Epicareer Might not Working Properly
Learn More

Remote Security Assurance Analyst

Salary undisclosed

Apply on


Original
Simplified
Title: Remote Security Assurance Analyst

Location: Remote - can live anywhere within the US - hybrid available if in SLC

This position will be responsible for implementing security measures and monitoring the effectiveness of IT controls for security. This position raises the level of security awareness among employees, assesses branch facilities for security, works with external vulnerability assessments and auditor activities, and assists with security policies, activities, standards, and mitigation of information security risks.

Essential Duties And Responsibilities

  • Primary person responsible for Third Party Risk Management, assessment requests, vendor evaluations and remediation oversight
  • Track enterprise compliance across several security frameworks including NIST and SCF.
  • Develop and deliver operational and executive reports / metrics to track and report on security initiatives, processes, and risks.
  • Aid development of security processes and procedures and manage security controls.
  • Engage in the development of security and privacy awareness training.
  • Perform information security assessments, compliance gap analyses, and risk assessments
  • Develop written information technology and security policies and procedures
  • Work directly with clients to provide advisory services and guidance that will reduce organizational risk, improve their overall security posture, and achieve compliance
  • Prepare reports and other deliverables that contain strategy, technical analysis, findings, and recommendations
  • Provide approved responses to client inquiries and maintain library of records, documentation, and responses
  • Ensures key security controls are identified, implemented, tested, and remediated as required
  • Manage / configure enterprise GRC tool.

Education

  • Minimum 4 Year / Bachelors Degree in a related field
  • Certification - One or more of the following Certifications preferred: CISSP, CRISC, CISA, CISM or other equivalents

Experience

  • Minimum Years of 3 years of experience in Information Security with combinations in operational security, risk management, IT, Compliance and Audit.
  • 2 years experience specific to Security Risk Management and Compliance programs, process and execution preferred

Knowledge, Skills, And Abilities

  • Ability to write solution workflow diagrams, system documentation, playbooks, etc.
  • Strong analytical skills
  • Excellent written and verbal communications skills, including presentational skills
  • Ability to work with others in both individual and team settings.
  • Understanding of or experience with industry and regulatory standards, including NIST 800-53, HIPAA Security Rule, ISO 2700x, AICPA SOC 2, PCI DSS, GDPR, CCPA
  • Prior experience auditing and performing quality control actions of audits.
  • Experience with GRC tools for information gathering and reporting

Expertise and understanding of five or more of following areas:

  • Cyber risk program management and delivery
  • Security architecture
  • Security technologies (e.g., firewalls, security event monitoring, intrusion detection and prevention, malware detection)
  • Data protection
  • Application security/SDLC
  • Third party risk management
  • Cloud security

Benefits

  • Vacation/PTO
  • Medical, Dental, Vision
  • 401k match
  • Bonus paid out quarterly
  • Remote
  • Meaningful work - our platform helps people and makes a difference for the hard of hearing community on a day to day basis

Email Your Resume In Word To

Looking forward to receiving your resume through our website and going over the position with you. Clicking apply is the best way to apply, but you may also:

[email protected]

  • Please do NOT change the email subject line in any way. You must keep the JobID: linkedin : JF12-1800296L429 -- in the email subject line for your application to be considered.***

Jen Dorand - Sr. Executive Recruiter

Applicants must be authorized to work in the U.S.

This job was first posted by CyberCoders on 05/02/2024 and applications will be accepted on an ongoing basis until the position is filled or closed.

CyberCoders is proud to be an Equal Opportunity Employer

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, sexual orientation, gender identity or expression, national origin, ancestry, citizenship, genetic information, registered domestic partner status, marital status, status as a crime victim, disability, protected veteran status, or any other characteristic protected by law. CyberCoders will consider qualified applicants with criminal histories in a manner consistent with the requirements of applicable state and local law, including but not limited to the Los Angeles County Fair Chance Ordinance, the San Francisco Fair Chance Ordinance, and the California Fair Chance Act. CyberCoders is committed to working with and providing reasonable accommodation to individuals with physical and mental disabilities. If you need special assistance or an accommodation while seeking employment, please contact a member of our Human Resources team to make arrangements.

Copyright 1999 - 2024. CyberCoders, Inc. All rights reserved.