drjobs Security Specialist- Mid Level (Hybrid)

Security Specialist- Mid Level (Hybrid)

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Raleigh - USA

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

Job Title: Security Specialist- Mid Level (Hybrid)
Location: Raleigh NC
Duration: 12 Months

Job Description

The client is seeking a self-motivated and strategic professional to oversee the ongoing re-engineering of the agencys business processes to encourage an emphasis on data protection/security and to factor data privacy into its long-term planning efforts including the day-to-day business practices. The incumbent will be responsible for regularly assessing the agencys compliance with state and federal privacy law. Additionally the Privacy Officer will develop and implements appropriate remediation steps if those assessments determine that such steps are necessary.

This position works closely with the client Risk Management Officer and other departments throughout the client. This role is one of a data strategist and adviser as well as a steward for protection of highly confidential information. The ideal candidate should possess a combination of business knowledge technical skills people skills and the ability to guide data strategy and control standards. The Privacy Officer will report directly to the Risk Management Officer.

Duties and Responsibilities:

  • Develop and maintain a compliance program for the client Information Security Policies Procedures Guidelines Privacy state and federal laws
  • Analyze and evaluate the effectiveness of the Information Security and Privacy program in meeting its requirements and objectives
  • Participate in activities including conducting analyses of current practices (program audits) and reporting level of compliance to the client and client.
  • Draft and maintain agency-wide policies procedures/plans and guidelines to ensure the workforce uses and accesses only the minimum necessary data and discloses the data within principal of least privilege.
  • Maintain data privacy enforcing specific privacy requirements as it relates to agency mandates and other legal requirements
  • Collaborate with agency staff including IT Legal Human Resources and other State agencies in fostering information privacy awareness relevant to all programs and services.
  • Develop and oversee the implementation of corrective action plans that result from auditing and monitoring activities.
  • Implement training of agency staff on privacy issues.
  • Provide ongoing assessment of programs and services to ensure that the agency discloses only the minimum amount of data necessary to perform the 3rd party functions.
  • Performing periodic privacy risk assessments and related ongoing compliance audits
  • Participates in investigating and resolving privacy-related reports including potential breach incidents
  • Participates in inquiries and investigations into privacy-related questions and complaints from workforce members government agencies or other sources

Knowledge Skills and Abilities / Competencies

  • B.A./B.S. in Policial Science JDR Communications Computer Science Engineering Information Assurance or equivalent experience
  • Excellent written and oral communication skills with demonstrated ability to distill and translate complex concepts into actionable information for a variety of audiences.
  • Comfortable in effectively presenting information one-on-one and in large groups.
  • Leadership skills and ability to coordinate and influence cross-functional teams.
  • Proven record of success in project management with a particular focus on strategic planning.
  • Competence in resolving problems/conflicts in a diplomatic and tactful manner; exercising discretion in handling confidential information.
  • Proficient usage of Microsoft Office products including Word Excel PowerPoint and Outlook.
  • Technically savvy utilizing a variety of electronic data platforms.
  • Thorough knowledge of the Privacy Act of 1974 and related laws and regulations Federal and State privacy policies and practices to advise Agency Privacy Officers program managers and agency counsel and to provide guidance and assistance relating to organizational privacy requirements reviews and analysis

Skills:

Skill

Required/Desired

Amount

of Experience

Experience using GRC (Governance Risk and Compliance) tools

Required

3

Years

Experience with Incident Response procedures

Required

3

Years

General understanding of HIPAA NIST 800-53 r4 or greater CJI state and federal guidelines regarding privacy and concepts of other regulated data privacy laws/standards.

Required

3

Years

Knowledge of and experience with legal compliance of Cybersecurity and privacy laws.

Required

3

Years

Excellent written and oral communication skills

Required

3

Years

Experience working in the Information Technology auditing or other highly regulated environment.

Required

3

Years

Experience implementing compliance requirements in a matrixed environment utilizing complex information systems.

Required

3

Years

Possess one or more of the following: CISA CIPM CIPP

Nice to have

3

Years

Employment Type

Full-time

Company Industry

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.