Stefanini, Inc logo

Business Impact & Information Security Analyst

Stefanini, Inc
  • Atlanta, GA
    10 days ago

    Job Description

    Stefanini Group is hiring!
    Stefanini is looking for Business Impact & Information Security Analyst in Atlanta, GA
    For quick apply, please contact Sudhanshu Shrivastava; Ph: 248 582 6510
    Sudhanshu.shrivastava@stefanini.com
     
    W2 Candidates Only!
     
     
    About Role: 
    We are seeking a versatile Business Impact & Information Security Analyst to join our enterprise risk management team. This dual-focused role combines business continuity planning with cybersecurity operations, making it ideal for a well-rounded contractor who can bridge operational resilience and information security. The successful candidate will assess organizational vulnerabilities from both business impact and security threat perspectives, ensuring comprehensive protection of critical assets and operations.
     
    Key Responsibilities:
     
    Organizational Risk & Impact Assessment
    • Lead structured interviews and collaborative workshops with department heads and key stakeholders to identify critical business functions, security requirements, and risk exposure
    • Map critical business functions, workflows, technical dependencies, and security control touchpoints across the organization
    • Document operational interdependencies, assess security control effectiveness, and identify single points of failure from both continuity and security perspectives
    • Research and analyze emerging cyber threats, vulnerabilities, and attack vectors; assess relevance to organizational operations and business continuity
     
    Impact Quantification & Risk Analysis
    • Evaluate and assign severity scores to potential disruption scenarios resulting from system failures, supply chain outages, or security incidents
    • Assess financial, operational, legal, and reputational consequences tied to business disruptions and security breaches
    • Develop integrated risk matrices and impact classification frameworks that address both continuity and security risks
    • Correlate security events and threat intelligence with business impact scenarios
    • Contribute to threat modeling exercises for critical systems and functions
     
    Security Controls & Recovery Planning
    • Evaluate effectiveness of existing security controls and countermeasures through testing aligned with frameworks (NIST, ISO 27001, CIS)
    • Review system configurations against security baselines and hardening standards
    • Assess cloud security configurations and compliance (AWS, Azure, GCP)
    • Define Recovery Time Objectives (RTO) and Recovery Point Objectives (RPO) for core applications and business units, factoring in security restoration requirements
    • Establish prioritization criteria for recovery sequencing that incorporates security validation steps
    • Collaborate with IT, operations, and security teams to validate feasibility of recovery targets and security controls
     
    Compliance, Governance & Reporting
    • Assist with security and business continuity audits; provide evidence of control implementation
    • Maintain comprehensive documentation including policies, procedures, runbooks, security controls, and business impact profiles
    • Track and report on security metrics, business continuity KPIs, and integrated risk indicators
    • Synthesize analytical findings into executive-ready dashboards and presentations
    • Deliver integrated continuity strategies and security recommendations to senior leadership
    • Maintain updated documentation in alignment with organizational and regulatory standards


    Required Qualifications and Skills:
     
    Education
    • Bachelor's Degree or 4 years equivalent experience; Bachelor's Degree preferred in Business Administration, Information Technology, Cybersecurity, Risk Management, Data Science, or related field
    • Master's degree or additional certifications preferred
     
    Experience
    • 3-5 years of experience
     
    Core Competencies:
    Business Continuity:
    • Proven proficiency in business impact analysis methodologies and frameworks
    • Strong understanding of risk assessment principles and practices
    • Experience with supply chain dependency analysis
     
    Information Security:
    • Solid understanding of cybersecurity principles, frameworks, and best practices
    • Knowledge of common attack vectors, vulnerabilities, and mitigation techniques
    • Experience with security incident investigation and response procedures
    • Understanding of network protocols, system architecture, and security technologies
     
    Universal Skills:
    • Exceptional analytical and critical thinking abilities
    • Outstanding communication and stakeholder management skills
    • Ability to facilitate productive workshops with diverse audiences
    • Strong problem-solving skills and attention to detail
    • Ability to translate technical concepts for non-technical audiences
     
    Technical Tools:
    Business Continuity:
    * Experience with enterprise continuity software (ServiceNow BCM or similar platforms)
    * Proficiency with advanced data collection frameworks and survey tools
    * Strong command of relational databases, SQL, and advanced spreadsheet functions
    Information Security:
    * Knowledge of firewall, IDS/IPS, and network security tools
    * Experience with cloud security tools and CSPM platforms
     
    Certifications:
    Business Continuity (Preferred):
    • Certified Business Continuity Professional (CBCP)
    • CBCI, MBCI, or similar
    Information Security (One or more):
    • Certified Information Systems Security Professional (CISSP)
    • GIAC Security Essentials (GSEC)
    • Certified Information Security Manager (CISM)
    • Cloud security certifications (AWS Security Specialty, Azure Security Engineer)
     
    Experience
    • 3-5 years of combined experience in business continuity, risk management, and/or information security
    • Demonstrated experience conducting business impact analyses
    • Experience working in regulated industries (finance, healthcare, government) a plus
    • Previous contractor or consulting experience beneficial
     
    Ideal Candidate:
    The perfect candidate for this role brings a unique combination of business acumen and technical security expertise. You should be equally comfortable:
    • Facilitating executive workshops on business continuity strategies
    • Presenting risk findings to C-level stakeholders
    • Responding to security incidents
    • Documenting complex workflows and dependencies
    • Implementing security controls and conducting assessments
    • This position offers an excellent opportunity for a versatile professional seeking to make impact across both operational resilience and cybersecurity domains.
     
     
    #LI-SS3
    #LI-HYBRID
     
    Stefanini takes pride in hiring top talent and developing relationships with our future employees. Our talent acquisition teams will never make an offer of employment without having a phone conversation with you. Those face-to-face conversations will involve a description of the job for which you have applied. We also speak with you about the process including interviews and job offers.
     
    About Stefanini Group:
    The Stefanini Group is a global provider of offshore, onshore and near shore outsourcing, IT digital consulting, systems integration, application, and strategic staffing services to Fortune 1000 enterprises around the world. Our presence is in countries like the Americas, Europe, Africa, and Asia, and more than four hundred clients across a broad spectrum of markets, including financial services, manufacturing, telecommunications, chemical services, technology, public sector, and utilities. Stefanini is a CMM level 5, IT consulting company with a global presence. We are CMM Level 5 company
     
     

    Numbers & Facts

    LocationAtlanta, GA
    IndustryComputer/IT Services
    Company Size10,000 employees or more
    Year Founded1987
    Websitehttp://www.stefanini.com

    About Company

    Stefanini is a global IT services company with over 24,000 employees across 77 offices in 40 countries across the Americas, Europe, Africa, Australia, and Asia. Since 1987, Stefanini has been providing offshore, onshore and nearshore IT services, including application development and outsourcing services, IT infrastructure outsourcing (help desk support and desktop services), systems integration, consulting and strategic staffing to Fortune 1000 enterprises around the world.

    With a base of over 500 active clients, including more than 300 multinationals, Stefanini maintains a strong presence in industries such as financial services, manufacturing, telecommunications, chemical, services, technology, public sector, and utilities. Clients benefit from Stefanini's financial stability, sustained year-over-year growth, and zero net debt. The corporate global headquarters is located in Sao Paulo, Brazil with European headquarters in Brussels and North American headquarters in metropolitan Detroit.

    Skills

    • Amazon Web Services (AWS)unmatched
    • Analysis Skillsunmatched
    • Application Integrationunmatched
    • Best Practicesunmatched
    • Business Administrationunmatched
    • Business Continuity Planning (BCP)unmatched
    • Business Intelligenceunmatched
    • Business Skillsunmatched
    • Business Strategyunmatched
    • Business impact analysis (BIA)unmatched
    • C-Level Managementunmatched
    • CISM - Certified Information Security Managerunmatched
    • CISSP - Certified Information Systems Security Professionalunmatched
    • Capability Maturity Model (CMM)unmatched
    • Cloud Computingunmatched
    • Computer Securityunmatched
    • Consultingunmatched
    • Data Collectionunmatched
    • Data Scienceunmatched
    • Detail Orientedunmatched
    • Documentationunmatched
    • Establish Prioritiesunmatched
    • Financeunmatched
    • Financial Analysisunmatched
    • Financial Operationsunmatched
    • Financial Servicesunmatched
    • Firewallsunmatched
    • Fortune 1000 Customersunmatched
    • GCP (Good Clinical Practices)unmatched
    • GIAC - Global Information Assurance Certificationunmatched
    • GSEC - GIAC Security Essentials Certificationunmatched
    • Governmentunmatched
    • Healthcareunmatched
    • ISO (International Organization for Standardization)unmatched
    • Incident Responseunmatched
    • Information Technology & Information Systemsunmatched
    • Information Technology Consultingunmatched
    • Information Technology Outsourcingunmatched
    • Information/Data Security (InfoSec)unmatched
    • Internet Securityunmatched
    • Intrusion Detection Systemsunmatched
    • Intrusion Prevention Systemsunmatched
    • Leadershipunmatched
    • Legalunmatched
    • Manufacturingunmatched
    • Metricsunmatched
    • Microsoft Windows Azureunmatched
    • Nearshoringunmatched
    • Network Protocolsunmatched
    • Network Securityunmatched
    • Operational Auditunmatched
    • Operations Planningunmatched
    • Operations Security (OPSEC)unmatched
    • Performance Metricsunmatched
    • Problem Solving Skillsunmatched
    • Recruiting Strategyunmatched
    • Regulationsunmatched
    • Relational Databases (RDBMS)unmatched
    • Reporting Dashboardsunmatched
    • Riskunmatched
    • Risk Analysisunmatched
    • Risk Managementunmatched
    • SQL (Structured Query Language)unmatched
    • Security Analysisunmatched
    • Security Architectureunmatched
    • Security Attacksunmatched
    • ServiceNowunmatched
    • Spreadsheetsunmatched
    • Supply Chainunmatched
    • System Architectureunmatched
    • System Integration (SI)unmatched
    • Systems Administration/Managementunmatched
    • Team Playerunmatched
    • Telecommunicationsunmatched
    • Threat Modelingunmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder