
Information Security Assurance Analyst I
Global Payments
Visa & sponsorship
- The posting says it will not sponsor a visa for this role.
Job description
Every day, Global Payments makes it possible for millions of people to move money between buyers and sellers using our payments solutions for credit, debit, prepaid and merchant services. Our worldwide team helps over 3 million companies, more than 1,300 financial institutions and over 600 million cardholders grow with confidence and achieve amazing results. We are driven by our passion for success and we are proud to deliver best-in-class payment technology and software solutions. Join our dynamic team and make your mark on the payments technology landscape of tomorrow.
** Ready to take your career global? **
Make your mark at one of the biggest names in payments. We are seeking a candidate who can provides technical guidance on information security policies, procedures, technologies, and compliance-related activities through execution of First Line Assurance assessments. Works with stakeholders across Information Security and Technology organizations to validate security control implementation and effectiveness, identify vulnerabilities and control gaps, support remediation activities, and contribute to certification, continuous monitoring, and automation programs.
Automation emphasis: This First Line Assurance role supports an automation-first model for control audits, evidence collection, reporting, certification, and continuous monitoring. Experience with Power Automate, Power BI, dashboards, and workflow automation is highly desirable.
** What you’ll own **
-
Collaborates with Information Security, Technology, Risk, Audit, and business stakeholders to support First Line Assurance objectives. Aligns assessment activities with business priorities and communicates findings in a clear, actionable manner.
-
Performs targeted control assessments, operational assurance reviews, post-deployment security validations, and certification activities. Evaluates security control implementation and effectiveness, identifies control weaknesses and compliance gaps, assists with remediation tracking, and provides detailed findings and recommendations to stakeholders.
-
Supports the automation of control audits, evidence collection, control testing, reporting, remediation tracking, certification, and continuous monitoring. Contributes to workflows, dashboards, data collection, and repeatable assessment processes that reduce manual effort and increase assurance coverage.
-
Uses automation and reporting tools to streamline evidence collection, control validation, assessment execution, remediation tracking, and recurring assurance activities. Experience with Power Automate, Power BI, or similar workflow and reporting technologies is desirable.
-
Supports continuous monitoring, assurance, and validation activities by reviewing technical, administrative, and operational security controls. Analyzes assessment results, assists in development of automation opportunities, tracks remediation efforts, and contributes to recurring certification and reporting activities.
-
Reviews business requests, assurance findings, and control exceptions to determine level of risk and appropriate remediation path. Informs management of security policy variances and control gaps.
-
Not an exhaustive list; other duties as assigned.
** What you’ll bring **
-
Bachelor's and/or Master’s Degree in Computer Science, Information Security, or related information technology field, and/or a combination of equivalent and relevant work experience.
-
Minimum 7+ years relevant experience in information security, security assurance, audit, risk, compliance, security architecture, security engineering, or related technology functions.
-
Knowledge of industry standard security and compliance programs and frameworks including PCI, FFIEC, FISMA, SOX, GLBA, HIPAA, ISO-87001, NIST 800-53, NST CSF, NIST RMF, and/or related security control frameworks.
-
Ability to work with stakeholders at multiple levels to identify risk, collect and evaluate evidence, document findings, and communicate practical remediation options.
-
Required Certification(s) / Licensing - Professional certifications such as CRISC, CGRC, CISM, CISSP, CISA, CySA+, or equivalent experience are preferred.
** It’s a bonus if you have **
-
Strong familiarity with on-prem, cloud, and hybrid environments, across connected and disconnected environments, in a complex and diverse Fortune 500.
-
Familiarity with multiple cloud hosting environments is preferred, or at least strong familiarity in one of the three main cloud provider environments such as GCP, AWS, or Azure.
-
Experience performing information security assessments, security control assessments, technical control testing, control design testing, control effectiveness testing, KPI/KRI testing & validation, operational assurance reviews, or post-deployment validation activities.
-
Experience designing, implementing, or supporting automated security control validation processes, tooling, and infrastructure, to include strategic and continuous monitoring, audit resiliency, and/or evidence collection processes is highly desirable.
-
Experience with Microsoft Power Apps Platform, including Power Automate and Power BI, or other metric and reporting data structures is desirable.
-
Experience developing dashboards, metrics, assessment reports, or recurring assurance reporting from multiple data sources.
-
Familiarity with workflow automation platforms such as ServiceNow and assessment or evidence tracking platforms such as Optro (fka AuditBoard), Archer, or similar audit / GRC tools.
-
Knowledge of continuous monitoring, control validation, compliance automation, evidence collection, and remediation tracking concepts.
-
Strong analytical, communication, and stakeholder management skills, with the ability to translate technical evidence into business-focused recommendations. **
-
S kills / Knowledge** Having broad yet in-depth expertise and unique knowledge, uses skills to set and ensure success of company objectives and principles and to achieve goals in creative and effective ways within environments and situations that are complex and difficult. Having ownership of a function, major account, or matrix management responsibilities, uses knowledge to ensure success, strengthen relationships, expand the business through key initiatives, and lead matrix teams on complex projects.
-
Job Complexity - Works on issues that impact security assurance, technology risk management, control effectiveness, automation, reporting, and future concepts, products, or technologies. Creates formal networks with key decision makers and serves as a trusted partner to Information Security, Technology, Risk, Audit, and business stakeholders.
-
Supervision - Exercises wide latitude in determining objectives and approaches to critical assignments.
** About the team **
Our inclusive and global teams win together every day. We’re proud to have the best minds in the industry, who you can learn from as you grow your career. The people, the energy, the connections – it’s unmatched. Come and be part of an ever-evolving company and get dynamic opportunities that go beyond borders.
** What makes a Globalpayer? **
Globalpayers think like a client, act like an owner and win as one team. We’re curious and innovative – always finding better ways to deliver impact. We empower each other to make decisions, and it’s our passion that drives excellence in everything we set out to do.
Does this sound like you? Then you sound like a Globalpayer. Apply now to take your career global.
https://jobs.globalpayments.com/en/why-global-payments/benefits/
Applicant must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future ; We will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa).
Diversity and EEO Statements
Global Payments is an organization that stands against racism, intolerance and injustice in all its forms — one that respects, honors and celebrates the diversity of our team members and the differences among us. Our commitment to fostering a company culture that values and respects Inclusion and Diversity is steadfast. Standing together as one company, we will continue to work to drive positive change for the communities in which we live and work and stamp out injustice.
linkedin.com/in/shonali-r-66744622 -SB
Global Payments Inc. is an equal opportunity employer. Global Payments provides equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex (including pregnancy), national origin, ancestry, age, marital status, sexual orientation, gender identity or expression, disability, veteran status, genetic information or any other basis protected by law. If you wish to request reasonable accommodations related to applying for employment or provide feedback about the accessibility of this website, please contact jobs@globalpayments.com .