Cybersecurity Remediation Specialist
Cummins Inc. · Des Moines, IA · Today
On-siteEngineeringFull-time
About the role
We are looking for a talented Cybersecurity Remediation Specialist to join our team specializing in Systems/Information Technology for our Corporate organization in Columbus, IN.
Responsibilities
- Lead cybersecurity risk identification and assessment efforts by applying Cummins' risk management framework to proactively protect business systems, data, and operations.
- Provide expert guidance on cybersecurity risks, helping teams evaluate threat severity, develop mitigation strategies, and strengthen overall security posture.
- Serve as a trusted advisor to business and technology stakeholders, ensuring cybersecurity requirements are incorporated into new and evolving technological solutions.
- Apply industry-recognized frameworks such as NIST, ISO, ITIL, and COBIT to support compliance, governance, and effective cybersecurity controls across the organization.
- Champion adherence to Cummins' cybersecurity policies and data privacy principles, helping safeguard sensitive information and maintain regulatory compliance.
- Collaborate across cross-functional teams to balance security, business objectives, and operational needs while delivering secure and scalable technological solutions.
- Mentor, coach, and develop less experienced team members, fostering cybersecurity knowledge, technical growth, and a culture of continuous learning.
- Build and maintain strong business relationships, leveraging Business Relationship Management practices to drive business value, influence decision-making, and enhance stakeholder confidence in cybersecurity initiatives.
Requirements
- Action oriented - Taking on new opportunities and tough challenges with a sense of urgency, high energy, and enthusiasm.
- Balances stakeholders - Anticipating and balancing the needs of multiple stakeholders.
- Business insight - Applying knowledge of business and the marketplace to advance the organization's goals.
- Ensures accountability - Holding self and others accountable to meet commitments.
- Manages complexity - Making sense of complex, high quantity, and sometimes contradictory information to effectively solve problems.
- Organizational savvy - Maneuvering comfortably through complex policy, process, and people-related organizational dynamics.
- Persuades - Using compelling arguments to gain the support and commitment of others.
- Resourcefulness - Securing and deploying resources effectively and efficiently.
- Tech savvy - Anticipating and adopting innovations in business-building digital and technology applications.
- Training Delivery - Instructs learners in a manner that engages and adjusts to individual and group needs resulting in knowledge, skills, and abilities that can be applied on the job.
- Cybersecurity Risk Management - Identifies and assesses the potential impact of cybersecurity risks against established cybersecurity industry frameworks, regulations, and organizational policies to develop and implement risk mitigation strategies in alignment with business objectives.
- Regulatory Risk Compliance Management - Evaluates the design and effectiveness of controls against established industry frameworks and regulations to assess adherence with legal/regulatory requirements.
- Values differences - Recognizing the value that different perspectives and cultures bring to an organization.
Qualifications
- College, university, or equivalent degree in Cybersecurity, Computer Science, or Information Technology, or related subject, or relevant equivalent experience required.
Skills
- Intermediate level of relevant work experience required.
- 3-5 years of experience Remediation Execution & Facilitation.
- Analyzing cybersecurity control findings from assessments, audits, and internal reviews.
- Translating control gaps into actionable remediation activities for control owners.
- Facilitating remediation discussions with IT, engineering, and business teams.
- Driving remediation progress through collaboration and influence.
- Developing and maintaining Plans of Action and Milestones (POA&Ms).
- Tracking remediation status across multiple frameworks and business areas.
- Escalating risks related to delayed remediation activities.
- Ensuring remediation plans include milestones, dependencies, and target dates.
- Validating remediation actions against control intent and framework requirements.
- Coordination of collection and validation of remediation evidence.
- Supporting updates to SSPs, control narratives, and support documentation.
- Promoting sustainable remediation practices and identifying recurring trends.
- Preparing remediation summaries and status updates for leadership.
- Supporting stakeholder inquiries regarding remediation status and closure rationale.
- Maintaining remediation records and documentation.
- Tracking and reporting remediation progress and closure metrics.
Benefits
At Cummins, we offer competitive compensation packages, comprehensive benefits, and a supportive work environment. We also provide opportunities for professional development and advancement within the company.
Pay
Competitive salary based on experience and qualifications.
Schedule
Exempt - Full-time position with flexible scheduling options.
Contact
To apply, please visit our careers page at [Insert URL]. For more information about Cummins and our commitment to diversity and inclusion, visit our Equal Opportunity Employment page at [Insert URL].