Senior IT Security Analyst

Hilltop HoldingsIrving, TX

About The Position

Hilltop Holdings is looking for a Information Security Senior Analyst! Reporting to the Information Security Risk Director, the Information Security (IS) Senior Analyst is a critical second line of defense role driving Hilltop Holdings to understand, implement and regularly validate compliance to information technology and information security control and risk management practices that meet regulatory, contractual and company policy obligations. This position will ensure the implementation and operation of the information technology and information security control and risk management function while shaping the processes, practices and establishing the controls and compliance culture. This position will support the GRC Governance, Third Party Risk and Compliance processes, manage risk, ensure critical controls are implemented and operating effectively, and ultimately help reduce corporate Technology & Operations department, corporate and Line of Business risk. The Information Security Senior Analyst is a key member of the Information Security Risk team. This team is responsible for the risk assessment, planning and evaluation of IT general controls, SOX controls and reporting, and NIST 800-53 controls including execution of the annual cyber risk assessment of the Information Security Program and implementing and maintaining the Information Security risk register. The position provides broad exposure to various levels of management, including senior leaders in Internal Audit, Finance, Human Resources, Marketing/Sales, Vendor Risk Management, Information Security, Information Technology, and Legal along with Line of Business senior leaders.

Responsibilities

  • Manage day-to-day efforts of the GRC Controls and Risk team
  • Evaluate findings
  • Provide recommendations to Technology leaders
  • Assist in remediation planning and tracking
  • Support definition of GRC automation needs including reporting requirements
  • Maintain the control framework (library, applicability and control plan updates)
  • Lead control assurance testing
  • Regularly interact with control owners
  • Assist in compliance awareness efforts
  • Support compliance obligations as required
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service