Lighthouse

Information Assurance and Privacy Analyst

Lighthouse

full-time

Posted on:

Location Type: Remote

Location: United States

Visit company website

Explore more

AI Apply
Apply

Salary

💰 $101,680 - $125,000 per year

About the role

  • Develop, implement, and maintain compliance policies and procedures
  • Collaborate in the development and maintenance of an information security policy set, including standards and processes that fit the organization at all levels and ensure the confidentiality, integrity, and availability of the enterprises’ information
  • Seek and confirm management approval as required
  • Liaise with Service Delivery and Product Development to ensure that information security architecture standards, policies, and procedures are available and enacted consistently across application development projects, programs, and eDiscovery workflows
  • Assist in conducting regular audits and assessments to ensure adherence to regulatory requirements
  • Ensure operational compliance of the information assurance and privacy compliance programs, including but not limited to SOC II, ISO 27001, and HIPAA
  • Monitor and analyze regulatory changes and their impact on the company
  • Develop and maintain a working knowledge of company's service offerings and products within the eDiscovery industry
  • Provide training and support to employees on compliance-related matters within an eDiscovery framework
  • Investigate and resolve compliance issues and complaints
  • Prepare and submit compliance reports to regulatory bodies and senior management
  • Collaborate with client services, sales, legal, finance, and other departments to ensure comprehensive compliance coverage
  • Maintain up-to-date knowledge of industry best practices and regulatory developments
  • Manage incoming security assessments from clients and ensure timely responses
  • Review and assess vendors within the contracting platform to ensure compliance with company standards
  • Oversee and maintain risk register, ensuring timely resolutions of open risks
  • Ensure that strategic information security and risk guidance is provided to third-party suppliers in accordance with internal frameworks and ensure compliance with enterprise and/or client required controls
  • Coordinate with stakeholders, subject matter experts, and external regulators with enterprise incident management, including the identification, reporting, control, and recovery of incidents
  • Work with stakeholders to ensure that availability of information is considered in Business Continuity and Disaster Recovery planning
  • Coordinate with IT leadership on IT/DR plan development and facilitate tabletop exercises
  • Participate in the Information Security Steering Counsel and provide guidance to non-technical members of the council to ensure all members’ effectiveness
  • Build sound, collaborative business relationships across the enterprise to enable a strong understanding and close alignment with business needs, direction, and risk appetite
  • Foster continuous improvement of enterprise’s information security and privacy compliance through accurate, timely and effective metrics and corrective action programs
  • Ability to plan, scope and estimate work effort to produce high quality deliverables in time/on budget
  • Perform other related duties as assigned

Requirements

  • Bachelor's degree desired
  • Minimum of 5 years of experience in compliance or eDiscovery
  • Minimum of 3 years providing SaaS services
  • Strong understanding of regulatory requirements and compliance standards
  • Background in eDiscovery, including experience with eDiscovery tools and processes
  • Relativity expertise a strong plus
  • Excellent analytical, organizational, and problem-solving skills
  • Ability to communicate effectively with all levels of the organization
  • Proficiency in compliance management software and tools
  • Knowledge of eDiscovery, Application Security, IT Security Policy and governance, Risk Management, Incident Management
  • Exceptional interpersonal skills with the ability to speak clearly and with authority to auditors, clients, regulators, and senior company personnel
  • Intellectual curiosity and the ability to learn new concepts quickly and efficiently
  • Highly solution-focused; strong sense of urgency with a passion for 100% availability
Benefits
  • Health insurance
  • 401k with company match
  • Company paid Life & AD&D insurance
  • Short and long-term disability
  • Telemedicine
  • Wellness plans
  • Flexible PTO program
  • Paid volunteer days
  • Voluntary insurance plans including accident, hospitalization, and critical illness plans
  • Pet insurance
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills & Tools
compliance policiesinformation security policyauditsregulatory requirementseDiscoverySaaS servicescompliance management softwareApplication SecurityRisk ManagementIncident Management
Soft Skills
analytical skillsorganizational skillsproblem-solving skillscommunication skillsinterpersonal skillsintellectual curiositysolution-focusedability to learn quicklycollaborative skillsability to manage relationships
Certifications
Bachelor's degreeSOC IIISO 27001HIPAA