Vendor Security Assesment Coordinator - New York, NY

From: Jennifer Spadavecchia (jenniferat_private)
Date: Tue Jun 10 2003 - 08:53:57 PDT

  • Next message: Mr Ludder: "Herndon, VA, USA - Symantec hiring Sr. Software/Security Engineer"

    Vendor Security Assessment Coordinator - New York, NY - $100K + Bonus
    
    My client is a Global Financial Services firm based in Lower Manhattan. 
    This person will own the process for Information Security Vendor 
    Assessment and Outsourcing Review. This will require a thorough 
    understanding of the firm’s vendor and outsourcing assessment tools and 
    policies. The candidate will be required to work with existing vendors 
    to track their compliance to the standards and to evaluate new vendors 
    and outsourcers to gather information about their systems, procedures 
    and security programs. The candidate will be required to synthesize 
    information and create and present risk assessments for technology and 
    business management review.
    
    Key Responsibilities
    
    Provide clear and concise recommendations and guidance in written and 
    verbal form to both business and technology personnel.
    Must be able to provide tracking and analysis reports and metrics via 
    firm risk systems.
    Work effectively across a large information security team, understanding 
    the larger team’s role (network, platform and monitoring) in the overall 
    security strategy of the firm.
    The candidate must be passionate about their work and their ability to 
    make a difference.
    This role will require participation in early stage requirements 
    gathering and business planning sessions. Must be able to appropriately 
    maintain and compartmentalize sensitive information
    
    This person will work closely with Corporate Security, Legal, 
    Procurement, Management Controls Division, Business Continuity Planning 
    and Crisis Management, Regional and Divisional Heads of Information 
    Security, Business Unit Technology Management, Global Control and 
    Compliance Committee.
    
    Five to ten years experience in information security, risk or related 
    fields preferred.
    Bachelor’s and Master's degree preferred, or other professional 
    qualifications. Industry certifications such as GIAC, CISSP etc. 
    desirable but not necessary.
    Written and verbal communication skills a must; strong interpersonal 
    skills essential. Job requires frequent interaction with Chief 
    Information Security Officer, vice presidents, and managing directors.
    Must be able to manage both time and work load without constant supervision
    Previous experience with outsourcing arrangements and interaction with 
    vendors is a plus.
    Must understand general information security operations. A broad based 
    understanding of security, technology and business is necessary.
    A proven ability to lead projects and wide-ranging change initiatives. 
    Project management experience a must.
    Proven ability with Microsoft Office automation tools (Excel, Word, 
    PowerPoint, and Project), HTML programming, data analysis and 
    presentation a plus.
    
    Contact:
    
    Jennifer Spadavecchia
    (908) 806-8442
    Jenniferat_private
    
    
    
    -- 
    Jennifer Spadavecchia
    Alta Associates, Inc.
    8 Bartles Corner Road
    Suite 021
    Flemington, NJ 08822
    (908) 806-8442
    



    This archive was generated by hypermail 2b30 : Tue Jun 10 2003 - 09:38:34 PDT