Cybersecurity Governance Analyst III
Western & Southern Life
Information Security Consultant
Provides support to business and IT teams including security consulting for major corporate initiatives and information security projects. Performs risk assessments, security assessments and policy reviews of WSFG systems and third-party vendors to identify areas of noncompliance with established information security standards and regulations, and helps recommend mitigations strategies and countermeasures. Provides security guidance to other IT and project teams in the evaluation, design, or implementation of secure computing environments. Develops, reviews, and monitors information security policies and procedures and makes recommendations for improvement. Identifies and defines overall security requirements for the proper operation and design of business and IT applications to ensure the protection of WSFG systems and data. Contributes to the development of the organization's information security awareness program. Escalates when needed and updates Director on a regular basis.
Responsibilities
Assists team in performing third-party vendor due diligence security reviews to ensure compliance with information security policy, security procedures, and regulatory requirements. Identifies and reports deficiencies or risks to the appropriate stakeholders. Follows up with business teams and third parties to escalate issues when necessary.
Participates in the effort to address identified IT audit findings and cybersecurity risks with corrective action plans. Works with senior team members to support process/program improvements. Conducts ongoing monitoring of the first-party security posture and performance. Acts as a liaison with Internal Audit on IT audits.
Works with project teams to ensure PMLC/SDLC tollgates are being met for security and that the appropriate security artifacts are being maintained. Helps in PMLC/SDLC planning and makes certain it assesses the protection of information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide confidentiality, integrity, and availability.
Conducts in-depth research to understand industry best practices, emerging trends and the latest open source methods that will help address current security challenges and enable new ways of delivering value to the Enterprise.
Works with IT and the business serving as a technical security consultant on IT and business projects. Provides input on complex business problems and helps deliver solutions that address risks to the corporate network and information assets. Ensures the appropriate level of controls are applied based on industry standards, best practices, and cybersecurity regulations by developing repeatable processes to identify, evaluate, and measure IT security risk.
Helps manage the information security policy lifecycle, including policy creation, policy maintenance, policy exception, and policy change requests. Works with them to help improve the overall security policy framework. Works with the business and IT management to ensure that the security policy framework and internal controls are being appropriate followed. Conducts risk assessments based on policy and control evaluations.
Contributes to the development, review, implementation, and maintenance of the organization's information security awareness program. Assists in effort to collaborate with HR and Corporate Communication teams to deliver security training and security awareness to associates and consultants."
Helps manage the remediation of audit and security review findings and recommendations.
Performs other duties as assigned.
Complies with all policies and standards.
Qualifications
- Bachelor's Degree Computer Science, Computer Engineering, IT or a related technical field, or commensurate selection criteria experience. - Required
- Typically requires at least five years of combined work experience in information assurance and security roles such as IT Audit, Risk, Compliance and Information Security. - Required
- Experience in the areas of information security governance and third-party risk management. - Required
- Experience working with IT risk and compliance frameworks such as NIST (preferred), ISO, COBIT, COSO, COBIT, etc. - Required
- Experience working with best practices and industry cybersecurity regulations. - Required
- Experience with information security, security awareness, and risk assessment and mitigation concepts, methodologies, and processes. - Required
- Proven experience in completing assigned tasks accurately and on a timely basis. - Required
- Proven ability to identify and assess the severity and potential impact of risks. - Required
- Demonstrated inherent passion for information security and service excellence. - Required
- Ability to identify project risks and gaps, developing creative and workable solutions to complex problems and policy issues. - Required
- Strong team player - collaborates well with others to solve problems and actively incorporate input from various sources. - Required
- Demonstrated strong analytical and problem-solving skills with the ability to grasp new concepts and apply them; effectively evaluates information / data to make decisions; anticipate obstacles and develop plans to resolve. - Required
- Possess and display excellent verbal and written communication skills with ability to convey information to internal and external customers in a clear, focused, and concise manner. - Required
- Demonstrated calm and professional demeanor when handling demanding situations. - Required
- Proven ability to work with a team and multiple stakeholders to provide direction and oversight. - Required
- Demonstrated self-starter with strong internal motivation. - Required
- Proven ability to work under multiple deadlines and with minimal supervision. - Required
- Basic computer, network, and system knowledge and skills with a thorough understanding of security controls. - Required
- Strong proficiency in the use of Microsoft Office, particularly Word, Excel, PowerPoint. - Required
- CISSP Certified Information Systems Security Professional Candidate encouraged to hold one or more of the following security certifications: Certified Information Systems Security Professional (CISSP), any GIAC certification or ISACA certifications. Upon Hire - Preferred
Work Setting/Position Demands:
- Works in an office setting and remains in a stationary position for long periods of time while working at a desk, on a computer or with other standard office equipment, or while in meetings.
- Requires the ability to verbally communicate and exchange accurate information to customers and associates on a regular basis.
- Requires visual acuity to read and interpret a variety of correspondence, procedures, reports and forms via paper and electronic documents, visual inspection involving small defects; small parts, and/or operation of machinery (including inspection); using measurement devices continuously. Visual acuity is required to determine accuracy, neatness, and thoroughness of work assigned.
- Requires the ability to prepare written correspondence, reports and forms using prescribed formats and conforming to rules of punctuation, grammar, diction, and style on a regular basis.
- Requires the ability to apply principles of logical thinking to define problems, collect data, establish facts, and draw valid conclusions
- Performs substantial movement of wrists, hands, and fingers for continuous computer work.
- Extended hours required during peak workloads or special projects/events.
Travel Requirements:
- None
- ...associates are empowered to chase their career dreams while being supported every step of the way. A Day in the Life of a Cybersecurity Governance Analyst III As a Cybersecurity Governance Analyst III, you will support the compliance requirements of the W&SFG Cybersecurity...SuggestedLocal area
- ...Participates in the effort to address identified IT audit findings and cybersecurity risks with corrective action plans. Works with senior team... .... - RequiredExperience in the areas of information security governance and third-party risk management. - RequiredExperience working...SuggestedWork experience placementWork at office
- ...A leading financial services company in Cincinnati seeks a Cybersecurity Governance Analyst III to support compliance requirements for its Cybersecurity Program. The role includes facilitating governance committee meetings, developing cybersecurity metrics, and assisting...Suggested
- ...Senior Cybersecurity Governance Specialist – Vulnerability Management As a Senior Cybersecurity Governance Specialist – Vulnerability Management, you will lead the Vulnerability Management Program within the Cybersecurity Governance team and drive risk management decisions...Suggested
- ...practice works at the intersection of operational technology and cybersecurity—helping critical infrastructure owners across energy,... ...business contextSupport OT security program development including governance frameworks, policies, and procedures aligned to client...SuggestedFull timeWork experience placementLive inWork at officeLocal areaRemote work
- ...anywhere near Cincinnati, Columbus, Cleveland or PittsburghThe Sr. Cybersecurity Advisor (or CSA as we call it) plays a critical role in... ...extensive real-world knowledge and can design pragmatic Identity Governance, Digital Access Management (MFA/SSO), Privileged Access...Full timeWork experience placementLocal areaRemote workWork from home
- ...operational oversight of the Bank's technology governance, risk management, and compliance (GRC)... ...engagements related to technology, cybersecurity, and operational risk. Monitors and... ...Builds, leads, and mentors a team of GRC analysts/specialists; establish performance...Contract workWork at office
$134.5k - $265.1k
...design, build, and deliver high-quality cybersecurity and AI-enabled solutions. You will support... ...an Engineering and Product Engineer III on the Cyber Engineering team, you will... ...incentive program, subject to the rules governing the program, whereby an award, if any, depends...Local areaVisa sponsorship$82.6k - $162.8k
Position Summary We are seeking an AI Governance and Privacy Consultant who can operationalize responsible AI in real systems... ...capture, dashboards, and cross-functional collaboration with Cybersecurity, Privacy, Legal, Risk, Engineering, and Data Science teams.A...Local areaVisa sponsorship- ...Thrives in This RoleThis role suits a senior security engineer who wants ownership of a real controls environment during a period of rapid growth — not a governance seat, a builder's seat.Equal Opportunity Employer, including disability and protected veteran status...Remote work
$122.2k - $240.5k
...is $122,200 to $240,500. You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational...Local area- ...Hello, We’re looking for a Platform Engineer III to join our dynamic backend engineering team. If you're passionate about delivering scalable backend systems using both Java Spring Boot and .NET, and love driving innovation through architecture, microservices, and cloud...
$105.4k - $207.8k
...understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our... ...discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various...Work experience placementLocal area$82.6k - $162.8k
...understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our... ...discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various...Local areaVisa sponsorship- Palo Alto Networks is seeking a seasoned pre‑sales professional to drive strategic account plans and cross‑platform solutions. You will articulate customer requirements, demonstrate high‑level designs, and lead technical validation engagements. The role emphasizes collaboration...Remote job
- ...Cybersecurity Risk And Compliance Consultant Dean Dorton is a national advisory firm with a global presence, committed to delivering tailored, innovative solutions that drive success for our clients. Backed by deep industry knowledge and a forward-thinking approach,...Immediate start
- Overview Actively participates in the design and administration of Cloud-based infrastructure solutions working alongside Cloud Architects and other teams (e.g., Web, Database, Storage, Networking, IAM, Information Security) to ensure that initial and anticipated future...Work at officeShift work
$78.68k - $157.88k
...$78,675 to $157,875. You may also be eligible to participate in a discretionary annual incentive program, subject to 105the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance...Work experience placementWork at officeLocal areaVisa sponsorship- We Are:Accenture is a leading global professional services company that helps the world’s leading businesses, governments and other organizations build their digital core, optimize their operations, accelerate revenue growth and enhance citizen services—creating tangible...Full timeWork experience placementLive inWork at officeLocal area
$134.5k - $265.1k
...QualificationsRequired:5+ years of experience in cloud security, cybersecurity, technology risk, or technology consulting.3+ years of hands-... ...discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various...Local areaVisa sponsorship$134.5k - $265.1k
...understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our... ...identity management, access management and access governance software into clients' infrastructure and applications.3+ years...Local areaVisa sponsorship- ...consulting experience in infrastructure, enterprise architecture, cybersecurity, or a closely related disciplineMinimum 2 years of experience... ...services company that helps the world’s leading businesses, governments and other organizations build their digital core, optimize...Full timeLive inWork at officeLocal areaShift work
$155.6k - $306.8k
...understands the unique challenges and opportunities businesses face in cybersecurity. Deloitte’s Cyber team helps our clients navigate the ever-... ...into production systems.Experience with scalability, governance, and performance considerations for AI-enabled solutions.Client...Local areaVisa sponsorship- General information Country USA State Ohio City Cincinnati Descriptions & requirements About the Role:The Disaster Recovery Program Manager will work with a cross functional team to help design and develop the Disaster Recovery and Resiliency Program...H1bRemote work
- We Are:Accenture is a leading global professional services company that helps the world’s leading businesses, governments and other organizations build their digital core, optimize their operations, accelerate revenue growth and enhance citizen services—creating tangible...Full timeWork experience placementLive inWork at officeLocal area
$133.37k - $156.9k
...environment.This person will lead a growing team of security analysts and implementation resources responsible for defining, implementing... ...determine appropriate security controls.Establish processes, governance, performance measures, and success criteria for the secure...Full timeLocal area3 days per week- Job-ID32216998Reference26-00543 Job Summary: We are seeking an experienced Instrument Software Validation Analyst to support validation and compliance of laboratory, manufacturing, and embedded software systems in regulated environments. The role ensures systems operate...
- ...of an inclusive, adaptable, and forward-thinking organization, apply now.We are currently seeking a Instrument Software Validation Analyst to join our team in Cincinnati, Ohio (US-OH), United States (US).Job Title: Instrument Software Validation AnalystLocation - Work from...Work at officeRemote workFlexible hours
$116.2k - $229.1k
...is $116,200 - $229,100.You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various fac tors, including, without limitation, individual and organizational performance...Local area$130k - $180k
...Compliance by Design: Partner closely with the Senior Director of Cybersecurity and their team — who own risk assessment — to encode security... ...expand the surface that must remain compliant. Architecture Governance & Standards: Encode architecture principles and patterns into...Full time
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cybersecurity Governance Analyst III. Be the first to apply!
- cyber security consultant Cincinnati, OH
- cyber security specialist Cincinnati, OH
- cybersecurity policy and compliance analyst Cincinnati, OH
- remote cyber security Cincinnati, OH
- cybersecurity certificate Cincinnati, OH
- cyber security lead Cincinnati, OH
- cyber security sales Cincinnati, OH
- no experience cyber security Cincinnati, OH
- entry level cyber security Cincinnati, OH
- cybersecurity administrator Cincinnati, OH

