← Back to all jobs
29d 4h left to apply
Experian

Information Security Specialist Lead

Experian📍 Costa RicaEstimated: $80,000 - $120,000

✨ AI Insights & Summary

Experian, a global data and technology leader, is seeking an Information Security Specialist Lead to architect and implement their enterprise-wide security risk and controls framework. This is a prime opportunity to shape the cybersecurity posture of a FTSE 100 company with a strong focus on data innovation and a multi-award-winning inclusive culture, offering significant impact and professional growth. If you possess deep expertise in information security frameworks, GRC tools, and risk management, and are passionate about building robust security capabilities, this remote role presents a chance to contribute to a world-class organization dedicated to unlocking the power of data.

Company Description

Experian is a global data and technology company, powering opportunities for people and businesses around the world. They redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market by leveraging their unique combination of data, analytics, and software. Experian assists millions in achieving their financial goals, saving them time and money. Operating across diverse markets including financial services, healthcare, automotive, agribusiness, and insurance, Experian invests in people and advanced technologies to unlock the power of data. As a FTSE 100 Index company listed on the London Stock Exchange (EXPN), they employ 22,500 people across 32 countries, with corporate headquarters in Dublin, Ireland.

Job Description

Reporting to the Information Security Director, you will lead the identification, documentation, and formalization of the security risk and controls framework across the Enterprise to meet Experian's cybersecurity and risk requirements. The Information Security Specialist Lead will contribute to the team's goals of ensuring a sound security posture by assessing the risk-based design of security controls and capabilities. You will contribute to the design and operation of best-practice cyber risk management practices, collaborating with partners across all Security and IT teams in the Enterprise.

Responsibilities

  • Lead security risk and controls strategies by engaging with Regional BU and Centralized security and IT control owners across the Enterprise to populate the controls library.
  • Maintain and update the integrated risk and controls framework based on information security policies and industry best practices and standards.
  • Review control activities populated by control owners to ensure alignment with requirements outlined in control standards and goals.
  • Identify, document, and report control activity gaps and provide recommendations for remediation.
  • Compile management reports, summary analysis, and detailed presentations to describe the risk and controls program.
  • Develop and present content for controls implementation workshops with control owners across the Enterprise.
  • Ensure information security controls are aligned and mapped to applicable risks (risk types and risk register entries) in the Archer GRC platform.
  • Monitor and stay informed about internal and external risk indicators for potential impacts and disruptions to Experian and its mission. Provide these risk indicators as inputs to control assurance and other EGSO activities.
  • Contribute to the efficiency of the risk and controls program by ensuring processes and methodologies are standardized and stakeholder feedback is captured for improvement and an engagement model.

Qualifications

  • 5+ years of experience performing IT Audit or Information Security control assessments.
  • Experience with GRC tools, such as Archer.
  • Knowledge of information security frameworks such as ISO 27001/2, NIST CSF, PCI DSS, and HIPAA.
  • Knowledge of information security risk management/analysis frameworks such as Open FAIR, NIST 800-37, NIST 800-39.
  • Knowledge of governance, risk, and controls principles and operational impacts of cybersecurity lapses.
  • Knowledge of IT technologies and methods to secure them, with a focus on Cloud security. Working knowledge of AWS cloud environments is beneficial.
  • Ability to guide the Risk and Control teams' continuing maturity using new technologies such as AI and ML.
  • Proficient in security control design, implementation, and evaluation.
  • Proficient in performing impact/risk assessment.
  • Experience facilitating small to medium-sized group meetings with senior leadership audiences.
  • Bachelor's degree in computer science, management information systems, or a relevant field, or equivalent demonstrable experience.
  • Certifications: CISA, CISM, CRISC, CISSP, ISO 27001 Lead Auditor, or comparable certifications.

Additional Information

Experian celebrates uniqueness and fosters an inclusive, purpose-driven culture, recognized with awards like World's Best Workplaces™ 2025 (Fortune Global Top 25) and Great Place To Work™ in 26 countries. This is a remote position.

Experian is an Equal Opportunity Employer committed to diversity and inclusion. If you require accommodation due to a disability or special need, please inform them at the earliest opportunity.

Benefits include: Medical, life and dental insurance, Asociacion Solidarista, International Share Save Plan, Flex Work/Work from home, Paid time off, Annual Performance Bonus, Education Reimbursement, Family Bonding, Bereavement Leave, Referral Program, and more.

#LI-Remote

Apply Now

This job is active but will expire soon. Click below to apply on the company's website.

Apply for this role ↗

Share Job

Know someone who would be a perfect fit? Share this opportunity.

Job Overview

Posted6/18/2026
CategoryCybersecurity
SourceJobicy

FAQ

Is this position remote?

The Information Security Specialist Lead role is a remote opportunity. The location specified is Costa Rica.

What is the salary?

The salary is not explicitly stated, but is competitive and based on experience.

How do I apply?

You can apply by clicking the "Apply for this role" button above to submit your application on the hiring website.

Similar Opportunities

a

Junior SOC Analyst

accesa.euRemote Worldwide🔄 Hybrid
Competitive
Cybersecurity
View Job →
M

Vergabemanager (m/w/d) Öffentliche Ausschreibung

MY Humancapital GmbHMunich🏠 Remote
Competitive
Cybersecurity
View Job →
Plain Concepts

AI Security Governance Architect

Plain ConceptsSpain🏠 Remote
Competitive
Cybersecurity
View Job →