Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Information Security Control Assurance Manager image - Rise Careers
Job details

Information Security Control Assurance Manager - job 1 of 2

Company Description

About us, but we'll be brief

Experian is the world's leading global information services company, unlocking the power of data to create more opportunities for consumers, businesses, and society. We are thrilled to share that FORTUNE has named Experian one of the 100 Best Companies to work for. Also, for the last five years we've been named in the 100 "World's Most Innovative Companies" by Forbes Magazine. Experian prioritizes our culture and look to bring people to the team who are passionate about their jobs, who are easy to work with, and who continue to value team over self.

We have 23,000 people operating across 44 countries and every day we're investing in new technologies, experienced people, and new ideas to help all our clients maximize every opportunity.

Job Description

What you'll do

As an Information Security Control Assurance Manager, you will lead a team evaluating security controls for both on-premise and cloud processes to mitigate risks and ensure compliance with regulatory standards. Reporting to the Global Head of Information Security, you will direct the team in testing security controls to verify their design, implementation, and operational effectiveness. Working in an Agile environment, you will ensure the quality of security assessments through testing, automation, and collaboration with various teams and partners.

Summary of Primary Responsibilities

  • Oversee the information security control testing program, collaborating across regions.
  • Manage a team of testers to assess information systems per corporate security standards.
  • Design repeatable testing methodologies, including automation for cloud environments.
  • Plan control tests with risk identification, sampling, control selection, testing methods, and reporting criteria.
  • Manage teams in testing the design and effectiveness of security controls, including fieldwork and reporting.
  • Ensure quality assurance for control testing documentation.
  • Compile management reports and presentations on risks, controls, and deficiencies.
  • Be the primary contact for control tests, ensuring quality engagements and partner communications.
  • Improve the efficiency of the control testing program by standardizing indicators and testing materials.

Qualifications

What your background is

  • Bachelor's degree in computer science, management information systems, or equivalent experience.
  • 3+ years managing IT auditors or Information Security control assessors.
  • 12+ years in IT Audit or Information Security control assessments, including cloud security controls.
  • Professional certifications like CISA, CISM, CISSP, ISO 27001 Lead Auditor.
  • Knowledge of standards like NIST 800-53, ISO 27001/27002, CIS Controls, COBIT.
  • Experience with automated and manual methods for evaluating security controls on-premise and in cloud environments.
  • Communicate complex information.
  • Use partner feedback to improve processes.

Technical Skills

  • Knowledge of security tools like Sailpoint, Rapid7, Wiz.io, MS Defender.
  • Experience with cloud security in AWS and Azure.
  • Automation, data-driven testing techniques, and generative AI for control assurance.
  • Create queries and reports using RSA Archer and ServiceNow.
  • Familiarity with Kanban boards and Jira.

Desired Competencies

  • Big 4 consultant experience.
  • Knowledge of cybersecurity principles: integrity, availability, authentication, non-repudiation.
  • Mentor junior team members, encouraging continuous improvement.
  • Security reporting to senior management on posture, control effectiveness, risks.
  • Apply security governance, risk, and control principles.
  • Proficiency in automation and data analytics tools (Excel, Tableau, Alteryx, PowerBI).
  • Agile working methodology experience.

Additional Information

This is a permanent home-based role in Costa Rica. No relocation available.

Culture at Experian

Our uniqueness is that we value yours.

Experian's culture, people, and environments are main differentiators. We take our people's agenda very seriously. We focus on what matters; diversity and inclusion, work life balance, flexible work, development, engagement, collaboration, wellness, rewards & recognitions, volunteering... the list goes on!

Our benefits include: Medical, life and dental insurance, Asociacion Solidarista, International Share Save Plan, Flex Work Work from home, Paid time off, Annual Performance Bonus, Education Reimbursement, Family Bonding, Bereavement Leave, Referral Program, and more.

Experian Careers - Creating a better tomorrow together

Find out what its like to work for Experian by clicking here

Our uniqueness is that we celebrate yours. Experian's culture and people are important differentiators. We take our people agenda very seriously and focus on what matters; DEI, work life balance, development, authenticity, engagement, collaboration, wellness, reward & recognition, volunteering... the list goes on. Experian's people first approach is award-winning; Great Place To Work™ in 24 countries, FORTUNE Best Companies to work and Glassdoor Best Places to Work (globally 4.4 Stars) to name a few. Check out Experian Life on social or our Careers Site to understand why.

Experian is proud to be an Equal Opportunity and Affirmative Action employer. Innovation is a critical part of Experian's DNA and practices, and our diverse workforce drives our success. Everyone can succeed at Experian and bring their whole self to work, irrespective of their gender, ethnicity, religion, colour, sexuality, physical ability or age. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.

#LI-Hybrid

Experian Glassdoor Company Review
4.2 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
Experian DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Experian
Experian CEO photo
Jennifer Schulz
Approve of CEO
What You Should Know About Information Security Control Assurance Manager, Experian

At Experian, we are excited to invite a passionate and experienced Information Security Control Assurance Manager to our team located in beautiful Heredia, Costa Rica! As the world's leading global information services company, we pride ourselves on creating empowering opportunities for our clients. In this role, you'll be at the forefront of evaluating security controls for both on-premise and cloud processes, ensuring our operations meet the highest regulatory standards. Your leadership will guide a talented team in testing, maintaining, and enhancing our security posture. From managing creative testing methodologies to collaborating across various teams, your responsibilities will encompass overseeing the control testing program, reporting on risks, and improving efficiency by standardizing our testing materials. We’re looking for a champion of security assessments, with a solid grounding in IT Audit or Information Security control assessments and a firm grasp of necessary certifications like CISA, CISM, or CISSP. Your ability to mentor junior team members and communicate complex security insights to stakeholders will make a significant impact in our agile and dynamic environment at Experian. If you're ready to take your career to the next level with a company that values diversity, innovation, and work-life balance, we can't wait to meet you!

Frequently Asked Questions (FAQs) for Information Security Control Assurance Manager Role at Experian
What are the primary responsibilities of the Information Security Control Assurance Manager at Experian?

As the Information Security Control Assurance Manager at Experian, your primary responsibilities will include overseeing the information security control testing program, managing a team of testers, and evaluating security controls. You will also design repeatable testing methodologies, ensure quality assurance for documentation, compile management reports, and serve as the primary contact for control tests.

Join Rise to see the full answer
What qualifications are required for the Information Security Control Assurance Manager role at Experian?

To be successful as the Information Security Control Assurance Manager at Experian, candidates should possess a Bachelor's degree in computer science or a related field, along with 3+ years managing IT auditors or information security control assessors. Moreover, candidates should have over 12 years of experience in IT audits or security assessments, supported by professional certifications such as CISA, CISM, or CISSP.

Join Rise to see the full answer
What technical skills are needed for the Information Security Control Assurance Manager job at Experian?

The Information Security Control Assurance Manager at Experian should have a strong technical foundation including knowledge of security tools like Sailpoint, Rapid7, and MS Defender, as well as experience with cloud security in AWS and Azure. Familiarity with automation techniques and data analytics tools such as Excel and Tableau is also crucial.

Join Rise to see the full answer
How does Experian support career development for the Information Security Control Assurance Manager?

At Experian, career development is key! As an Information Security Control Assurance Manager, you'll benefit from education reimbursement options and performance bonuses. The company prides itself on fostering an environment focused on diversity, wellness, and work-life balance, encouraging team members to continuously grow and improve.

Join Rise to see the full answer
What is the company culture like for the Information Security Control Assurance Manager at Experian?

Experian fosters a vibrant company culture that values diversity, inclusion, and collaboration. As the Information Security Control Assurance Manager, you'll become part of an award-winning team that prioritizes a people-first approach—balancing work and life while promoting engagement and innovation in the workplace.

Join Rise to see the full answer
Common Interview Questions for Information Security Control Assurance Manager
Can you describe your experience with IT audits related to cloud security?

When answering this question, focus on specific projects and your role in conducting IT audits for cloud environments. Highlight your understanding of cloud compliance frameworks and any challenges you faced, describing how you overcame them.

Join Rise to see the full answer
What methodologies do you use to evaluate the effectiveness of security controls?

Discuss various testing methodologies you have applied, particularly in testing automated controls and manual assessments. Mention your familiarity with standards such as ISO 27001 and NIST 800-53, along with how you have leveraged automation tools to enhance testing efficiency.

Join Rise to see the full answer
How do you ensure effective communication with your team and stakeholders?

Highlight your strategies for maintaining clear communication, such as using regular updates, visual aids, and leveraging project management tools like Jira or Kanban boards. Talk about your experience in facilitating discussions that keep all stakeholders aligned on security initiatives.

Join Rise to see the full answer
Describe a challenging security issue you encountered and how you addressed it.

Provide a specific example of a security challenge, detailing your role and the actions you took to resolve it. Emphasize your analytical skills and the importance of collaboration when navigating complex security scenarios.

Join Rise to see the full answer
What is your approach to managing and mentoring junior team members?

Explain how you encourage mentorship, focusing on providing guidance, support, and constructive feedback. Describe any previous experiences you’ve had in developing junior staff through trainings or hands-on project involvement.

Join Rise to see the full answer
Can you explain your familiarity with security tools like Sailpoint or Rapid7?

Discuss your hands-on experience with specific tools, including any projects or assessments where you've applied them. Explain how these tools have contributed to improving security controls or assessments in your previous roles.

Join Rise to see the full answer
How do you stay current with the latest trends in information security?

Talk about the resources you use to keep updated, such as industry publications, online courses, and professional networks. Mention any specific certifications you are pursuing or have completed recently to bolster your knowledge.

Join Rise to see the full answer
What are the key components of an effective information security testing program?

Articulate the essential elements needed for a successful security testing program, such as well-defined objectives, thorough methodologies, documentation processes, and the inclusion of risk management principles.

Join Rise to see the full answer
How do you prioritize and manage multiple projects as an Information Security Control Assurance Manager?

Share specific time management and prioritization techniques you utilize to handle competing deadlines and projects, including the importance of agile methodologies in adapting to changing priorities.

Join Rise to see the full answer
What impacts have you made in your previous roles in information security?

Highlight concrete examples of how your contributions have improved security postures, such as implementing new control strategies or enhancing existing processes. Use metrics or outcomes to substantiate your impact.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Experian Remote 701 Experian Pkwy, Allen, TX
Posted 10 days ago
Photo of the Rise User
Experian Remote BLOCK-B, Cyber Pearl Building, 4th floor, Phase 2, Hyderabad, India
Posted 9 days ago
Posted 2 days ago
Photo of the Rise User
Wabash Valley Power Alliance Remote 6702 Intech Blvd, Indianapolis, IN 46278, USA
Posted 3 days ago
Photo of the Rise User
Posted 6 days ago
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Maternity Leave
Paternity Leave
401K Matching
Paid Holidays
Paid Sick Days
Paid Time-Off
Paid Volunteer Time
Health Savings Account (HSA)
Flexible Spending Account (FSA)
Family Coverage (Insurance)
Medical Insurance
Mental Health Resources
Talent Worx Remote No location specified
Posted 4 days ago
Octal Philippines Inc. Remote No location specified
Posted 8 days ago
Photo of the Rise User
Celonis Hybrid New York, US, New York
Posted 10 days ago

We pride ourselves on being certified as a Great Place To Work and firmly believe that creating a positive company culture is less about ping pong tables and more about transparency, connection, and "work with purpose." The unique perspective of e...

828 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
March 26, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, Mason just viewed HR/Recruiting Assistant at Illumination
Photo of the Rise User
Someone from OH, Strongsville just viewed Used Car Buyer - Concord Toyota at Sonic Automotive
Photo of the Rise User
Someone from OH, Cincinnati just viewed Mid-level Creative (f/m/d) at Landor
P
Someone from OH, Kent just viewed Graphic Designer at ProjectGrowth
Photo of the Rise User
Someone from OH, Waverly just viewed Client Services Manager at Pepperstone
Photo of the Rise User
Someone from OH, Plain City just viewed Aesthetic Telehealth Nurse Practitioner (remote) at Moxie
Photo of the Rise User
Someone from OH, Columbus just viewed EdTech Product/Program Manager at Planner5D
S
Someone from OH, Lorain just viewed Test Engineer- Ninja at SharkNinja
Photo of the Rise User
40 people applied to SOC Analyst I at Epsilon
Photo of the Rise User
Someone from OH, Youngstown just viewed Channel Development Representative at Arrow Electronics
Photo of the Rise User
Someone from OH, Cincinnati just viewed Buyer at Novolex
k
Someone from OH, Columbus just viewed Patient Experience Coordinator at knownwell
Photo of the Rise User
19 people applied to Security Analyst Jr at DEUNA
Photo of the Rise User
Someone from OH, Columbus just viewed Store Manager - New Store Opening at Curaleaf
Photo of the Rise User
Someone from OH, Akron just viewed Finance Intern - Summer 2025 at Spectrum
Photo of the Rise User
Someone from OH, Norwalk just viewed Hybrid Account Manager-Commercial Lines at AssuredPartners
Photo of the Rise User
Someone from OH, Loveland just viewed Animator at Apex Systems Bellevue, WA at Apex Systems
Photo of the Rise User
Someone from OH, Canton just viewed Lead Jr. Toddler Teacher at All Around Children
Photo of the Rise User
Someone from OH, Mentor just viewed Site Merchandising Manager at Lovepop
Photo of the Rise User
Someone from OH, Batavia just viewed Restaurant Busser at Outback Steakhouse
Photo of the Rise User
Someone from OH, New Albany just viewed Customer Success Manager at Quisitive
Photo of the Rise User
Someone from OH, Columbus just viewed UGC Creator - USA, Female 40-50 - Contract to hire at Upwork