• Expertini Resume Scoring: Our Semantic Matching Algorithm evaluates your CV/Résumé before you apply for this job role.
United States Jobs Expertini

Risk Analyst - Cybersecurity Risk & Controls Job Opening In Pittsburgh – Now Hiring Wabtec Corporation


Job description

It’s not just about your career or job title… It’s about who you are and the impact you will make on the world.

Because whether it’s for each other or our customers, we put People First.

When our people come together, we Expand the Possible and continuously look for ways to improve what we create and how we do it.

If you are constantly striving to grow, you’re in good company.

We are revolutionizing the way the world moves for future generations, and we want someone who is ready to move with us.

**Who will you be working with?**

Join Enterprise Information Security (EIS) to drive cybersecurity excellence leveraging intelligence, strategic partnerships, and analysis.

Collaborate daily with GRC, Architecture, Operations, and key Information Technology stakeholders to advance our information security capabilities.

**How will you make a difference?**

As a member of ISA team, Wabtec is looking for a **Senior Cybersecurity** **Risk & Controls Analyst** .

This role reports to the ISA Sr Manager within EIS, and will be responsible for building, developing, implementing, and operating a strategic Risk & Controls Management program to protect Wabtec and its stakeholders while supporting our strategic objectives.

In this position, you will assume a leading role in driving the organization’s information security risk management efforts through the identification, assessment, and remediation of security risks, ensuring the protection of critical assets, the implementation of adequate security controls and compliance with legal, statutory, regulatory and contractual requirements.

Additionally, you will play a pivotal role in fostering a risk-aware culture across the organization, promoting awareness of security risks and empowering employees to actively contribute to the organization’s risk posture.

You will collaborate cross-functionally with IT and with Business stakeholders to develop and implement robust security strategies and practices, guiding the organization towards a mature and resilient security posture.

**What do we want to know about you?**

_You must have:_

+ Bachelor’s degree in Business, Technology, Cyber Security, Technology Risk Management or related field or strong hands-on experience.
+ 3+ years experience in Security & Risk management.
+ Prior experience in IT or Cybersecurity, supporting systems or developing/supporting applications.

Knowledge of technical controls and ability to describe them to business/system owners
+ Knowledge of industry Risk management frameworks, common mitigation practices, and Organizational control management.
+ Demonstrate professional skepticism to ensure evidence is sufficient when assessing the relevant information security controls.
+ Demonstrate an understanding of business processes, internal risk management strategies, IT controls, and how they interact together.
+ Demonstrate proficiency in process formulation and improvement.
+ Knowledge of operational security capabilities including access control, network security, secure configuration and vulnerability management, intrusion detection, security monitoring and incident response.
+ Proven solid written and oral communication skills with the ability to effectively communicate status, risks, and remediations to executive management.

_We would love it if you had:_

+ ISO 27001 and NIST CSF knowledge is highly desirable.
+ Governance and Risk Certification a plus (CRISC, CISM, CISA, or CISSP)

**What will your typical day look like?**

**Risk Management Program Development:**

+ Design and implement a comprehensive risk management framework tailored to the organization's needs.
+ Establish risk assessment methodologies, including threat modeling and vulnerability scoring systems.
+ Develop policies, procedures, and guidelines for risk identification, analysis, and mitigation.
+ Create risk reporting structures and dashboards for effective communication to stakeholders.

**Risk Identification, Assessment, Analysis and Mitigation Strategy:**

+ Conduct initial organization-wide risk assessments to establish a baseline risk profile.
+ Lead risk assessments to identify and prioritize security threats across systems.
+ Prioritize and categorize identified risks based on potential impact and likelihood.
+ Analyze the effectiveness of existing controls and recommend improvements.
+ Collaborate with stakeholders to formulate risk treatment plans and mitigation strategies aligned with business objectives.
+ Implement and oversee the execution of risk remediation initiatives.

**Control Assessment and Policy Alignment**

+ Develop and maintain a comprehensive inventory of security controls and associated policies across the organization
+ Perform gap analysis between existing controls/policies and industry best practices or regulatory requirements
+ Implement processes to regularly evaluate the effectiveness of security controls and the adherence to established policies
+ Recommend improvements to controls and policies based on assessment findings
+ Collaborate with relevant teams to enhance or implement new controls and policies to address identified gaps

**Risk-Aware Culture Cultivation:**

+ Drive pragmatic outcomes balancing risk with business objectives
+ Establish channels for risk reporting and feedback from employees across departments.
+ Foster a culture of accountability in risk management across the organization.
+ Collaborate with leadership to integrate risk considerations into decision-making processes.

**Continuous Improvement and Adaptation:**

+ Establish metrics and KPIs to measure the effectiveness of the risk management program.
+ Regularly review and update the risk management framework to address emerging threats.
+ Stay informed on industry best practices and regulatory changes to enhance the program.
+ Foster partnerships with internal and external stakeholders to evolve risk management capabilities.

**What about the physical demands of the job?

(Usual office job examples)**

+ Regularly remaining in a stationary position, often standing or sitting for prolonged periods
+ Regularly communicating with others to exchange information
+ Regularly required to attend meetings in person and virtually using video and audio computer equipment
+ Regularly repeating motions that may include the wrists, hands and/or fingers, such as typing
+ Occasionally moving about to accomplish tasks or moving from one worksite to another
+ Occasionally light work that includes moving objects up to 20 pounds

**_Work Environment:_**

+ Hybrid work schedule (both on-site and remote)
+ The employee will normally work in a temperature-controlled office environment, with frequent exposure to electronic office equipment.

During visits to areas of operations, may be exposed to extreme cold or hot weather conditions.

Is occasionally exposed to fumes or airborne particles, toxic or caustic chemicals, and loud noise
+ **There is no relocation offered for this role.**

#LI-TD1

Our job titles may span more than one career level.

The salary range for this role is between

$77,400.00-$110,300.00

The actual salary offered to a candidate may be influenced by a variety of factors, such as: training, transferable skills, work experience, education, business needs, market demands and work location.

The base pay range is subject to change and may be modified in the future.

More information on offered benefits, which include health, welfare, and retirement, are available at mywabtecbenefits.com .

Other benefit offerings for this role may include an annual bonus, if eligible.

**Who are we?**

Wabtec Corporation is a leading global provider of equipment, systems, digital solutions, and value-added services for freight and transit rail as well as the mining, marine, and industrial markets.

Drawing on nearly four centuries of collective experience across Wabtec, GE Transportation, and Faiveley Transport, the company has grown to become One Wabtec, with unmatched digital expertise, technological innovation, and world-class manufacturing and services, enabling the digital-rail-and-transit ecosystems.

Wabtec is focused on performance that drives progress and unlocks our customers’ potential by delivering innovative and lasting transportation solutions that move and improve the world.

We are lifelong learners obsessed with making things better to drive exceptional results.

Wabtec has approximately 27K employees in facilities throughout the world.

Visit our website to learn more! http://www.WabtecCorp.com

**Our Commitment to Embrace Diversity:**

Wabtec is a global company that invests not just in our products, but also our people by embracing diversity and inclusion.

We care about our relationships with our employees and take pride in celebrating the variety of experiences, expertise, and backgrounds that bring us together.

At Wabtec, we aspire to create a place where we all belong and where diversity is welcomed and appreciated.

To fulfill that commitment, we rely on a culture of leadership, diversity, and inclusion.

We aim to employ the world’s brightest minds to help us create a limitless source of ideas and opportunities.

We have created a space where everyone is given the opportunity to contribute based on their individual experiences and perspectives and recognize that these differences and diverse perspectives make us better.

We believe in hiring talented people of varied backgrounds, experiences, and styles… People like you! Wabtec Corporation is committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or expression, or protected Veteran status.

If you have a disability or special need that requires accommodation, please let us know.


Required Skill Profession

Other General


  • Job Details

Related Jobs

PayPal hiring Cybersecurity Risk Analyst Job in Scottsdale, Arizona, United States
PayPal
Scottsdale, Arizona, United States
Macpower Digital Assets Edge Private Limited hiring Cybersecurity Risk Analyst Job in Jersey City, New Jersey, , United States
Macpower Digital Assets Edge Private Limited
Jersey City, New Jersey, , United States
Booz Allen Hamilton hiring Cybersecurity Risk Analyst, Mid Job in San Diego, California, United States
Booz Allen Hamilton
San Diego, California, United States
PPL Corporation hiring Senior Cybersecurity Risk Analyst Job in Providence, RI, United States
PPL Corporation
Providence, RI, United States
PPL Corporation hiring Senior Cybersecurity Risk Analyst Job in Allentown, PA, United States
PPL Corporation
Allentown, PA, United States
PPL Corporation hiring Senior Cybersecurity Risk Analyst Job in Louisville, KY, United States
PPL Corporation
Louisville, KY, United States
Veterans Sourcing Group hiring Cybersecurity & Risk Analyst Job in Coppell, Texas, , United States
Veterans Sourcing Group
Coppell, Texas, , United States
Marathon Petroleum Corporation hiring Cybersecurity Analyst, Third Party Risk Job in Findlay, Ohio, United States
Marathon Petroleum Corporation
Findlay, Ohio, United States
TikTok hiring Cybersecurity Risk Quantification Analyst - USDS Job in New York, New York, United States
TikTok
New York, New York, United States
UL, LLC hiring DPI Associate Cybersecurity Risk Analyst Job in Chicago, IL, United States
UL, LLC
Chicago, IL, United States
PayPal hiring Manager, Cybersecurity Risk Job in Chicago, Illinois, United States
PayPal
Chicago, Illinois, United States
PayPal hiring Manager, Cybersecurity Risk Job in Scottsdale, Arizona, United States
PayPal
Scottsdale, Arizona, United States
Amentum hiring Cybersecurity Risk Manager Job in Honolulu, HI, United States
Amentum
Honolulu, HI, United States
Huntington National Bank hiring Cybersecurity Risk Manager Job in Addison, TX, United States
Huntington National Bank
Addison, TX, United States
Huntington National Bank hiring Cybersecurity Risk Manager Job in Detroit, MI, United States
Huntington National Bank
Detroit, MI, United States
Huntington National Bank hiring Cybersecurity Risk Manager Job in Pittsburgh, PA, United States
Huntington National Bank
Pittsburgh, PA, United States
Huntington National Bank hiring Cybersecurity Risk Manager Job in Charlotte, NC, United States
Huntington National Bank
Charlotte, NC, United States
Huntington National Bank hiring Cybersecurity Risk Manager Job in Akron, OH, United States
Huntington National Bank
Akron, OH, United States
Experis hiring Risk & Controls Business Analyst - NYC Job in New York, New York, United States
Experis
New York, New York, United States
ManpowerGroup hiring Risk & Controls Business Analyst - NYC Job in New York, NY, United States
ManpowerGroup
New York, NY, United States
Motion Recruitment Partners hiring Risk & Controls Analyst - Financial Markets Job in Getzville, NY, United States
Motion Recruitment Partners
Getzville, NY, United States
Genesis10 hiring Senior Risk & Controls Job in McLean, Virginia, United States
Genesis10
McLean, Virginia, United States
NBC Universal hiring Manager, Risk & Controls Job in Englewood Cliffs, NJ, United States
NBC Universal
Englewood Cliffs, NJ, United States
Analyze Re Incorporated hiring Risk Analyst Job in Boston, Massachusetts, United States
Analyze Re Incorporated
Boston, Massachusetts, United States
Career1Source hiring Risk Analyst Job in Oklahoma City, Oklahoma, United States
Career1Source
Oklahoma City, Oklahoma, United States
United Nations Federal Credit Union hiring Risk Analyst Job in New York, New York, United States
United Nations Federal Credit Union
New York, New York, United States
Staff Financial Group hiring Risk Analyst Job in Phoenix, Arizona, United States
Staff Financial Group
Phoenix, Arizona, United States
CIBC hiring Risk Analyst Job in Chicago, IL, United States
CIBC
Chicago, IL, United States
Dollar Tree hiring Risk Analyst Job in Chesapeake, VA, United States
Dollar Tree
Chesapeake, VA, United States
Eagle Seven hiring Risk Analyst Job in Chicago, IL, United States
Eagle Seven
Chicago, IL, United States
Robert Half Management Resources hiring Risk Analyst Job in Charlotte, NC, United States
Robert Half Management Resources
Charlotte, NC, United States
Robert Half Management Resources hiring Risk Analyst Job in Charlotte, NC, United States
Robert Half Management Resources
Charlotte, NC, United States

Unlock Your Risk Analyst Potential: Insight & Career Growth Guide


Real-time Risk Analyst Jobs Trends (Graphical Representation)

Explore profound insights with Expertini's real-time, in-depth analysis, showcased through the graph here. Uncover the dynamic job market trends for Risk Analyst in Pittsburgh, United States, highlighting market share and opportunities for professionals in Risk Analyst roles.

71954 Jobs in United States
71954
381 Jobs in Pittsburgh
381
Download Risk Analyst Jobs Trends in Pittsburgh and United States

Are You Looking for Risk Analyst Cybersecurity Risk & Controls Job?

Great news! is currently hiring and seeking a Risk Analyst Cybersecurity Risk & Controls to join their team. Feel free to download the job details.

Wait no longer! Are you also interested in exploring similar jobs? Search now: .

The Work Culture

An organization's rules and standards set how people should be treated in the office and how different situations should be handled. The work culture at Wabtec Corporation adheres to the cultural norms as outlined by Expertini.

The fundamental ethical values are:

1. Independence

2. Loyalty

3. Impartiapty

4. Integrity

5. Accountabipty

6. Respect for human rights

7. Obeying United States laws and regulations

What Is the Average Salary Range for Risk Analyst Cybersecurity Risk & Controls Positions?

The average salary range for a varies, but the pay scale is rated "Standard" in Pittsburgh. Salary levels may vary depending on your industry, experience, and skills. It's essential to research and negotiate effectively. We advise reading the full job specification before proceeding with the application to understand the salary package.

What Are the Key Qualifications for Risk Analyst Cybersecurity Risk & Controls?

Key qualifications for Risk Analyst Cybersecurity Risk & Controls typically include Other General and a list of qualifications and expertise as mentioned in the job specification. The generic skills are mostly outlined by the . Be sure to check the specific job listing for detailed requirements and qualifications.

How Can I Improve My Chances of Getting Hired for Risk Analyst Cybersecurity Risk & Controls?

To improve your chances of getting hired for Risk Analyst Cybersecurity Risk & Controls, consider enhancing your skills. Check your CV/Résumé Score with our free Tool. We have an in-built Resume Scoring tool that gives you the matching score for each job based on your CV/Résumé once it is uploaded. This can help you align your CV/Résumé according to the job requirements and enhance your skills if needed.

Interview Tips for Risk Analyst Cybersecurity Risk & Controls Job Success

Wabtec Corporation interview tips for Risk Analyst   Cybersecurity Risk & Controls

Here are some tips to help you prepare for and ace your Risk Analyst Cybersecurity Risk & Controls job interview:

Before the Interview:

Research: Learn about the Wabtec Corporation's mission, values, products, and the specific job requirements and get further information about

Other Openings

Practice: Prepare answers to common interview questions and rehearse using the STAR method (Situation, Task, Action, Result) to showcase your skills and experiences.

Dress Professionally: Choose attire appropriate for the company culture.

Prepare Questions: Show your interest by having thoughtful questions for the interviewer.

Plan Your Commute: Allow ample time to arrive on time and avoid feeling rushed.

During the Interview:

Be Punctual: Arrive on time to demonstrate professionalism and respect.

Make a Great First Impression: Greet the interviewer with a handshake, smile, and eye contact.

Confidence and Enthusiasm: Project a positive attitude and show your genuine interest in the opportunity.

Answer Thoughtfully: Listen carefully, take a moment to formulate clear and concise responses. Highlight relevant skills and experiences using the STAR method.

Ask Prepared Questions: Demonstrate curiosity and engagement with the role and company.

Follow Up: Send a thank-you email to the interviewer within 24 hours.

Additional Tips:

Be Yourself: Let your personality shine through while maintaining professionalism.

Be Honest: Don't exaggerate your skills or experience.

Be Positive: Focus on your strengths and accomplishments.

Body Language: Maintain good posture, avoid fidgeting, and make eye contact.

Turn Off Phone: Avoid distractions during the interview.

Final Thought:

To prepare for your Risk Analyst Cybersecurity Risk & Controls interview at Wabtec Corporation, research the company, understand the job requirements, and practice common interview questions.

Highlight your leadership skills, achievements, and strategic thinking abilities. Be prepared to discuss your experience with HR, including your approach to meeting targets as a team player. Additionally, review the Wabtec Corporation's products or services and be prepared to discuss how you can contribute to their success.

By following these tips, you can increase your chances of making a positive impression and landing the job!

How to Set Up Job Alerts for Risk Analyst Cybersecurity Risk & Controls Positions

Setting up job alerts for Risk Analyst Cybersecurity Risk & Controls is easy with United States Jobs Expertini. Simply visit our job alerts page here, enter your preferred job title and location, and choose how often you want to receive notifications. You'll get the latest job openings sent directly to your email for FREE!