Advertisement

Senior Security Specialist - Compliance

Sorry, this job was removed at 12:13 p.m. (CST) on Thursday, April 7, 2022
Find out who's hiring remotely in Los Angeles, CA.
See all Remote Cybersecurity + IT jobs in Los Angeles, CA
Apply
By clicking Apply Now you agree to share your profile information with the hiring company.

At Disney, we're storytellers. We make the impossible, possible. The Walt Disney Company is a world-class entertainment and technological leader. Walt's passion was to continuously envision new ways to move audiences around the world-a passion that remains our touchstone in an enterprise that stretches from theme parks, resorts and a cruise line to sports, news, movies and a variety of other businesses. Uniting each endeavor is a commitment to creating and delivering unforgettable experiences - and we're constantly looking for new ways to enhance and protect these exciting experiences.
The Global Information Security (GIS) group provides services and solutions to protect the value and use of Disney's information through risk evaluation, collaboration, standardization, enforcement, and education across the enterprise. We protect the brand and reputation while enabling and supporting business objectives. GIS teams are located in Seattle, Burbank, and Orlando.
In order to ensure that our services keep TWDC secure, we follow an ongoing, iterative process, including continued reevaluation of our services over time to address emerging threats as well as changes in business and technology. This process includes:

  • Analysis of known and emerging threats to determine risks against TWDC assets
  • Creation, maintenance, governance and communication of security policies and standards across TWDC
  • Assessment and audit of compliance against the security policies and standards
  • Assurance that TWDC assets are effectively managed and monitored to meet TWDC security criteria
  • We look add people to our team who are focused on delivery, prioritize data-driven decisions over opinions, are
    Continuous learners, passionate about information security and love their work.
    TWDC Information Security Governance, Risk Management, & Compliance provide organizational structure, processes, and oversight to ensure policies, standards, and management practices meet TWDC's information security objectives.
    TWDC Information Security Compliance run ongoing security programs to evaluate the health of TWDC's control environment. These programs include external audits, internal control validation, third party assessments, and ongoing consulting.
    Responsibilities :
    The department develops and evaluates compliance with programs and processes to mitigate cybersecurity risk and ensure protection of company and allied assets and information. Reviews and enhances network systems and processes for compliance with external regulations and internal standards. Proactively identifies non-conforming areas and assesses risk. Recommends and implements compliance measures. Provides leadership on compliance issues to solve challenging security compliance problems. Ensures documentation and reporting in support of analysis. Stays current on evolving legislative / regulatory changes related to security compliance.
    The Senior Security Specialist is primarily responsible for executing internal security assessment processes throughout the enterprise. The nature of the process is to work with security/compliance point of contacts throughout the enterprise to confirm the scope of the environment, determine the accountable signatory, create risk and control matrices, execute and document control tests, and produce a Report on Compliance and/or Attestation of Compliance.
    The Senior Security Specialist also works to establish new control assessment processes and procedures across the security community. The role works to identify needs for security assessment and facilitates the creation of repeatable and effective processes to fit the need. The Senior Security Specialist works with a variety of different controls and platforms and should be well versed in the most common security controls. The role also requires a thorough understanding of cross functional process development and expertise in managing the output and reporting of such processes.

    • Security Assessment Planning and Execution
    • Reporting and Presentations
    • Develop and facilitate new control assessment processes


    Basic Qualifications :

    • 5+ years in an information Security role accountable for assessing controls
    • External audit (e.g., Big Four) and /or internal audit (e.g., Fortune 500)
    • 1 year in an Information Security Compliance and/or Control Assessment role that would include developing and implementing control assessment processes
    • Experience in executing security audits including but not limited to SSAE16/18, GDPR, PCI, SOX.
    • Working knowledge of regulatory requirements including PCI, SOX, GDPR, HIPAA
    • Knowledge and experience with diverse IT architectures and enterprise IT data centers, external hosted services and cloud computing environments used to dispense financial and accounting services
    • Ability to analyze and interpret information and communicate effectively to all levels of leadership
    • Experience assessing compliance, design and operational effectiveness of IT security controls in a large international company


    Preferred Qualifications:

    • 1+ years of program and project management experience
    • International experience
    • Merger/acquisition experience
    • Experience implementing or assessing the security of IT systems
    • Knowledge of Cloud and Perimeter technologies (e.g., router, firewalls, web proxies and intrusion prevention, etc.) and security tools (i.e. web application scanners, vulnerability scanners, file integrity monitoring, configuration monitoring, etc.)
    • Experience presenting and influencing C-level executives on IT security and matters

    Additional requirements:

    • Ability to build and maintain constructive working relationships with a diverse community of technical and non-technical audiences.
    • Ability to articulate IT compliance requirements.
    • Excellent planning and organization skills. Ability to focus/align tasks around critical initiatives in a time effective manner.
    • Excellent verbal, written, and presentation skills.
    • Ability to develop and deliver presentations.
    • Knowledgeable of SharePoint administration, Excel, PowerPoint.
    • Ability to work in large global environments spanning multiple time-zones.
    • High standard of performance, attention to detail and commitment to excellence.
    • Ability to follow through on commitments.
    • Demonstrated initiative and good judgment.
    • Self-starter with leadership skills and the ability to manage multiple tasks concurrently.
    • Strong analytical, organizational and decision-making skills.
    • Strong negotiation skills.
    • Prior Disney experience is preferred.


    Required Education :

    • 4-year degree (Computer Science, Risk Management, Information Assurance) required
    • 1 or more Information Security Certification such as CISA, CISSP, GSEC


    Preferred Education :

    • Master's degree in computer science or IT Audit related field is preferred.


    Additional Information :
    DISNEYTECH
    #LI-CM1

    Read Full Job Description
    Apply Now
    By clicking Apply Now you agree to share your profile information with the hiring company.

    Technology we use

    • Engineering
      • C++Languages
      • JavascriptLanguages
      • PHPLanguages
      • PythonLanguages
      • ScalaLanguages
      • SqlLanguages
      • SwiftLanguages
      • Backbone.jsFrameworks
      • DjangoFrameworks
      • HadoopFrameworks
      • JSFFrameworks
      • MeteorFrameworks
      • Node.jsFrameworks
      • Ruby on RailsFrameworks

    An Insider's view of The Walt Disney Company

    How does the company support your career growth?

    Over my 13 years with the company, I’ve had passionate leaders and colleagues with diverse backgrounds who have taught me and given me opportunities to expand into areas I never thought possible. You have the freedom to take career risks and apply your previous experience in ways you may not anticipate.

    Chase

    Product Management Director

    What is your vision for the company?

    Disney has always been at the heart of the evolution of the media industry, and technology is an essential part of that. The way that we tell and consume stories in the future is going to be completely different than it is today, and The Walt Disney Company is uniquely positioned to shape and create that future.

    Jamie

    SVP/Chief Technology Officer, The Walt Disney Studios

    What are The Walt Disney Company Perks + Benefits

    The Walt Disney Company Benefits Overview

    Because our employees and cast members are at the heart of everything we do, Disney offers a competitive total rewards package that includes pay, health and savings benefits, time-off programs, educational opportunities and more. Together, these rewards make up a comprehensive package that help you live your best life, grow personally and professionally and take advantage of the special extras that only Disney can provide.

    Eligibility for certain reward programs will vary based on your job status, work location and/or the terms of any applicable collective bargaining agreement.

    Culture
    Volunteer in local community
    Partners with nonprofits
    Diversity
    Dedicated diversity and inclusion staff
    Diversity employee resource groups
    Hiring practices that promote diversity
    Health Insurance + Wellness
    Dental insurance
    Vision insurance
    Health insurance
    Life insurance
    Mental health benefits
    Financial & Retirement
    401(K)
    401(K) matching
    Charitable contribution matching
    Child Care & Parental Leave
    Childcare benefits
    Generous parental leave
    Vacation + Time Off
    Generous PTO
    Paid holidays
    Paid sick days

    More Jobs at The Walt Disney Company

    Apply Now
    By clicking Apply Now you agree to share your profile information with the hiring company.
    Learn more about The Walt Disney CompanyFind similar jobs like this