Senior Control Assurance Assessor
Experian
πRemote - Costa Rica
Please let Experian know you found this job on JobsCollider. Thanks! π
Job highlights
Summary
Join Experian's Controls Assurance Testing Team as a Senior Control Assurance Assessor! This remote, permanent role in Costa Rica focuses on data-driven security control assessments. You will conduct assessments, develop test plans, utilize security tools, and document findings. The ideal candidate possesses strong IT audit/security control testing experience, relevant certifications, and proficiency in various tools and technologies. Experian offers a comprehensive benefits package including medical, life, and dental insurance; paid time off; performance bonuses; and more.
Requirements
- A bachelor's degree in computer science, management information systems, or a relevant field, or equivalent demonstrable experience
- 3+ years' experience performing IT Audit or security control testing
- 5+ years' of experience in Information Security or Information Technology
- Demonstrated experience in conducting security control testing and evaluations within an internal audit framework
- Knowledge of internal audit methodologies, including risk assessment, planning, execution, and reporting
- Hold a professional certification such as CISA, CISM, CISSP, PCI QSA, ISO 27001 Lead Auditor, or equivalent
- Proficiency in industry standards and frameworks (e.g., NIST 800-53, ISO 27001/27002)
- Familiarity with privacy regulations (e.g., GDPR, CCPA) and breach notification laws
- Experience with sector-specific frameworks (e.g., HIPAA, PCI)
- Knowledge of security tools such as Sailpoint, Rapid7, Wiz.io, MS Defender, SIEM, vulnerability management, and penetration testing tools
- Familiarity with cloud concepts and technologies, AWS and Azure
- Experience using generative AI such as Chat GPT to create test strategies, reports, and communications
- Proficiency in automation and analytics tools (e.g., Excel, Tableau, Alteryx, and PowerBI)
- Experience creating queries and reports using RSA Archer and ServiceNow
- Familiarity with Kanban boards and Jira
Responsibilities
- Conduct security control assessments, managing the process from planning through to reporting, including, understanding controls in scope, gathering assets populations and selecting samples, planning the assessment, evaluating whether the controls are designed and working as intended, writing issues and communicating the issues, and reporting on the test results
- Develop test plans, test cases/steps, and procedures, using data from security tools to capture evidence
- Use queries and dashboards to identify potential control failures
- Ensure the accuracy and timely completion of control testing, providing peer review
- Document findings, including root cause analysis and recommendations for remediation
- Be the primary liaison with team members, delivering clear progress updates and results
- Contribute to the efficiency of the control testing program by establishing measurable indicators, standardizing testing materials, and integrating partner feedback for improvement
Preferred Qualifications
- Experience with cybersecurity principles and organizational requirements
- Apply governance, risk, and control principles
- Proficiency in both automated and manual testing of information security controls
- Facilitate small group meetings and communication of complex ideas
- Collect, validate, analyze, and translate test data into evaluative conclusions
- Research and application of knowledge about new technologies
- Agile working methodology experience
Benefits
- Medical, life and dental insurance
- Asociacion Solidarista
- International Share Save Plan
- Flex Work/Work from home
- Paid time off
- Annual Performance Bonus
- Education Reimbursement
- Family Bonding
- Bereavement Leave
- Referral Program
Share this job:
Disclaimer: Please check that the job is real before you apply. Applying might take you to another website that we don't own. Please be aware that any actions taken during the application process are solely your responsibility, and we bear no responsibility for any outcomes.
Similar Remote Jobs
- πCosta Rica
- πUnited States
- πWorldwide
Please let Experian know you found this job on JobsCollider. Thanks! π