Leads information security compliance activities regarding regulatory agreement-based and risk-based requirements.
Essential Functions:
- Leads internal teams through compliance activities including understanding requirements recommending solutions and alternatives to remediate technical or procedural gaps and conducting cybersecurity assessments.
- Collaborates with administrative and technical teams to respond to security assessments from third parties.
- Applies recognized cybersecurity frameworks and standards (e.g. NIST SP 800-53 NIST SP 800-171 NIST Cybersecurity Framework PCI HIPAA HITRUST etc.) in risk assessments and audits.
- Documents findings assessment processes and recommended actions in a clear concise and actionable manner.
- Participates in information security and risk continuous process improvement initiatives.
- Coordinates the development and maintenance of information security policies standards and procedures.
- Stays up-to-date and informed of information security industry changes and trends. Participates in outside education advancement.
Education Requirement:
Bachelors Degree in Computer Science or equivalent education required.
Certifications:
GIAC CISA CISSP or equivalent certification preferred.
Experience:
- Four years of IT experience required.
- Two years of experience in information security or compliance required.
- Experience in a healthcare government or academic research organization preferred.
Physical Requirements:
OCCASIONALLY: Lifting / Carrying: 0-10 lbs Pushing / Pulling: 0-25 lbs Standing Walking
FREQUENTLY: (none specified)
CONTINUOUSLY: Computer skills Decision Making Interpreting Data Problem solving Seeing Far/near Sitting
The above list of duties is intended to describe the general nature and level of work performed by individuals assigned to this classification. It is not to be construed as an exhaustive list of duties performed by the individuals so classified nor is it intended to limit or modify the right of any supervisor to assign direct and control the work of employees under their supervision. EOE M/F/Disability/Vet
Required Experience:
IC
Overview:Job Description Summary:Leads information security compliance activities regarding regulatory agreement-based and risk-based requirements.Job Description:Essential Functions:Leads internal teams through compliance activities including understanding requirements recommending solutions and al...
Leads information security compliance activities regarding regulatory agreement-based and risk-based requirements.
Essential Functions:
- Leads internal teams through compliance activities including understanding requirements recommending solutions and alternatives to remediate technical or procedural gaps and conducting cybersecurity assessments.
- Collaborates with administrative and technical teams to respond to security assessments from third parties.
- Applies recognized cybersecurity frameworks and standards (e.g. NIST SP 800-53 NIST SP 800-171 NIST Cybersecurity Framework PCI HIPAA HITRUST etc.) in risk assessments and audits.
- Documents findings assessment processes and recommended actions in a clear concise and actionable manner.
- Participates in information security and risk continuous process improvement initiatives.
- Coordinates the development and maintenance of information security policies standards and procedures.
- Stays up-to-date and informed of information security industry changes and trends. Participates in outside education advancement.
Education Requirement:
Bachelors Degree in Computer Science or equivalent education required.
Certifications:
GIAC CISA CISSP or equivalent certification preferred.
Experience:
- Four years of IT experience required.
- Two years of experience in information security or compliance required.
- Experience in a healthcare government or academic research organization preferred.
Physical Requirements:
OCCASIONALLY: Lifting / Carrying: 0-10 lbs Pushing / Pulling: 0-25 lbs Standing Walking
FREQUENTLY: (none specified)
CONTINUOUSLY: Computer skills Decision Making Interpreting Data Problem solving Seeing Far/near Sitting
The above list of duties is intended to describe the general nature and level of work performed by individuals assigned to this classification. It is not to be construed as an exhaustive list of duties performed by the individuals so classified nor is it intended to limit or modify the right of any supervisor to assign direct and control the work of employees under their supervision. EOE M/F/Disability/Vet
Required Experience:
IC
View more
View less