Information Security Compliance Manager

1 week ago


Dallas, United States Simpatico Systems, LLC Full time
Job DescriptionJob DescriptionSalary: 80k-100k DOE

Information Security Compliance Manager 

Simpatico Systems is currently seeking a Manager of Information Security Governance, Risk & Compliance.  The candidate will oversee the development and life-cycle management of governance items such as policies, standards, controls, and compliance frameworks, as well as conduct and oversee risk-based compliance testing of internal controls, application controls, infrastructure systems, and information technology processes. 

 

Primary Responsibilities: 
 

  • Assume responsibilities for leading the development, management, and improvement of the cybersecurity Governance, Risk, and Compliance (GRC) practice. 
  • Lead development, implementation, and maintenance of information security governance items such as policies, standards, and controls 
  • Mature and maintain the policy lifecycle management process, ensuring security policies are reviewed and updated regularly and any exceptions are processed and monitored 
  • Develop and mature the various governance and compliance processes and functions, provide short and long-term roadmaps for increasing capabilities, and develop associated resource plans to properly staff for these enhancements 
  • Provide effective mentoring and guidance to other security personnel who may assist in developing policy, standards, and procedures.  
  • Foster relationships with client personnel to analyze, evaluate, and enhance information systems to develop and improve security at procedural and governance levels 

Essential Functions / Key Areas of Responsibility: 

NIST 800-171/Cybersecurity Maturity Model Certification (CMMC) 

  • Become a CMMC Registered Practitioner (RP) within the first 90 days 
  • Work collaboratively with customer business and IT/Security to help them prepare for NIST 800-171 compliance and CMMC certification including scoping, risk assessment, maturity assessment of current controls, risk/gap remediation plan development, remediation plan, execution, System Security Plan Development, etc. 
  • Assess current DFARS NIST 800-171 controls compliance status and identify the gaps and remediation plans. 
  • Work with the CMMC/security team to lead efforts in developing secure solutions for business units that need to be compliant with DFARS requirements. 
  • Delivers recommendations to provide security enhancement activities to protect computer systems, networks, and data. This includes analyzing, testing, documenting, implementation/configuration, and support of new security technologies and processes. 
  • Knowledgeable in risk assessment processes, tracking, and remediation of issues identified in audits or assessments. 
  • Participates in the creation of enterprise security documents (policies, standards, baselines, guidelines, and procedures). 
  • Evaluate technical controls and advise appropriate solutions. 
  • Deliver weekly project strategy and planning meetings to business leaders and IT. 

 

To qualify for the role, you must have: 

  • A bachelor's degree in a related field and approximately 5 years of related work experience 
  • Experience in the following areas: 
  • Governance, Risk, and Compliance (GRC) 
  • Cybersecurity assessments 
  • IT and cybersecurity policies, standards, procedures, and controls 
  • Security strategies and roadmaps 
  • Cybersecurity metrics and reporting 
  • Cybersecurity organization design and implementation 
  • A strong background in security frameworks and standards such as ISO, PCI DSS, NIST, and cybersecurity laws and regulations such as HIPAA, FISMA, and GLBA 
  • CISSP, CISM, CISA, CIPT, CIPM, CRISC, or other relevant certification desired; non-certified hires are required to become certified within 1 year from the date of hire  
  • Strong presentation and communication skills and ability to speak with director and VP levels  

 

Specialized Skills and Technologies 

Governance 

  • Strong knowledge of cybersecurity governance, regulations, and security frameworks 
  • Demonstrated understanding of a wide range of compliance and technology frameworks (NIST, ISO, Cloud Security Alliance (CSA), OWASP, CIS Benchmark, etc.) 
  • Ability to understand new laws and regulatory requirements and how they relate to company risk, information security, governance, and compliance 
  • Proficient in developing and maintaining governance items such as policies, standards, and controls 

Compliance 

  • Expert-level skill in executing compliance control testing programs and processes 
  • Strong understanding of the implementation of effective control and/or mitigation options to manage security risks 
  • Skill in leading the process of Issues Management and associated remediation efforts 

Leadership And Soft Skills 

  • Exceptional consultative and interpersonal skills that result in business relationships of impeccable trust, confidence, and results at all levels within the organization 
  • Skilled at managing a team 

Technologies 

  • Implementing and using GRC/IRM tools to manage GRC processes 
  • Knowledge of cloud security concepts and best practices 
  • Skilled in the understanding of IT systems and supporting technologies  

 


remote work

  • Dallas, Texas, United States Techstar Consulting Inc Full time

    Job OverviewPosition: Information Security Compliance SpecialistExperience Required: A total of 5-7 years in an IT technical capacity, with a minimum of 4 years dedicated to Information Security and familiarity with regulatory audits and assessments.Key Responsibilities:Coordinate and manage Information Security efforts to ensure adherence to NERC CIP and...


  • Dallas, Texas, United States UT Southwestern Medical Center Full time

    Why Join UT Southwestern?With a legacy of over 75 years in the Dallas-Fort Worth area, UT Southwestern is dedicated to excellence, innovation, collaboration, and empathy. As a globally recognized medical and research institution, we seek strategic thinkers to help safeguard the security and compliance of our organization. A career in our Information...


  • Dallas, Texas, United States UT Southwestern Medical Center Full time

    About the RoleUT Southwestern Medical Center is seeking a highly skilled Senior Governance Risk and Compliance Analyst to join our Information Security team. This is a critical role that will play a key part in safeguarding sensitive hospital and university data.Key ResponsibilitiesDevelop, implement, and maintain compliance with established cybersecurity...


  • Dallas, United States Marksman Security Full time

    Overview: Marksman Security Corporation is now seeking a Security Portfolio Manager! The Security Portfolio Manager will oversee security personnel, ensuring the sites are properly staffed and officers are trained and motivated. The Security Portfolio Manager will work closely with the client contact to achieve goals and objectives set forth by Marksman...


  • Dallas, United States Franklin Fitch Full time

    Information Security Director | Dallas | Perm | About the Role:We're seeking a seasoned Information Security Director to oversee the security posture of our client's organization. In this role, you'll be responsible for developing and implementing comprehensive security strategies, ensuring compliance with industry standards, and mitigating risks to protect...


  • Dallas, Texas, United States United Texas Bank Full time

    Job SummaryUnited Texas Bank is seeking a highly skilled Information Security Officer to join our team. As a key member of our organization, you will play a critical role in protecting our bank's information assets and ensuring the confidentiality, integrity, and availability of our data.The successful candidate will have a strong background in information...


  • Dallas, United States Boys and Girls Country of Houston, Inc Full time

    At Bluebeam, we empower people to advance the way the world is built. We create smart software solutions that make construction sites more efficient, connected, and safe and improve the lives of design and construction professionals everywhere.This position will provide leadership and accountability for Bluebeam’s information security program. It is...


  • Dallas, Texas, United States Sage Search Partners Full time

    Position Summary:In the role of Information Security Analyst, you will be responsible for scrutinizing Security Operations Center (SOC) documentation and performing audits related to cybersecurity. Your skills will be crucial in maintaining security compliance, evaluating controls, and ensuring that our partners adhere to rigorous security standards. This...


  • Dallas, United States Business Centric Technology Full time

    Job DescriptionJob DescriptionBCT is actively seeking a skilled IT Security Compliance Lead for a direct hire opportunity in Dallas.This is a onsite position. No sponsorship is offered and NOT open to C2C candidates.SALARY RANGE: Up to $155k base, depending on candidate experience, etc.WHAT OUR CLIENT OFFERS:The company is an employee-focused culture with...


  • Dallas, Texas, United States Boys and Girls Country of Houston Full time

    At Boys and Girls Country of Houston, we are dedicated to transforming the lives of young individuals through innovative programs and services. We strive to create a secure environment that supports our mission and enhances the well-being of our community. This role will be pivotal in leading and managing our information security initiatives. The individual...


  • Dallas, Texas, United States UT Southwestern Medical Center Full time

    About the RoleUT Southwestern Medical Center is seeking a highly skilled Senior Governance Risk and Compliance Analyst to join our Information Security team. This role will play a critical part in safeguarding sensitive hospital and university data.Key ResponsibilitiesDevelop, implement, and maintain compliance with established cybersecurity controls...


  • Dallas, United States Southern Methodist University Full time

    Job Description – Chief Information Security Officer (INF)About the Position:Looking for an opportunity to lead an incredibly talented, small, focused, energetic and pivotal Information Security Team with a stellar mission? Look no further.The Chief Information Security Officer (CISO) is a senior–level leader responsible for establishing and maintaining...


  • Dallas, Texas, United States TEKsystems Full time

    Job OverviewThe Information Security Engineer is responsible for ensuring that our network, software, systems, and infrastructure adhere to the highest security standards and comply with TEKsystems' security policies.Key ResponsibilitiesLead the assessment and remediation of technical security controls.Identify, analyze, and model potential threats to our...


  • Dallas, United States Southern Methodist University Full time

    Job Description - Chief Information Security Officer (INF00000167)About the Position:Looking for an opportunity to lead an incredibly talented, small, focused, energetic and pivotal Information Security Team with a stellar mission? Look no further.Working for SMU supports more than higher education, we're on the mission of raising up the next generation of...


  • Dallas, Texas, United States Insight Global Full time

    Position Overview:We are in search of a dedicated and skilled Compliance Engineer to become a part of our client's Cloud Engineering team, providing support to their customers and service divisions. This role involves managing the daily operations of compliance services. The Compliance Engineer will take charge of planning, scoping, executing, and reporting...


  • Dallas, Texas, United States UT Southwestern Medical Center Full time

    About the RoleUT Southwestern Medical Center is seeking a highly skilled Senior Governance Risk and Compliance Analyst to join our Information Security team. This is a critical role that will play a key part in safeguarding sensitive hospital and university data.Key ResponsibilitiesImplement established risk frameworks for the Information Security...


  • Dallas, United States Trova Full time

    Remote position but must have the ability to go in to the office in Dallas from time-to-time. Permanent position, W2 onlyOverviewLeading the Enterprise Security function, this position will contribute to the strategy, design, and drive the implementation and operational security agendas needed to prevent, detect and respond to an evolving cyber threat...


  • Dallas, United States Trova Full time

    Remote position but must have the ability to go in to the office in Dallas from time-to-time. Permanent position, W2 onlyOverviewLeading the Enterprise Security function, this position will contribute to the strategy, design, and drive the implementation and operational security agendas needed to prevent, detect and respond to an evolving cyber threat...


  • Dallas, United States Trina Solar US Manufacturing Module 1 LLC Full time $105,000 - $185,000

    Job DescriptionJob DescriptionTrina Solar: Pioneering a Brighter FutureTrina Solar, a global leader in solar technology and manufacturing, is on a mission to lead the way in smart solar energy solutions. Founded in 1997, Trina Solar has broken 26 world records on solar cell efficiency and module power. Trina Solar is committed to facilitating the...


  • Dallas, Texas, United States NTT DATA Services Full time

    Position Overview:NTT DATA Services is dedicated to recruiting outstanding, innovative, and enthusiastic professionals who are eager to advance their careers with us. We are seeking a Security Analysis Specialist to become a vital part of our team.Role Responsibilities:• Vigilantly oversee company networks to detect security breaches and conduct thorough...