Engineer, Information Security GRC Job at Intercontinental Exchange Holdings, Inc., Atlanta, GA

VHlLeldYVkROZkdIMWdpdzdiWXZ3QTg3RWc9PQ==
  • Intercontinental Exchange Holdings, Inc.
  • Atlanta, GA

Job Description

Overview:

Job Purpose

The Engineer, Information Security GRC is part of a team responsible for the global Information Security program. The role would gain exposure to the full suite of businesses and products which underpin the Parent ICE company.

 

Information Security (“IS”) is charged with:

  • Preventing impactful cybersecurity and physical security incidents,
  • maintaining a reputation with customers, regulators, and key stakeholders as running a best-in-class cybersecurity and physical security program, and
  • avoiding negative impact to business agility and growth from cybersecurity and physical security policies and controls.

Governance, Risk, and Compliance maintain said policies, ensure controls are operating effectively via assessment and attestation, and own the vulnerability management program to identify and correct any problems within.

 

Responsibilities

  • Security Metrics – Uses automated and manual processes to produce regular reports communicating the status of the Information Security program
  • Policies and Procedures – Maintains corporate Information Security policies and departmental procedures and maps them to relevant control standards
  • Regulator, Audit, and Customer Inquiries – Organizes and updates departmental documentation and responds to inquiries in an organized and repeatable fashion
  • Recertification – Operates periodic processes to ensure hire, transfer, and termination protocols are complied with and regular access reviews are conducted
  • Security Awareness – Builds and maintains company awareness and education programs
  • Risk Assessment – Builds and operates the company platform to document, measure, and report assessments, risks, controls, findings, and remediation activity

 

Knowledge and Experience

  • University degree in Information Security, Engineering, MIS, CIS, or related discipline
  • 3+ years of relevant work experience
  • Experience in Cybersecurity Framework (such as NIST, COBIT)
  • Experience with Systems Administration and/or IP Networking is a plus
  • Experience with Regulatory Compliance
  • Experience in an exchange, trading facility, or financial services a plus
  • Experience in Customer communication and Vendor evaluation
  • Experience with senior management and board metrics generation and communication
  • Advanced certifications (for example, the CISSP)
  • Advanced technical writing and/or communication education and experience

 

Specific Technologies

Excel, Workflow automation tools, Data collection, normalization, indexing, correlation, and visualization. Scripting, regular expressions, string-parsing, light SDLC, and project management. NIST Cyber Security Framework, CIS, and GRC Platforms.

----------: Intercontinental Exchange, Inc. is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to legally protected characteristics.

Job Tags

Full time, Work experience placement

Similar Jobs

Robert

Sound Engineer Job at Robert

 ...Robert is looking for a talented and detail-oriented Sound Engineer to join our creative team. In this role, you will be responsible for capturing, mixing, and editing high-quality audio for various projects, including music recordings, podcasts, and multimedia content... 

Single Grain

AI Automation Engineer Intern Job at Single Grain

 ...agency. We have been helping top brands like Amazon, Uber, and Salesforce grow since 2009. We specialize in Paid Media, SEO, Content...  ...Structural Impact Automate at least 30 to 40% of repetitive internal workflows Reduce production cycle times by at least 30% in... 

Veza

Sr. Product Manager - Next-Gen Access/Agentic AI Security Job at Veza

 ...to ingest and organize permissions metadata in the Veza Authorization Graph. Global enterprises like Blackstone, Wynn Resorts, and Expedia trust Veza to visualize access permissions, monitor permissions activity, automate access reviews, and remediate privilege violations... 

Core One

Digital Media Forensics Team Support (Expert) Job at Core One

 ...research, design, deploy, and lead training events; evaluate emerging forensic technologies; provide operational security assessments and...  .... Provide testing and evaluation of emerging trends in digital forensics software and hardware, and assist in developing new and... 

Solairus Aviation

Gulfstream G650ER Flight Attendant - San Jose, CA Job at Solairus Aviation

 ...Overview Solairus Aviation is looking for a Full-Time Flight Attendant to join an operation based at KSJC. The ideal candidate will be a flexible team player, willing to take on additional responsibilities to deliver superior service to passengers around the clock. Culinary...