Security Risk and Compliance Management Specialist IV

4 Months ago • 5 Years + • Cyber Security

Job Summary

Job Description

Job Details

Compliance audit and Risk Management Expert who is ell-versed in multiple security compliance frameworks, third party (vendor) risk management, and process improvements.
Strong experience in PCI v4, SOC 1, 2, & 3, HITRUST v11, and ISO 27001preferred.

Job Description

    • Acts as an advocate in development of overall information security program globally. Creates and performs global IT Risk and Compliance assessments.
    • For various compliance frameworks, performs gap assessments, coordinates remediation planning/execution, and works with auditors and system owners to ensure all audit requirements and controls are properly addressed and in place.
    • Assists in development and execution of information security, compliance, and risk best practices globally through audits, assessments, and policy-making.
    • Leads cross-functional team members in strategy development and implementation of risk framework and compliance solutions. Independently performs complex and often unique work assignments and problem resolution. Serves as the subject matter expert to ensure documents, projects, process, and product initiatives comply with regulatory and legal requirements and enterprise policy.
    • Develops training and communication of Information Security, IT Risk, and compliance.
    • Maintains expert knowledge of the competitive/regulatory landscape and company's key challenges.  Coordinates and responds to regulatory requirements and requests, and ensures the execution of examinations.
    • Conducts IT Risk and Information Security due diligence activities relative to vendors and third parties (TPRM).
    • Develops and recommends compliance solutions impacting the enterprise. Develops Risk Assessment process, charters, policies, methodologies, and reports.
    • Leads cross-functional workgroups, communication strategies, and planning meetings to develop solutions that meet the objectives of both the business and the IT Risk, Compliance, and Information Security team.
    • Oversees implementation of operational and non-operational risk management programs by providing guidance and assistance to business units with the identification, evaluation, understanding, management, and communication of risk. Provides data and analytics in support of the risk officer and risk committees. Directs analysis and root cause identification.
    • Conducts risk assessments and documents findings where the deviation from an information security or IT Risk policy or standard is desired. Ensures risk remediation plans meet key business objectives and partners with the business owners to follows through with corrective action steps. Develops appropriate data and analytics that deliver appropriate data to communicate risk at the executive level.
    • Provides subject matter expertise on areas of security, privacy and regulatory compliance to Sales, Marketing, Product Development, Legal and Policy teams.
    • Conducts detailed analysis of risk rating, risk appetite, and provides data driven summaries to business leaders. Documents and provides detailed analysis of findings where deviations exist through internal or external testing.
    • Assists policy personnel in technical conversations with policy makers, industry bodies and other third-parties to advance Rackspace’s message.
    • Provide feedback to product management in the development of trust-related features, and supports regional security and compliance accreditation projects.
    • Develops internal control testing and documented processes.
    • Updates internal control matrices where necessary to support annual changing environments.
    • Adapts and creates processes as applicable, including changes in processes or reporting metrics.
    • Executes as the conduit between internal control owners and external auditors, including kickoff meetings, interview requests, closing meetings, and evidence gathering.
    • Executes internal customer audits which include scheduling, presentation of the Rackspace compliance portfolio, and overseeing the successful visit in conjunction with Account Managers.
    • Responsible for adhering to company security policies and procedures as directed.

Required Experience

    • 5+ years of experience. Experience in leadership in information security policy, standards, compliance, technology and programs a plus
    • Must have at least one of the following active certifications: CISA, CISM, CISSP or CFE. Other related certifications such as ITIL, PMP, SANS/GSEC, CIPP, CRISC, CGEIT, CPA/CA are preferred, but not required.

    • Discover your inner Racker: Racker Life

About Rackspace Technology
We are the multicloud solutions experts. We combine our expertise with the world’s leading technologies — across applications, data and security — to deliver end-to-end solutions. We have a proven record of advising customers based on their business challenges, designing solutions that scale, building and managing those solutions, and optimizing returns into the future. Named a best place to work, year after year according to Fortune, Forbes and Glassdoor, we attract and develop world-class talent. Join us on our mission to embrace technology, empower customers and deliver the future.
 
 
More on Rackspace Technology
Though we’re all different, Rackers thrive through our connection to a central goal: to be a valued member of a winning team on an inspiring mission. We bring our whole selves to work every day. And we embrace the notion that unique perspectives fuel innovation and enable us to best serve our customers and communities around the globe. We welcome you to apply today and want you to know that we are committed to offering equal employment opportunity without regard to age, color, disability, gender reassignment or identity or expression, genetic information, marital or civil partner status, pregnancy or maternity status, military or veteran status, nationality, ethnic or national origin, race, religion or belief, sexual orientation, or any legally protected characteristic. If you have a disability or special need that requires accommodation, please let us know.

Similar Jobs

Rackspace Technology - Principal Java Engineer (GCP)

Rackspace Technology

United States (Remote)
2 Months ago
CloudHire - Full-Stack Web3 Developer

CloudHire

Gurugram, Haryana, India (Remote)
4 Months ago
Notion - Sales Insights & Planning

Notion

San Francisco, California, United States (On-Site)
3 Months ago
Mixmob - Lead Game Designer

Mixmob

Vancouver, British Columbia, Canada (Remote)
7 Months ago
Rackspace Technology - Lead AppDev Enterprise Architect

Rackspace Technology

United States (Remote)
3 Months ago
PwC - Manager / Senior Manager Cyber Technology and Transformation

PwC

Zürich, Zurich, Switzerland (On-Site)
4 Months ago
Trend Micro - Embedded Software Engineer (C/C++)

Trend Micro

Manila, Metro Manila, Philippines (On-Site)
15 Years ago
PwC - Cyber Incident & Crisis Management | Manager | Cyber Security | Technology Consulting

PwC

Dublin, County Dublin, Ireland (On-Site)
4 Months ago
Palo Alto Networks - Prisma Cloud Solutions Architect - Healthcare

Palo Alto Networks

Phoenix, Arizona, United States (Remote)
3 Months ago
PwC - IT Audit Analyst

PwC

Colombo, Western Province, Sri Lanka (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Axiom Zen - Lead Social Media Producer (Miquela)

Axiom Zen

United States (Remote)
2 Months ago
Rackspace Technology - Policy Management Specialist  (Security Risk & Compliance)

Rackspace Technology

Mexico City, Mexico (On-Site)
3 Months ago
Rackspace Technology - Security Risk and Compliance Management Specialist III

Rackspace Technology

Puebla, Puebla, Mexico (Remote)
4 Months ago
Notion - Marketing Manager, DACH

Notion

Germany (Remote)
4 Months ago
Axiom Zen - Product Marketer

Axiom Zen

Vancouver, British Columbia, Canada (On-Site)
7 Months ago
Rackspace Technology - Senior Big Data Hadoop ML Engineer (GCP)

Rackspace Technology

United States (Remote)
4 Months ago
Rackspace Technology - Policy Management Specialist  (Security Risk & Compliance)

Rackspace Technology

Puebla, Puebla, Mexico (On-Site)
3 Months ago
YallaPlay - Executive & Personal Assistant

YallaPlay

Abu Dhabi, Abu Dhabi, United Arab Emirates (On-Site)
2 Months ago
Jelly Smack - Account Management Intern (paid)

Jelly Smack

Los Angeles, California, United States (Hybrid)
4 Months ago
Rackspace Technology - Engagement Manager

Rackspace Technology

United States (Remote)
2 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Puebla, Puebla, Mexico

Nagarro - Staff Engineer, Java Fullstack

Nagarro

Mexico (Remote)
4 Months ago
Autodesk - Territory Sales Exec

Autodesk

Mexico (Hybrid)
4 Months ago
Luxoft - Android Automotive Developer

Luxoft

Mexico City, Mexico City, Mexico (Remote)
3 Months ago
Neostella - Business Analyst

Neostella

Guadalajara, Jalisco, Mexico (Remote)
4 Months ago
Crunchyroll - Senior Software Engineer - Mobile Video Players [Apple]

Crunchyroll

Mexico City, Mexico City, Mexico (On-Site)
3 Months ago
Google - Data Cloud Consultant, Professional Services, Google Cloud

Google

Mexico City, Mexico City, Mexico (On-Site)
1 Month ago
Keywords Studios (Player Support) - Mexican Spanish Game Translators

Keywords Studios (Player Support)

Mexico City, Mexico City, Mexico (On-Site)
1 Month ago
Crunchyroll - Engineering Manager - Mobile Video Players

Crunchyroll

Mexico City, Mexico City, Mexico (On-Site)
3 Months ago
Scopely - Senior Analytics Engineer

Scopely

Mexico City, Mexico City, Mexico (Hybrid)
2 Months ago
Paypal - Business Project Management 4

Paypal

Mexico City, Mexico City, Mexico (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Luxoft - IAM Lead Expert

Luxoft

Bucharest, Bucharest, Romania (Hybrid)
2 Months ago
ION - Network Security Engineer

ION

Milan, Lombardy, Italy (Hybrid)
4 Months ago
Google - Cloud Technical Solutions Engineer, Security

Google

Pune, Maharashtra, India (On-Site)
3 Months ago
ION - Information Security Manager - London

ION

London, England, United Kingdom (On-Site)
4 Months ago
PwC - Cloud Security | Manager | Cyber Security | Technology Consulting

PwC

Dublin, County Dublin, Ireland (On-Site)
4 Months ago
Microsoft - Principal Security Architect

Microsoft

Redmond, Washington, United States (On-Site)
1 Month ago
Barracuda Networks  Inc  - Senior Software Engineer - IP/IR

Barracuda Networks Inc

Bengaluru, Karnataka, India (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Gurugram, Haryana, India (Remote)

Mexico City, Mexico City, Mexico (Remote)

Mexico City, Mexico City, Mexico (Remote)

Mexico City, Mexico City, Mexico (Remote)

United States (Remote)

Gurugram, Haryana, India (Remote)

United States (Remote)

Vietnam (Remote)

View All Jobs

Get notified when new jobs are added by Rackspace Technology

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug