Sr. IT Risk & Security Analyst

  • Company: MetLife
  • Location: Cary, North Carolina
  • Posted: July 31, 2017
  • Reference ID: 70781-en_US

Job Location: United States : North Carolina : Cary  



IT Risk & Security Analyst will provide support and expertise as it relates to implementing and maintaining core security infrastructure and systems that integrate capabilities and technologies to address identified risks and securely enable strategic IT solutions.


  • Support global security teams to align strategic direction, monitor security status and assess overall posture of core network and endpoint controls
  • Support implementing and maintaining continuous process for technical security standards for major MetLife technologies in accordance with industry best practices
  • Partner with global working teams, gather the security requirements to enhance productivity and effectiveness
  • Assess and evaluate business and technology risks, internal controls which mitigate risks, and related opportunities for internal control improvement
  • Provide support in security architecture, design, developing, monitoring and supporting enterprise infrastructure environment
  • Perform security assessments of systems using an established framework and tools to evaluate vulnerabilities.


  • Understanding of key security controls and technologies (e.g. Operating Systems, Networking, Firewall, Desktop and Perimeter Controls, SIEM, RSA Security Analytics, McAfee EPO, Splunk)
  • Demonstrate an understanding of business processes, internal control risk management, IT controls and related standards
  • Experience managing/supporting enterprise deployment projects, assisting in coordinating, scheduling and implementation activities
  • Strong understanding of key security controls and technologies (e.g. operating systems, networking, firewall, desktop and perimeter controls)
  • Understanding of enterprise vulnerability management technologies (e.g. Qualys, Nessus, Nexpose, Metasploit, Kali)


  • Bachelor’s degree in computer science, information systems or related field, or equivalent work experience
    Candidate must have 2+ years of combined IT and Cyber Security related work experience
  • Possess good communication skills and be able to document and explain technical details clearly and
  • Strong organizational ethic to manage a large volume of competing tasks effectively


  • Relevant industry certifications such as CISSP, CCNA-Security, Security+, GIAC, PMP, LEAN and Six Sigma are desired
  • Ability to perform basic scripting to analyze and automate repeatable processes (Python, Perl, Ruby, PowerShell)
  • Relevant industry certifications such as CISSP, CCNA-Security, Security+, GIAC, PMP, LEAN and Six Sigma are desired


At MetLife, we’re leading the global transformation of an industry we’ve long defined. United in purpose, diverse in perspective, we’re dedicated to making a difference in the lives of our customers.


Share this Job