Security Analyst
EY
EY
Join EY as a Senior Associate Information Security Analyst and contribute to building a better working world. Leverage your expertise to protect critical information assets and enable secure business operations. This role offers a unique opportunity to grow your career within a global, inclusive, and technology-driven organization.
In today's data-driven world, safeguarding information is paramount. As part of EY's Information Security team, you will play a vital role in protecting EY and client data. Our global team of over 950 professionals collaborates to ensure the security of information systems, enabling EY to deliver secure products and services while swiftly responding to security incidents. Your contributions will help maintain the EY brand and build client trust.
Our Information Security professionals integrate risk strategy, digital identity, cyber defense, application security, and technology solutions across the entire security lifecycle. You'll join a dedicated group of security-focused individuals committed to providing innovative, secure solutions that deliver business value and accelerate market entry.
As an Information Security Analyst, you will support key security functions. This includes developing and maintaining process documents and team procedures. You will assist in creating comprehensive information security technical audit plans and schedules, aligning with client needs, regulatory requirements, and industry best practices.
Key responsibilities involve maintaining the firm's Information Security Management System (ISMS) and participating in ISO 27001 activities, such as risk assessments and tracking remediation efforts. You will collaborate with internal teams, including IT and compliance, to ensure audit activities support organizational goals. Maintaining accurate documentation of vulnerabilities, remediation plans, and risk mitigation strategies is crucial for sharing with stakeholders and clients.
Stay abreast of emerging threats, attack vectors, and vulnerabilities impacting the organization's technology stack. Collaboration with other Information Security groups and external EY stakeholders is essential for success in this role.
To excel in this role, a minimum of 3 years of experience in information security or technology audit is required. You should possess the ability to collaborate effectively with diverse teams to understand processes and documentation needs. Delivering high-quality, detail-oriented documentation is essential.
Demonstrate the capacity to quickly grasp complex technical concepts and communicate them clearly through text and visuals. Strong communication and interpersonal skills are vital for effective interaction with colleagues and clients. This role demands strong multi-tasking capabilities and the ability to prioritize duties effectively.
Ideally, you will hold a Bachelor's degree in Information Technology or Cyber Security. A keen interest in pursuing professional certifications like CISSP, CISM, ISO 27001 lead auditor, ISO 42001 lead auditor/implementer, or CISA will be advantageous.
EY Global Delivery Services ( EY GDS)
Financial Services