Posted 14 days ago
I'm Interested
powertofly approved What S&P Global Has to Offer:

We met with women at S&P Global to hear about the teams they're leading, the products they're building and how they integrate work with life.

Hear directly from Irina, Megan, Sameena and Meredith.

Job Details

About the Role:

Grade Level (for internal use):


About the Role: Cyber Security Risk Engineer

The Team: Part of the Global Security Architecture team that is responsible for Security Consulting, Security Assessments and Measurement, Security Exceptions Management, New Security Technology Evaluation and Acquisitions and Divestitures. The Team is based in New York, Princeton, London, Hyderabad, Beijing and Shanghai.

Responsibilities and Impact: The Security Risk Measurement analyst will interact extensively with internal technology and business clients in order to review, assess and report on the maturity of the security controls of current and proposed solutions within S&P Global. The position is critical as the business is very dynamic and constantly evolving to Power the Markets of the Future.

  • Part of a team that enforces corporate, regulatory and risk management policy configurations. The position also assists in developing, implementing and maintaining corporate information security standards, technologies, processes and procedures.

  • Reviews and provides guidance on the controls relating to all S&P Global current and future solutions.

  • The role holder will look to ensure that the business adheres with expected minimum requirements and operates within agreed risk appetites for information, data and cyber security and ongoing assurance.

  • The role holder will be expected to understand areas of concern and in conjunction with stakeholders provide advice and guidance, recommendations and mitigations where required.

  • Serves as a subject matter expert for colleagues and line-of-business managers, and experience with multiple technologies, compliance requirements and risk analysis methodologies is crucial.

  • Improve efficiencies using automation and orchestration solutions to reduce manual work that can be done programmatically.

  • Influence tactical and strategic decisions.

  • Identify process efficiencies through analysis and metrics driven decision making

  • Responsible for the creation of guidance, security documentation and configuration practices.

  • Ensure systems are protected against threats through the deployment of Security controls.

  • Ensure guidance and assessment provides is aligned to regulatory and compliance requirement and local laws.

  • Administer best practices and required configuration standards for compliance and privacy law obligations.

  • Remain current with new security threats and assessing systems to ensure they can defend the business.

  • Provide metrics and other management information to leadership to ensure decision making is sound.

  • Perform other duties as assigned.

What We’re Looking For:

Basic Required Qualifications:

  • At least 5-7+ years’ experience in cybersecurity, including compliance and risk management with a system and network security engineering background.

  • Highly technical and analytical expertise, with a proven deep background in technology design, implementation and delivery.

  • Experience of aligning to a NIST controls framework.  Familiarity with the concepts of Security Control Frameworks

  • Experience in cloud computing technologies, including software-, infrastructure- and platform-as-a-service, as well as public, private and hybrid environments.

  • Extensive knowledge of traditional security controls and technologies, such as SIEM systems, IDS/IPS, public key infrastructure (PKI), IDAM systems, antivirus and firewalls, in addition to newer offerings such as endpoint detection and response (EDR), threat intelligence platforms, security automation and orchestration, deception technologies and application controls.

  • Experience driving measurable improvement in monitoring and response capabilities at scale.

  • Track record of acting with integrity, taking pride in work, seeking to excel, being curious and adaptable, and communicating effectively.

  • Experience of information security and Data protection practices in financial services.

  • Experience of working within cyber security and information security teams within an international business of scale and complexity

  • Bachelor’s degree in computer science, information assurance, MIS or related field, or equivalent.

Additional Preferred Qualifications:

  • Experience with Amazon Web Services (AWS) or Microsoft Azure.

  • Experience with one or more of the following: ISO 27001, NIST, Payment Card Industry Data Security Standard (PCI DSS), Health Information Portability and Accountability Act (HIPAA), Health Information Technology for Economic and Clinical Health (HITECH) Act, Sarbanes-Oxley Act (SOX) the General Data Protection Regulation (GDPR), Center for Internet Security (CIS) standards or Service Organization Controls (SOC) 2.

  • Working knowledge of Windows, Linux and Unix.

  • Highly trustworthy; leads by example.

Return to Work: Have you taken time out for caring responsibilities and are now looking to return to work? As part of our Return to Work initiative (link to career site page when available), we are encouraging enthusiastic and talented returners to apply, and will actively support your return to the workplace.

What’s In It For You?

Our Purpose:

Progress is not a self-starter. It requires a catalyst to be set in motion. Information, imagination, people, technology–the right combination can unlock possibility and change the world.

Our world is in transition and getting more complex by the day. We push past expected observations and seek out new levels of understanding so that we can help companies, governments and individuals make an impact on tomorrow. At S&P Global we transform data into Essential Intelligence®, pinpointing risks and opening possibilities. We Accelerate Progress.

Our People:

We're more than 35,000 strong worldwide—so we're able to understand nuances while having a broad perspective. Our team is driven by curiosity and a shared belief that Essential Intelligence can help build a more prosperous future for us all.

From finding new ways to measure sustainability to analyzing energy transition across the supply chain to building workflow solutions that make it easy to tap into insight and apply it. We are changing the way people see things and empowering them to make an impact on the world we live in. We’re committed to a more equitable future and to helping our customers find new, sustainable ways of doing business. We’re constantly seeking new solutions that have progress in mind. Join us and help create the critical insights that truly make a difference.

Our Values:

Integrity, Discovery, Partnership

At S&P Global, we focus on Powering Global Markets. Throughout our history, the world's leading organizations have relied on us for the Essential Intelligence they need to make confident decisions about the road ahead. We start with a foundation of integrity in all we do, bring a spirit of discovery to our work, and collaborate in close partnership with each other and our customers to achieve shared goals.


We take care of you, so you can take care of business. We care about our people. That’s why we provide everything you—and your career—need to thrive at S&P Global.

Our benefits include: 

  • Health & Wellness: Health care coverage designed for the mind and body.

  • Flexible Downtime: Generous time off helps keep you energized for your time on.

  • Continuous Learning: Access a wealth of resources to grow your career and learn valuable new skills.

  • Invest in Your Future: Secure your financial future through competitive pay, retirement planning, a continuing education program with a company-matched student loan contribution, and financial wellness programs.

  • Family Friendly Perks: It’s not just about you. S&P Global has perks for your partners and little ones, too, with some best-in class benefits for families.

  • Beyond the Basics: From retail discounts to referral incentive awards—small perks can make a big difference.

For more information on benefits by country visit: https://www.spglobal.com/en/careers/our-culture/

Diversity, Equity, and Inclusion at S&P Global:
At S&P Global, we believe diversity fuels creative insights, equity unlocks opportunity, and inclusion drives growth and innovation – Powering Global Markets. Our commitment centers on our global workforce, ensuring that our people are empowered to bring their whole selves to work. It doesn’t stop there, we strive to better reflect and serve the communities in which we live and work, and advocate for greater opportunity for all.


Equal Opportunity Employer

S&P Global is an equal opportunity employer and all qualified candidates will receive consideration for employment without regard to race/ethnicity, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, marital status, military veteran status, unemployment status, or any other status protected by law.  Only electronic job submissions will be considered for employment.  


If you need an accommodation during the application process due to a disability, please send an email to: EEO.Compliance@spglobal.com and your request will be forwarded to the appropriate person.  
US Candidates Only:  The EEO is the Law Poster http://www.dol.gov/ofccp/regs/compliance/posters/pdf/eeopost.pdfdescribes discrimination protections under federal law. 


20 - Professional (EEO-2 Job Categories-United States of America), IFTECH202.2 - Middle Professional Tier II (EEO Job Group)

Job ID: 293478
Posted On: 2024-04-04
Location: Gurgaon, Haryana, India
We're connecting diverse talent to big career moves. Meeting people who boost your career is hard - yet networking is key to growth and economic empowerment. We’re here to support you - within your current workplace or somewhere new. Upskill, join daily virtual events, apply to roles (it’s free!).
Are you hiring? Join our platform for diversifiying your team
Senior Lead Information Security Architect
I'm Interested