Job specific responsibilities:
-
Assists in activities to develop strategies to ensure compliance with security standards regulatory and audit issues.
-
Oversee incident response planning the investigation of security breaches and assist with disciplinary and legal matters associated with such breaches, as necessary.
-
Evaluating new and emerging security products and technologies.
-
Coordinating remediation efforts related to information security audits.
-
Perform initial and periodic privacy risk assessments and conduct related ongoing compliance monitoring in coordination with the organization’s information security compliance and operational assessment functions.
-
Work with applicable units to develop a mechanism to track access to protected information within the purview of the organization and as required by law, and to allow qualified individuals to review or receive a report on such activity.
-
Reviews system-related information security plans to provide for alignment with the Institute’s security and privacy practices.
Qualifications:
-
10+ years of IT experience with a focus on security and compliance.
-
A minimum of 5 years working in a leadership or management position.
-
Experience with IT governance, risk, and compliance management.
-
CISSP, CISA, CISM, CRISC, or CEH Certifications preferred.
-
Solid knowledge of various information security frameworks.
-
Excellent problem-solving and analytical skills.
-
Effective verbal and written communication skills.
-
5 years of experience working in information technology and/or cybersecurity.
-
A minimum of 5 years working in a leadership or management position.