Job Summary
Cybersecurity Analyst -Role: Risk Analyst
Job description (high level summary)
Cybersecurity Risk Analyst develops and maintains the cybersecurity strategy, policies, and risk management processes to ensure that the organization effectively secures Chevron’s operations.
Key responsibilities (day-to-day tasks, learning and development opportunities)
Analyze and priortize cybersecurity risks, key controls and assess appropriate remediation plan, monitor progress of risk prevention and remediation. Follow processes that ensure critical cyber security information reaches Business Units. Identify and addresses gaps, trends, or opportunities to address cybersecurity risk in a specifically assigned area.
Required qualifications
Demonstrated experience developing and maintaining the cybersecurity strategy, policies, and risk management processes to ensure that the organization effectively secures operations.
Preferred qualifications
Demonstrated experience developing and maintaining the cybersecurity strategy, policies, and risk management processes to ensure that the organization effectively
Selection criteria 1
Risk Management and Analysis: Demonstrated ability to identify and assess both business risks and technical risks and be able to translate those risks into business language so that they can be understood by the stakeholder community and addressed by an appropriate risk mitigation plan. Has fundamental knowledge of the functions of the NIST Cybersecurity framework (CSF). Knowledge of and experience with Industry Policies, standards, and Controls (e.g., NIST 800- 53, and IEC-62443) and application across network, infrastructure, applications, and databases. Familiarity with risk assessments and ability to provide recommendations and remediation plans to mitigate findings from Risk and Vulnerability Assessments, audits, penetration tests, and architecture reviews.
Selection criteria 2
Technical Knowledge: Understanding of key technology/data concepts such as access control, confidential data, encryption, data privacy, information management, intellectual property, business continuity, disaster recovery, security scans, and 3rd party/vendor applications. Functional knowledge in IT systems architecture. Good understanding of data security and AI security concepts.
Selection criteria 3
Align & Inspire: Strong written and oral communication skills. Demonstrated influential leadership skills and ability to inspire, lead with intent, and work cross-functionally with confidence to align intent and deliverables towards common objectives and key results.
Selection criteria 4
Build Relationships: Proven ability to build and maintain trusting relationships across team of teams with functions and organizations, by meeting commitments and performing work with integrity. Ability to expand network and sphere of influence and seek diverse perspectives to drive improvements.
4-5 Years Experience | Work Timings: 01:30 pm - 10:30 pm IST | Immediate Joiners only |
Key Responsibilities
2. Provide Advanced Support For Complex Incidents Escalated By Analysts, Performing Root Cause Analysis And Implementing Effective Solutions To Resolve Technical And Security Issues Related To Sap Systems And Grc Frameworks.
3. Engage In Value-Adding Activities Such As Updating And Managing The Knowledge Base, Conducting Training Sessions For New Team Members, And Coaching Analysts On Best Practices In Operational Risk And Sap Security.
4. Resolve Complex Support Tickets Within Agreed Slas, Collaborating With Cross-Functional Teams To Ensure Seamless Operations And Enhance The Organization'S Security Posture.
5. Drive Positive Customer Experiences By Achieving High First Call Resolution Rates, Minimizing Rejected Resolutions, And Proactively Addressing Security Threats To Ensure Customer Satisfaction And Csat Metrics.
Skill Requirements
2. Proficiency In Sap Security Configurations And Grc Tools
3. Solid Understanding Of Incident Management And Root Cause Analysis Methodologies
4. Familiarity With Regulatory Compliance Standards Relevant To Operational Risk And Security
5. Strong Analytical And Troubleshooting Skills To Address Complex Technical Issues