Назад
Company hidden
2 дня назад

Information Security Compliance Specialist (Cybersecurity)

Формат работы
onsite
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Information Security Compliance Specialist (Cybersecurity): Maintaining ISO 27001, ISO 27701, GDPR, and NIST 800-171 compliance through audits, risk assessments, security controls, and policy development with an accent on certification readiness and regulatory alignment. Focus on coordinating internal and external audits, translating compliance gaps into remediation plans, and strengthening security documentation across departments.

Location: Reston, Virginia, United States; onsite office environment required. Occasional travel may be required for training, conferences, or collaboration with remote teams.

Company

hirify.global operates an information technology function focused on security, compliance, and organizational data protection.

What you will do

  • Maintain ongoing compliance with ISO 27001, ISO 27701, GDPR, and NIST 800-171.
  • Prepare, coordinate, and support internal and external security audits, including evidence collection and remediation tracking.
  • Conduct risk assessments, identify compliance gaps, and recommend corrective actions.
  • Develop, implement, and improve information security policies, procedures, controls, and audit documentation.
  • Monitor regulatory and framework changes and align compliance initiatives with IT, Security, and cross-functional teams.
  • Support incident response documentation and reporting, and train employees on security policies and best practices.

Requirements

  • Strong working knowledge and hands-on experience with ISO 27001, ISO 27701, NIST 800-171, and GDPR.
  • Experience conducting risk assessments and implementing security controls.
  • Ability to author and maintain security policies, procedures, and compliance documentation.
  • Strong analytical, organizational, project management, and communication skills.
  • Bachelor’s degree in Information Security, Cybersecurity, Compliance, or a related field, or equivalent experience.
  • At least 3 years of experience in information security compliance, risk management, audit, or a related role; 8+ years may substitute for a degree.

Nice to have

  • CISA, CISM, CISSP, or ISO 27001 certification.
  • Familiarity with security tools and technologies supporting compliance efforts.

Culture & Benefits

  • Collaborate with IT, Security, auditors, regulators, third-party assessors, and other departments.
  • Work in an office environment with extended periods of desk work.
  • Occasional lifting of equipment or documentation materials.
  • Availability to respond to compliance-related matters outside normal business hours when needed.
  • Equal employment opportunity and reasonable accommodation commitments.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →