About the Role
Role details below.
Responsibilities
- Support information security compliance programs across applicable frameworks, including SOC 2, ISO 27001, ISO 42001, FedRAMP, CMMC, and NIST 800-53/171
- Coordinate audit, assessment and testing activities with internal and external stakeholders
- Validate identified findings and nonconformities, manage remediation tracking, monitor resolution progress, and report status to stakeholders
- Review, update, and maintain information security documentation in accordance with applicable standards and organizational objectives
- Maintain and update the GRC platform (Optro) current with risk, control, and compliance data
- Assist with the implementation and ongoing management of data loss prevention (DLP) programs, including false positive identification, policy violations, incident monitoring and response coordination
- Support third-party risk management activities, including contractor oversight and vendor due diligence reviews
- Assist with client-issued security questionnaires and assessments
- Assist with risk management, vulnerability management, incident reviews, data disposal reviews, and BC/DR planning and testing
- Monitor and track employee completion of security training and awareness programs
Benefits
- Employer Paid Life & Health Insurance
- Competitive Bonus Structure
- Home Office Reimbursement
- Technology Allowance
- Certification Reimbursement
- BeneficiaT Discount Loyalty Program
- Personalized Career Coaching
- Generous Paid Time Off
- Paid Office Closure December 25-January 1
- Summer Hours
Additional Information
- Pay Classification Full-Time