* MUST have LDRPS (Living Disaster Recovery Planning System) experience
� Is results-driven and solutions-oriented with a demonstrated history of producing quality
results as an individual contributor and with limited guidance
� Has a strong understanding and applied knowledge of information risk management theory and
operational controls in a fast-moving business solutions technology environment
� Possesses and utilizes strong analytical, planning, collaboration, written and oral
communications skills
� Achieves results through teamwork, flexibility and an ability to work through challenging
situations.
� Hands-on experience with and / or fully understands the Software Development Life Cycle
� Acknowledges in practice the commitment to protecting Fidelity's reputation through
information risk prevention.
� 7+ years experience in information security field
� CISA and / or CISSP preferred
Information Risk Management Oversight - Success in this position requires a strong
understanding and applied knowledge of information security concepts in a technology
environment. The Analyst will perform assessments of risk relative to technical and procedural
controls, ensuring access is appropriate to role, oversight of controls by way of various tools
which assess policy and risk compliance on servers, databases and applications. The Analyst
will perform security assessments and provide written documentation of scope, approach,
findings, summary and recommended risk remediation actions which is suitable for the business
unit ISO, Audit and middle / senior management.
The Analyst will interact with various levels within the organization, including the technology
group, business functions, Corporate Information Security and Audit areas.
Business Continuity planning - activities include the maintenance of various business function
continuity plans using the LDRPS system, the coordination and execution of plan tests,
oversight of programs and ensuring that the Emergency Notification System is current and
effective. |