Encore Talent Solutions has partnered with a local client in search of an IT Security, Risk and Compliance Manager on a contract-to-hire basis.
This role does not have any direct reports, just manages the clients internal environment.
Essential Functions:
- Develop and recommend security policies, standards, procedures and controls for maintaining data security
- Conduct reviews to measure compliance with NIST, PCI, and ISO standards, regulations and frameworks
- Monitor compliance with state, federal and international laws regarding data privacy and security breaches
- Develop a security strategy, security awareness program, security architecture, and security incident response
- Develop and maintain up-to-date security policies, standards and guidelines
- Oversees training and dissemination of security policies and practices
- Coordinate information security efforts of all internal IT groups, to ensure that organization-wide information security efforts are consistent across the company, and that duplication of effort is minimized
- Manage audit gaps, identifies those within IT, and responsible for remediating or closing audit findings, negotiate dates for closure, and track/report progress
- Assist management in conceptualizing all compliance related risks that the client faces, and how best to deal with these risks using an integrated risk management approach
- Provides strategic risk guidance for IT projects, including evaluation and recommendation of technical controls
- Perform other duties as assigned
- Up to 10% travel required
Essential Skills and Experience:
· Broad knowledge of information technology governance practices including risk, audit, policy and standards development, metrics development, and education and training
· Strong knowledge of, and experience working in, industry-wide information security frameworks, including ISO 27001 and NIST
· Strong organizational skills
· Strong project management and people management skills
· Self-Starter requiring minimal supervision or direction
· Ability to motivate and lead technical teams
· Excellent written and verbal communication skills
· Exposure to MS Word, MS Project, SharePoint and associated processes and tools
· Required: Bachelor's Degree or 5+ years of experience in the field or in a related area