Portfolio Complinace Specialist Engineer - Supervising Associate - EY Global Delivery Services
CABA, B, AR, 1001
EY
Tarjoamme palveluita, jotka auttavat ratkaisemaan asiakkaidemme vaikeimmat haasteetToday’s world is fueled by vast amounts of information. Data is more valuable than ever before. Protecting data and information systems is central to doing business, and everyone in EY Information Security has a critical role to play. Join a global team of over 1000 people who collaborate to support the business of EY by protecting EY and client information assets! Our Information Security professionals enable EY to work securely and deliver secure products and services, as well as detect and quickly respond to security events as they happen. Together, the efforts of our dedicated team helps protect the EY brand and build client trust.
Within Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we consider the entire security lifecycle. You will join a team of hardworking, security-focused individuals dedicated to supporting, protecting and enabling the business through innovative, secure solutions that provide speed to market and business value.
The Opportunity
As a Supervising Associate Compliance Engineer in the Information Security Portfolio Compliance Enablement function at EY, you will be instrumental in integrating engineering principles with compliance standards to support secure digital services. This role involves applying your engineering expertise to enhance risk management practices, collaborating with business teams, and ensuring that technology solutions meet Information Security policies and regulatory requirements.
Key Responsibilities
- Apply engineering skills to develop and implement technical solutions that align with compliance strategies and remediation plans.
- Lead engineering projects that improve EY's risk posture and compliance with Information Security policies.
- Translate technical vulnerabilities and engineering solutions into business risk terms for stakeholders.
- Enhance and utilize compliance assessment toolkits, integrating engineering best practices.
- Conduct technical assessments for infrastructure, applications, and third-party dependencies from an engineering perspective.
- Mentor and guide a team of compliance specialists, providing engineering insights on specific projects and initiatives.
Skills and Attributes for Success
- Strong engineering background with experience in compliance management within Information Security.
- Ability to understand and integrate security requirements with engineering processes and business operations.
- Excellent organizational skills and a proactive approach to problem-solving.
- Effective communication skills for building relationships and promoting compliance with security policies.
- Experience in conducting risk assessments and engineering reviews to support remediation strategies.
- Proficiency in technical infrastructure, applications, and compliance frameworks from an engineering standpoint.
To Qualify for the Role, You Must Have
- A minimum of 5 years of experience in an engineering role with a focus on Cyber Security, Information Security, or a related field.
- A degree in Engineering, Cyber Security, Information Security, Computer Science, or a related discipline.
- Certifications such as CISSP, CISM, CISA, or an engineering-related certification are desirable.
- Knowledge of information security standards like ISO 27001/27002, NIST, PCI DSS, and how they apply to engineering.
- Understanding of regulatory requirements such as PCI, SOX, HIPAA, GDPR from an engineering perspective.
- Strong communication skills and the ability to lead and work effectively within a team.
Ideally, You’ll Also Have
- Proven ability to apply engineering principles to solve complex compliance challenges.
- Adaptability to new technologies and changing project requirements.
- Strong interpersonal skills and the ability to communicate technical concepts effectively.
- Experience with GRC platforms and engineering tools relevant to compliance.
What we look for
We are looking for individuals with a passion for information security and demonstrated ability to apply their knowledge to new and emerging technologies that are supporting the growth strategy of a global professional services firm.
What we offer
As part of this role, you will work in a highly coordinated, globally diverse team with the opportunity and tools to grow, develop and drive your career forward. Here, you can combine global opportunity with flexible working. The EY benefits package goes above and beyond too, focusing on your physical, emotional, financial and social well-being. Your recruiter can talk to you about the benefits available in your country. Here’s a snapshot of what we offer:
- Continuous learning: You will develop the mindset and skills to navigate whatever comes next.
- Success as defined by you: We will provide the tools and flexibility, so you can make a significant impact, your way.
- Transformative leadership: We will give you the insights, coaching and confidence to be the leader the world needs.
- Diverse and inclusive culture: You will be accepted for who you are and empowered to use your voice to help others find theirs.
We ensure that individuals with disabilities are provided reasonable accommodations to participate in the job application or interview process, to perform essential job functions and to receive other benefits and privileges of employment. Please contact us to request accommodations.
EY is committed to being an inclusive employer, and we are happy to consider flexible working arrangements. We strive to achieve the right balance for our people, enabling us to deliver excellent client service whilst allowing you to build your career without sacrificing your personal priorities. While our client-facing professionals can be required to travel regularly, and at times be based at client sites, our flexible working arrangements can help you to achieve a lifestyle balance.
If you can confidently demonstrate that you meet the criteria above, please contact us as soon as possible.
Build your legacy with us.
Apply now.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Application security CISA CISM CISSP Compliance Computer Science Cyber defense GDPR HIPAA ISO 27001 NIST PCI DSS Risk assessment Risk management SOX Strategy Vulnerabilities
Perks/benefits: Career development Flex hours Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.