Global Information Security Policy Specialist
Today’s world is fueled by vast amounts of information. Data is more valuable than ever before. Protecting data and information systems is central to doing business, and everyone in EY Information Security has a critical role to play. Join a global team of almost 900 people who collaborate to support the business of EY by protecting EY and client information assets! Our Information Security professionals enable EY to work securely and deliver secure products and services, as well as detect and quickly respond to security events as they happen. Together, the efforts of our dedicated team help protect the EY brand and build client trust.
Within Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we consider the entire security lifecycle. You will join a team of hardworking, security-focused individuals dedicated to supporting, protecting, and enabling the business through innovative, secure solutions that provide speed to market and business value.
The opportunity
The Global Information Security Policy Specialist is responsible for assisting with the creation and maintenance of EY Global Information Security (IS) policies, standards, and guidelines intended for Information Technology staff as well as general staff.
A successful applicant is analytical, creative, enthusiastic, and communicative. This role will engage with global community as it explores and proposes creative solutions to Information Security policies. To be a member of this team, strong oral and communication skills are essential.
Your key responsibilities
• Write, edit, and maintain global Information Security policies, standards, and guidelines for internal business users and Information Technology professionals
• Brainstorm, recommend and implement improvements to global Information Security policies, standards, and guidelines
• Collaborate with Information Security, Information Technology, and Data Protection teams, as well as with business and technical partners on Information Security policies, standards, and guidelines
• Verify the relevancy and accuracy of Information Security policy documentation
• Translate recommendations from subject matter experts, vendor and industry standards, guidelines and best practices into high-quality, coherent information security policies, standards, and guidelines
• Harmonize content of IS documents and materials with other EY policies and standards, ISO/IEC 27001 information security standard, as well as information security regulatory requirements
• Communicate policy documents using various written and oral communications methods, including presenting
• Support the writing and editing of proposals as needed
Skills and attributes for success
• Understanding of information security concepts
• Familiarity with principles of securely handling and protecting information
• Strong analytical and research skills with a keen attention to detail
• Strong written and verbal communication skills and the ability to communicate effectively with different levels within the organization
• Ability to work well in a collaborative, team-oriented environment
• Adept at learning new technologies
• Strong experience with Microsoft Office, especially Word and PowerPoint, is required
To qualify for the role, you must have
• Degree in Communications, Writing or related subject area, or equivalent work experience
Ideally, you’ll also have
• Two or more years of experience in Information Security or related work
• Attained or desire to attain one or more of the following certifications:
o CISSP (Certified Information Systems Security Professional)
o CRISC (Certified in Risk and Information Systems Control)
o CSAP (Certified Security Awareness Practitioner)
o SSAP (SANS Security Awareness Professional)
• Involvement with policy programs
• Familiarity of common information security standards, such as: IEC/ISO 27000, NIST (National Institute of Standards and Technology), PCI (Payment Card Industry), DSS (Data Security Services), ITIL (Information Technology Infrastructure Library), COBIT (Control Objectives for Information Technology), SOC2
• Experience working in a global virtual environment
• Excellent interpersonal, communication and presentation skills
• Good time management, organizational, and decision-making skills
• Ability to understand and integrate cultural differences and motives, and ability to work with cross cultural teams
What we look for
We’re looking for someone who can collaborate globally with different regions and cultures. Problem-solves, thinks creatively, and has an open mind to new insights. Focus on customer service and building positive relationships with colleagues both across teams and globally. A highly motivated, diligent, and driven individual who seeks development and improvement opportunities and deliver quality services.
What we offer
As part of this role, you will work in a highly coordinated, globally diverse team with the opportunity and tools to grow, develop and drive your career forward. Here, you can combine global opportunity with flexible working. The EY benefits package goes above and beyond too, focusing on your physical, emotional, financial, and social well-being. Your recruiter can talk to you about the benefits available in your country. Here’s a snapshot of what we offer:
• Continuous learning: You will develop the mindset and skills to navigate whatever comes next.
• Success as defined by you: We will provide the tools and flexibility, so you can make a significant impact, your way.
• Transformative leadership: We will give you the insights, coaching and confidence to be the leader the world needs.
• Diverse and inclusive culture: You will be accepted for who you are and empowered to use your voice to help others find theirs.
We ensure that individuals with disabilities are provided reasonable accommodations to participate in the job application or interview process, to perform essential job functions and to receive other benefits and privileges of employment. Please contact us to request accommodations.
EY is committed to being an inclusive employer, and we are happy to consider flexible working arrangements. We strive to achieve the right balance for our people, enabling us to deliver excellent client service whilst allowing you to build your career without sacrificing your personal priorities. While our client-facing professionals can be required to travel regularly, and at times be based at client sites, our flexible working arrangements can help you to achieve a lifestyle balance.
If you can confidently demonstrate that you meet the criteria above, please contact us as soon as possible.
Make your mark.
Apply now.
EY provides all qualified applicants consideration for employment without regard to age, religion, gender, sexual orientation, nationality or disability. All qualified candidates will be considered in the process. Better Working World.
* #ExperiencedEY