Skip to main content

This job has expired

Senior Information Security Risk Assessor

Employer
Allstate Insurance Company
Location
Tempe, Arizona
Salary
Not Specified
Closing date
Apr 30, 2019

View more

Category
IT , Risk Management
Job Type
Not Specified
Career Level
Not Specified

Job Details

Where good people build rewarding careers.

Think that working in the insurance field cant be exciting, rewarding and challenging? Think again. Youll help us reinvent protection and retirement to improve customers lives. Well help you make an impact with our training and mentoring offerings. Here, youll have the opportunity to expand and apply your skills in ways you never thought possible. And youll have fun doing it. Join a company of individuals with hopes, plans and passions, all using and developing our talents for good, at work and in life.

Job Description

This position is for a Senior Information Security Risk Assessor in the Allstate Technology & Strategic Ventures (ATSV) Information Security department. The Senior Risk Assessor is responsible for driving the companys efforts to proactively identify, assess, and communicate the companys information security risks through critically analyzing the probable frequency and probable magnitude of future loss. The assessor will work in close partnership with internal information security and business representatives to scope assessments, gather documentation, interview clients, identify risks, document findings, and ensure transparent management of risks by following a structured risk assessment methodology. This position will be expected to independently lead and complete high-quality assessments across a diverse set of technologies, business functions, and complexity. This includes but is not limited to assessments for internal and SAAS applications, network devices, control processes, business functions, and facilitating the ongoing analysis of enterprise-wide risks across Allstate and its family of companies. As a senior member of the team, this position will also be expected to proactively drive process improvements, overcome barriers to success, build professional relationships across the company, brief senior leaders, and mentor others.

**In addition to Tempe, AZ, we are open to candidates in the Charlotte, NC & Dallas/Ft. Worth, TX markets to work in our offices in those locations.**

Job Responsibilities

Support Management & Decision Making:

  • Works closely with and influences decision makers in other departments to identify, recommend, develop, implement, and support a risk informed decision and action framework.
  • Initiates and implements continuous improvements in all areas of IT responsibility.

Business Partner Management

  • Acts as a Change Catalyst for a risk based approach to delivery of services and systems.
  • Partners with others in their organization to set and manage expectations; continually seeks opportunities to be a thought partner and increase internal business partner satisfaction and deepen relationships.
  • Adapts communication approach for audiences at multiple internal and external levels.

Risk Management

  • Identify and recommend appropriate measures to manage and mitigate risks and reduce potential impacts on information resources to a level acceptable to the senior management of the company.
  • Identify and report on new and emerging security risk and risk trends, including participating in risk remediation solution discussions and updates to compliance policy and standards.
  • Fully understand business requirements and work with the business to define appropriate solutions security objectives while meeting the business need.
  • Manage the review of changes in company processes, standards and technology to ensure the effectiveness of security controls to meet compliance requirements.
  • Integrate security risk reporting and management activities into Allstate day to day processes.
  • Partner with all areas of the business, including internal auditors, legal, IT and business partners.
  • Develop and improve KPIs, metrics, and trending for the risk management and remediation function.
  • Respond to and assist with audits, assessments and compliance requests.
  • Serve as client liaison as needed on matters pertaining to Risk Management.
  • Promote and consult on the positions that help strengthen and secure the organization by either following standards or helping direct others on technology positions.
  • Act as a subject matter expert for the organization's information asset protection policies and procedures, and information technology best practices.
  • Provide mentoring, feedback, guidance and reviews of assessment work to team members.
  • Develop and refine enterprise policy, standards and procedures.
  • Develop and refine procedures and techniques used by the team.
  • Other duties as assigned.

Job Qualifications

  • Minimum 5 years of IT experience, ideally at least 3 of which are in a security domain. Previous information security risk assessment experience is a plus.
  • Strong understanding of IT security best practices
  • Demonstrated ability to lead and participate in cross functional teams, including offsite, remote and offshore resources.
  • Effective written, verbal communication skills. Ability to tailor communication style to audience at hand.
  • Ability to effectively communicate with technical and non-technical resources.
  • Experience evaluating and securing payment processing technology.
  • Direct knowledge of PCI DSS and PCI risk assessments, or ability to develop these skills within 6 months of hiring.
  • Knowledge of HIPAA, ISO, NIST, and IT Controls.
  • Strong organizational skills.
  • Self-directed, works with minimal guidance, and recognizes when guidance needed.
  • Demonstrated ability to stay abreast securing evolving technology such as cloud and mobile computing.
  • Proficient in MS Office Suite (Word, Excel, Project, PowerPoint, Visio).
  • Knowledge of the Factor Analysis of Information Risk (FAIR) taxonomy a strong plus.
  • Knowledge of ArcherGRC, RiskLens, and SkyHigh ShadowIT tools a plus.
  • CISSP or CISM, or other industry certification a plus.

**In addition to Tempe, AZ, we are open to candidates in the Charlotte, NC & Dallas/Ft. Worth, TX markets to work in our offices in those locations.**

The candidate(s) offered this position will be required to submit to a background investigation, which includes a drug screen.

Good Work. Good Life. Good Hands.


As a Fortune 100 company and industry leader, we provide a competitive salary but thats just the beginning. Our Total Rewards package also offers benefits like tuition assistance, medical and dental insurance, as well as a robust pension and 401(k). Plus, youll have access to a wide variety of programs to help you balance your work and personal life -- including a generous paid time off policy.


Learn more about life at Allstate. Connect with us on Twitter, Facebook, Instagram and LinkedIn or watch a video.


Allstate generally does not sponsor individuals for employment-based visas for this position.

Effective July 1, 2014, under Indiana House Enrolled Act (HEA) 1242, it is against public policy of the State of Indiana and a discriminatory practice for an employer to discriminate against a prospective employee on the basis of status as a veteran by refusing to employ an applicant on the basis that they are a veteran of the armed forces of the United States, a member of the Indiana National Guard or a member of a reserve component.

For jobs in San Francisco, please click "here" for information regarding the San Francisco Fair Chance Ordinance.

For jobs in Los Angeles, please click "here" for information regarding the Los Angeles Fair Chance Initiative for Hiring Ordinance.

It is the policy of Allstate to employ the best qualified individuals available for all jobs without regard to race, color, religion, sex, age, national origin, sexual orientation, gender identity/gender expression, disability, and citizenship status as a veteran with a disability or veteran of the Vietnam Era.

Company

COMPANY INFORMATION The Allstate Corporation (NYSE: ALL) protects people from life's uncertainties with more than 113 million proprietary policies. Allstate offers a broad array of protection products through multiple brands and diverse distribution channels, including auto, home, life and other insurance offered through its Allstate, Esurance, Encompass, SquareTrade and Answer Financial brands. Allstate is widely known from the slogan "You're in Good Hands with Allstate." The Allstate Corporation is the largest publicly held personal lines property and casualty insurer in America. Allstate was founded in 1931 and became a publicly traded company in 1993. In 2023, Allstate was number 84 on the Fortune 500 list of largest companies in America. WHAT WE DO We’re more than insurance agents and claims representatives. We’re individuals with hopes, plans and passions. The biggest of which is helping people live smarter, safer lives. Doing so means continuing to re-imagine how we do what we do, the impact we can make on the world, ways we can each succeed in our own careers and actions we can take as a company that are good for all. To do that, we need all kinds of people – including lawyers, accountants, building engineers, project managers, marketing professionals, human resource specialists and so many more. WHO WE ARE – INCLUSIVE DIVERSITY    We hold each other accountable to encourage and embrace our collective differences. It’s our individual characteristics, values and beliefs, along with backgrounds and experiences that give us fresh perspective and purpose. We work harder, meet customer needs more effectively, share better, and identify more innovative ideas when we are accepted for who we are by the world around us. Our success comes from a chorus of many different voices. At Allstate, every voice counts.​ In our stand against racism, we’ve been making changes within Allstate. We’ve been listening, learning and engaging in change. We are focused on improving equity for all. Allstate is committed to long-term change not only in the way we conduct our business, but also for our employees. There’s a dynamic environment waiting for you here. You’ll find people with similar interests, as well as the many who’ll help expand your horizons. We believe in the power of connections. That’s why Allstate promotes diversity through a robust network of employee resource groups. It helps connect us all and supports our unique talents. Here are some of the available resource groups that actively support our employees: Abilities Beyond Limitations & Expectations African American Working Network Allstate Asian American Network Allstate Foster and Adoption Network Allstate PRIDE Allstate Veterans Engagement Team and Supporters Allstate Women’s Information Network Entrepreneurs at Allstate Families at Allstate Matter Native American Peoples at Allstate Professional Latino Allstate Network Young Professionals Organization WHY JOIN OUR COMPANY Allstate has been protecting people from life's uncertainties since 1931. We continuously develop and improve products and services so our customers can live well protected. For employees, we offer an environment that fosters innovative thinking and collaboration - where you'll be able to explore your ideas and feel proud of the work you do.  Our Benefits Allstate is dedicated to helping employees live happier and healthier lives. As a Fortune 100 company and industry leader, we provide a competitive salary and a benefits package that includes medical and dental insurance, tuition assistance, as well as a robust pension and 401(k). Plus, you'll have access to a wide variety of programs to help you balance your work and personal life - including a generous paid time off policy.  Growth and Development We support your desire to grow and provide opportunities to learn, explore new horizons, and follow your passion in a meaningful career. From access to hundreds of learning opportunities to in-house networking and rotational work experiences, Allstate is a place where you can forge your own path and expand your personal and professional potential. 
Company info
Website

Get job alerts

Create a job alert and receive personalized job recommendations straight to your inbox.

Create alert