Cyber Security Compliance Analyst
Salary undisclosed
Checking job availability...
Original
Simplified
Job Details
JAA - Jacksonville Aviation Authority - Jacksonville, FL $74,996.18 - $119,993.90 Salary Information Technology
Description
The Jacksonville Aviation Authority (JAA) welcomes applications for the role of Cyber Security Compliance Analyst through midnight on Sunday, February 16, 2025.
This is professional work which performs cybersecurity audits and compliance assessments for various laws and regulations that the Jacksonville Aviation Authority must adhere to. This position is specifically responsible for gathering evidence, coordinating with business owners and external auditors, identifying potential audit issues/operational improvements, and working with other IT staff on remediation plans.
This role must also understand and be able to assess technology and operational risks related to internal and cloud technology solutions and at times, provide input to JAA personnel on appropriate controls to address audit risks. The position will also work with external and internal auditors, serving as liaison between JAA and non-JAA auditees, gathering and presenting evidence as required.
Contacts require courtesy, tact, and effectiveness in dealing with others to request or provide information, ask questions or obtain clarification. The work is performed in an office environment. Operates computers and other standard office equipment. The work is performed under limited supervision where the work assignments are covered by the clearly defined processes. The worker plans and organizes the work, determines priorities, and the work is reviewed after the fact, in terms of quality, volume, timeliness and adherence to established practices and techniques.
Qualifications
Essential Functions
Bachelor’s degree in Information Technology, Computer Science, or a related field and
Three (3) years of related work experience or
An equivalent combination of education, training, and experience.
Licenses & Certifications
CISA or equivalent required
Must be able to obtain and maintain a Security Identification Display Area (SIDA) badge
Florida Class E Driver’s License may be required and must be maintained
Physical Demands
The physical demands consist of moving from one work location to another, sitting or standing at a workstation for extended periods of time. Must be able to perform the physical requirements of the position with or without reasonable accommodation.
JAA - Jacksonville Aviation Authority - Jacksonville, FL $74,996.18 - $119,993.90 Salary Information Technology
Description
The Jacksonville Aviation Authority (JAA) welcomes applications for the role of Cyber Security Compliance Analyst through midnight on Sunday, February 16, 2025.
This is professional work which performs cybersecurity audits and compliance assessments for various laws and regulations that the Jacksonville Aviation Authority must adhere to. This position is specifically responsible for gathering evidence, coordinating with business owners and external auditors, identifying potential audit issues/operational improvements, and working with other IT staff on remediation plans.
This role must also understand and be able to assess technology and operational risks related to internal and cloud technology solutions and at times, provide input to JAA personnel on appropriate controls to address audit risks. The position will also work with external and internal auditors, serving as liaison between JAA and non-JAA auditees, gathering and presenting evidence as required.
Contacts require courtesy, tact, and effectiveness in dealing with others to request or provide information, ask questions or obtain clarification. The work is performed in an office environment. Operates computers and other standard office equipment. The work is performed under limited supervision where the work assignments are covered by the clearly defined processes. The worker plans and organizes the work, determines priorities, and the work is reviewed after the fact, in terms of quality, volume, timeliness and adherence to established practices and techniques.
Qualifications
Essential Functions
- Understand technology controls: testing of controls and supporting evidence that impact on-premises and cloud technology, understand operational risk to the Information Technology Services organization as well as related laws, regulations, and industry standards, specifically related to internal and cloud technology solutions.
- Assist and recommend policies, standards, procedures, and controls to assure the confidentiality, integrity, and availability of the information technology environment for on premises as well as cloud hosted IT applications and infrastructure.
- Represent Information Technology related to internal and external assessments and/or audits of information technology systems and processes, interpret results, and develop and communication recommendations to management.
- Participate in appropriate opportunities for continuing education, seminars, and participation in field-related professional organizations to remain current on developments in information security profession.
- Develop and recommend appropriate information security policies, standards, procedures, checklists, and guidelines using generally recognized security concepts tailored to meet the requirements of the organization for on premises as well as cloud hosted IT applications and infrastructure.
- Identify and document specific security issues, propose resolution options, and interpret matters from the perspective of involved stakeholders.
- Other duties as assigned.
- Experience leading IT internal audit, external audits, and or service organization control reporting and activities
- Solid understanding of IT general controls and activities
- Familiarity with privacy laws, data protection/security regulations, and cloud security frameworks
- Possess a general understanding of IT security technologies, including network, application and database security, access management and cloud security
- Excellent communication, listening, and facilitation skills
- Excellent time management and related organizational skills, including appropriate sense of urgency, a proactive approach, and a suitable ability to anticipate and manage project lifecycle events, issues, and obstacles
- Expertise in managing PCI Compliance (preferred)
- Expertise in managing CJIS Compliance (preferred)
- Expertise in managing TSA-NA, Florida House Bill 7055 Compliance, or other similar government cybersecurity compliance requirements (preferred)
- Expertise in creating, maintaining, and fine tuning a compliance program, including,
- Initial compliance implementation measures, working with technical teams to implement requirements.
- Creating processes to document compliance activities for future audits.
- Maintaining the processes of documenting and ensuring ongoing and recurring compliance activities.
- Annual / recurring fine tuning of compliance processes.
- Expertise performing compliance audits.
- Expertise working with and managing vendor activities when compliance work is performed by external agencies.
Bachelor’s degree in Information Technology, Computer Science, or a related field and
Three (3) years of related work experience or
An equivalent combination of education, training, and experience.
Licenses & Certifications
CISA or equivalent required
Must be able to obtain and maintain a Security Identification Display Area (SIDA) badge
Florida Class E Driver’s License may be required and must be maintained
Physical Demands
The physical demands consist of moving from one work location to another, sitting or standing at a workstation for extended periods of time. Must be able to perform the physical requirements of the position with or without reasonable accommodation.