
IT Compliance Specialist, SISP
Sedgwick
full-time
Posted on:
Location Type: Remote
Location: Idaho • New York • United States
Visit company websiteExplore more
About the role
- To advance the IT Compliance program including coordinating and reporting of the work;
- To represent Sedgwick IT with specialized knowledge of IT Compliance activities and standards to clients, carriers and external stakeholders.
- Conduct comprehensive security risk assessments of third-party suppliers, including reviewing security questionnaires, certifications (e.g., ISO 27001, SOC 2), and supporting documentation.
- Collaborate with internal stakeholders (e.g., Procurement, Legal, IT Security) to ensure supplier engagements align with the organization’s security and compliance requirements.
- Identify and document security gaps , assess risk levels, and recommend appropriate remediation actions.
- Track and follow up on remediation plans and risk mitigation efforts with suppliers.
- Maintain accurate and up-to-date records of supplier assessments and risk ratings in compliance tracking systems.
- Support the development and continuous improvement of the Supplier Information Security Program, including policies, procedures, and assessment tools.
- Stay current with evolving regulatory requirements (e.g., GDPR, HIPAA, CCPA) and industry standards (e.g., NIST, ISO, CIS).
- Assist in preparing reports and metrics for leadership and audit purposes.
Requirements
- Four (4) years of years of information technology, accounting or closely related industry experience or equivalent combination of education and experience required to include two (2) years project management and/or experience in a team environment.
Benefits
- Career development and promotional growth opportunities
- A diverse and comprehensive benefits offering including medical, dental vision, 401K, PTO and more
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
security risk assessmentscompliance tracking systemsremediation plansrisk mitigationsupplier assessmentspolicies developmentprocedures developmentassessment toolsproject management
Soft Skills
collaborationcommunicationorganizational skillsreportingstakeholder engagement
Certifications
ISO 27001SOC 2