跳到内容

通用信息

地点:Bucharest, Romania 
角色 ID
208995
工作人员类型
Regular Employee
工作室/部门
CTO - Security
弹性工作安排
Hybrid

描述和要求

Electronic Arts 打造更高层次的娱乐体验,激励世界各地的玩家和粉丝。在这里,每个人都是故事的主角。活跃社群,畅联全球。这里充满创造力,鼓励新观点,注重好创意。这是一支人人都能让游戏成为现实的团队。

We are EA

 

And we make games – how cool is that? In fact, we entertain millions of people across the globe with the most amazing and immersive interactive software in the industry. But making games is hard work. That’s why we employ the most creative, passionate people in the industry.

 

Technology Group 

We fuel the engine that enables us to make world class games

We power the services and platforms that inspire the world to play

We secure our information and services that support fair play and customer trust

We develop technology services that accelerate productivity and improve capabilities across the business

 

GRC Analyst

  • The IT Governance, Risk and Compliance (GRC) Analyst is responsible for supporting day-to-day activities across EA’s Security Governance, Risk and Compliance programs.
  • The GRC Analyst will work under the guidance of the GRC Security Operations Manager to assist with the Third-Party Security Risk Assessment program. The job involves participating in the assessment of security, risks, and control effectiveness for applications, infrastructure, and technology projects. The candidate will document assessment results, recommend corrective actions, track remediation, evaluate policy and control standard exceptions, and report to management.
  • The candidate should have foundational knowledge of various multi-platform operating systems and databases. This position will also involve process improvements, overcoming barriers to success, building professional relationships across EA Security pillars, and briefing senior leaders.


Key responsibilities

  • Assist in reviewing and assessing technical security controls for third-party vendors, primarily around logical network architecture.
  • Help develop and implement processes around risk identification, assessment, and remediation, including issues management, exception management, vendor risk management, policy management, and security incident and vulnerability response.
  • Support GRC efforts for information risk, network security, and system security by conducting analysis and aiding in the improvement of risk management capabilities.
  • Help manage EA’s policy exceptions, identifying rationale and risks underlying exception requests, evaluating the effectiveness of compensating controls, and making recommendations.
  • Coordinate and participate in the creation and maintenance of IT policies and network security standards, such as network perimeter security standards and remote access.
  • Participate as a subject matter expert on governance and project management teams to ensure risk and compliance are integrated into all projects and initiatives.
  • Assist in coordinating the ITGC design for in-scope applications – SOX IT.

 

Experience and skills:

  • This role requires a variety of strengths and capabilities, including:
  • Bachelor’s degree or equivalent experience.
  • Two (2) years' experience in information technology is preferred.
  • Foundational knowledge in information technology such as hardware, networking, architecture, protocols, file systems, and operating systems. Familiarity with application and/or database development and system administration. Basic understanding of network security architectures (internal/external), firewall technologies, and knowledge of TCP/IP protocol suite (includes secure protocols)

 

Bonus points:

  • Professional certifications in security, privacy risk management and audit areas are highly desirable, such as: CISSP, CRISC, CISM, CISA, CIPP, CIPT, CPA, CAP;
  • Passionate about security.
  • Experience with NIST Cybersecurity Framework
  • Experience with ISO 27001


Electronic Arts
我们拥有全面的游戏组合和丰富的体验,在世界各地设有分支机构,而且在整个 EA 提供大量机会。我们非常重视适应能力、韧性、创造力和好奇心。我们提供领导岗位让您发挥潜力,为学习和尝试提供空间,赋能您出色地完成工作并寻求成长的机会。

我们的福利计划十分全面,注重身体、情感、财务、职业和社区幸福感,提供带薪休假、育儿假以及免费游戏等更多福利来助力大家维持生活平衡。我们营造和谐的环境,让各个团队始终都能尽展所能。

Electronic Arts 是一个注重机会平等的雇主。在聘用员工时不会考虑其种族、肤色、国籍、血统、生理性别、社会性别、性别认同或表达、性取向、年龄、遗传信息、宗教、身心障碍、医疗状况、怀孕状况、婚姻状况、家庭状况或兵役状况,或任何受法律保护的其他特征。我们也会遵守相关法律,考虑招聘有过犯罪记录的合格应聘者。EA 还会根据适用法律的要求,为合资格的残障人士提供工作场所的便利。