Information Security Engineer at Bounteous (Chicago, IL or Remote)
Role and Responsibilities
- Responsible for working with internal Lines of Businesses to help them address client queries regarding Bounteous' information security posture, future strategy and current controls
- Design and implement multilevel security strategies to protect networks and data resources
- Plan computer and network security upgrades and test hardware and software related to the upgrade
- Address technical problems related to applications and production equipment
- Respond to intrusions using expertise in computer forensics
- Anticipate future problem areas by monitoring workflows and network traffic patterns
- Address Issues Raised by Security Analysts by working with IT
- Work with IT to deploy/manage/maintain firewalls, encryption programs to protect data resources
- Managing Account and Entitlement platforms against newly enrolled applications, solutions or SaaS products
- Assist in the completion of client security questionnaires, manage requests, mailbox, and assignment tracker
- Supporting the Lines of Business and clients in facilitating such reports including certifications (e.g., SOC, ISO, etc.) to a successful outcome
- Working with internal corporate teams to address questions in the area of IT, Infrastructure, Supplier Risk Management, Cyber Defense, and application teams to facilitate responses related to application functionality and security
- Vulnerability Management and reporting that feeds into the Information Technology’s workflow for resolution
Preferred Qualifications
- BA/BS in Computer Science and or equivalent experience
- 3-5 years of experience/background in information security, information security auditor, IT audits and/or previous roles as a business information security officer is a plus
- Information Security specific qualification is desirable (such as CISM, CISA, CISSP)
- Experience of working within internal or external audit, either within a previous organization or as part of a professional services firm is desirable
- Ability to assess security and business risks, analyzing and presenting critical risks and potential remediation activities to all levels of management within the business
- Proficient in the use of MS Office product suite(365)
- Ability to work flexibly to meet demanding deadlines
- Good communication skills, both verbal and written
- Strong time management and organizational skills with the ability to manage multiple tasks and changing priorities
- Ability to work collaboratively in a team