
Security Assurance Specialist
Job Description:
Title: Security Assurance Specialist Location: Warrendale Pennsylvania Hybrid (3 days in office, 2 remote) or Remote
Duration: 9 months
Job at a Glance
We are seeking a Security Assurance Specialist to support key security projects within the Information Security Group (ISG) and the broader Global Technology Operations (GTO) function. This role requires expertise in SOC 2 assessments and security control frameworks, working closely with internal stakeholders and external auditors to ensure compliance and risk mitigation.
Responsibilities
- Support the delivery of projects for ISG and GTO.
- Serve as a technical SME on SOC 2 assessments and security control frameworks.
- Assist with the SOC 2 assessment process, ensuring security controls are properly implemented and evidenced.
- Collaborate with stakeholders across GTO to review and update security controls in alignment with NIST and CIS frameworks.
- Coordinate with GTO stakeholders to disseminate assessment findings and facilitate remediation efforts.
- Work closely with project managers to outline key tasks and refine delivery plans.
Qualifications
- Hands-on experience in delivering a SOC 2 certification, working with internal stakeholders and external auditors.
- Proficiency in virtual server and desktop environments such as VMware and Citrix.
- Strong knowledge of security frameworks like NIST 800, CIS, and ISO 27001.
- Industry-recognized security certifications are desirable (e.g., CISSP, CCSP, CompTIA Security+, GIAC Security Essentials).
- Familiarity with security and privacy regulations in the financial sector, such as SOX and GDPR.
- Excellent written and verbal communication skills.
- Ability to manage multiple initiatives and interface with overlapping projects within the security domain.
Job Description:
Title: Security Assurance Specialist Location: Warrendale Pennsylvania Hybrid (3 days in office, 2 remote) or Remote
Duration: 9 months
Job at a Glance
We are seeking a Security Assurance Specialist to support key security projects within the Information Security Group (ISG) and the broader Global Technology Operations (GTO) function. This role requires expertise in SOC 2 assessments and security control frameworks, working closely with internal stakeholders and external auditors to ensure compliance and risk mitigation.
Responsibilities
- Support the delivery of projects for ISG and GTO.
- Serve as a technical SME on SOC 2 assessments and security control frameworks.
- Assist with the SOC 2 assessment process, ensuring security controls are properly implemented and evidenced.
- Collaborate with stakeholders across GTO to review and update security controls in alignment with NIST and CIS frameworks.
- Coordinate with GTO stakeholders to disseminate assessment findings and facilitate remediation efforts.
- Work closely with project managers to outline key tasks and refine delivery plans.
Qualifications
- Hands-on experience in delivering a SOC 2 certification, working with internal stakeholders and external auditors.
- Proficiency in virtual server and desktop environments such as VMware and Citrix.
- Strong knowledge of security frameworks like NIST 800, CIS, and ISO 27001.
- Industry-recognized security certifications are desirable (e.g., CISSP, CCSP, CompTIA Security+, GIAC Security Essentials).
- Familiarity with security and privacy regulations in the financial sector, such as SOX and GDPR.
- Excellent written and verbal communication skills.
- Ability to manage multiple initiatives and interface with overlapping projects within the security domain.