Allstate · 2 months ago
Technology & Security Controls Testing Manager
Allstate Insurance Co. is dedicated to protecting families and their belongings from life's uncertainties. As a Technology & Security Controls Testing Manager, you will lead teams in assessing and validating technology and security controls, ensuring compliance with industry standards and regulations while driving continuous improvement in cybersecurity risk management.
BankingFinanceFinancial ServicesInsuranceInsurTechVenture Capital
Responsibilities
Lead and manage the execution of control testing activities focused on technology and security controls aligned to NIST 800-53
Develop and maintain testing methodologies, procedures, and documentation standards
Perform control assessments, walkthroughs, and evidence reviews to evaluate design and operating effectiveness
Collaborate with control owners, system owners, and cybersecurity teams to ensure accurate control implementation and remediation
Provide detailed reporting on control testing results, including findings, risk ratings, and recommendations
Track and monitor remediation efforts and validate corrective actions
Support internal and external audits, regulatory exams, and risk assessments
Continuously improve control testing processes and tools to enhance efficiency and effectiveness
Stay current on regulatory changes, cybersecurity threats, and industry best practices
Manage the evaluation and communication of guidance, interpretation and application of regulatory, contract and industry requirements for cybersecurity governance; directs partnerships with Legal and business leaders to advise course of action and develop processes for organizing and maintaining required filings and documentations
Oversee the coaching and development of subordinates on strategies for effective communication and successful interaction with technical and business peers; assists in creating plans in partnership with Learning and Development to grow and expand team technical skills in response to business needs
Qualification
Required
Deep expertise in technology & cybersecurity risk management
Control testing methodologies
Cybersecurity frameworks
Strong ability to collaborate across teams
Drive continuous improvement
Lead and manage the execution of control testing activities focused on technology and security controls aligned to NIST 800-53
Develop and maintain testing methodologies, procedures, and documentation standards
Perform control assessments, walkthroughs, and evidence reviews to evaluate design and operating effectiveness
Collaborate with control owners, system owners, and cybersecurity teams to ensure accurate control implementation and remediation
Provide detailed reporting on control testing results, including findings, risk ratings, and recommendations
Track and monitor remediation efforts and validate corrective actions
Support internal and external audits, regulatory exams, and risk assessments
Continuously improve control testing processes and tools to enhance efficiency and effectiveness
Stay current on regulatory changes, cybersecurity threats, and industry best practices
Manage the evaluation and communication of guidance, interpretation and application of regulatory, contract and industry requirements for cybersecurity governance
Direct partnerships with Legal and business leaders to advise course of action and develop processes for organizing and maintaining required filings and documentations
Oversee the coaching and development of subordinates on strategies for effective communication and successful interaction with technical and business peers
Assist in creating plans in partnership with Learning and Development to grow and expand team technical skills in response to business needs
This job has supervisory duties
Preferred
7 or more years of experience
Experience utilizing NIST & COBIT frameworks
Company
Allstate
Allstate is an insurance company that offers car, home, and life insurance services. It is a sub-organization of Allstate.
Funding
Current Stage
Public CompanyTotal Funding
$500M2024-06-24Post Ipo Debt· $500M
2014-01-13Post Ipo Equity
1993-06-11IPO
Leadership Team
Recent News
Company data provided by crunchbase