Security Compliance Specialist
3 months ago
3186738
** U.S. Citizens and GC Holders **
6-18 month contract to hire (could convert anytime after initial 6 months)
Top Three Skills:
1 . ISO 27001 - this person will need to have Sr. to Expert level experience within ISO 27001 Framework and within the implementation process. This person will be assisting with leading the implementation of ISO 27001 across multiple data centers within the corporate enterprise.
2. Experience with Risk Assessment and Audits within ISO 27001 and or NIST 800-53. The will need to be comfortable with organizing, prioritizing and implementing the remediation process with regards to policy an compliance issues.
3. Communication and presentation skills - this person will be working with personnel from the management level all the way to the VP level. They will also be working with individual contributors to ensure implementation of policy, compliance and procedure is done correctly.
Job Description:
Leader in providing analytic software to help businesses make better decision. They do this by providing innovative analytics, business intelligence and data management and services to their customers.
This team is responsible for the overall compliance standards for IT and their multiple Data Centers. They are currently working on standardizing all of them to ISO 27001 framework. There are 4 DC that will be involved in this project. This team will be partnering with IT OPS, Hosting Audit and Compliance, Global Compliance, Global Information Security, as well as executive branch within IT, RD and Corp. Executive.
This person will be assisting in taking the current road map and executing a ISO 27001 implementation within their 4 data center environment. They will be mirroring the implementation of the local Cary Data Center. This person will need to more experience with ISO/NIST implementation rather than audit and process experience. They will be working with multiple organization within the enterprise to ensure this is done correctly and on time. This person will also be working and managing the security risk assessment, control gap analysis, leading external ISO audit, validating controls and participating in internal audits.
Full Description:
Sr. IT Security and Compliance Specialist
Sr. IT Security Compliance Specialist, under limited supervision, will be responsible for supporting the IT Security and Compliance Program. They must be a highly motivated individual with excellent organizational skills, with the ability to stay on top of a variety of commitments and deadlines; must be able to work independently and as part of a team to maintain workload and report on problems or progress in a timely manner.
The Sr. IT Security and Compliance Specialist will be responsible for bridging the gap between compliance and IT security by supporting policy and standards development. They will perform risk assessments, gap analysis and overall security controls guidance for security standards including ISO 27001; National Institute of Standards and Technology (NIST 800-53); IRS 1075 and other security frameworks. They should be comfortable interpreting business risk and prioritizing remediation activities with IT and the business. The Sr. IT Security Compliance Specialist will also perform Plan of Action and Milestone (POAM) activities to track remediation efforts, complete security risk tracking and reporting, and Information Technology audit preparation and response.
The ideal candidate will be a self-starter and have an inquisitive, analytical mind that constantly looks for solutions to difficult problems. You must have technical knowledge and/or experience in information security and the ability to communicate information security risks; controls and mitigation strategy to management at all levels of the business.
The successful candidate must be a self-starter and goal-oriented with the ability to work with limited supervision within an evolving and entrepreneurial environment. The Sr. IT Security Compliance Specialist will work across all business units and be proficient in managing multiple workstreams at the same time.
Essential Knowledge Skills and Abilities
• Able to lead compliance program/project initiatives, audits and benchmarking of security policies against good practice and standards, including ISO 27001:2013
• Undertake Information Security Risk Assessments; Control gap analysis; Security Incident Response and Security Investigations
• Participate in or lead internal or external ISO 27001 certification audits
• Assist with analysis and documentation of audit remediation actions
• Identify and recommend cost effective improvements to security practices
• Coordinate security responses to RFI/RFP and customer questionnaires
• Take part in discussions with customer security teams and auditors regarding security and related interests during pre- and post-sales activities
• Review supplier and customer security contract terms against current policies and processes
• Effectively communicate Information security principles and practices to technical and non-technical audiences
• Create and help administer security training programs and practices.
• Perform other duties, as assigned.
The candidate should also be able to demonstrate:
• Strong time management skills (schedules, timelines, and task prioritization) and ability to work with minimal supervision or guidance
• Excellent communication, analysis and process flow skills
• The ability to be flexible with others, to display tact and diplomacy, and to maintain a high degree of confidentiality and integrity
• Excellent planning and organization skills
• Proven ability to manage projects
• Strong time management and prioritization skills
• Experience with ServiceNow issue management ticketing system
Experience
Ten years of experience in security and compliance; information security audit and securing IT systems.
Experience of working in an ISO27001 certified environment
Education
Bachelor's degree in a quantitative field, preferably in Computer Science, Information Technology, or a related discipline.
CISSP, CISA, GSNA, or CRISC certification
ISO27001:2013 Lead Auditor or Lead Implementor trained
-
IT Security Compliance Lead
4 weeks ago
Cary, North Carolina, United States TEKsystems Full timeJob SummaryWe are seeking a highly motivated IT Security Compliance Lead to support our IT Security and Compliance Program. This individual will be responsible for bridging the gap between compliance and IT security by supporting policy and standards development, performing risk assessments, gap analysis and overall security controls guidance for security...
-
Enterprise IT Security Compliance Manager
3 days ago
Cary, North Carolina, United States TEKsystems Full timeJob Summary:We are seeking a highly skilled Enterprise IT Security Compliance Manager to join our team at TEKsystems.This is a full-time opportunity with an estimated salary of $120,000 per year, depending on experience.About the Role:The successful candidate will be responsible for supporting the IT Security and Compliance Program, working closely with...
-
Regulatory Compliance Specialist
3 weeks ago
Cary, North Carolina, United States BetaNXT Inc Full timeJob OverviewBetaNXT Inc, a leading provider of connected wealth management infrastructure solutions, seeks a skilled Regulatory Compliance Specialist to join their team.As a key member of the regulatory group, you will play a crucial role in ensuring accurate fulfillment of electronic and print distributions of prospectus, semi-annual and annual reports for...
-
Retail Security Specialist
2 weeks ago
Cary, North Carolina, United States Burlington Stores Full timeAbout the RoleIn this exciting opportunity, you will play a critical role in maintaining a secure shopping environment while delivering exceptional customer service as a Retail Security Specialist.You will be responsible for monitoring store entrances, exits, and high-risk areas, identifying and reporting theft incidents, and promoting a sense of control and...
-
Regulatory Compliance Specialist
4 weeks ago
Cary, North Carolina, United States Epic Games Full timeAbout UsEpic Games, a global leader in game development and engine technology, is seeking a highly skilled Regulatory Compliance Specialist to join our team. Our company spans across 25 countries with 46 studios and 4,500+ employees globally.SalaryWe offer a competitive salary of $120,000 per year, plus benefits and bonuses based on performance.Job...
-
Cybersecurity Compliance Expert
2 weeks ago
Cary, North Carolina, United States TEKsystems Full timeAbout the RoleTEKsystems is seeking a seasoned Cybersecurity Compliance Expert to join our team. This role is an exciting opportunity for a motivated individual to contribute to the company's growth and success.Job DescriptionWe are looking for a highly skilled Cybersecurity Compliance Expert with at least 10 years of experience in security and compliance,...
-
Security and Customer Experience Specialist
2 weeks ago
Cary, North Carolina, United States Burlington Stores Full timeAbout the JobThe Security and Customer Experience Specialist plays a critical role in ensuring the safety and satisfaction of our customers. You will be the face of our store, greeting customers, answering questions, and resolving issues promptly. Your expertise in shortage reduction programs and ability to work collaboratively with colleagues will make you...
-
Asset Protection Specialist
4 weeks ago
Cary, United States Home Depot Full timeHome Depot - JobID: 212247260C3343D69841A0535EEC372B [Loss Prevention / Security] As an Asset Protection Specialist at Home Depot, you'll: Prevent financial loss caused by theft and fraud; Support safety and environmental program compliance in your assigned store/multiple stores; Identify incidents of theft and fraud, review CCTV and exception reports,...
-
Epic Security Analyst
1 month ago
Cary, United States ClinDCast LLC Full timeJob DescriptionJob DescriptionOur Client is looking for an Epic Security Analyst.Consultant needs to have in-depth knowledge of system abilities, applications, and processes to perform effectively as an educator and expert for system users.Knowledge in scheduling and provider templates and/or referrals and prior authorizationsUnderstanding and able to...
-
Senior Epic Security Professional
4 weeks ago
Cary, North Carolina, United States ClinDCast LLC Full timeJob OverviewClinDCast LLC is seeking an experienced Epic Security Analyst to join our team. This role involves providing expert support and guidance to users of Epic systems.About the RoleWe are looking for a highly skilled individual with in-depth knowledge of Epic system abilities, applications, and processes. The ideal candidate will have experience with...
-
Senior Manager- Product Security
1 month ago
Cary, United States SAS Global Full timeJob Description Senior Manager - Product Security - Remote or Hybrid Nice to meet you! We’re a leader in data and AI. Through our software and services, we inspire customers around the world to transform data into intelligence - and questions into answers. We’re also a debt-free multi-billion-dollar organization on our path to IPO-readiness. If you're...
-
Senior Application Security Engineer
7 months ago
Cary, United States Blackbaud Full timeWe’re hiring on the Blackbaud Application Security team! As a member of the Cyber Security organization at Blackbaud, the Application Security Engineer is a specialized position that plays a key role in securing software built and/or used by Blackbaud. You can expect to work closely with software development teams as well as third-party organizations to...
-
Senior Market Life Insurance Specialist
9 hours ago
Cary, North Carolina, United States Pope Insurance Group (A Security National Life Insurance Company Agency) Full timeAre you a life insurance agent looking for a new challenge? Look no further than Pope Insurance Group (A Security National Life Insurance Company Agency). We are seeking self-motivated and currently licensed life insurance agents to sell final expense products to the growing senior market.Job ResponsibilitiesAs a senior market life insurance specialist, you...
-
Corporate Securities Attorney
7 days ago
Cary, Illinois, United States US Foods, Inc. Full time**Job Overview:**We are seeking a highly experienced Corporate Securities Attorney to join our team at US Foods, Inc. as a Sr. Counsel for Corporate and Securities.Responsibilities:Oversee and manage all public company reporting and disclosure obligations, including the preparation and filing of Forms 10-K, 10-Q, 8-K, proxy statements, and Section 16...
-
Cloud Infrastructure Specialist
2 days ago
Cary, North Carolina, United States Zift Solutions Full timeWe are seeking a highly skilled Cloud Infrastructure Specialist to join our team at Unifyr, a leading SaaS company. The ideal candidate will design, build, and maintain scalable platforms that power our applications and services.Key Responsibilities:Platform Development: Design, implement, and maintain reliable platforms using cloud-based technologies like...
-
Cary, United States American Tower Full time**The Team** We are seeking a Vice President; Chief Information Security Officer join American Tower. The VP, CISO is responsible for establishing and maintaining the companys enterprise-wide information security vision, strategy, and programs to ensure information, assets and technologies are adequately protected. The incumbent will have a deep...
-
Vice President, Chief Information Security Officer
2 months ago
Cary, United States American Tower Full timeThe Team We are seeking a Vice President; Chief Information Security Officer join American Tower. The VP, CISO is responsible for establishing and maintaining the company’s enterprise-wide information security vision, strategy, and programs to ensure information, assets and technologies are adequately protected. The incumbent will have a deep understanding...
-
Sales Growth Specialist
6 days ago
Cary, North Carolina, United States Surya Technologies, Inc. Full timeJob DescriptionSurya Technologies, Inc. is a provider of managed services focusing on IT service management, cloud infrastructure, and security. We are looking for a talented Sales Growth Specialist to join our team in the Triangle market.Key ResponsibilitiesDrive business growth by securing new clients and expanding existing relationshipsDevelop and...
-
Enterprise IT Infrastructure Specialist
3 days ago
Cary, North Carolina, United States TEKsystems Full timeWe are seeking a highly skilled Enterprise IT Infrastructure Specialist to join our team at TEKsystems. This role will be based in Cary, North Carolina.Job DescriptionThe successful candidate will have experience installing, operating, and maintaining physical/virtual operating system workstations and servers in support of business processing requirements....
-
Regulatory Compliance Specialist
1 day ago
Cary, North Carolina, United States BetaNXT Inc Full timeAbout the RoleWe are seeking a highly skilled Regulatory Associate to join our team at BetaNXT Inc. as part of our Financial Operations department.This is a hybrid position requiring in-office work 3 days a week, with flexible hours and overtime opportunities available.