Tech Stack
CloudGoogle Cloud Platform
About the role
- Assist in implementing and maintaining compliance with frameworks (SOC 2, NIST CSF, CIS) and regulatory requirements (NYDFS, GLBA, Safeguards, CCPA and related)
- Support internal and external security audits and exams, including evidence gathering and remediation tracking
- Review, manage, and monitor security policies for compliance
- Manage and coordinate remediation for vulnerability, security, and compliance issues across stakeholders
- Conduct security risk assessments and monitoring
- Support on-call and operational security activities including monitoring security alerts, investigating incidents, vendor security reviews, security awareness and training, and other tasks
- Manage and track security metrics, KPIs and reporting
- Manage security policies, standards, and procedures
- Maintain customer facing security documentation and informational assets
Requirements
- Minimum of 2-3 years as a security analyst or security program manager with relevant responsibilities and background
- Security compliance including security frameworks/certifications (SOC 2, NIST CSF, CIS, ISO) and regulatory requirements (NYDFS, GLBA, Safeguards, CCPA and related)
- Security controls development
- Risk and issue remediation
- Security reviews / risk assessments
- Vulnerability management
- Security policies, standards and procedures
- Good program and project management skills
- Ability to organize and prioritize work in a dynamic and fast paced environment
- Ability to work independently with some direction