2 дня назад
Information Security Compliance Specialist (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Information Security Compliance Specialist (Cybersecurity): Maintaining ISO 27001, ISO 27701, GDPR, and NIST 800-171 compliance through audits, risk assessments, security controls, and policy development with an accent on certification readiness and regulatory alignment. Focus on coordinating internal and external audits, translating compliance gaps into remediation plans, and strengthening security documentation across departments.
Location: Reston, Virginia, United States; onsite office environment required. Occasional travel may be required for training, conferences, or collaboration with remote teams.
Company
operates an information technology function focused on security, compliance, and organizational data protection.
What you will do
- Maintain ongoing compliance with ISO 27001, ISO 27701, GDPR, and NIST 800-171.
- Prepare, coordinate, and support internal and external security audits, including evidence collection and remediation tracking.
- Conduct risk assessments, identify compliance gaps, and recommend corrective actions.
- Develop, implement, and improve information security policies, procedures, controls, and audit documentation.
- Monitor regulatory and framework changes and align compliance initiatives with IT, Security, and cross-functional teams.
- Support incident response documentation and reporting, and train employees on security policies and best practices.
Requirements
- Strong working knowledge and hands-on experience with ISO 27001, ISO 27701, NIST 800-171, and GDPR.
- Experience conducting risk assessments and implementing security controls.
- Ability to author and maintain security policies, procedures, and compliance documentation.
- Strong analytical, organizational, project management, and communication skills.
- Bachelor’s degree in Information Security, Cybersecurity, Compliance, or a related field, or equivalent experience.
- At least 3 years of experience in information security compliance, risk management, audit, or a related role; 8+ years may substitute for a degree.
Nice to have
- CISA, CISM, CISSP, or ISO 27001 certification.
- Familiarity with security tools and technologies supporting compliance efforts.
Culture & Benefits
- Collaborate with IT, Security, auditors, regulators, third-party assessors, and other departments.
- Work in an office environment with extended periods of desk work.
- Occasional lifting of equipment or documentation materials.
- Availability to respond to compliance-related matters outside normal business hours when needed.
- Equal employment opportunity and reasonable accommodation commitments.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
6 дней назад
Security GRC Specialist
230 000 - 275 000$
12 часов назад
Compliance Program Manager (Cybersecurity)
100 000 - 120 000$
6 дней назад
Security Management Lead (SML) – Journeyman (Federal Security)
6 дней назад
Program Security Officer (PSO) – SME
8 часов назад
Compliance Engineering Lead (Security)
6 дней назад
Information Security Compliance Coordinator
60 000 - 75 000$