Information Security Engineer II
Core
Managing the end-to-end lifecycle of security issues, including triage, validation, action plan review, and risk tracking within the Issue Management System to ensure gaps are remediated or risk-accepted.
Role type
Senior IC Information Security Engineer (GRC/Issue Management)
Builds
Audit-defensible security posture and compliance with corporate standards
Domain
Payments / Fintech / Information Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Issue management lifecycle expertise, GRC platform proficiency, risk assessment, control gap validation, remediation strategy evaluation, audit documentation, stakeholder partnership
Preferred skills
Pen testing background, vulnerability assessment experience, control assessment experience
Technologies
Archer, TIMS
Responsibilities
Support end-to-end issue management lifecycle including triage and workflow progression in Archer; Review and challenge issue descriptions, risk statements, and control mappings; Evaluate action plans and risk acceptance proposals; Assess compensating controls and supporting evidence; Partner with issue owners to drive timely resolution; Perform structured review of control deficiencies; Contribute to issue reporting and trend analysis
Seniority
Senior, hands-on IC
