邢台 [切换城市] 邢台招聘邢台IT-管理招聘邢台信息技术经理/主管招聘

IT Risk Management & Compliance Analyst

上海精桥人才服务有限公司

  • 公司规模:少于50人
  • 公司性质:合资(非欧美)
  • 公司行业:专业服务(咨询、人力资源、财会)

职位信息

  • 发布日期:2015-02-04
  • 工作地点:上海-浦东新区
  • 招聘人数:若干
  • 工作经验:8-9年
  • 学历要求:本科
  • 语言要求:英语熟练
  • 职位月薪:面议
  • 职位类别:信息技术经理/主管  

职位描述

The IT Risk Management and Compliance Analyst role is to directly assess and holistically manage all aspects of risk brought to bear on the enterprise by IT security and legislative/regulatory compliance issues under the supervision of the IT Risk Management and Compliance Manager. The purview of this role includes risk as it manifests in the areas of technology, operations, and strategy. Achievement of balance between IT security concerns and compliance mandates is a primary objective of this role. The ability to make clear decisions under pressure is required

DUTIES AND RESPONSIBILITIES

The main duties and responsibilities of this position are but not limited to:

Strategy & Planning
Work with the IT leads and BRM’s to align the IT organization with Global IT security and compliance needs.
Develop and institute compliance goals and objectives.
Collaborate on the creation of policies and procedures with members of the IT Security, Risk and Compliance team and Internal Audit and enforce security and compliance policies and standards, through review, training, and follow up on exceptions.
Establish guiding principles for flexible, yet holistic, compliance management.
Review proposed projects to identify potential risks.
Classify and valuate enterprise data assets.
Project and track costs of risk management initiatives.
Identify and deploy standard risk assessment models or frameworks.
In collaboration with the IT Security, Risk and Compliance team, select and deploy appropriate best practices governance frameworks, such as COBIT.
Perform cost-benefit and return on investment (ROI) analyses for proposed changes to aid management in making implementation decisions.
Create and communicate strategies for risk mitigation.
Create and communicate strategies for implementing IT Processes in compliance with the IT security policy, and prepare business units for self-audit.
Internal and external audits. Support IT leads in strategies for achieving industry standard accreditation for IT services

Operational Management
Work with IT Risk Management and Compliance Manager to track and measure the enterprise’s risk posture.
Work with IT Risk Management and Compliance Manager to Oversee automation of internal controls and centralize logging and reporting.
Track regional divisional audit reviews for exceptions requiring action plans and assist IT leads and Plan and oversee risk mitigation and remediation projects.
Develop and deliver risk awareness training for key staff and stakeholders through use of training materials, workshops etc.
Responsible for special projects as assigned by management

Knowledge and Education
University degree in the field of law, computer science, or business administration, or equivalent in several years of work experience in a closely related position.
Certifications in CISSP, CISA, CISM, would be preferred

Work Experience
Specific knowledge of risk management principles and models.
Deep knowledge of business management practices and principles.
Proven experience in audit of legislative and/or regulatory compliance.
Experience in technical management of technology software and hardware platforms. goals and objectives.

Skills and Competencies
Must consistently demonstrate a high degree of confidentiality, discretion, integrity and
professionalism in all aspects of the job.
Must be a team player, highly motivated. Proven leadership and management skills.
Highest levels of personal and professional integrity.
Superior analytical and problem-solving abilities.
Ability to effectively prioritize and execute tasks in a high-pressure environment.
Proven experience in interfacing with executive teams, business management and external firms.
Excellent written, oral, and interpersonal communication skills.
Ability to conduct research into existing and emerging security and compliance issues as required.
Ability to present ideas in both business-friendly and IT-friendly language.
Highly self-motivated and directed. Keen attention to detail.
Team-oriented and skilled in working within a collaborative environment.
Must be available to travel internationally on an occasional basis.
Ability to list approximately 40 pounds on an occasional basis.

Work Environment
On-call availability and periodic overtime to meet project deadlines.
Regional (Asia Pacific) travel required.
Sitting for extended periods of time.

公司介绍

上海精桥人才服务有限公司成立于2003年,是一家由业内专业人士共同成立的专业人力资源管理公司,致力于为全球客户提供企业管理咨询、中高级人才搜索、培训服务等人事外包服务。上海精桥人才服务有限公司与国内众多知名企业(包括世界500强公司)及许多著名的经济研究、市场研究、行业研究机构等保持友好的合作关系。

公司在上海、北京及深圳设有分支机构,业务范围覆盖全国,同时公司在欧洲、美国有许多战略合作伙伴。
精桥公司的高级人才服务旨在协助客户招聘中高层管理人员,无论是加强跨国公司高层管理团队的实力还是帮助刚启动的企业创建其核心管理团队。我们的顾问通过对候选人的管理经验、领导力和专业技能等方面深层次的评估,确保为客户提供适合的***人选。

我们已为客户成功推荐了数千位中高级人才,涉及it、通讯、电信、消费品电子及快速消费品、化工、医药、汽车、仪器仪表、机械制造、房地产等各种行业。

“与客户共同发展,与精英一起进步”是精桥全体顾问追求的目标。我们的客户大部分来自全球财富500强的跨国公司,近些年越来越多的中国本土快速发展中的新兴企业也成为了我们的忠实客户。

established in year 2003, talent bridge is a specialized global human resource management company established by a group of professional experts in executive search industry. its business covers management consulting, executive search for medium and senior talents, training and hr outsourcing service, etc. talent bridge maintains friendly cooperative relations with many well known enterprises including fortune 500 mncs and well known economic research, market research and industry research institutes in china.

with our branches in shanghai, beijing and shenzhen, we take full advantage to deliver our service nationwide. moreover, talent bridge remains a strategic partnership with many companies in europe and the united states.

our executive search service is provided by a group of talent bridge's experienced consultants who collectively work either for strengthening a senior management team in mncs or helping a start-up enterprise in building up its core management team. our consultants are skillful in evaluating candidates'experience, leadership and expertise to ensure that we present clients with the most qualified candidates across all industry segments.

talent bridge has been successfully placing thousands of assignments for its clients who are from industries such as it, telecom & communications, electronics, chemicals, pharmaceuticals, automobiles, instrument & measurement, manufacturing and real estate, etc.

'to grow with our clients & make progress with candidates'is the ultimate goal which talent bridge consultants have been pursuing. most of our clients are mncs from the fortune 500. in recent years, more local emerging enterprises are becoming our loyal clients.

for further information, pls email us at:
email: johnnyzhang@talentbridge-intl.com; willfu@talentbridge-intl.com; winniewang@talentbridge-intl.com; williswang@talentbridge-intl.com; johnnyzhangtb@foxmail.com and jq@talentbridge-intl.com

联系方式

  • Email:johnnyzhang@talentbridge-intl.com
  • 公司地址:上班地址:长春