Overview
Associate Director – Third Party Cybersecurity Risk Assessor Jobs in Indianapolis, Indiana, USA at Eli Lilly and Company
Title: Associate Director – Third Party Cybersecurity Risk Assessor
Company: Eli Lilly and Company
Location: Indianapolis, Indiana, USA
Type: Full Time
Category: IT/Tech, Security
At Lilly, we unite caring with discovery to make life better for people around the world. We are a global healthcare leader headquartered in Indianapolis, Indiana. Our employees around the world work to discover and bring life-changing medicines to those who need them, improve the understanding and management of disease, and give back to our communities through philanthropy and volunteerism.
We give our best effort to our work, and we put people first. We’re looking for people who are determined to make life better for people around the world.
Actual compensation will depend on a candidate’s
education
, experience, skills, and geographic location. The anticipated wage for this position is $123,000 – $180,400
What You’ll Be Doing:
This role is a part of the Cybersecurity Governance team, responsible for analyzing proposed cybersecurity risks, validating their underlying basis and criticality/severity. You will prescribe risk treatment activities and monitor their completion. Your efforts will drive proactive process improvements and help maintain robust cybersecurity defenses.
This role is an individual contributor who will partner with the various business, Tech at Lilly, and larger information security teams to ensure third party technology is designed and deployed securely and aligned with Cybersecurity and enterprise technology strategies. This individual will perform business and technical security assessments and reviews, primarily for third parties providing product/services to Lilly. This position will be expected to complete high-quality business and technical security assessments across a
diverse
set of technologies and business functions, while producing high-quality reports for senior leaders.
How You’ll Succeed:
Conduct high-quality third-party assessments, but not limited to business processes, systems, products and services.
Produce high-quality reports regarding third-party assessments, and peer review others to match consistency.
Partner with service owners to understand and reduce risks associated with business processes, underlying systems, and/or third parties being assessed.
Identify and recommend appropriate measures to treat third party risks that reduce potential impacts on information resources to a level acceptable to the
senior management
of the company.
Efficiently and effectively triage proposed cybersecurity risks.
Collaborate with cybersecurity subject matter experts to develop patterns for risk analysis and treatments.
Provide insights to support ongoing monitoring and visibility of cybersecurity risks to relevant stakeholders.
Proactively identify process improvements to ensure ongoing and robust
communication
of cybersecurity risk.
As a strong verbal and written communicator, you will be able to interact with varying levels of staff and remote team members, to collectively enable and protect Lilly.
Contribute knowledge and learnings for the team on best practices for security controls, facilitation, partnering, and engagement to provide quality service.
What You Should Bring:
Prior cybersecurity, quality, risk management, and/or audit experience.
Knowledge of fundamental security principles, such as identity and access management, network security, endpoint secur…