Information Security Specialist Job at ForgeRock, Bristol

QVlRaXpoaXhlZXlFZ3JkNEc0Y1F6UT09

Job Description

About ForgeRock:

In today's highly connected digital world, understanding, managing and securing the identity of individuals and things is essential to safety and success of both businesses and their customers. Billions of people connect from anywhere, use a wide variety of devices and expect a seamless yet secure experience.

The ForgeRock mission is to provide the most simple and comprehensive Identity and Access Management Platform to help our customers deepen their relationships with their consumers and improve the productivity and connectivity of their employees and partners. Our identity solution enables great digital experiences and is embedded with a rich set of security, privacy and consent features. We deliver our platform through both cloud services and on-premises software.

Our customers are some of the biggest companies, organizations, and even countries in the world. On any given day, it's likely that the ForgeRock Identity Platform helped keep your data safe, gave you access to stuff, and supported trusted relationships between you, companies and the devices you were using.

ForgeRock is headquartered in San Francisco, but we are a global company with offices in the following cities: Vancouver, WA; Austin, TX; Bristol, UK; Grenoble FR; Oslo NO; and Singapore. Please read more about us at forgerock.com or follow ForgeRock on Twitter at http://www.twitter.com/forgerock.


The Role:

As an Information Security Analyst, you will work under the direction of the Information Security Manager and CISO to develop, maintain and optimise ForgeRock's ISMS and related procedures, partnering with stakeholders to continuously advance ForgeRock's security standards. You will be responsible for performing security compliance assessments and audits across ForgeRock's processes, staff and technology stack, and that of our partners and suppliers, developing associated reporting capabilities, and ensuring risk treatment is managed appropriately in accordance with ForgeRock's security policies and related procedures.


Responsibilities:

  • Work closely with ForgeRock's customer-facing functions to respond to customer queries and requests for information about the company's security and risk posture;
  • Work with the Information Security Manager and CISO to develop and optimise ForgeRock's internal compliance program and related policies and procedures;
  • Work with multiple teams to drive compliance and collaboration with the security compliance program across the business;
  • Work with technical teams to expand the internal compliance program across ForgeRock's technology stack;
  • Develop and perform internal audits across the organisation on a regular basis;
  • Interact with internal and external auditors to enable audits, subsequently tracking and managing audit actions to delivery;
  • Document and report control deficiencies and gaps to internal stakeholders and work closely with internal stakeholders to develop and implement suitable remediations;
  • Ensure suitable due diligence and oversight of third party and supplier risk: performing risk assessments and conducting audits of critical suppliers as required;
  • Develop and optimise ForgeRock's Risk Management Program and work with relevant stakeholders to treat, remediate and minimise risk across the organisation.
  • Develop, monitor and report security risk and compliance metrics and trends to relevant stakeholders;

Skills & Qualifications (required):

  • At least 5 years' experience working in a security governance, risk and compliance role within the IT industry
  • Good knowledge and understanding of ISO 27001 and its application to corporate procedures
  • Experience of information security risk management
  • Experience of third party and supplier risk management
  • Excellent communication and collaboration skills

Skills & Qualifications (desirable):

  • Experience with SOC 2, ISO 27017 and CSA CCM v4.0.2
  • Experience working with cloud-based technologies (GCP, AWS, Azure)
  • ISO 27001 Lead Implementer, CISSP, CISM, CISA or equivalent industry standard certification
  • Experience with GRC practices within the context of software development
  • Proven management & delivery of GRC-related projects and project deliverables

Life at ForgeRock:

We believe in and facilitate a flexible, collaborative work environment. We're growing quickly, but remain true to the innovative, can-do startup values that got us here. Most importantly, we keep hiring talented, smart, fun, and genuinely nice people because that's who we want to succeed with every day.

Here are just a few of the things that make ForgeRock special:

  • A company culture that empowers you to do your best work.
  • Employee Resource Groups that create a sense of belonging for everyone.
  • Regular company and team bonding events.
  • Competitive benefits and perks.
  • Recognition programs that reward employees with meaningful experiences.
  • Global volunteering and community initiatives

ForgeRock is the collective sum of all our individual experiences, backgrounds and influences and we pride ourselves in growing and learning together. We are committed to building an inclusive and diverse environment where everyone's individuality is respected and everyone has an Identity. In recruiting for new colleagues, we welcome the unique contributions you can bring and encourage you to be your best self.


We are an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex including sexual orientation and gender identity, national origin, disability, protected Veteran Status, or any other characteristic protected by applicable federal, state, or local law.

Similar Jobs

Stafforce

Greenhouse Worker Job at Stafforce

There are flexible shifts available to work around you and your circumstances.*. Own transport is required due to Locations (no public transport)*.

Quorum Business Solutions

Director of Accounting Job at Quorum Business Solutions

Direct the preparation of accounting and financial reports for legacy Aucerna and EC/DW operations in Canada, USA, Argentina, Colombia, UK, Spain, Netherlands,

Mott MacDonald

Entry Level Trainee Manager Job at Mott MacDonald

Working alongside IT Procurement, Purchasing and Asset Management teams to deliver value for money and reduced risks to Mott MacDonald through supplier

Bupa Care Homes

Care Assistant Job at Bupa Care Homes

Requisition Title : Care Assistant Job Number: ARB00G3 Arbrook House 36 Copsem Lane Esher KT10 9HE Salary Amount 10.95 - 11.85 Care

Flow Recruitment Ltd

Nursery Assistant Job at Flow Recruitment Ltd

Our client believes nurseries are more important than ever before. As well as being crucial years for a childs development and preparation for life in the modern world, they also create a