The Marketplace for Regulatory and Compliance Jobs

FEATURED JOBS

Popular Searches

RESOURCES



Advanced Job Search

Compliance and Control Officer Job Details

<< Back

Vacancy has expired

Show me jobs like this one

Compliance and Control Officer (Ref: ITEC/SEC_DG 1404)
Sector, Sub Sector: Other
Compliance Type: Regulatory/Compliance
Expertise: -
Company: Societe Generale
Location: United States
Employment Type: Permanent
Job Description:

DEPARTMENT DESCRIPTION

Information Security Department within SGCIB ensures that all internal entities are fully compliant with SGCIB Information Security program, policies and standards. The department is tasked to protect the confidentiality, integrity and availability of the information and information systems under SGCIB’s control. It helps SGCIB businesses to identify vulnerabilities and threats to information resources and to implement appropriate controls that mitigate risk to an acceptable level based on the value of that information resource to the organization.

IT Compliance has an opening for a control and compliance officer. The overall objective will be to guarantee the effectiveness and performance of controls within the SGCIB IT environments. Included will be compliance with the SGCIB Information Security policies, standards, and practices.

RESPONSIBILITIES
• Contribute to ensure ITEC Americas Security Controls is efficient, effective and strong.
• Address the control deficiencies sited in regulatory report for Americas Applications
• Administer IT Risk Assessment and analysis
• Administer Risk-Based User Account Re-certifications
• Execution of 2nd level controls with the goal to guarantee compliance with security rules for Logical Access, Patch Management, Infrastructure security and segregation of development and Production
• Create and maintain scorecards and reporting to display our risk profile and provide insight to management for decision making.
• Assist with assessing controls of outside service providers (third party suppliers) as necessary

COMPETENCIES
Required/must have:
• Experience with regulatory IT Risk requirement and COBIT standard.
• knowledge of Information Security standards and procedures for Security Incident Management
• Experience in IT Audit and IT Risk methods and procedures.
• Experience in IT Risk evaluation techniques and practices
• Proven experience to plan and manage periodic reviews of IT security environment.
• Able to create & maintain reporting and metrics, to clearly communicate the status and highlight areas of concern for management's attention.

Previous Experience:
• Experience in financial services industry a plus
• 2 years work experience working as an analyst for IT Security audit, or IT risk related function.

EDUCATION
• Bachelor degree in Computer Science, Engineering or relevant technical field.
• CISSP, CISM, or CISA certifications a strong plus.
Job Ref No: ITEC/SEC_DG 1404