Experian
data and technology
InformationSecuritySpecialistLead
Neural analysis suggests this role is
optimal for not-applicable candidates.
“Information Security Specialist Lead at Experian. Skills: Information Security, Risk management, Controls framework. Lead security risk and controls strategies. Engage with control owners”
What You'll Achieve.
Ensuring a sound security posture; Meet cybersecurity and risk requirements
Industry & Context.
Provide recommendations for remediation
What They're Looking For.
Must Have
5+ years of experience performing IT Audit, Information Security control assessments, Experience with GRC tools, such as Archer, Knowledge of information security frameworks such as ISO 27001/2, NIST CSF, PCI DSS, and HIPAA, Knowledge of information security risk management management/analysis frameworks such as Open FAIR, NIST 800-37, NIST 800-39, Knowledge of governance, risk, and controls principles and operational impacts of cybersecurity lapses, Knowledge of IT technologies and methods to secure them with a knowledge of Cloud security, Proficient in security control design, implementation, and evaluation, Proficient in performing impact/risk assessment, Experience facilitating small to medium size group meetings with senior leadership audiences, Bachelor's degree in computer science, management information systems or relevant field or equivalent demonstrable experience
Nice to Have
A working knowledge of AWS cloud environment is beneficial, Guide the Risk and Control teams continuing maturity using new technologies such as AI and ML
What You'll Do.
Lead security risk and controls strategies
Engage with control owners
Populate controls library
Maintain and update risk and controls framework
Review control activities
Identify control activity gaps
Report control activity gaps
Provide recommendations for remediation
Compile management reports
Develop content for workshops
Ensure information security controls are aligned
Map controls to risks
Monitor risk indicators
Provide risk indicators as inputs
Standardize processes and methodologies
Capture stakeholder feedback
How You'll Work.
Team & Collaboration
Collaborating with partners across all Security and IT teams; Engaging with Regional BU and Centralized security and IT control owners
Communication Scope
Presenting content for controls implementation workshops; Compile management reports, summary analysis, and detailed presentations
Full Job Description
Experian is a global data and technology company, powering opportunities for people and businesses around the world. We operate across a range of markets, from financial services to healthcare, automotive, agribusiness, insurance, and many more. Experian invests in people and new advanced technologies to unlock the power of data. We have an amazing team of 25,200 people in 32 countries. Reporting to the Information Security Director, you will lead the identification, documentation, and formalization of security risk and controls framework across the Enterprise to meet the cybersecurity and risk requirements set by Experian. The Information Security Specialist Lead will contribute to the team's goals of ensuring a sound security posture by assessing the risk-based design of security controls and security capabilities. You will contribute the design and operation of best practice cyber risk management practices, collaborating with partners across all Security and IT teams in the Enterprise. Responsibilities : * Lead the security risk and controls strategies in engaging with Regional BU and Centralized security and IT control owners across the Enterprise to populate the controls library. * Maintain and update the integrated risk and controls framework based on information security policies and industry best practices and standards. * Review control activities populated by control owners to ensure they align with requirements outlined in control standards and goals. * Identify, document, and report control activity gaps and provide recommendations for remediation. * Compile management reports, summary analysis, and detailed presentations to describe risk and controls program. * Develop and present content for controls implementation workshops with control owners across the Enterprise. * Ensure information security controls are aligned and mapped to applicable risks (risk types and risk register entries) in Archer GRC platform. * Monitor and stay informed about internal
Applying for this Information Security Specialist Lead role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on SmartRecruiters
- SmartRecruiters often includes a video screening step — check camera and mic permissions.
- Link your GitHub or portfolio directly in the profile section for technical roles.
- Applications may be reviewed by AI scoring before reaching a recruiter — use keywords from the job description.
ANONYMOUS · UNFILTERED
What do employees actually say about Experian?
Real rants from real employees. Read before you apply.