Why This Role Stands Out
This hybrid role at Fisher Investments offers a fantastic opportunity to shape and implement information security strategies within a growing global firm, perfect for an experienced analyst eager to contribute to cutting-edge technology initiatives. You'll collaborate across diverse teams, driving impactful risk assessments and developing robust controls, making this an ideal position for someone seeking significant career growth and skill development.
Quick Overview
Salary
$10k/yr
Seniority
Mid Senior
Employment type
Full Time
Work mode
Hybrid
Location
Plano, TX, United States
Posted
6 hours ago
ScrumAgile
Job Description
It's an exciting time to join Fisher Investments; we're investing in the future of our firm's technology and information security. Our business is growing internationally, which emphasizes the need to build an unparalleled team that promotes future global growth through strategic solutions and progress. We are important to supporting our firm's diverse businesses, and we are excited to continue solidifying that foundation as we add more experienced technologists to our Technology team.
The Opportunity:
The Information Security Risk Analyst, reporting to the Vice President - Information Security, will work with Information Security, Technology, Project, and Enterprise Risk Management teams to perform technology risk analysis and recommend controls. You will also develop, recommend, and implement technology risk practices following Fisher Investments Digital Asset risk management goals.
The Day-to-Day:
We work for a bigger purpose: bettering the investment universe. We take great pride in our inclusive culture, our learning and development framework customized for every employee, and our Great Place to Work Certification. It's the people that make the Fisher purpose possible, and we invest in them by offering exceptional benefits like:
The Opportunity:
The Information Security Risk Analyst, reporting to the Vice President - Information Security, will work with Information Security, Technology, Project, and Enterprise Risk Management teams to perform technology risk analysis and recommend controls. You will also develop, recommend, and implement technology risk practices following Fisher Investments Digital Asset risk management goals.
The Day-to-Day:
- Represent Information Security in Enterprise Risk Management technology reviews for Digital Assets, including evaluation of inherent risk, researching vendor practices and controls, recommending new practices and controls, and estimating residual risk
- Continuously collaborate with Information Security, Technology, and Data Privacy Subject Matter Experts to determine efficacy of technical and practical Digital Asset controls
- Research new possible technical and practical Digital Asset risk controls
- Perform security-focused risk and gap assessments to identify, document and track security risks associated with Cloud and physical IT infrastructure and services, Applications, Information systems, and Vendors/other third parties
- Identify risk levels and associated controls to manage risk levels applying both quantitative and qualitative techniques
- Assist in continuously maturing Enterprise Risk Management evaluation procedures for Digital Assets
- Translate risk management information from technical to business language
- Provide security risk services to business owners and partners
- Work with project teams to collect and document evidence of cyber control implementation
- Understand and maintain a broad knowledge of methodologies and technologies in risk assessments and controls measures
- Bachelor's degree in computer science, Information Security, or related discipline or equivalent experience
- 3+ years of experience in Enterprise Risk Management for Digital Assets, including development of risk evaluation processes, control evaluations and recommendations, and vendor research
- 1+ years of experience in Digital Asset audit review experience (including SOC 2 Type II, SOX compliance, PCI compliance, vulnerability reports, retention policies)
- Knowledge of Information Security and risk standards and frameworks such as NIST 800-53, CIS benchmarks, OWASP, ISO-27001, ITIL and COSO
- Experience assessing risk or implementing controls in a cloud-based enterprise environment
- Extensive knowledge of information systems, risk assessment methodologies and security control technologies such as Okta, EntraID, Splunk, and Netskope
- Balance risks in ambiguous and complex scenarios
- Team-oriented, highly collaborative, experienced leading initiatives
- Experience in GRC platforms
- Deliver quality as part of a Scrum team working in an Agile environment
- Preference given to experience in a regulated industry: Finance, Healthcare, etc.
We work for a bigger purpose: bettering the investment universe. We take great pride in our inclusive culture, our learning and development framework customized for every employee, and our Great Place to Work Certification. It's the people that make the Fisher purpose possible, and we invest in them by offering exceptional benefits like:
- 100% paid medical, dental and vision premiums for you and your qualifying dependents
- A 50% 401(k) match, up to the IRS maximum
- 20 days of PTO, plus 10 paid holidays
- Family Support programs including 8 week Paid Primary Caregiver Leave, $10,000 fertility, family forming, and hormonal health assistance, and back-up child, adult, and elder care
- This is an in-office role. Based on your role, tenure, and performance eligibility you may have the opportunity to participate in our hybrid work from home program. This program is subject to change.
Similar jobs
- AR
Cyber Systems Engineer with Security Clearance
NewArcfield
home, VA🇺🇸$88.5k - $175.7k/yrHybridYesterdayTechnology - TG
Cybersecurity Engineer III with Security Clearance
NewTrace3 Gov
Linthicum Heights, MD🇺🇸$165k - $175k/yrOn-siteYesterdayAWSAzurePowerShell+1Technology - AR
Cybersecurity Engineer (DevSecOps) with Security Clearance
NewArcfield
home, VA🇺🇸$101.2k - $199.0k/yrHybridYesterdayDockerFastAPIMicroservices+14Technology - EC
Sr Forescout Engineer with Security Clearance
NewECS
Fort Shafter, HI🇺🇸$130k - $150k/yrRemoteYesterdayEngineering - CO
R -6M04I4 (6M4) - Product Security Engineering 4 - 6M4 - Product with Security Clearance
NewConfidential
Oklahoma City, OK🇺🇸On-siteYesterdayAdministrative - PM
CyberSecurity Engineer III with Security Clearance
NewPMAT
San Diego, CA🇺🇸$150k - $180k/yrRemote2 days agoSplunkActive DirectoryAnsible+3Technology