Cybersecurity Risk Analyst - Senior
Cummins Inc. · Des Moines, IA · 2 days ago
On-siteFinanceFull-time
Job Summary Leads the support of the organization's cybersecurity framework, including policy, standards and baselines. Understands and applies appropriate handling of risk and compliance from internal and external perspectives to assure that existing and new technology solutions meet the organization's cybersecurity risk requirements. Key Responsibilities Understands and applies Cummins cybersecurity policies and industry data privacy principles. Leads cybersecurity risk identification utilizing identified Cummins risk management frameworks while providing guidance to the team to evaluate severity and mitigation plans. Coaches and develops less experienced team members. Understands and applies frameworks and standards (eg NIST, ISO, ITIL, Cobit) in a manner specific to Cummins processes and controls. Provides cybersecurity technical expertise for technology solutions. Collaborates with stakeholders on requests for new and changing technology solutions, acting as a trusted business partner and advisor. Maintain strong relationships to deliver business value using relevant Business Relationship Management practices. Competencies Action oriented - Taking on new opportunities and tough challenges with a sense of urgency, high energy, and enthusiasm. Balances stakeholders - Anticipating and balancing the needs of multiple stakeholders. Business insight - Applying knowledge of business and the marketplace to advance the organization’s goals. Ensures accountability - Holding self and others accountable to meet commitments. Manages complexity - Making sense of complex, high quantity, and sometimes contradictory information to effectively solve problems. Organizational savvy - Maneuvering comfortably through complex policy, process, and people-related organizational dynamics. Persuades - Using compelling arguments to gain the support and commitment of others. Resourcefulness - Securing and deploying resources effectively and efficiently. Tech savvy - Anticipating and adopting innovations in business-building digital and technology applications. Training Delivery - Instructs learners in a manner that engages and adjusts to individual and group needs resulting in knowledge, skills and abilities that can be applied on the job. Cybersecurity Risk Management - Identifies and assesses the potential impact of Cybersecurity risks against established Cybersecurity industry frameworks, regulations and organizational policies to develop and implement risk mitigation strategies in alignment with business objectives. Regulatory Risk Compliance Management - Evaluates the design and effectiveness of controls against established industry frameworks and regulations to assess adherence with legal/regulatory requirements. Values differences - Recognizing the value that different perspectives and cultures bring to an organization. Education, Licenses, Certifications College, university, or equivalent degree in Cybersecurity, Computer Science, or Information Technology, or related subject, or relevant equivalent experience required. This position may require licensing for compliance with export controls or sanctions regulations. Experience Intermediate level of relevant work experience required. 3-5 years of experience Experienced 3rd Party Assessors Job Systems/Information Technology Organization Cummins Inc. Role Category Off-site Remote Job Type Exempt - Experienced ReqID 2436028 Relocation Package No 100% On-Site No Cummins and E-Verify At Cummins, we are an equal opportunity and affirmative action employer dedicated to diversity in the workplace. Our policy is to provide equal employment opportunities to all qualified persons without regard to race, gender, color, disability, national origin, age, religion, union affiliation, sexual orientation, veteran status, citizenship, gender identity and/or expression, or other status protected by law. Cummins validates the right to work using E-Verify and will provide the Social Security Administration (SSA) and, if necessary, the Department of Homeland Security (DHS), with information from each new employee’s Form I-9 to confirm work authorization. Visit http://EEOC.gov to know your rights on workplace discrimination.