Company Overview
With 80,000 customers across 150 countries, UKG is the largest U.S.-based private software company in the world. And we’re only getting started. Ready to bring your bold ideas and collaborative mindset to an organization that still has so much more to build and achieve? Read on.
At UKG, you get more than just a job. You get to work with purpose. Our team of U Krewers are on a mission to inspire every organization to become a great place to work through our award-winning HR technology built for all.
Here, we know that you’re more than your work. That’s why our benefits help you thrive personally and professionally, from wellness programs and tuition reimbursement to U Choose — a customizable expense reimbursement program that can be used for more than 200+ needs that best suit you and your family, from student loan repayment, to childcare, to pet insurance. Our inclusive culture, active and engaged employee resource groups, and caring leaders value every voice and support you in doing the best work of your career. If you’re passionate about our purpose — people —then we can’t wait to support whatever gives you purpose. We’re united by purpose, inspired by you.
Primary job responsibilities/ description include:
(1) To perform and support technical risk assessments on various technologies, systems, and processes of cloud environments in UKG.
(2) To perform continuous monitoring activities to confirm the control environment is operating effectively and escalate identified deviations and track those towards resolutions.
(3) To support and actively collaborate with stakeholders to ensure control activities are designed and implemented appropriately to protect the security, confidentiality, privacy, integrity, and availability of data in compliance with company’s policies and standards.
(4) To utilize industry experience and knowledge to provide expertise and support to ensure company’s security framework remains in compliance with applicable regulations and internal policies and standards.
(5) To provide expertise in support of new cloud environment activities and projects to ensure it complies with information security and privacy standards.
(6) To assist with audits of SSAE18 SOC 1, SOC 2, and ISO compliance. Contribute risk and compliance expertise and support to assist in the achievement of cloud audit/compliance programs.
(7) To facilitate the exception and exemption processes for company’s policies and standards.
(8) To support the development, implementation, and updating of relevant documentation (e.g. narratives, how-to documents, procedures, etc.).
(9) To identify relevant key performance indicators (KPIs) and perform required reporting to quantify the effectiveness of controls implemented for risk management activities.
(10) To perform additional duties and projects as assigned by management.
Qualifications
(1) Bachelor of Engineering (B.E.) or Bachelor of Technology (B.Tech.) degree in Computer Science or IT audit related discipline or equivalent experience.
(2) A minimum of 4-5 years' work experience in information security governance and risk functions (such as IT audit or IT Risk Management).
(3) Experience with information security frameworks including, SOC 2 or ISO27001/17/18 or ITGC audits.
(4) Experience in risk and issue management (identification, assessment, mitigation/ treatment, tracking, escalations).
(5) Experience in Security Monitoring of IT processes or IT Processes Testing (monitoring or testing of IT processes, such as, Problem, Incident, Change, Backup, Endpoint Protection/ Antivirus, Logical Access, Patch, Servers, Operating Systems, Databases and Networks). The candidate should've security/ risk related working experience at least to some of these processes, if not on all of these.
(6) Experience in working closely together with business/ stakeholders for risks and issues identification and resolution.
(7) Experience in Reporting or Metrics or KPI to measure effectiveness of controls.
(8) Familiarity or Experience with Governance, Risk and Compliance (GRC) tools, reporting and tracking.
(9) Strong verbal and written communication skills.
(10) Knowledge or Experience working in Cloud environment from security/ risk standpoint (preferred).
(11) CISSP, CRISC, CISA or similar security certification preferred.
Where we’re going
UKG is on the cusp of something truly special. Worldwide, we already hold the #1 market share position for workforce management and the #2 position for human capital management. Tens of millions of frontline workers start and end their days with our software, with billions of shifts managed annually through UKG solutions today. Yet it’s our AI-powered product portfolio designed to support customers of all sizes, industries, and geographies that will propel us into an even brighter tomorrow!
UKG is proud to be an equal-opportunity employer and is committed to promoting diversity and inclusion in the workplace, including the recruitment process.
Disability Accommodation
For individuals with disabilities that need additional assistance at any point in the application and interview process, please email UKGCareers@ukg.com