Provide input on compliance readiness in support of periodic risk assessmentsWhere compliance initiatives may be at risk of meeting goals, contribute analysis to the Risk Register and be an active participant in whatever risk treatment is set in motionContribute to executive reports to the Risk CommitteeSupport external audit efforts by providing evidence pertaining to risk, policy and third-party governanceStay current with evolving regulatory compliance trends and report on them to Compliance CommitteeCore KnowledgeUnderstanding of compliance frameworks and willingness to learn new onesFamiliarity with the audit lifecycle and standards for evidenceFoundational experience with IT systems and a wide range of technologiesUnderstanding of relationship between administrative and technical controlsExperience in a scripting or programming language to craft automationsSkill in documentingTake a leadership role in the Internal Security Operations team as a compliance and audit expertGlobal Compliance program tracking and managementAnalyze and identify ways to convert manual compliance tasks, such as evidence collection, into automated solutionsAuthor, edit and collaborate on internal policy effortsSupport stakeholders by facilitating short-term documented exceptions to a standing policyCollaborate with risk analysts on performing internal audits or assessmentsCoordinate with external auditors and teams within the corporation to collect evidence for several audit initiativesAct as a subject matter expert answering prospective client questions about our security and compliance readinessDevelop Disaster Recovery procedures for specific applicationsAdvise and support security efforts, such as Business Continuity testing or the Business Impact Analysis, and ensure that they meet compliance and audit requirementsDuring Incident Response, support the core team in researching compliance impact or other recordkeeping tasks during ongoing incidentsAutomate user access reviews and related security assurance activities and ensure that they meet compliance objectivesServe as the Quality Manager who facilitates ISO 9001 programs within the companyExperience managing audits and third-party riskPervasive sense of curiosity and drive to automate manual or tedious tasksExperience with, or an eagerness to learn, GRC and automation tools that help support work functionExperience documenting complex situations in a way that conveys business impactMinimum of 6 years of experience in cybersecurity, risk or complianceExperience with ISO900 and SOC 2 compliance and auditsDisclaimer : The job location mentioned in this description is based on publicly available information or company headquarters. Candidates are advised to verify the exact job location directly with the employer before applying.
Skills Required
Disaster Recovery, Risk Assessment, Scripting, Stakeholder Management