Job Posting Title:
Associate Security Specialist, Corrective ActionReq ID:
10113166Job Description:
At Disney, we’re storytellers. We make the impossible, possible. The Walt Disney Company is a world-class entertainment and technological leader. Walt’s passion was to continuously envision new ways to move audiences around the world—a passion that remains our touchstone in an enterprise that stretches from theme parks, resorts and a cruise line to sports, news, movies and a variety of other businesses. Uniting each endeavor is a commitment to creating and delivering unforgettable experiences — and we’re constantly looking for new ways to enhance and protect these exciting experiences.
The Global Information Security (GIS) group provides services and solutions to protect the value and use of Disney’s information through risk evaluation, collaboration, standardization, enforcement, and education across the enterprise. We protect the brand and reputation while enabling and supporting business objectives. GIS teams are located in Seattle, Burbank, and Orlando.
Corporate is required to address security control gap issues identified through various assessment programs. A cybersecurity corrective action job involves developing and implementing plans to address security gaps and vulnerabilities. This includes issues identified through internal assessments against corporate policy, vulnerability scanning, penetration testing, and regulatory issues identified through compliance program assessments such as PCI and EU data privacy.
What You'll Do
Review reports, assessments, and findings to identify remediation and/or corrective action needed.Coordinate with IT and business partners to facilitate necessary remediation and corrective action.Verify remediation and corrective action activity achieves compliance against security standards such as CIS Benchmarks, NIST, and TWDC policies and standards.Document open items in status reports, including next steps, dependencies, and stakeholders.Communicate results to stakeholders, including technical and non-technical audiences.Provide recommendations to improve security posture.Assist in improving security baselines and standards.Stay updated on evolving security guidelines and incorporate them into IT and business practices.Stay informed on emerging threats and vulnerabilities.Proactively recommend adjustments to mitigate risks.
Required Qualifications & Skills
Required Education
Bachelor's degree or equivalent experience in Cyber Security, Computer Science, Management Information Systems, or related field.Preferred Education
One or more general security certifications including PCNSE, Security+, CySA+, CCNA Cyber Ops, AWS, GSEC, GICSP, CISSP, or other relevant certificationsOne or more vulnerability assessment or auditing certification including CISSA, CISM, GCCC, GSNA or other relevant certificationsJob Posting Segment:
Enterprise TechnologyJob Posting Primary Business:
Corporate Global Information SecurityPrimary Job Posting Category:
Security GovernanceEmployment Type:
Full timePrimary City, State, Region, Postal Code:
Orlando, FL, USAAlternate City, State, Region, Postal Code:
Date Posted:
2025-02-19