Information Security Risk and Compliance

3 weeks ago


Atlanta, United States Purple Box Full time
Company Description

PurpleBox is the leading technology consulting company that focuses on solving business problems utilizing new technologies. We provide Cybersecurity, Cloud Computing, and DevOps consulting services that help businesses manage their business risk more effectively.

Job Description

Multiple Information Security Risk and Compliance Positions are available.
  • Entry-level to mid-senior level
  • Internship, Part-Time, Full Time
We are seeking to hire multiple Information Security, Risk, and Compliance professionals to work with our customers on risk assessment, compliance, and cybersecurity projects. As part of project delivery teams, these professionals are responsible for the execution, monitoring, and enforcement of the information security governance, risk management, and compliance projects. The successful candidate will oversee day to day execution of operational information security risk and compliance initiatives at PurpleBox and/or our clients.

Responsibilities:
  • Manage and execute the day-to-day information security risk and compliance operational activities
  • Develop and recommend appropriate information security policies, standards, procedures, checklists, and guidelines using generally recognized security concepts tailored to meet the requirements of the organization
  • Identify and document specific security issues, propose resolution options, and interpret matters from the perspective of involved stakeholders
  • Communicate regularly with teams and staff as part of risk assessments, follow-up on open issues, status tracking, and other miscellaneous items.
  • Independently design, recommend, plan, develop, and support implementation of project-specific security solutions to meet requirements
  • Manage remediation of identified risks and vulnerabilities; identify those within the organization responsible for remediation tasks; track progress on remediation of identified risks and vulnerabilities and provide appropriate reporting to all constituents
  • Provides regular reporting metrics on the current state of the program.
  • Other duties as assigned
Qualifications
  • Bachelor's degree in Computer Science, Information Technology, Business Administration, or related field
  • Experience in information security risk assessment, compliance and/or security operations
  • Previous experience in one or more of the areas below is a plus:
  • --- IT Security Strategy and Management
  • --- Risk Management, IT Audit, and Compliance
  • --- Network, System, Database administration, support and/or help-desk experience
  • --- Application Security, Software Development
  • --- Security Monitoring, Data Loss Prevention, Incident Response
  • Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate security and risk-related concepts to technical and nontechnical audiences.
  • Strong analytical skills to analyze security requirements and relate them to appropriate security controls.
  • Working knowledge of relevant security regulations, standards and frameworks, including SOC2, ISO27000, PCI, HIPAA, and NIST CSF.

Professional certifications such as CISM (Certified Information Security Manager), CISA (Certified Information Systems Auditor) or other similar credential is a plus.

Additional Information

All your information will be kept confidential according to EEO guidelines.

  • Atlanta, United States Deluxe Full time

    Description : The Information Security Risk Analyst conducts risk assessments, generates risk reporting and metrics, and participates in risk management activities. This position will be responsible for assessing information security risks and facilitating remediation of identified information security risks. Conduct information security...


  • Atlanta, United States PRGX Global, Inc. Full time

    The Governance, Risk and Compliance Manager (Security) specializes in third-party risk assessments, ISO27001 audits, SOC2 audits, and client-conducted risk assessments. The position plays a pivotal role in maintaining and enhancing PRGX's governance, risk and compliance framework. Key Responsibilities: ISO27001 Audits: * Oversees the preparation,...


  • Atlanta, United States PRGX Global Inc. Full time

    The Governance, Risk and Compliance Manager (Security) specializes in third-party risk assessments, ISO27001 audits, SOC2 audits, and client-conducted risk assessments. The position plays a pivotal role in maintaining and enhancing PRGX's governance, risk and compliance framework. Key Responsibilities:ISO27001 Audits:Oversees the preparation, execution, and...


  • Atlanta, United States ICONMA Full time

    Description: Candidates will be responsible to solve problems analytically by applying a mixture of risk and technology expertise to perform impact assessments, identify root causes in support of the technology control activities, and drive risk reduction in the respective technology teams. They will be responsible to monitor the health of audit issues...


  • Atlanta, United States Infosys Full time

    Brief Job description:The person has to co-ordinate with IT / BPO Operations, Corporate and Client Stakeholders to implement all necessary Risk and Information security best practices, ensuring compliance to organization policies and procedures, and client requirements with respect to products, platforms, BPO Services at all Infosys McCamish locations across...


  • Atlanta, United States Wolters Kluwer DXG U.S., Inc. Full time

    Security Risk and Compliance Analyst will operate within a divisional security team reporting to the Director of Information Security. Analyst will be responsible for risk assessment, reporting and audit of Customer facing applications supporting the Tax and Accounting (TAA) and Corporate Performance (CP&ESG) application portfolio. Primary responsibilities...

  • Governance Risk

    3 days ago


    Atlanta, United States Mission Recruit Full time

    Job Summary Maintains and contributes to the design of the Companys cybersecurity Governance, Risk, and Compliance program (GRC). The GRC Analyst II plays a key role in assessing technology-related risks and ensuring compliance with relevant regulations, policies, standards, and controls designed to protect the organizations information assets. Learned...

  • Governance Risk

    5 days ago


    Atlanta, United States PulteGroup Full time

    Job Summary: Maintains and contributes to the design of the Company's cybersecurity Governance, Risk, and Compliance program (GRC). The GRC Analyst II plays a key role in assessing technology-related risks and ensuring compliance with relevant regulations, policies, standards, and controls designed to protect the organization's information assets. Learned...


  • Atlanta, United States Ask Staffing Full time

    Summary of This Role The IT Risk & Compliance Analyst IV works with BTS technical resources to ensure a positive outcome to all risk, audit and assessment activities. Efforts include: identification and assessment of IT Risk, ongoing monitoring of identified issues, work with technical teams to address and mitigate IT Risk, creating controls based on...

  • Governance Risk

    9 hours ago


    Atlanta, United States PulteGroup Full time

    Job Summary: Maintains and contributes to the design of the Company's cybersecurity Governance, Risk, and Compliance program (GRC). The GRC Analyst II plays a key role in assessing technology-related risks and ensuring compliance with relevant regulations, policies, standards, and controls designed to protect the organization's information assets. Learned...


  • Atlanta, United States Risk & Insurance Management Society Inc Full time

    A well-established & growing electric utility in Atlanta, Ga. has an immediate opening for a Director of Risk Management – reporting to the VP, Chief Legal & Compliance Officer. This newly created position provides a challenging opportunity for a risk management professional to meet a significant corporate need by enhancing the existing Enterprise Risk...


  • Atlanta, United States Science 37 Full time

    **Chief Information Security Officer** at Science 37 Atlanta, Georgia - Remote Science 37 is accelerating the research and development of breakthrough biomedical treatments by bringing clinical trials to patients' homes. Backed by venture investors such as Glynn Capital, Google Ventures, Redmile Group, dRx Capital and Lux Capital, we are revolutionizing the...


  • Atlanta, United States Crescens Full time

    Role: Information Security Analyst Location: Atlanta, GA Duration: 8 Months contract *Candidate MUST be local to Metro Atlanta* *Tax Clearance Letter, due at the time of submission* (pls review compliance tab for instruction on how the CANDIDATE must obtain this letter) *Pls do NOT submit candidates previously submitted to #712928 Job Summary: We are looking...


  • North Atlanta, United States Children's Healthcare of Atlanta Full time

    Note: If you are CURRENTLY employed at Children's and/or have an active badge or network access, STOP here. Submit your application via Workday using the Career App (Find Jobs). Work Shift Day Work Day(s) Monday-Friday Shift Start Time 8:00 AM Shift End Time 5:00 PM Worker Sub-Type Regular Children's is one of the nation's leading children's...


  • Atlanta, United States Global Payments Full time

    Every day, Global Payments makes it possible for millions of people to move money between buyers and sellers using our payments solutions for credit, debit, prepaid and merchant services. Our worldwide team helps over 3 million companies, more than 1,300 financial institutions and over 600 million cardholders grow with confidence and achieve amazing results....


  • Atlanta, United States Motion Recruitment Full time

    We are partnered with a major consulting firm that provides engineering and environment services to a variety of clients in the public and private sectors. They are currently looking for an Information Security Analyst that will be responsible for ensuring security policies and procedures are in compliance with industry standards and regulations. This will...

  • BSA/AML Compliance

    4 days ago


    Atlanta, United States Coastal States Bank Full time

    Position Summary: The BSA/AML Compliance & Risk Specialist is responsible to carry out many of the day-to-day tasks that ensure compliance with the Bank Secrecy Act and management of the Bank's AML risks. An ability to work efficiently and independently while prioritizing tasks is crucial for success. This individual can use technology and understanding...


  • Atlanta, United States Motion Recruitment Full time

    We are partnered with a major consulting firm that provides engineering and environment services to a variety of clients in the public and private sectors. They are currently looking for an Information Security Analyst that will be responsible for ensuring security policies and procedures are in compliance with industry standards and regulations. This will...


  • Atlanta, United States Pager Full time

    The CISO, reporting into the CTO, will lead our security organization that is responsible for our security operations, securing the technology and products, and supporting corporate development, sales, compliance, and audit teams. You will lead all information security and data protection initiatives. The CISO function works closely with various teams across...


  • Atlanta, United States HD Supply Full time

    Job Summary Responsible for day-to-day efforts on Information security risk management for the organization, focusing on detailed technology issues. Major Tasks, Responsibilities, and Key Accountabilities Conduct independent test and evaluation of new and existing systems. Perform testing to include system security testing, vulnerability scanning,...