D.R. Horton, Inc., the largest homebuilder in the U.S., was founded in 1978 and is a publicly traded company on the New York Stock Exchange. It is engaged in the construction and sale of high quality homes designed principally for the entry-level and first time move-up markets. The Company also provides mortgage financing and title services for homebuyers through its mortgage and title subsidiaries. Please visit our website at for more information.
D.R. Horton, Inc. is currently looking for an IT Controls Analyst. The right candidate will work as a part of the IT Security Team and IT Controls Team reporting directly to the IT Cyber Security Risk Officer. Develop and manage the 3rd party vendor assessment program including development of policies and procedures as well as conduct evaluations on vendors according to internally developed standards. In addition the position will provide additional assistance in the following aread but is not limited to Policy and Procedure creation and updates, Risk Assessments, Vendor Assessments, Disaster Recovery and Business Continuity Planning, SOX and PCI Audit involvement.
Essential Duties and Responsibilities include the following. Other duties may be assigned.
- Perform analysis of internal business as well as external events to ensure organizational risk is properly assessed and meets the organization IT Compliance needs
- Assist with development and implementation of security policies, standards and education efforts
- Manage the 3rd Party Vendor Assessment process including applicable policy and procedure
- Perform all 3rd Party Vendor Assessments according to internal policy
- Maintain all existing policy and procedures to ensure they continue to address all compliance needs
- Draft, implement, and track management action plans
- Collaborate with the Corporate Information Security and IT Controls teams to review security policies, standards, procedures and guidelines
- Business Continuity Plan creation, planning, maintenance and testing
- Disaster Recovery Plan creation, planning, maintenance and testing
- Create and maintain Vendor Risk Assessment templates and evaluations
- Work with stakeholders and subject matter experts on the maintenance and/or development of documentation as a result of audit or compliance findings
- Research privacy-related topics to enhance departmental privacy efforts
- Provide input to the information security awareness, training and education program
- Drive for timely completion of Business Continuity, Disaster Recovery, Vendor Management, Information Security projects to meet business needs
- Responsible for reviewing all official Compliance documentation maintained by the department
- Responsible for weekly status reporting to the IT Cyber Security Risk Officer, escalation of issues and written communication, and presentation materials
- Coordinate work with internal and external audit as needed
- Maintain current knowledge regarding industry compliance regulations, requirements, policies and amendments to regulations
- Develop and maintain positive relationships with IT staff and customers
- Monitor activities to ensure compliance with applicable internal policies, procedures and external regulations including monthly, quarterly and annual account activity review
- Manage day to day compliance risk and make recommendations to management for continuous improvement
- Ensure risk management reviews are conducted
- Conducts all business in a professional and ethical manner to serve customers and increase the goodwill and profit of the company
- Ability to travel overnight