Overview
RAMPxchangeisseekinga knowledgeable and client-focused Security Advisor to support organizations navigating cybersecurity risk compliance and marketplace procurement. This exempt professional role serves as a trusted advisor to clients vendors and internal stakeholders by evaluating information system security risks communicating mitigation strategies and contributing to the ongoing development of theRAMPxchangeplatform and marketplace ecosystem.
The Security Advisorreports to the Senior Security Advisorand willexerciseindependent judgmentsubject-matterexpertise andplaya key role in client onboarding vendor vetting and continuous improvement of security and risk management practices.
RAMPxchangeis an online cybersecurity and risk management marketplace designed to simplify procurement for organizations looking to improve their security posture. With personalized guidance from expert advisors members can partner with verified providers to achieve their cybersecurity goals and meet compliance requirements with confidence. To learn more aboutRAMPXchangeplease visit our website.RAMPxchange: Cybersecurity Marketplace
Responsibilities
- Analyze information system security risks gaps and vulnerabilities and provide practical business-aligned remediation recommendations tailored to client needs.
- Communicate complex technical risks control requirements and mitigation strategies clearly to both technical and non-technical stakeholders.
- Conduct client and prospective client demo calls to assess use cases and recommendappropriate platformengagement.
- Support client onboarding by evaluating and vetting vendors usingRAMPxchangesthird-party risk assessment tools.
- Facilitate collaboration between cybersecurity vendors and organizationsprocuringsecurity and risk management products and services.
- Contribute to the development and refinement of marketplace policies securityassessment ofquestionnaires and internal operational processes.
- Stay current on emerging cybersecurity threats technologies regulatory frameworks and procurement trends to inform platform guidance and advisory services.
Qualifications
- Minimum of 2 years of professional experience in one or more areas of information system security including controls implementation system configuration security tools monitoring auditing or reporting.
- Industry-recognized cybersecuritycertificationsuch as Security Network CCNA or equivalent.
- Strong working knowledge of the Risk Management Framework (RMF) and NIST SP 800-53 including their alignment with related frameworks such as CMMCFedRAMPGovRAMP or ISO/IEC 27001.
- Demonstrated understanding of the security control assessment and audit process.
- Working knowledge of cloud platforms and cloud security requirements.
- Excellent written and verbal communication skills with the ability to translate technical security concepts into clear business-focused guidance.
Preferred Qualifications
- Experience conducting security assessments audits or risk scoring activities.
- Background in cybersecurity or risk management consulting.
- Familiarity withmultiplecompliance frameworks such asFedRAMPGovRAMPSOC 2 U.S. state data privacylawsor othernon-governmental regulatory frameworks/laws.
- Advanced cybersecurity certifications including CISSP CISM CRISC or equivalent.
Key Competencies
- Strong analytical risk assessment andcritical thinkingskills.
- High attention to detail with the ability to manage multiple priorities effectively.
- Ability to collaborate across cross-functional teams and external partners.
- Client-centric mindset with a proactive solution-oriented approach.
- Professional judgment and discretion in evaluating security risks and advising stakeholders.
RAMPxchangeis a part of the Knowledge Services Family of Solutions.
Knowledge Services strives to offer a modern professional environment that provides Team Members an inviting comfortable and collaborative place to work to maximize success.
At Knowledge Services we prioritize creating an environment that supports our Team Members success and personal well-being with a robust benefits package some of which include:
- Medical coverage including employer match program for Health Savings Accounts (HSAs)
- Generous 401k retirement plan with employer match
- Dependent Care Flexible Spending Account (DCFSA)
- Employee Assistance Program (EAP) with unlimited usage and visits and wellness program
- Dental and Vision insurance
- Company-sponsored life insurance with options foradditionalcoverage
- Short- and Long-Term Disability (STD and LTD) benefits
- Maternity Paternity and Military benefits
- Company Anniversary Bonus program
- Professional Development opportunities including Young Professional Series Manager Focus series Cyber Security panels and briefs and more
- A rated HQ office full of amenities including fitness center rec room coffee bars bike room café auditorium private Mothers room and more
Knowledge Servicesestablishedin 1994 and headquartered in Indianapolis IN is a certified woman-owned (WBE) professional services organization with over 1500 employeeslocatedin offices throughout North America.Founded by Julie Bielawski CEO ofGuidesoft Inc. dba Knowledge Services is an industry leader in Managed Service Programs (MSP) Vendor Management System (VMS) Employer of Record / Payroll Services Workforce Management Survey Management and MSP for Vocational Rehabilitation Services.We provide outstanding services to major organizations in various industries including IT Healthcare Federal State and local Governments Public Utilities Telecom and more.
As such Knowledge Services is committed to providing opportunities for growth in our company in each Team Member and in our relationships.We believe titles do not define a person but provide a frameworktoeach persons endless potential.Our focus on improving our teamproductand processes drive us every day.We are guided by our four Pillars that set the foundation of who we are and how we conduct business: Knowledge Integrity Innovation and Service.
Knowledge Services is an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race color religion sex sexual orientation gender identity or expression pregnancy age national origin disability status genetic information protected veteran status or any other characteristic protected by law.
Veterans military families and people with disabilities are encouraged to apply.
Applicants with disabilities may contact Human Resources via telephone e-mail and other means to request andarrange foraccommodations.Please contact the Human Resources Team ator .
INDCORP
ISDKO
Required Experience:
Unclear Seniority
OverviewRAMPxchangeisseekinga knowledgeable and client-focused Security Advisor to support organizations navigating cybersecurity risk compliance and marketplace procurement. This exempt professional role serves as a trusted advisor to clients vendors and internal stakeholders by evaluating informat...
Overview
RAMPxchangeisseekinga knowledgeable and client-focused Security Advisor to support organizations navigating cybersecurity risk compliance and marketplace procurement. This exempt professional role serves as a trusted advisor to clients vendors and internal stakeholders by evaluating information system security risks communicating mitigation strategies and contributing to the ongoing development of theRAMPxchangeplatform and marketplace ecosystem.
The Security Advisorreports to the Senior Security Advisorand willexerciseindependent judgmentsubject-matterexpertise andplaya key role in client onboarding vendor vetting and continuous improvement of security and risk management practices.
RAMPxchangeis an online cybersecurity and risk management marketplace designed to simplify procurement for organizations looking to improve their security posture. With personalized guidance from expert advisors members can partner with verified providers to achieve their cybersecurity goals and meet compliance requirements with confidence. To learn more aboutRAMPXchangeplease visit our website.RAMPxchange: Cybersecurity Marketplace
Responsibilities
- Analyze information system security risks gaps and vulnerabilities and provide practical business-aligned remediation recommendations tailored to client needs.
- Communicate complex technical risks control requirements and mitigation strategies clearly to both technical and non-technical stakeholders.
- Conduct client and prospective client demo calls to assess use cases and recommendappropriate platformengagement.
- Support client onboarding by evaluating and vetting vendors usingRAMPxchangesthird-party risk assessment tools.
- Facilitate collaboration between cybersecurity vendors and organizationsprocuringsecurity and risk management products and services.
- Contribute to the development and refinement of marketplace policies securityassessment ofquestionnaires and internal operational processes.
- Stay current on emerging cybersecurity threats technologies regulatory frameworks and procurement trends to inform platform guidance and advisory services.
Qualifications
- Minimum of 2 years of professional experience in one or more areas of information system security including controls implementation system configuration security tools monitoring auditing or reporting.
- Industry-recognized cybersecuritycertificationsuch as Security Network CCNA or equivalent.
- Strong working knowledge of the Risk Management Framework (RMF) and NIST SP 800-53 including their alignment with related frameworks such as CMMCFedRAMPGovRAMP or ISO/IEC 27001.
- Demonstrated understanding of the security control assessment and audit process.
- Working knowledge of cloud platforms and cloud security requirements.
- Excellent written and verbal communication skills with the ability to translate technical security concepts into clear business-focused guidance.
Preferred Qualifications
- Experience conducting security assessments audits or risk scoring activities.
- Background in cybersecurity or risk management consulting.
- Familiarity withmultiplecompliance frameworks such asFedRAMPGovRAMPSOC 2 U.S. state data privacylawsor othernon-governmental regulatory frameworks/laws.
- Advanced cybersecurity certifications including CISSP CISM CRISC or equivalent.
Key Competencies
- Strong analytical risk assessment andcritical thinkingskills.
- High attention to detail with the ability to manage multiple priorities effectively.
- Ability to collaborate across cross-functional teams and external partners.
- Client-centric mindset with a proactive solution-oriented approach.
- Professional judgment and discretion in evaluating security risks and advising stakeholders.
RAMPxchangeis a part of the Knowledge Services Family of Solutions.
Knowledge Services strives to offer a modern professional environment that provides Team Members an inviting comfortable and collaborative place to work to maximize success.
At Knowledge Services we prioritize creating an environment that supports our Team Members success and personal well-being with a robust benefits package some of which include:
- Medical coverage including employer match program for Health Savings Accounts (HSAs)
- Generous 401k retirement plan with employer match
- Dependent Care Flexible Spending Account (DCFSA)
- Employee Assistance Program (EAP) with unlimited usage and visits and wellness program
- Dental and Vision insurance
- Company-sponsored life insurance with options foradditionalcoverage
- Short- and Long-Term Disability (STD and LTD) benefits
- Maternity Paternity and Military benefits
- Company Anniversary Bonus program
- Professional Development opportunities including Young Professional Series Manager Focus series Cyber Security panels and briefs and more
- A rated HQ office full of amenities including fitness center rec room coffee bars bike room café auditorium private Mothers room and more
Knowledge Servicesestablishedin 1994 and headquartered in Indianapolis IN is a certified woman-owned (WBE) professional services organization with over 1500 employeeslocatedin offices throughout North America.Founded by Julie Bielawski CEO ofGuidesoft Inc. dba Knowledge Services is an industry leader in Managed Service Programs (MSP) Vendor Management System (VMS) Employer of Record / Payroll Services Workforce Management Survey Management and MSP for Vocational Rehabilitation Services.We provide outstanding services to major organizations in various industries including IT Healthcare Federal State and local Governments Public Utilities Telecom and more.
As such Knowledge Services is committed to providing opportunities for growth in our company in each Team Member and in our relationships.We believe titles do not define a person but provide a frameworktoeach persons endless potential.Our focus on improving our teamproductand processes drive us every day.We are guided by our four Pillars that set the foundation of who we are and how we conduct business: Knowledge Integrity Innovation and Service.
Knowledge Services is an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race color religion sex sexual orientation gender identity or expression pregnancy age national origin disability status genetic information protected veteran status or any other characteristic protected by law.
Veterans military families and people with disabilities are encouraged to apply.
Applicants with disabilities may contact Human Resources via telephone e-mail and other means to request andarrange foraccommodations.Please contact the Human Resources Team ator .
INDCORP
ISDKO
Required Experience:
Unclear Seniority
View more
View less