Skip to main content

Staff (Lead) Security Specialist, Information Security

Apply NowApply Later Job ID 10012399 Location Lake Buena Vista, Florida, United States Business The Walt Disney Company (Corporate) Date posted Aug. 12, 2022 Flex Type Hybrid

- This role is considered hybrid, which means the employee will work a portion of their time on-site from a Company designated location and the remainder of their time remotely.

Job Summary:

The Staff (one level above Senior) Security Specialist will provide security expertise to ensure new projects, existing systems and third-party service providers have required security, privacy, and compliance controls in place. The Specialist will coordinate and conduct periodic consultative sessions with system owners, perform security controls assessments, risk assessments and architectural reviews across the application portfolio. Results will be documented, including recommended remediation plans or mitigations for identified findings. The Specialist will provide periodic review and feedback for all new and existing security standards. The Specialist is also expected to mentor junior team members and educate our partners and customers to ensure security is something that everyone values and supports.

Responsibilities

  • Evaluate, provide guidance, and test system security for new projects and existing systems to ensure external regulations and internal policies protecting sensitive information (including personal information) are met throughout the data life cycle.  Areas of focus include but are not limited to encryption of sensitive information at-rest and in-transit; secure transmission, storage and retrieval of sensitive information; and redaction of sensitive information based on defined retention period.
  • Evaluate system compliance with information security policies and standards and prepare appropriate documentation.
  • Evaluate third party service provider compliance with information security policies and standards and prepare appropriate documentation.
  • Provide oversight of security remediation projects ensuring timely completion and validation of completion.
  • Support the Compliance Team on all internal/external audit engagements for all in scope applications.
  • Work closely with business partners, key stakeholders, and internal departments to evaluate current and future security and compliance strategies.
  • Execute security strategies, evaluating efforts to ensure the effectiveness and efficiency of the organization's IT Controls.
  • Develop execution plans to implement short and long term security goals.
  • Stay informed about information security trends, directions, and technologies in the technology industry and identify best practices and/or methodologies to implement in-house.

Basic Qualifications

  • 7+ years experience as security lead responsible for providing expertise on large-scale projects.
  • Highly skilled in conducting security assessments across a wide range of technologies.
  • Demonstrated experience with major cloud computing platforms (ex. Amazon Web Services, Google Cloud Platform, Azure).
  • 7+ years experience in identifying risk and development of mitigation plans. 
  • Demonstrated experience in a security program for a large and complex organization.
  • Knowledge of security related legislation/regulations with emphasis on PCI and privacy. 
  • Demonstrated problem solving skills with an ability to develop creative alternatives to complex problems, as well as continuous process improvement skills.
  • Demonstrated ability to handle sensitive information.
  • Ability to establish credibility and working relationships with a wide range of personnel, including operations, management, executive, and legal staff. 
  • Demonstrated professional written, verbal, and presentation communications skills.
  • Solid understanding of project management principles, including a demonstrated ability to multi-task effectively.
  • Proven ability to work effectively in a fast-paced environment as part of a high performance team.

Preferred Qualifications

  • Experience working in a multi-national and multicultural environment.
  • Ability to be flexible with work schedule and travel requirements.
  • Demonstrated strong organizational and time management skills.
  • Experience working for a public company.

Preferred Education

  • Master’s Degree or equivalent

Required Education

  • Bachelor's degree or equivalent experience in Computer Science, Management Information Systems, or related field.
  • Security accreditation (i.e., CISSP, GCIH, or CISM) or equivalent information security experience.
  • At least ten years of related IT experience.

About The Walt Disney Company (Corporate):

At Disney Corporate you can see how the businesses behind the Company’s powerful brands come together to create the most innovative, far-reaching and admired entertainment company in the world. As a member of a corporate team, you’ll work with world-class leaders driving the strategies that keep The Walt Disney Company at the leading edge of entertainment. See and be seen by other innovative thinkers as you enable the greatest storytellers in the world to create memories for millions of families around the globe.

About The Walt Disney Company:

The Walt Disney Company, together with its subsidiaries and affiliates, is a leading diversified international family entertainment and media enterprise with the following business segments: media networks, parks and resorts, studio entertainment, consumer products and interactive media. From humble beginnings as a cartoon studio in the 1920s to its preeminent name in the entertainment industry today, Disney proudly continues its legacy of creating world-class stories and experiences for every member of the family. Disney’s stories, characters and experiences reach consumers and guests from every corner of the globe. With operations in more than 40 countries, our employees and cast members work together to create entertainment experiences that are both universally and locally cherished.

This position is with Disney Worldwide Services, Inc., which is part of a business we call The Walt Disney Company (Corporate).

Disney Worldwide Services, Inc. is an equal opportunity employer. Applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status. Disney fosters a business culture where ideas and decisions from all people help us grow, innovate, create the best stories and be relevant in a rapidly changing world.

Apply NowApply Later

Watch Our Jobs

Sign up to receive new job alerts and company information based on your preferences.

For Disney Job Alerts to work, JavaScript must be enabled in your browser.