Business Impact & Information Security Analyst

Stefanini International Holdings Ltd
  • Atlanta, GA
    10 days ago

    Job Description

    Details:

    Stefanini Group is hiring!

    Stefanini is looking for Business Impact & Information Security Analyst in Atlanta, GA

    For quick apply, please contact Sudhanshu Shrivastava; Ph: 248 582 6510

    Sudhanshu.shrivastava@stefanini.com

    W2 Candidates Only!

    About Role:

    We are seeking a versatile Business Impact & Information Security Analyst to join our enterprise risk management team. This dual-focused role combines business continuity planning with cybersecurity operations, making it ideal for a well-rounded contractor who can bridge operational resilience and information security. The successful candidate will assess organizational vulnerabilities from both business impact and security threat perspectives, ensuring comprehensive protection of critical assets and operations.

    Key Responsibilities:

    Organizational Risk & Impact Assessment

    • Lead structured interviews and collaborative workshops with department heads and key stakeholders to identify critical business functions, security requirements, and risk exposure
    • Map critical business functions, workflows, technical dependencies, and security control touchpoints across the organization
    • Document operational interdependencies, assess security control effectiveness, and identify single points of failure from both continuity and security perspectives
    • Research and analyze emerging cyber threats, vulnerabilities, and attack vectors; assess relevance to organizational operations and business continuity

    Impact Quantification & Risk Analysis

    • Evaluate and assign severity scores to potential disruption scenarios resulting from system failures, supply chain outages, or security incidents
    • Assess financial, operational, legal, and reputational consequences tied to business disruptions and security breaches
    • Develop integrated risk matrices and impact classification frameworks that address both continuity and security risks
    • Correlate security events and threat intelligence with business impact scenarios
    • Contribute to threat modeling exercises for critical systems and functions

    Security Controls & Recovery Planning

    • Evaluate effectiveness of existing security controls and countermeasures through testing aligned with frameworks (NIST, ISO 27001, CIS)
    • Review system configurations against security baselines and hardening standards
    • Assess cloud security configurations and compliance (AWS, Azure, GCP)
    • Define Recovery Time Objectives (RTO) and Recovery Point Objectives (RPO) for core applications and business units, factoring in security restoration requirements
    • Establish prioritization criteria for recovery sequencing that incorporates security validation steps
    • Collaborate with IT, operations, and security teams to validate feasibility of recovery targets and security controls

    Compliance, Governance & Reporting

    • Assist with security and business continuity audits; provide evidence of control implementation
    • Maintain comprehensive documentation including policies, procedures, runbooks, security controls, and business impact profiles
    • Track and report on security metrics, business continuity KPIs, and integrated risk indicators
    • Synthesize analytical findings into executive-ready dashboards and presentations
    • Deliver integrated continuity strategies and security recommendations to senior leadership
    • Maintain updated documentation in alignment with organizational and regulatory standards

    Numbers & Facts

    LocationAtlanta, GA

    Skills

    • Amazon Web Services (AWS)unmatched
    • Analysis Skillsunmatched
    • Business Continuity Planning (BCP)unmatched
    • Business Intelligenceunmatched
    • Cloud Computingunmatched
    • Computer Securityunmatched
    • Establish Prioritiesunmatched
    • Financial Analysisunmatched
    • Financial Operationsunmatched
    • GCP (Good Clinical Practices)unmatched
    • ISO (International Organization for Standardization)unmatched
    • Information/Data Security (InfoSec)unmatched
    • Internet Securityunmatched
    • Leadershipunmatched
    • Legalunmatched
    • Metricsunmatched
    • Microsoft Windows Azureunmatched
    • Operational Auditunmatched
    • Operations Planningunmatched
    • Operations Security (OPSEC)unmatched
    • Performance Metricsunmatched
    • Reporting Dashboardsunmatched
    • Riskunmatched
    • Risk Managementunmatched
    • Security Analysisunmatched
    • Security Attacksunmatched
    • Supply Chainunmatched
    • Systems Administration/Managementunmatched
    • Team Playerunmatched
    • Threat Modelingunmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder