Ready for an upgrade? A different browser will keep you connected to the full website experience – and protect you from security risks.
Job title, category or skills
Near:
Start your journey with AT&T
Make an immediate impact
Join 13K other Veterans at AT&T
A world of opportunity awaits
Working here is more than just a job title
Our Culture
Mind if we brag for a moment?
See for yourself
Be a part of our elite cybersecurity team that provides strategy, consulting, and threat detection to a wide range of customers.
"If you want to be continually challenged, always learning and able to shift careers, AT&T is the right place for you! I started at AT&T 18 years ago and never envisioned having an opportunity to transition into a Cybersecurity role." Connie Bragg — Professional Cybersecurity
"If you want to be continually challenged, always learning and able to shift careers, AT&T is the right place for you! I started at AT&T 18 years ago and never envisioned having an opportunity to transition into a Cybersecurity role."
Don't just imagine the future. Create it.
Job Description:
About the Company:
Join AT&T and reimagine the communications and technologies that connect the world. Our Chief Security Office ensures that our assets are safeguarded through truthful transparency, enforce accountability and master cybersecurity to stay ahead of threats. Bring your bold ideas and fearless risk-taking to redefine connectivity and transform how the world shares stories and experiences that matter. When you step into a career with AT&T, you won’t just imagine the future-you’ll create it.
About the Job:
The RATE (Risk Assessment Testing and Enforcement) team is part of Chief Security Office (CSO) and responsible for evaluating the products and solutions AT&T uses for possible vulnerabilities and other issues (e.g., EOSL) on an ongoing basis and ensure compliance with the AT&T policy requirements. The team works closely with the other CSO teams, ATS (AT&T Technology Services) stakeholders, Technology Strategies & Standards team, to ensure solutions and products are deployed only when they are secure, authorized and appropriately supported thereby adhering to Secure by design principles.
Executing product security assessments, identifying issues that needs appropriate risk treatment, and reporting them to the senior ATS stakeholders.
Supporting RATE (Risk Assessment Testing and Enforcement) leadership in reporting on trends identified and responses recommended.
Supporting the development / enhancement of processes / tooling that helps better identify / record / address the risks related to third-party application usage.
Suggest ways to enhance the review process for better effectiveness and efficiency.
Experience in IT General Controls (ITGC) and IT Application Controls (ITAC) testing and evaluation (Control Testing: Hands-on Experience)
Familiarity with cloud security controls and best practices
Experience and understanding of AI/ML working principles, including control testing and related risks
Ability to interpret and act on assigned tasks
Understanding of Third-Party Risk Management (TPRM) and Vendor Risk Management (VRM) processes, products, and services
Familiarity with GDPR, ISO 27001, SOC 2, and related standards/frameworks and compliance requirements
Certified Ethical Hacker (CEH) certification or equivalent skills
Knowledge of vulnerabilities, threat identification, and remediation; ability to understand and analyze penetration test (Pentest) reports
Working knowledge of PCI-DSS compliance and control requirements
Experience Level: 3+ years.
Location: Hyderabad / Bengaluru
Responsibilities Include:
Executing third-party product security assessments, identifying issues that needs appropriate risk treatment, and reporting them to the senior ATS stakeholders.
Partnering with RATE (Risk Assessment Testing and Enforcement) leadership to help them recommend and enforce approved Technology Standards for use across the enterprise.
Supporting the development / enhancement of processes / tooling that helps better identify / record / address the risks related to third-party product usage.
Required Skills:
3 years minimum experience in third-party risk management or risk consulting out of which, at least 3 years in assessing / testing of third-party applications security.
Good understanding of various third-party risk management frameworks and standards.
Good exposure to regulatory requirements in other industries.
Awareness of known vulnerabilities, security features, and expected controls for leading ERPs like Oracle EBS, Fusion, Hyperion SAP etc., and / or other third-party applications like Salesforce, Workday etc.
Proven project management skills
Desirable Skills:
Bachelor's or master's degree in computer science, Mathematics, Information Systems, Engineering, Commerce or Cyber Security.
Prior experience with Telecom sector.
ISACA, ISC2 or other relevant certifications.
Additional Information: Need to be flexible to provide coverage in US morning hours.
#CyberSecurity
Weekly Hours:
Time Type:
Location:
It is the policy of AT&T to provide equal employment opportunity (EEO) to all persons regardless of age, color, national origin, citizenship status, physical or mental disability, race, religion, creed, gender, sex, sexual orientation, gender identity and/or expression, genetic information, marital status, status with regard to public assistance, veteran status, or any other characteristic protected by federal, state or local law. In addition, AT&T will provide reasonable accommodations for qualified individuals with disabilities. AT&T is a fair chance employer and does not initiate a background check until an offer is made.
Invested in your satisfaction and continued success.
We take care of our own here (hint: that could be you). Our benefits and rewards mean we cover some of your biggest needs with some of the coolest offerings. We already think we’re a pretty great place to work. We’re just trying to rack up some bonus points.
Let’s start with the big one: Your work gets rewarded with competitive compensation and benefits. It really does pay to be on our team.
Vacation? Staycation? Heck, let’s take a road trip. On top of paid holidays, chill out with paid time off (PTO) that you can spend any way you want.
Our people have class. Literally. We can help you out on approved education costs with our tuition assistance plan.
Here’s another reason to breathe easy: You and your family get access to excellent medical, dental and vision insurance options.
Wanna make your friends really jealous? You’ll get discounted access to the latest and greatest AT&T products and services — plus other awesome items, like tickets to live events.
You strike us as an over-achiever (don’t worry, it’s a compliment). Our training and development programs are your ticket to expert status in your job.
When the day comes that you get some much needed R&R (not that you’d ever want to leave #LifeAtATT) you’ll know your future is set with the AT&T Retirement Savings Plan (ARSP).
Complete a quick application online and check your status often.
Virtual or in-person Interviews
Dress professionally and ensure good WiFi interviewing virtually.
Conditional Job Offer
After a background check, you're part of the team.
Welcome! Onboarding and Training Begins
Our training and certification programs set you up for success.
Sign up for job alerts, updates and more.
Email:
Job Category:
Confirm Email
AT&T Info and Alerts. Max 12 messages/month. Privacy Policy. You may opt-out at anytime by sending STOP to short code 20013. Msg & data rates may apply.
Subscribe
Do the right thing, no compromise.
Innovate and get there first.
In everything, every time.
Give people what they don't expect.
Speak with your actions.
Press, speech, beliefs.
Impact your world.
When customers & colleagues need you most.