Senior Engineer, Information Security GRC

ICE

Atlanta (GA)

On-site

USD 120,000 - 190,000

Full time

7 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Intercontinental Exchange, Inc. is seeking a Senior Engineer, Information Security, GRC to lead governance, risk, and compliance across the global information security program. You will interact with multiple businesses and products within the ICE framework, driving policy, metrics, and risk remediation.

The role emphasizes reporting to senior management, maintaining security controls, and coordinating audits and regulatory inquiries to protect ICE's corporate interests.

Qualifications

  • University degree in Information Security, Engineering, MIS, CIS, or related discipline.
  • 5+ years of relevant work experience in IS/GRC roles.
  • Experience with regulatory frameworks and audits is a plus.
  • Experience with executive reporting and board metrics is desirable.

Responsibilities

  • Security Metrics – Produces regular reports on the status of the Information Security program.
  • Policies and Procedures – Maintains IS policies and maps to control standards.
  • Regulator, Audit, and Customer Inquiries – Responds to inquiries in an organized fashion.
  • Recertification – Ensures hire/transfer/termination protocols and access reviews.
  • Security Awareness – Develops awareness programs.
  • Risk Assessment – Documents, measures, and reports risks, controls, and remediation.

Skills

InfoSec
GRC
Regulatory compliance
Risk assessment
Executive communication
CISSP
Security metrics
Policies & procedures
Scripting
NIST CSF

Education

Bachelor's degree in Information Security

Tools

GRC Platforms

Job description

Job Purpose

The Senior Engineer, Information Security, GRC is part of a team responsible for the global Information Security program. The role would gain exposure to the full suite of businesses and products which underpin the Parent ICE company.

Overview

The Senior Engineer, Information Security, GRC is part of a team responsible for the global Information Security program. The role would gain exposure to the full suite of businesses and products which underpin the Parent ICE company.

Information Security ("IS") Is Charged With
  • Preventing impactful cybersecurity and physical security incidents,
  • maintaining a reputation with customers, regulators, and key stakeholders as running a best-in-class cybersecurity and physical security program, and
  • avoiding negative impact to business agility and growth from cybersecurity and physical security policies and controls.

Governance, Risk, and Compliance maintain said policies, ensure controls are operating effectively via assessment and attestation, and own the vulnerability management program to identify and correct any problems within.

Responsibilities
  • Security Metrics – Uses automated and manual processes to produce regular reports communicating the status of the Information Security program
  • Policies and Procedures – Maintains corporate Information Security policies and departmental procedures and maps them to relevant control standards
  • Regulator, Audit, and Customer Inquiries – Organizes and updates departmental documentation and responds to inquiries in an organized and repeatable fashion
  • Recertification – Operates periodic processes to ensure hire, transfer, and termination protocols are complied with and regular access reviews are conducted
  • Security Awareness – Builds and maintains company awareness and education programs
  • Risk Assessment – Builds and operates the company platform to document, measure, and report assessments, risks, controls, findings, and remediation activity
Knowledge And Experience
  • University degree in Information Security, Engineering, MIS, CIS, or related discipline
  • 5+ years of relevant work experience
  • Experience with Systems Administration and/or IP Networking is a plus
  • 5 or more years of experience with Regulatory and/or Framework Compliance
  • Experience in an exchange, trading facility, or financial services a plus
  • Experience in Customer communication and Vendor evaluation
  • Experience with senior management and board metrics generation and communication
  • Advanced certifications (for example, the CISSP)
  • Advanced technical writing and/or communication education and experience
Specific Technologies

Excel, Workflow automation tools, Data collection, normalization, indexing, correlation, and visualization. Scripting, regular expressions, string-parsing, light SDLC, and project management. NIST Cyber Security Framework, CIS, and GRC Platforms.

Intercontinental Exchange, Inc. is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to legally protected characteristics.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Engineer, Information Security GRC
Engineer, Information Security GRC

ICE • Jacksonville (FL)

On-site
USD 80,000 - 110,000
Senior Engineer, Information Security GRC
Senior Engineer, Information Security GRC

ICE Clear Europe Limited • Atlanta (GA)

On-site
USD 120,000 - 180,000
Senior Engineer, Information Security GRC
Senior Engineer, Information Security GRC

Intercontinental Exchange Holdings, Inc. • Atlanta (GA)

On-site
USD 120,000 - 180,000
TPDD Analyst, Information Security GRC
TPDD Analyst, Information Security GRC

Intercontinental Exchange Holdings, Inc. • Jacksonville (FL)

On-site
USD 75,000 - 95,000
TPDD Analyst, Information Security GRC
TPDD Analyst, Information Security GRC

ICE Clear Europe Limited • Jacksonville (FL)

On-site
USD 70,000 - 95,000
Senior Information Security & GRC Engineer
Senior Information Security & GRC Engineer

Intercontinental Exchange Holdings, Inc. • Atlanta (GA)

On-site
USD 120,000 - 180,000
Senior InfoSec & GRC Engineer
Senior InfoSec & GRC Engineer

ICE • Atlanta (GA)

On-site
USD 120,000 - 190,000
Information Security Engineer, GRC
Information Security Engineer, GRC

KYOCERA AVX Components Corporation • Fountain Inn (SC)

On-site
USD 90,000 - 120,000
Senior Security GRC Engineer: Drive Compliance and Risk
Senior Security GRC Engineer: Drive Compliance and Risk

ICE Clear Europe Limited • Atlanta (GA)

On-site
USD 120,000 - 180,000
Information Security Engineer, GRC
Information Security Engineer, GRC

KYOCERA AVX Greenville LLC • Fountain Inn (SC)

On-site
USD 100,000 - 130,000