Risk & Security Officer at Travelers assessing cyber and tech risks across business lines. Leading control assessments and enhancing security posture through risk recommendations.
Responsibilities
Execute control assessments across all lines of business.
Assessments will primarily focus on access controls, but may include other detailed reviews.
Owns a portfolio and/or business area which includes the review and work assignments for risk, policy, and/or cyber risk posture; analyze and assign cyber risk posture for more complex risks.
Make recommendations for process improvement within assigned lines of business.
Strategically lead risk discussions across portfolio and drive standardized cyber and tech control processes and procedures.
Recommend cyber and tech controls across multiple third party platforms (i.e., cloud, network, and endpoint control fundamentals) to create a solution that assures risk mitigation.
May coordinate efforts to enable solution across lines of business for enterprise benefit.
Identify trends and areas of improvement.
Proactively identify cyber and tech risks and areas of non-compliance and recommend solutions.
Educate and train business partners on risks and compliance concepts.
Perform other duties as assigned.
Requirements
Degree in Computer Science, Technology Auditing, or related field.
5 years’ experience in a risk management, audit, computer networking, network security or related role.
COMPTIA, Security+, CRISC, CISSP, CISA or related cyber certification and/or pursuing a CISSP designation.
Knowledge of compliance concepts (i.e., PII, GDPR, PIPIDA, PCI DSS, FTC) in order to apply them to real world problems and identify gaps.
Deep technical knowledge of key security frameworks and assessments (SIG, SANS, NIST, PCI, SOC2, COBIT, SOX, ISO2700) and security principles and methods.
In-depth understanding of Cloud, Network, Endpoint (etc.) controls and how the controls inter-play within a control environment.
Excellent communication skills with the ability to consult on projects and present information effectively.
Ability to manage multiple projects simultaneously and follow through to ensure timely completion.
Benefits
Health Insurance : Employees and their eligible family members – including spouses, domestic partners, and children – are eligible for coverage from the first day of employment.
Retirement: Travelers matches your 401(k) contributions dollar-for-dollar up to your first 5% of eligible pay, subject to an annual maximum.
If you have student loan debt, you can enroll in the Paying it Forward Savings Program. When you make a payment toward your student loan, Travelers will make an annual contribution into your 401(k) account.
You are also eligible for a Pension Plan that is 100% funded by Travelers.
Paid Time Off: Start your career at Travelers with a minimum of 20 days Paid Time Off annually, plus nine paid company Holidays.
Wellness Program: The Travelers wellness program is comprised of tools, discounts and resources that empower you to achieve your wellness goals and caregiving needs. In addition, our mental health program provides access to free professional counseling services, health coaching and other resources to support your daily life needs.
Volunteer Encouragement: We have a deep commitment to the communities we serve and encourage our employees to get involved. Travelers has a Matching Gift and Volunteer Rewards program that enables you to give back to the charity of your choice.
Senior Security Engineer at PagBank ensuring secure network and application exposure strategies. Leading technical initiatives in firewalls, WAF/CDN, and advanced troubleshooting.
Technology and Cybersecurity Director leading the commercialization of cybersecurity consulting services at Emergent. Bridging technical teams and sales organizations to drive pipeline and revenue growth.
Engineer managing and supervising the Safety team at Localiza&Co in São Paulo. Overseeing safety policies and ensuring compliance with health and safety standards.
Technical Leader at VISION Cybersecurity overseeing SOC operations and guiding security investigations. Responsible for improving detection mechanisms and collaboration with security engineering teams.
Network Security Analyst configuring and maintaining Firewall solutions at Vision Cybersecurity. Collaborating with teams to manage security incidents and protect network integrity.
Security & Compliance Manager leading Tagup’s security and compliance efforts in defense technology. Engaging in national security initiatives and driving compliance with federal standards.
Security Researcher specializing in Windows and macOS threat detection for an AI - powered security platform. Conducting research and developing detections for threats, malware, and vulnerabilities.
Information Security Specialist responsible for ISMS lifecycle tasks at ALDI. Collaborating with stakeholders on risk assessment and treatment activities while ensuring effective governance.
Information Security Specialist supporting operational execution of ISMS lifecycle tasks in Budapest. Collaborating with stakeholders for risk assessment and management activities.
Client Security Manager at Atos delivering security requirements for clients and supporting Information Security strategies. Engaging with client security organizations and managing security incidents and compliance.