Are you interested in Compliance, Risk and Control work? Do you enjoy working on divisional level projects that help Vanguard maintain a strong reputation with clients? This could be the role for you.
We are seeking an individual to join our Technical Controls Governance team within our Chief Technology Office, which supports controls testing, compliance, and advice for the IT division. In this role you will specifically be responsible for helping to govern control lifecycle and library management, control testing and management assertions. This role will afford the candidate the opportunity to work across Global Risk & Security, IT, and Finance to drive risk reduction across lines of defense.
Responsibilities:
Conducts control assessments and leverages output of risk assessments to measure the adequacy of existing information technology security controls. Identifies potential and actual system vulnerabilities and emerging strategic security needs and recommends corrective measures.
Supports the maintenance of a portfolio of global policies and standards. Monitors and maintains the lifecycle of the portfolio.
Consults with IT sub-divisions, third party partners, and business units in defining standard consistent controls and reporting formats and providing standard data reports.
Recommends, develops, implements and coordinates new control standards, procedures and operating doctrine at all levels across the company.
Participates in technical support for assessments of assets, risks, and the implementation of appropriate data security procedures and controls.
Assists in the review, development, testing, and implementation processes for security plans, risk assessments, products, and control techniques.
Participates in special projects and performs other duties as assigned.
Requirements:
Minimum four years related work experience. Experience in IT security or application development preferred.
Undergraduate degree in related field or equivalent combination of training and experience.
Strong knowledge of risk management frameworks and controls (NIST CSF, ITIL, ISO).
Experience with visualization tools (Tableau, PowerBI, etc).
One or more preferred certifications such as CISSP, CRISC, CISA, CIA, GIAC Security, Essentials Certification (GSEC).
Special Factors:
Sponsorship: Vanguard is not offering visa sponsorship for this position.