IT and Security Compliance Specialist/Manager

3 Days ago • 7-12 Years
Sign up and Unlock PRO benefits for FREE!

About the job

SummaryBy Outscal

This role requires 7-12 years of experience in IT security & compliance. You'll ensure adherence to industry regulations like ISO 27001, SOC2, GDPR, HIPAA, and PCI-DSS. Strong knowledge of compliance frameworks and risk management are essential.
Job Overview:

This position is for 7-12 years' experience IT and Security Compliance Specialist ensures that the organization’s IT systems and processes adhere to regulatory, security, and compliance standards. This role involves conducting audits, risk assessment, managing security policies, ensuring adherence to industry regulations (e.g., ISO (at least 3 Information Security related), SOC2, GDPR, HIPAA, PCI-DSS), and working with various departments to maintain a secure and compliant IT environment.

1. Compliance Management:
a. Ensure compliance with applicable security standards, frameworks, and regulations (e.g., ISO 27001, NIST, SOX, GDPR, HIPAA, PCI-DSS).
b. Conduct regular internal audits of IT systems, applications, and processes to identify potential compliance issues.
c. Develop and maintain IT security policies and procedures aligned with industry best practices.
d. Assist in the preparation and submission of compliance reports to regulatory bodies as required.

2. Risk Management:
a. Identify, assess, and mitigate IT security risks.
b. Work with IT teams to implement risk mitigation strategies.
c. Monitor emerging security risks and implement appropriate controls.

3. Security Awareness and Training:
a. Develop and deliver security awareness training for employees to ensure a strong security culture.
b. Ensure that security policies and procedures are communicated and enforced across the organization.

4. Incident Response and Investigation:
a. Support incident response activities by helping investigate security incidents and breaches.
b. Conduct forensic investigations and recommend actions to prevent future incidents.

5. Vendor and Third-Party Risk Management:
a. Evaluate third-party vendors and contractors to ensure their compliance with organizational security and privacy standards.
b. Manage security agreements and ensure ongoing monitoring of third-party security practices.

6. Collaboration:
a. Collaborate with IT, Human Resource, legal, and other relevant departments to ensure compliance with contractual obligations related to IT and data security.
b. Act as a liaison between IT teams and external auditors or regulatory bodies during audits and assessments.

7. Continuous Improvement:
a. Stay updated with the latest compliance regulations, security trends, and technologies.
b. Propose improvements to the organization’s security and compliance posture.

Requirements

• Education:
o Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or a related field.
o Having anyone of certifications is preferred (e.g., CISSP, CISA, CISM, CRISC).

• Experience:
o Minimum of 7 years of experience in IT security & compliance, or a related field.
o Working knowledge of GRC tools and compliance automation tools like Drata, Sprinto, Vanta is added advantage.
o Strong knowledge of compliance frameworks (e.g., SOC2, GDPR, HIPAA, ISO 27001, PCI-DSS).

• Technical Skills:
o Knowledge of security technologies, risk management, and vulnerability assessment tools.
o Familiarity with cloud security and third-party risk management.
o Experience with security audits and compliance assessments.

• Soft Skills:
o Strong analytical and problem-solving skills.
o Excellent communication and interpersonal skills.
o Ability to work independently and collaboratively in a team environment.
o Strong attention to detail and ability to handle sensitive information with discretion.

About The Company

Worldwide (Remote)

Worldwide (Remote)

Texas, United States (On-Site)

Worldwide (Remote)

Worldwide (Remote)

Worldwide (Remote)

Worldwide (Remote)

Worldwide (Remote)

Telangana, India (On-Site)

Telangana, India (On-Site)

View All Jobs

Similar Jobs

Similar Skill Jobs

Every matrix - Technical Project Manager for Casino BU

Lviv Oblast, Ukraine (Hybrid)

Every matrix - Technical Project Manager for Casino BU

Kyiv City, Ukraine (Hybrid)

Every matrix - Junior Manual QA Engineer

Kyiv City, Ukraine (Hybrid)

Every matrix - Junior Manual QA Engineer

Lviv Oblast, Ukraine (Hybrid)

Nike - Senior Professional, ICON Producer

Oregon, United States (On-Site)

Xsolla - Web/landing page designer

Beijing, China (On-Site)

Certain Affinity - Advanced Technical Artist

Worldwide (On-Site)

ESL FACEIT Group - EFG - Project Manager, KSA

Riyadh Province, Saudi Arabia (On-Site)

Jobs in Hyderabad, Telangana, India

Schbang - Sr. Content Writer and Strategist

Maharashtra, India (On-Site)

Schbang - Senior Media Executive

Maharashtra, India (On-Site)

Schbang - Business Development Executive

Maharashtra, India (On-Site)

Schbang - Brand Solutions Strategist

Karnataka, India (On-Site)

Schbang - Creative Strategist

Karnataka, India (On-Site)

Schbang - Graphic Visualizer

Karnataka, India (On-Site)

Schbang - Sr. Graphic Visualizer

Karnataka, India (On-Site)

Schbang - ORM Executive

Maharashtra, India (On-Site)

Schbang - Senior Media Buyer

Maharashtra, India (On-Site)

Schbang - Social Listening Manager

Maharashtra, India (On-Site)

Software Engineering Jobs

Setu - Backend Engineer

India (Remote)

Setu - Senior Manager — Banking Partnerships

Maharashtra, India (On-Site)

Every matrix - Database Administrator

Kyiv City, Ukraine (Hybrid)

Every matrix - Database Administrator

Lviv Oblast, Ukraine (Hybrid)

Every matrix - Financial Analyst

Bucharest, Romania (Hybrid)

Amazon Games - Software Development Engineer, Prime Gaming

Washington, United States (On-Site)

Dream Game Studios - SDE 1 - React Native with Android

Maharashtra, India (On-Site)

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug