Security Risk Team Lead
McCormick View all jobs
- Gurgaon, Haryana
- Permanent
- Full-time
McCormick employees - all 14,000 of us across the world - are what makes this company a great place to work.Position Overview:The Security Risk Team Lead is a key member of the Cybersecurity Governance, Risk, and Compliance team and will report to the Senior Manager, Cybersecurity Governance, Risk & Compliance. This position will be responsible for leading assessments of security risk, establishing security standards, and ensuring compliance against those standards across all disciplines of the information security domain that support McCormick's global brands and subsidiaries. The ideal candidate has a strong work ethic along with strong organizational, project management, superlative communication skills and problem-solving skills. Additional key qualities include the ability to work with others to drive results. This position requires excellent verbal and written communication skills spanning across all levels of management. Candidates must thrive in a demanding, fast-paced work environment that is energetic, driven, and team-oriented. This role will also work with SMEs across the organization to mature/design security controls & mitigate risk.Key Responsibilities:
- Identify and manage IT-related risks to ensure the security, integrity, and efficiency of the organization's IT infrastructure.
- Regularly report to IT and business leadership teams on risk management activities and potential impact.
- Work with GRC tool to develop and improve workflows and processes related to management of risk.
- Oversee risks identified and managed related to third-party vendor risk assessment program.
- Demonstrate effective teaming skills with the ability to work independently as needed; leading initiation, execution, and completion to finalization and reporting for key work tasks.
- Bachelor's degree in Information Technology, Information Systems, Risk Management, Accounting or similar.
- 12+ years of experience related to internal/external audit, information technology, or internal controls.
- Internal/External Audit, Sarbanes-Oxley, or other internal control (IT or operational) project experiences. Strong verbal and written communication skills, with the ability to effectively communicate complex cybersecurity and IT issues and concepts to non-technical stakeholders.