Security Specialist, Corrective Action

56 Minutes ago • 3 Years + • Cyber Security

Job Summary

Job Description

The Security Specialist, Corrective Action at Disney's Global Information Security (GIS) group will facilitate remediation and corrective action for security gaps and vulnerabilities identified through assessments. This includes addressing issues found in internal assessments, vulnerability scans, penetration tests, and regulatory compliance checks (PCI, EU data privacy). Responsibilities involve collaborating with IT and business partners, developing remediation plans, verifying compliance with security standards (CIS Benchmarks, NIST, TWDC policies), documenting progress, communicating results, and recommending security improvements. The role requires strong communication, problem-solving, and analytical skills.
Must have:
  • 3+ years cybersecurity experience
  • Corrective action facilitation
  • Security framework understanding
  • Analytical & problem-solving skills
  • Experience with Archer
  • Excellent communication skills
Good to have:
  • PCNSE, Security+, CySA+, CCNA Cyber Ops, AWS, GSEC, GICSP, CISSP
  • CISSA, CISM, GCCC, GSNA certifications

Job Details

Job Summary:

At Disney, we’re storytellers. We make the impossible, possible. The Walt Disney Company is a world-class entertainment and technological leader. Walt’s passion was to continuously envision new ways to move audiences around the world—a passion that remains our touchstone in an enterprise that stretches from theme parks, resorts and a cruise line to sports, news, movies and a variety of other businesses. Uniting each endeavor is a commitment to creating and delivering unforgettable experiences — and we’re constantly looking for new ways to enhance and protect these exciting experiences.

The Global Information Security (GIS) group provides services and solutions to protect the value and use of Disney’s information through risk evaluation, collaboration, standardization, enforcement, and education across the enterprise. We protect the brand and reputation while enabling and supporting business objectives. GIS teams are located in Seattle, Burbank, and Orlando.

Disney Experiences is required to address security control gap issues identified through various assessment programs.  A cybersecurity corrective action job involves developing and implementing plans to address security gaps and vulnerabilities.  This includes issues identified through internal assessments against corporate policy, vulnerability scanning, penetration testing, and regulatory issues identified through compliance program assessments such as PCI and EU data privacy.

This role is responsible for facilitating remediation and corrective action activities with IT and business partners. This role involves communication, collaboration, negotiation, and holding partners accountable. This role collaborates with multiple teams to coordinate the implementation of security improvements that mitigate risks and enhance the organization's overall security posture.

Develops and evaluates compliance with programs and processes to mitigate cybersecurity risk and ensure protection of company and allied assets and information.  Reviews and enhances network systems and processes for compliance with external regulations and internal standards.  Proactively identifies non-conforming areas and assesses risk.  Recommends and implements compliance measures.  Provides leadership on compliance issues to solve challenging security compliance problems.  Ensures documentation and reporting in support of analysis.  Stays current on evolving legislative / regulatory changes related to security compliance. 

What You'll Do

  • Review reports, assessments, and findings to identify remediation and/or corrective action needed.
  • Coordinate with IT and business partners to facilitate necessary remediation and corrective action.
  • Verify remediation and corrective action activity achieves compliance against security standards such as CIS Benchmarks, NIST, and TWDC policies and standards.
  • Document open items in status reports, including next steps, dependencies, and stakeholders.
  • Communicate results to stakeholders, including technical and non-technical audiences.
  • Provide recommendations to improve security posture.
  • Assist in improving security baselines and standards.
  • Stay updated on evolving security guidelines and incorporate them into IT and business practices.
  • Stay informed on emerging threats and vulnerabilities.
  • Proactively recommend adjustments to mitigate risks.

Required Qualifications & Skills 

  • 3+ years of related cybersecurity experience
  • Demonstrated experience facilitating corrective action.
  • Ability to work well with individuals and teams with varying technical and business backgrounds.
  • Understanding of security frameworks and standards.
  • Analytical thinking and attention to detail.
  • Established problem-solving skills with an ability to develop creative alternatives to complex problems, as well as continuous improvement process skills 
  • Demonstrated ability to handle confidential information. 
  • Experience with IT security venerability programs (specifically Archer) within a large and complex organization.
     

Required Education 

  • Bachelor’s degree and/or equivalent work experience

Preferred Education:

  • One or more general security certifications including PCNSE, Security+, CySA+, CCNA Cyber Ops, AWS, GSEC, GICSP, CISSP, or other relevant certifications
  • One or more vulnerability assessment or auditing certification including CISSA, CISM, GCCC, GSNA or other relevant certifications

Similar Jobs

Turbulent - Fullstack Developer

Turbulent

Montreal, Quebec, Canada (On-Site)
4 Weeks ago
Bazaarvoice - Staff DevOps Engineer

Bazaarvoice

Bengaluru, Karnataka, India (Hybrid)
4 Months ago
King - Senior Cloud Security Engineer

King

Barcelona, Catalonia, Spain (On-Site)
1 Month ago
LSEG (London Stock Exchange Group) - Lead Quality Engineer

LSEG (London Stock Exchange Group)

Bengaluru, Karnataka, India (On-Site)
6 Months ago
Paypal - Lead Principal ML Engineer, AI Solutions

Paypal

San Jose, California, United States (On-Site)
4 Months ago
PwC - Manager / Senior Manager Cyber Technology and Transformation

PwC

Zürich, Zurich, Switzerland (On-Site)
4 Months ago
Palo Alto Networks - Solutions Consultant - Strategic Accounts

Palo Alto Networks

London, England, United Kingdom (On-Site)
3 Months ago
Palo Alto Networks - Domain Consultant - Security Operations Transformation

Palo Alto Networks

Newark, New Jersey, United States (Remote)
3 Months ago
Axinous - Snr Customer Success Manager, Germany

Axinous

Germany (Remote)
1 Month ago
Dynamics - Software Security Engineer (SEVIS)

Dynamics

(Remote)
2 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Dream11 - SDE 3 - Backend

Dream11

Mumbai, Maharashtra, India (On-Site)
4 Months ago
Hudl - Senior Engineer - Frontend Platform

Hudl

London, England, United Kingdom (Remote)
2 Months ago
ION - Senior Software Engineer, Italy

ION

Pisa, Tuscany, Italy (On-Site)
4 Months ago
Neostella - Python Developer

Neostella

Mexico City, Mexico City, Mexico (Hybrid)
3 Months ago
PAPAYA - R&D Group Leader

PAPAYA

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
2 Months ago
seeking alpha - Senior Back-End Developer

seeking alpha

Ukraine (Remote)
1 Week ago
Fortis Games - Staff Security Operations Engineer

Fortis Games

Spain (On-Site)
1 Month ago
Brillio - Enterprise Architect, AWS - R01535258

Brillio

Bengaluru, Karnataka, India (Hybrid)
3 Months ago
Hawk Eye Innovations - Backend Java Engineer - Contract

Hawk Eye Innovations

London, England, United Kingdom (On-Site)
6 Days ago
Microsoft - Technical Program Manager

Microsoft

Prague, Prague, Czechia (Remote)
1 Month ago

Get notifed when new similar jobs are uploaded

Jobs in Orlando, Florida, United States

Hasbro - Product Architect - Dungeons & Dragons

Hasbro

Renton, Washington, United States (On-Site)
3 Months ago
Twitch - Software Engineer I - iOS

Twitch

San Francisco, California, United States (On-Site)
1 Month ago
ByteDance - Tech Lead Software Engineer- Programming Language (San Jose, CA)

ByteDance

San Jose, California, United States (On-Site)
2 Months ago
Nintendo - Systems Engineer (Windows/Client Engineering)

Nintendo

Redmond, Washington, United States (Hybrid)
2 Months ago
Tribe Gaming - Social Media Intern

Tribe Gaming

Austin, Texas, United States (Hybrid)
3 Months ago
Probably Monsters - Senior Technical Artist

Probably Monsters

Dallas, Texas, United States (Hybrid)
6 Months ago
Bitwise Alchemy - Senior Engine Programmer

Bitwise Alchemy

Texas, United States (Remote)
7 Months ago
Postman - Senior Product Marketing Manager

Postman

San Francisco, California, United States (On-Site)
3 Months ago
Kokotree - Artificial Intelligence Developers

Kokotree

Wilmington, North Carolina, United States (On-Site)
3 Months ago
AI Fund - General Manager - New Business Unit (College Admissions)

AI Fund

California, United States (Remote)
3 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Appirits - Security Engineer

Appirits

Tokyo, Japan (Hybrid)
1 Week ago
PwC - ISP Compliance Specialist

PwC

Prague, Prague, Czechia (On-Site)
1 Month ago
Barracuda Networks  Inc  - Senior Software Engineer - IP/IR

Barracuda Networks Inc

Bengaluru, Karnataka, India (On-Site)
3 Months ago
PwC - IN_Senior Associate_Internal Audit_Internal Audit Services_Advisory_Gurgaon

PwC

Gurugram, Haryana, India (On-Site)
3 Months ago
PwC - Cyber Risk & Reg HI - Process Audit - BLR/HYD/KOL

PwC

Kolkata, West Bengal, India (On-Site)
2 Months ago
Barracuda Networks  Inc  - Senior Machine Learning Engineer

Barracuda Networks Inc

Bengaluru, Karnataka, India (On-Site)
3 Months ago
Wind River Systems - Star Lab - Field Applications Engineer, System Architect

Wind River Systems

Huntsville, Ontario, Canada (Hybrid)
3 Months ago
PwC - Technologie & Operation Intern

PwC

Pointe-Noire, Kouilou, Republic Of The Congo (On-Site)
3 Months ago
Western Digital - Manager, Security

Western Digital

Bengaluru, Karnataka, India (On-Site)
4 Months ago
Assystems - SOC L1 Analyst

Assystems

Gurugram, Haryana, India (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded

About The Company

From classic animated features and exhilarating theme park attractions to cutting edge sports coverage, and the hottest shows on television, The Walt Disney Company has been making magic since 1923, creating unforgettable stories that connect with audiences around the world. And we’re just getting started!

The key to our success…. The Cast, Crew, Imagineers and Employees who honor Disney’s rich legacy by stretching the bounds of imagination to create the never-before-seen, bringing unparalleled entertainment experiences to people of all ages. Begin a career that delivers unparalleled creative content and experiences to audiences around the world and just imagine the stories you could be part of…

What is #LifeAtDisney like? It’s a series of magical moments with cast members and employees developing and telling our stories in the most innovative ways. Whether it’s a day spent as a Disney VoluntEAR, or celebrating the release of a new interactive experience, retail product or movie, our days are filled with the knowledge that we are creating entertainment experiences the whole family can enjoy. Follow @DisneyCareers on Facebook, Twitter and Instagram for a peek behind-the-curtain, and discover how you could connect to a world of stories with Disney!

Connecticut, United States (On-Site)

Glendale, California, United States (On-Site)

Île-de-France, France (On-Site)

Île-de-France, France (On-Site)

Munich, Bavaria, Germany (On-Site)

Burbank, California, United States (On-Site)

Burbank, California, United States (On-Site)

Washington, District Of Columbia, United States (On-Site)

Glendale, California, United States (On-Site)

Singapore, Singapore (On-Site)

View All Jobs

Get notified when new jobs are added by The Walt Disney Company

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug