Five Rivers IT logo
Five Rivers ITPosted 2 months ago

IT Security Compliance Analyst

$125,000–$175,000 year

On-siteFair Lawn, New Jersey, United States

Full TimeSmall

Job Summary

Lead the planning, scoping, execution, and documentation of technology and technology-related risk audits. Act as a liaison between auditors and engineering teams to coordinate information requests and responses to observations. Maintain proactive ongoing compliance by utilizing compliance tools for periodic security tasks and checks. Research new security compliance requirements and assist in evaluating control requirements. Support and monitor remediation efforts of audit findings, validating closure by reviewing relevant evidence. Write detailed findings, remediation plans, and supporting documentation. Provide actionable, technical advice to engineers to enhance security control design and effectiveness, including for cloud environments. Develop partnerships with engineering control owners to educate them on compliance requirements and develop risk-appropriate control implementation solutions. Manage Incident Management responsibilities, including documentation, risk analysis, containment, investigation, notification protocols, lessons learned, and reporting findings to clients. This role involves working for multiple clients across multiple environments in a managed services setting. Full-time position with a salary range of $125,000 to $175,000.

Required Qualifications

  • Bachelor's in Computer Science, Computer Engineering, Information Systems or related field or equivalent work experience
  • 5+ years of experience managing Information Security audits (e.g., SOC 2, ISO 27001, PCI DSS, HIPAA)
  • Experience implementing security techniques, practices, and controls that can be applied to address risks
  • Experience operating as part of an Information security program in alignment with common information technology management frameworks such as ISO 27001, NIST, CIS, ITIL, COBIT, etc.
  • Strong written and verbal communication skills
  • Strong program management skills
  • Experience working closely with auditors and/or external regulators
  • Experience managing security tools

Desired Qualifications

  • Experience with Audit Management tools
  • Security certification
  • Prior experience leading or managing security audits at a SaaS/Cloud company or as a Security Auditor at an audit firm
  • Systems Admin or Network Admin experience implementing security controls

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce