Crown Equipment Corporation-posted 4 months ago
Full-time • Mid Level
OH
5,001-10,000 employees

Crown Equipment Corporation is a leading innovator in world-class forklift and material handling equipment and technology. As one of the world’s largest lift truck manufacturers, we are committed to providing the customer with the safest, most efficient and ergonomic lift truck possible to lower their total cost of ownership. The Information Security Analyst 2 will operate and maintain the Company’s Governance, Risk and Compliance (GRC) platform, its libraries, reports, portals, and data integrations to effectively support operations, data accuracy and user processes. This role serves as the primary liaison for GRC software vendors, maintaining contact with vendor representatives, submitting troubleshooting tickets and software feedback to improve the user experience. The analyst will support the Company’s Enterprise Risk Management, Compliance, Vendor Management, Business Continuity Planning, Information Technology and Security, Project Management and Audit Programs with data entry, maintenance, and configuration. Additionally, the role involves developing, maintaining, and distributing custom and ad hoc reporting of risk data including taxonomy analytics and Key Risk Indicators (KRI’s). The analyst will also develop/integrate cybersecurity designs for systems and networks for the processing of company data, document and address the organization's information security, cybersecurity architecture, and systems security engineering requirements, and ensure that acquired or developed systems and architectures are consistent with the company’s cybersecurity architecture guidelines. Furthermore, the analyst will coordinate external risk assessments including audits, gap assessments, and penetration testing to evaluate security architectures and designs to determine the adequacy of security design and architecture. They will also coordinate communication and information sharing aspects of incident response, draft messages and updates for Incident Response Team (IRT) review, handle crisis management issues, and provide guidance and education on incident prevention and response best practices.

  • Operate and maintain Company’s Governance, Risk and Compliance (GRC) platform.
  • Serve as the primary liaison for GRC software vendors.
  • Support Company’s Enterprise Risk Management, Compliance, Vendor Management, Business Continuity Planning, Information Technology and Security, Project Management and Audit Programs.
  • Develop, maintain, and distribute custom and ad hoc reporting of risk data.
  • Develop/integrate cybersecurity designs for systems and networks.
  • Document and address organization's information security and cybersecurity architecture requirements.
  • Coordinate external risk assessments including audits, gap assessments, and penetration testing.
  • Perform security reviews and develop a security risk management plan.
  • Coordinate communication and information sharing aspects of incident response.
  • Draft messages and updates for Incident Response Team (IRT) review.
  • 2-4 years related experience.
  • Bachelor's degree in Information Technology, Cyber Security, or Computer Science.
  • Non-degree considered if 12+ years of related experience along with a high school diploma (GED).
  • Intermediate knowledge of various Information Security & Privacy Frameworks such as the Secure Controls Framework, NIST CSF, NIST 800-171, NIST 800-53, NIST Privacy Framework, ISO-27001, ISO-27701, GDPR, US & other global privacy regulations.
  • Work experience in other Information Technology disciplines such as software development, help desk, networking, systems administration or similar.
  • Professional certifications such as CASP+, CISSP Associate, or AWS Associate Level Certifications.
  • Intermediate level of knowledge in at least one scripting or software development language such as PowerShell, Bash, Java, or Python.
  • Good written and oral communication skills, deductive reasoning, and analytical investigative skills.
  • Good interpersonal skills to facilitate positive relations between business groups.
  • Health/Dental/Vision/Prescription Drug Plan
  • Flexible Benefits Plan
  • 401K Retirement Savings Plan
  • Life and Disability Benefits
  • Paid Parental Leave
  • Paid Holidays
  • Paid Vacation
  • Tuition Reimbursement
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service