Full-Time

Information Security GRC Specialist – Risk Program Lead

Posted on 10/14/2024

Western Digital

Western Digital

10,001+ employees

Provides data storage solutions and devices

Data & Analytics
Enterprise Software

Senior

Company Historically Provides H1B Sponsorship

Irvine, CA, USA

Hybrid work environment with 3 days in office.

Category
Cybersecurity
IT & Security
Requirements
  • Bachelor's degree in Information Security, Computer Science, or equivalent work experience.
  • 8+ years of experience in information security, including risk management, risk assessments, reporting, and metrics analysis, and hands-on with at least one of the following: security engineering, network security, identity and access management, security operations, and/or software development security.
  • 4+ years of experience in technical roles, or similar technical proficiency are highly desirable.
  • Proficiency in risk assessment methodologies, tools, and techniques.
  • Experience in conducting risk assessments, vulnerability assessments, and compliance audits.
  • Strong understanding of information security frameworks, standards, and best practices (e.g., ISO 27001, NIST, GDPR).
  • Experience in generating and interpreting information security metrics and reports.
  • Excellent analytical and problem-solving skills with attention to detail.
  • Strong communication and interpersonal skills, with the ability to explain complex security concepts to non-technical stakeholders.
  • Ability to work independently and collaboratively in a fast-paced environment.
  • Experience in building and maturing information security risk management practices.
  • Relevant certifications such as CISSP, CISM, CRISC, GSNA or similar are highly desirable.
  • Technical certifications such as GCIH, GPEN, CEH, OSCP or similar are highly desirable.
Responsibilities
  • Implement enterprise-wide risk management frameworks that aligns with industry standards (e.g. ISO27001, NIST, etc).
  • Lead technical and business process risk assessment activities to identify, evaluate, and prioritize information security risks across the organization, including threats, vulnerabilities, and potential impacts to information and technology assets.
  • Develop and drive implementation of effective risk management strategies to mitigate identified risks, ensuring alignment with industry best practices and regulatory requirements.
  • Collaborate across the organization to ensure the integration of risk management practices into organizational processes and projects.
  • Generate comprehensive reports and metrics to communicate the status of information security risks to stakeholders and leadership.
  • Analyze security data to identify trends, vulnerabilities, and areas for improvement.
  • Collaborate with internal and external auditors to facilitate security audits and assessments.
  • Stay current with industry trends, emerging threats, and best practices for information security and risk management.
  • Provide expert guidance and support in developing and maintaining information security policies, standards, and procedures.

Western Digital provides a variety of data storage solutions, including Network Attached Storage (NAS), Storage Area Network (SAN), private cloud, and hyper-converged infrastructure. Their products are designed to help businesses manage and store data efficiently and reliably. For example, their all-flash arrays are optimized for high input/output applications, while the JetStor brand offers cost-effective NAS and SAN arrays that support multiple host ports for improved performance. What sets Western Digital apart from its competitors is its extensive experience in the data storage market and its ability to cater to a wide range of clients, from large corporations to small businesses. The company's goal is to deliver high-value storage solutions that meet the diverse needs of its customers, ensuring they have the tools necessary for effective data management.

Company Stage

IPO

Total Funding

$927.9M

Headquarters

San Jose, California

Founded

2014

Simplify Jobs

Simplify's Take

What believers are saying

  • Western Digital's continuous product innovation, such as the 8TB WD Black SN850X SSD, positions it as a leader in high-performance storage solutions.
  • The company's expansion into new markets, including a $500,000 investment in new space in San Jose, indicates robust growth and development opportunities.
  • Strategic investments from firms like Los Angeles Capital Management LLC reflect strong market confidence and financial stability.

What critics are saying

  • The highly competitive data storage market requires Western Digital to continuously innovate to maintain its market position.
  • The company's broad product portfolio may lead to challenges in maintaining quality and consistency across all offerings.

What makes Western Digital unique

  • Western Digital's extensive product portfolio, including NAS, SAN, and hyper-converged infrastructure, caters to a wide range of clients from Fortune 500 companies to SMEs, unlike competitors who may focus on niche markets.
  • The company's focus on high-value storage solutions like the JetStor brand and all-flash arrays optimized for maximum I/O applications sets it apart in the data storage market.
  • Western Digital's commitment to innovation is evident in its recent launch of the world's largest 2TB 3D QLC flash memory chip, showcasing its technological leadership.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Paid sick leave & vacation time

Medical/dental/vision insurance

Life, accident, & disability insurance

Tax-advantaged flexible spending and health savings accounts

Employee assistance program

Tuition reimbursement

Employee stock purchase plan

Western Digital Savings 401(k) Plan

INACTIVE