As a key member of the Security Compliance team, reporting to the Team Lead Security Compliance, you will :
- Execute day-to-day cybersecurity risk, compliance, and assurance activities.
- Support global cybersecurity certifications including ISO 27001 and ISO 27017 , evaluating control effectiveness and reviewing evidence of controls.
- Assist in achieving ISO 27001 certification by identifying risks and implementing controls.
- Maintain and continuously improve 3M s Information Security Management System (ISMS) .
- Create, update, and manage ISMS documentation, reports, and audit records.
- Act as Subject Matter Expert (SME) for PCI DSS , advising stakeholders, conducting internal assessments, and driving PCI DSS v4.0.1 reviews, gap assessments, and control evaluations.
- Provide high-level knowledge support on other frameworks and standards including SOC 2, COBIT, NIST, SWIFT, and GDPR .
- Deliver timely written reports, metrics, and updates to cybersecurity management.
- Collaborate and communicate effectively across teams and with stakeholders.
Skills Required
Risk Assessment, Pci Dss