It security auditor / assessor
At Equitable, our power is in our people.
We're individuals from different cultures and backgrounds. Those differences make us stronger as a team and a force for good in our communities. Here, you'll work with dynamic individuals, build your skills, and unleash new ways of working and thinking. Are you ready to join an organization that will help unlock your potential? Equitable is seeking an IT Security Auditor/Assessor to support the Director of Information Security Assessments and Assurance Program. Information Security Assessment and Assurance Programs handles internal assurance reviews of Information Systems, third-party security risk assessments, review of third-party agreements, security assessments. The program plays a key role in ensuring compliance with cybersecurity related regulatory, legal and internal policies. The IT Security Auditor/Assessor will conduct comprehensive security audits of organizations information security systems and processes to ensure compliance with regulatory, legal, and company policies. This team member will also perform security audits and assessments on third party vendors. Key Responsibilities Include, but are not limited to:- Perform security audits on Information Security processes and systems to identify weaknesses or vulnerabilities.
- Execute design as well as operating effectiveness assessments of internal controls.
- Ensure compliance of systems with applicable regulatory, legal requirements and internal policies.
- Perform security risk assessment on third party vendors or their products.
- Negotiate security requirements in the agreements with third party vendors.
- Provide recommendations on the remediation of weaknesses, vulnerabilities to improve compliance.
- Prepare clear and comprehensive audit reports by documenting the findings, risk ratings, and remediation recommendations.
- Present the audit report to Business Stakeholders, IT Leadership, and IT teams to explain the findings and recommendations.
- Log and track the remediation of findings until closure.
- Report/Escalate any issues or concerns to senior management.
- Prepare and present KPIs/KRIs to the senior management.
- Stay relevant on the emerging security threats, industry trends and best practices in cybersecurity.
- Bachelor's degree preferably in computer science, engineering, mathematics, or statistics.
- At least one of the below professional certifications:
- Certified Information Systems Security Professional (CISSP)
- Certified Information Systems Auditor (CISA)
- Certified Information Security Manager (CISM)
- 5+ years of experience in performing audits, assessments and managing risk and compliance issues, or similar experience managing applications, projects or systems that require identification, evaluation and remediation of risks.
- Technical background or verifiable understanding of a range of operational and IT risks and operations.
- Experience in performing third party vendor risk assessments/audits including contract negotiations.
- Established business background; experience gathering and interpreting risks and associated impacts in context of financial and operational concerns.
- Understanding of complex audit and assessment risk-related issues through demonstrated experience in managing vendor assessments, information security assessments, and audits.
- Knowledge of business and technology practices and trends.
- Demonstrated ability to communicate complex issues in a language understood by business leaders across multiple disciplines (such as business, IT and security) within an organization.
- Masters degree
- Effective written and verbal communication skills.
- High level of personal integrity and demonstrated willingness to call out and act on issues.
- Savvy interpersonal / relationship skills, able to foster working relationships within the team, across IT and with business colleagues.
Recommended Jobs
EPIC Physician Billing Analyst
Are you an experienced Epic Professional Billing Analyst looking to make an impact in healthcare IT? We are seeking a skilled EPIC Physician Billing Analyst to join our team in Hicksville, NY (mo…
Experienced Personal Equipment Service Technician
Create Your Experience of a Lifetime! Come work and play in the mountains! Whether it’s your first-time seeing snow or you were born on the slopes, joining our team means discovering (or re-d…
Personal Trainers Hiring!!
Anytime Fitness is considered to be a premier place to work within the industry, where our mission is to help you Get to a Healthier Place®! We are seeking a highly motivated individual with a passion…
Maintenance Engineer
- Education: BS in Electrical/Mechanical Engineering or related technical degree strongly preferred - Minimum Experience: 3-5 years Manager is open to candidates who are nonlocal and willing to r…
CT Technologist
Job Title: CT Technologist Location: Bronx, New York Duration: 3 Months Pay Rate: $66 $68 per hour (W-2) Position Overview: We are seeking a skilled and certified CT Techn…
Engagement Manager
Engagement Manager Engagement Manager is responsible for gathering, analyzing and summarizing information for consulting engagements and providing direction to Senior Associates, Associates and Resea…
2026 Capital Markets Summer Analyst
Description Starwood Capital Overview: Starwood Capital Group is a private investment firm with a primary focus on global real estate. Since its inception in 1991, the Firm has raised over $80 bil…
Murex Developer (New York, NY)
Job description: Murex Developer S4C Expertise in MxML workflows Datamart back office Data Dictionary formulas Templates Capability to work on Market Data Real time RTBS Batch MDCS Capabi…
Dishwasher-Maintenance
Come be part of our growing CopperTop Family!! Since 2007, CopperTop Tavern has been a family owned, locally operated business with locations across Central and Southern New York. CopperTop Tavern is …
Backend Engineer II, Personalization
The Personalization team makes deciding what to play next easier and more enjoyable for every listener. From Blend to Discover Weekly, we’re behind some of Spotify’s most-loved features. We built the…