Covid-19 Response:

Randstad is offering virtual interviews and remote onboarding as we work to open up our local offices safely. In locations where onsite work is currently required, we’ve established safety protocols and controls that meet the guidelines set by the CDC, OSHA and local health authorities.

about randstad
Randstad is the global leader in the HR services industry. We support people and organizations in realizing their true potential by combining the power of today’s technology with our passion for people. We call it Human Forward. In 2019, we helped more than two million candidates find a meaningful job with our 280,000 clients. Furthermore, we trained more than 350,000 people. Randstad is active in 38 markets around the world and has top-three positions in almost half of these. In 2019, Randstad had on average 38,280 corporate employees and generated revenue of € 23.7 billion. Randstad was founded in 1960 and is headquartered in Diemen, the Netherlands. Randstad N.V. is listed on the NYSE Euronext (symbol: RAND.AS). For more information, see

Find out what it's like to walk a mile in the shoes of a Randstad employee.

IT Security Threat and Vulnerability Senior Analyst

Location: Atlanta, Georgia US


This position is no longer open.

Job Number: 32971

Employment Type: Full Time Associate

Position Title: Sr. Info Security Risk Analyst

External Description:

An ideal candidate for this role will be engaging, possess a strong balance between technical expertise and business acumen, and embrace opportunities to become a difference maker in a constantly evolving global organization. The successful candidate selected for this highly visible role will work closely with a cross-functional group of risk stakeholders to deliver information security, IT risk management, and data privacy protection solutions and advisory services to stakeholders and Operating Companies located throughout the USA. This role will also be called upon to participate and provide input to help execute the agenda of the organization’s global Data Privacy and Information Security (DPIS) Community. This position will report to the Director, Enterprise Risk and Security.

What you get to do:

  • Execute tasks and help mature threat monitoring and vulnerability management capabilities and processes, including, but not limited to the following:
  • Endpoint Protection and Data Loss Prevention (DLP) alert monitoring and risk mitigation planning
  • Patch management process planning and task execution oversight
  • Penetration Testing and Application Vulnerability Scanning remediation planning
  • Review results from internal and external vulnerability scans and drive risk remediation planning
  • Analyze security-related incident tickets submitted by IT, business, and field stakeholders and propose appropriate risk mitigation solutions
  • Assist with the execution of the Security Incident Response Process and recurring incident response training exercises
  • Participate in the IT change management meetings and provide subject matter expertise on security-related IT change requests
  • Risk and Compliance Management
  • Execute the Information Security Risk Assessment Process to ensure appropriate risk treatment and risk mitigation decisions are made to address identified risks.
  • Act as customer-facing liaison and information security subject matter expert to help IT functional teams, internal project teams, business stakeholders, and external partners understand policies and control requirements and effectively implement and manage their risk mitigation safeguards.
  • Plan and execute the tasks necessary to ensure the services provided by key third party vendors, suppliers and business partners do not pose a risk to Randstad’s business operations, including:
  • Administer the Third Party Vendor Security Questionnaire Process
  • Participate in vendor risk remediation discussions and execution
  • Assist with the review of contract agreements, Statement of Works, and other product or service agreement documentation
  • Assist with onsite assessments at vendor sites, as needed
  • Facilitate internal and external audits and assessments. Participate in audit interviews, review findings, lead remediation planning, and document and communicate lessons learned with business and IT stakeholders.
  • Assist with executing the Security Waiver and Exception Process to ensure all authorized deviations from acceptable information protection practices are managed and tracked
  • Assist with the planning and execution of Business Continuity, Disaster Recovery, and other contingency planning activities. As the candidate settles into this role and becomes acclimated to the Randstad business, this responsibility will evolve into full task ownership and accountability to mature Randstad’s contingency planning capabilities
  • Administer the IT crisis communications alert notification solution
  • Policy and Awareness Management
  • Develop and maintain the implementation life-cycle of information security policies and supporting documentation (i.e. standards, guidelines, etc.) Perform recurring policy refresh to ensure control requirements and policy guidance remains current and applicable
  • Assist in the continuous development, implementation, and ongoing maintenance of the security training and awareness education program. Help create and deliver security and data protection awareness training content to end users
  • Assist with the planning and execution of the employee phishing defense training campaigns

What you need to bring:

  • Bachelor’s Degree
  • 5 - 7 Years Information Security Risk Management
  • 5 Years Security Threat & Vulnerability Management
  • 3 - 5 Years Vendor Security Risk Management Knowledge, Skills, and Abilities
  • CISSP or GIAC Equivalent Certification
  • ISO 27002 Controls Framework
  • Excellent Interpersonal Communications Skills
  • Effective Relationship and Consensus Building Skills
  • Vendor Security Risk Management
  • Threat and Vulnerability Management
  • Endpoint Protection (McAfee ePO Strongly Preferred)
  • Data Loss Prevention Event Monitoring & Analysis
  • Risk Assessment Methodologies

Equal Opportunity Employer: Race, Color, Religion, Sex, Sexual Orientation, Gender Identity, National Origin, Age, Genetic Information, Disability, Protected Veteran Status, or any other legally protected group status.

At Randstad, we welcome people of all abilities and want to ensure that our hiring and interview process meets the needs of all applicants.  If you require a reasonable accommodation to make your application or interview experience a great one, please just let us know. 



Community / Marketing Title: IT Security Threat and Vulnerability Senior Analyst

Company Profile:

EEO Employer Verbiage:

EEO Employer Verbiage Displays here

Location_formattedLocationLong: Atlanta, Georgia US