Perform 3rd party information security assessments
Develop assessment approach based on risk
Prepare assessment reports detailing control gaps
The Staff Digital Auditor performs security assessments and information security audits of Third Parties utilizing established IT risk assessment framework and assessment programs
Job Summary
The Staff Digital Auditor performs security assessments and information security audits of Third Parties utilizing established IT risk assessment framework and assessment programs.
The role involves preparing assessment reports detailing the assessor's review of information security controls and any control gaps, and engaging business to re-mediate issues.
GE Vernova offers a great work environment, professional development, challenging careers, and competitive compensation, with available benefits including medical, dental, vision, and retirement plans.
Matching Summary
The Staff Digital Auditor performs security assessments and information security audits of Third Parties utilizing established IT risk assessment framework and assessment programs.
Salary
Base: $104,500.00 - $174,000.00; Bonus/Equity: discretionary annual bonus; Benefits: medical, dental, vision, prescription drug coverage, retirement savings plan, tuition assistance, adoption assistance, paid parental leave, disability benefits, life insurance, 12 paid holidays, permissive time off
Skills & Requirements
Must-have
Perform 3rd Party information security assessments
Develop assessment approach based on risk
Prepare assessment reports detailing control gaps
Engage business to remediate issues
Utilize industry standards and best practices
Nice-to-have
Communicate common security themes
Coordinate across functions
Establish operating rhythm with Business Units
Influence others effectively
Key Requirements
Bachelor's Degree in Computer Science or STEM
6 years of experience (for US roles)
Internationally recognized information security/IT Audit certification/qualifications
Experience performing IT Audits or Security Assessments of 3rd Party Suppliers in a regulated environment
Detailed understanding of industry accepted Information Security and IT governance standards