Manager - Information Security, Technology Risk Management

apartmentHiresigma placeDeerfield calendar_month 
JOB TITLE: Manager - Information Security, Technology Risk Management
LOCATION: Remote Base

DURATION: FULL TIME

Must-Haves
  • 7 to 10+ years of experience in IT Security, Risk & Compliance, or IT Audit. Experience and knowledge of information security concepts / principles and audit / risk assessment methodologies.
  • Bachelor's Degree in Computer Science, IT, Security, or related field; Master's degree in related field a plus.
  • CISA, CISM, CISSP, CRISC, PCI-QSA, CGEIT (certifications)
  • must possess excellent oral and written communication skills with the ability to interact and communicate with technical personnel, non-technical personnel, and senior management
  • The individual must be pro-active, flexible, and able to work independently, adjusting quickly to changing priorities and conditions.
Nice-To-Haves
  • CIA IIA certifications a plus
RESPONSIBILITIES
  • Conduct assessments of Information security controls to measure the effectiveness of controls and identify control gaps
  • Identify, assess, and prioritize identified risks
  • Collect evidence, artifacts, and document findings to support conclusions
  • Report on compliance with internal policies, controls, and standards
  • Provide recommendations for remediation of identified deficiencies
  • Track and report on findings/deficiencies to closure
  • Coordinate third-party risk assessments and audits, to include HIPAA audits, PCI DSS audits, Service Organization Controls (SOC) audits, SSAE 16 / ISAE 3402 audits, customer audits, and other compliance / regulatory audits
  • Manage remediation efforts and report on the status of control deficiencies
  • Support information security investigations
  • Support security initiatives and global policy adherence and awareness efforts
  • Ensure that new client engagements adhere to the required information security controls and policies
  • Support global information security metrics and reporting program(s)
  • Provide security expertise to business units and key stakeholders
  • Enforce policy adherence and manage formal policy exception requests
  • Ensure compliance to standards and regulations such as ISO 27001, PCI DSS, and state and national information security laws
  • Identify and document contractual/client information security requirements
  • Respond to information security requests, from various internal stakeholders, in a timely manner
  • Provide timely updates on assessments and assigned projects
  • Build relationships and partner with business units and IT departments
placeElk Grove Village, 13 mi from Deerfield (IL)
employees a level of visibility, career growth, and stability that is difficult to find in many larger corporations. The Senior Information Security Operations Analyst oversees Security Operations to ensure sensitive data is kept confidential and the Bank...
business_centerHigh salary

Senior Cybersecurity Analyst

apartmentAbbott LaboratoriesplaceLake Forest (IL), 6 mi from Deerfield (IL)
and blood banks. As security leaders within RMDx, we pride ourselves in our delivery of sophisticated information solutions that uncover insights to improve productivity and patient outcomes. As the Senior Cybersecurity Analyst you will play a pivotal role...
thumb_up_altRecommended

Cybersecurity Project Coordinator

apartmentEvolve SecurityplaceChicago, 24 mi from Deerfield (IL)
that exceed our clients’ expectations. Successful candidates will be highly organized individuals with excellent communication and relationship building skills with an interest in technology and information security. This position is Chicago based...