Job Summary
Design and enhance enterprise governance risk and compliance frameworks for a multinational organization by creating robust security policies and standards aligning them with regulatory expectations and business objectives and ensuring practical implementation across hybrid work environments to protect data systems and card and payment processes while enabling secure innovation and sustainable growth for society through trusted digital services.
Responsibilities
Design and implement network segmentation DMZ
Microsegmentation removal of crossaccess
Traffic Network control DDOS Protection FWIPSWAF DNSWebFiltering DNS
Manage AWS network security
Design and implement network segmentation DMZ
Microsegmentation removal of crossaccess
Traffic Network control DDOS Protection FWIPSWAF DNSWebFiltering DNS
Manage AWS network security
Must have qualifications
Advanced or completed studies related to Technology andor Information Security
Knowledge and experience in
General Network Management and Security
Network Protocols TCPUDPIPTLSDHCP
Network Security Solutions IDSIPSWAFFW
PKI Digital Certificates
Security Controls and Auditing
Security Policies and Best Practices
IntermediateAdvanced English
- Develop and maintain comprehensive security governance frameworks that translate regulatory requirements and industry guidelines into actionable policies and standards adopted across the organization to strengthen overall resilience and trust in digital services.
- Design and refine security policies for data protection access control incident response and technology usage that support day to day operations while minimizing risk exposure and enabling business teams to deliver secure products and services.
- Oversee an enterprise wide process for security standards management that ensures technical baselines and control requirements are consistently defined periodically reviewed and effectively communicated to engineering and operations teams.
- Provide expert guidance to project and product teams on interpreting security policies and standards and on integrating appropriate security controls into solution designs across hybrid work models and modern technology platforms.
- Lead formal security risk assessments and control evaluations for critical business processes including card and payment services to identify control gaps prioritize remediation and support informed risk based decision making.
- Coordinate with internal audit and compliance stakeholders to align governance risk and compliance activities with audit findings and regulatory expectations ensuring timely closure of issues and clear accountability across functions.
- Drive implementation of security management processes such as exceptions handling risk acceptance and policy waivers that use consistent criteria and transparent documentation to balance innovation needs with risk appetite.
- Collaborate with information technology and business operations teams to embed security by design practices in solution development and change management so that security requirements are considered early and tracked through implementation.
- Monitor effectiveness of security policies and standards using metrics and key risk indicators and prepare clear reports and dashboards that help senior stakeholders understand security posture and areas requiring improvement.
- Guide integration of security governance requirements into vendor and third party management activities by defining minimum control expectations and reviewing assessments to safeguard shared data and outsourced services.
- Support security awareness and targeted training initiatives by translating policy and standard requirements into practical scenarios that help employees understand how their daily actions protect company assets and customer information.
- Evaluate emerging regulations industry frameworks and security trends and recommend updates to governance risk and compliance approaches to keep the organization aligned with best practices and competitive expectations.
- Contribute to incident preparedness by ensuring that response plans roles and decision processes are clearly documented in security management standards enabling coordinated action when events occur.
Qualifications
- Demonstrate extensive experience in security policy and standards management with a proven track record of drafting reviewing and implementing enterprise security policies that are pragmatic and aligned to international frameworks.
- Bring strong hands on expertise in security management including risk assessments control design and governance processes that support sustainable operations in complex multinational environments.
- Apply deep knowledge of security policies to guide technology and business stakeholders on how to operationalize requirements within infrastructure applications cloud services and user workflows.
- Utilize familiarity with card and payment domains to interpret specialized regulatory expectations and scheme rules and to shape governance and compliance practices that safeguard transaction data and payment operations.
- Employ advanced analytical and communication skills to produce clear documentation risk reports and executive summaries that make technical security topics understandable and actionable for non technical audiences.
- Use solid experience in hybrid working models and day shift operations to coordinate effectively with distributed teams ensuring policy adherence and consistent security practices across locations and functions.
关于高知特 (Cognizant)
高知特(Cognizant)(纳斯达克代码:CTSH)作为一家AI Builder和相关技术服务提供商,致力于通过打造全栈AI解决方案,帮助企业将人工智能投资转化为实际价值。公司凭借深厚的行业经验、流程优化和工程技术专长,将企业独特的业务场景融入科技系统,赋能组织释放人才潜能,推动切实成果,并帮助全球企业在瞬息万变的环境中保持领先。如需了解更多详情,敬请访问 cognizant.ai 或关注@cognizant。
补充雇佣信息
薪酬信息截至本职位发布之日为准。Cognizant 保留在适用法律允许的范围内随时修改该信息的权利。
申请人可能需要通过现场面试或视频会议的方式参加面试。此外,候选人在每次面试时可能需要出示其当前所在州或政府签发的有效身份证件。
Cognizant 是一家提供平等就业机会的雇主。在招聘过程中,您的申请和候选资格不会因种族、肤色、性别、宗教、信仰、性取向、性别认同、国籍、残疾、遗传信息、怀孕、退伍军人身份或任何其他受联邦、州或地方法律保护的特征而受到影响。







