- Provide audit support for internal and external audits.
- Support Teams’ Risk Assessments over solutions and initiatives that impact the organization.
- Direct communications with onshore and offshore teams to help unblock requests.
- Participate as UAT OneTrust Tester for various assessment templates.
- Understand the fundamentals of security and risk management to facilitate the execution and growth of the Teams’ goals and programs. This position will also support the Program Leads as a delegate of authority as needed.
- Familiar with security industry standards (ISO 27001/2, ISO 27017/18, NIST 800 series, etc.), regulations (e.g., HIPAA, GDPR, and SOX), and standards-body based requirements (e.g., COBIT) for protecting information.
- Effective people collaboration skills with an ability to leverage others (people, group, services) both onshore and offshore to achieve maximum results. Use collaboration tools effectively to support the process.
- Strong Knowledge/experience of Cloud Technologies including, but not limited to: IaaS, SaaS, PaaS, Public, Private, Hybrid with an emphasis on Microsoft Technologies, familiarity with AWS and Google platforms.
- Flexibility to adjust to multiple demands, shifting priorities, ambiguity, and rapid change.
- Ability to present to all levels of the organization (up and down) in a concise and organized manner.
- Highly motivated and organized with excellent time management and problem-solving skills.
- Experience with internal controls, risk assessments, business process and internal IT control testing or operational auditing.
- Proven Project Management skills.
- Demonstrated efficient, succinct, and risk-based document writing capabilities, including technical and business reports.
- Review and provide timely feedback on Teams’ draft reports or other documents.
- High proficiency with Microsoft Office (O365) products (e.g., Word, Excel, Power BI, PowerPoint, SharePoint, Power Platform, etc.).
- Suggests security improvements by assessing current situation, evaluating trends, and anticipating requirements.
- Bachelor’s degree in Information Technology or Business Administration or a related discipline, or equivalent work experience (e.g., Military, Government service, etc.).
- A minimum of four years of experience in Information Security with CISA, CISM, CRISC and/or CISSP accreditations or willing to become accredited within 7 months.
Share this job:
About Avanade
Avanade is the leading provider of innovative digital, cloud and advisory services, industry solutions and design-led experiences across the Microsoft ecosystem. Every day, our 59,000 professionals in 26 countries make a genuine human impact for our clients, their employees and their customers.
We have been recognized as Microsoft’s Global SI Partner of the Year more than any other company. With the most Microsoft certifications (60,000+) and 18 (out of 18) Gold-level Microsoft competencies, we are uniquely positioned to help businesses grow and solve their toughest challenges.
We are a people first company, committed to providing an inclusive workplace where employees feel comfortable being their authentic selves. As a responsible business, we are building a sustainable world and helping young people from underrepresented communities fulfil their potential.
Majority owned by Accenture, Avanade was founded in 2000 by Accenture LLP and Microsoft Corporation. Learn more at www.avanade.com.
Employment Transparency
Avanade® is an Equal Opportunity Employer. Avanade prohibits discrimination and harassment against any employee or applicant for employment because of race, color, age, religion, sex, national origin, gender identity or expression, sexual orientation, disability, veteran, military or marital status, genetic information, or any other protected status.
Federal Notices
EEO is the Law Poster
EEO is the Law Poster Supplement
E-Verify Participation Poster
Right to Work Poster
Pay Transparency Policy
State Notices
Avanade is committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation due to a disability for any part of the employment process, please send an e-mail to Avanade at careers@avanade.com or call (206) 239-5610 and let us know the nature of your request and your contact information.
By using this site, you agree that we can place Cookies on your device. See our Job Applicant Data Privacy Statement and Cookies statement.
