Information Security Specialist (Fulltime Remote)

Remote Full-time
As an Information Security Specialist, you will play a crucial role in reviewing new technologies, responding to incidents, improving and evolving our security operations, and assisting with client assessment response. You'll contribute to a wide variety of important tasks and backfill other Information Security roles across the department when extra capacity is needed, giving you broad exposure across multiple workstreams. This individual will be a lead responsible for analyzing and documenting complex security architectures for advanced Cloud and Artificial Intelligence products and platforms; and apply our risk management framework to recommend risk treatment options back to key stakeholders. This role will offer an individual a wide range of opportunities to acquire and use their Information Security expertise in an enterprise environment.

Responsibilities

Technology Security Reviews
• Work collaboratively with key business stakeholders and internal IT contacts to conduct reviews and risk assessments of new technologies being considered for use. Formally document these architectures, delving deep into how the data is processed throughout its lifecycle, and clearly document security controls to protect that data.
• Document risk assessments such that they can be easily understood by stakeholders, and include actionable risk treatment recommendations/security requirements for implementation.
• Act as a resource to the Project Management Office and other business stakeholders throughout their deployment lifecycle so that the recommended controls are implemented and tested properly.
Client Assessment Response
• As assigned, using a defined process and existing artifacts, take end to end ownership of responding to incoming client security assessments & audits, RFPs, and Outside Counsel Guideline review.
• Take first pass at completing lengthy client assessment questionnaires (100-200 questions on average) using a standard answer and evidence bank that ensures a consistent response across our client base.
• Recognize when banked answers need to be updated based on our evolving security program and recommend new language or approaches to questions as appropriate.
• Take professional pride in the quality of your response, ensuring that answers are accurate and complete; and work with the Senior Governance Risk and Compliance Analyst to validate answers before formally submitting back to the client.
Incident Response / Security Operations
• Monitor security events and alerts using security information and event management (SIEM) tools. Investigate and analyze security incidents to identify root causes and recommend remediation actions.
• Collaborate with cross-functional teams to develop and execute refined incident response playbooks which are streamlined and ensure that any risks are properly managed.
• Stay up-to-date on emerging cybersecurity threats, vulnerabilities, and best practices and scan for these emerging threats in our environment, providing prescriptive guidance to the teams affected.
Qualifications
• Bachelor's degree in Information Systems, Information Security, Risk Management, or a related field (experience may be considered in lieu of a degree).
• At least five years experience in Information Security or similar type role.
• Extremely good written and verbal communication skills, with the ability to produce high quality documentation either during or shortly after meeting with a cross functional group to discuss a technology considered for use by the firm.
• Excellent meeting facilitation and leadership skills necessary to own high visibility security reviews which receive attention from our internal legal team, CIO and other key stakeholders.
• Reasonable understanding of security concepts, such as networking (routing, firewalls, NAT translation, proxies, SASE solutions), authentication, role based access controls, encryption, data governance, etc.
• Very good data analysis skills with prior SIEM or equivalent data reporting technologies (databases, complex Excel spreadsheets). The ability to think critically about how data is structured and what story it tells. The ability to use basic data visualizations to help readers quickly understand any relevant meaning within the data.
• A good understanding of governance frameworks and compliance programs. Able to competently understand all manner of questions that relate to domains covered by ISO 27001, SOC2 and other common frameworks.
• Extreme thoroughness and the ability to be directed on important initiatives, but to work independently to ensure the optimal outcome, reporting back to senior management on important milestones or issues that arise.

The estimated base salary for this position is $160,000 to $175,000 at the time of posting.

Apply Now

Apply Now

Similar Opportunities

Experienced Registered Behavior Technician for In-Home ABA Therapy - Atlanta, GA

Remote Full-time

Immediate Hiring: Experienced Registered Behavioral Technician (RBT) for Clinic-Based ABA Therapy Services

Remote Full-time

Experienced Registered Behavioral Technician (RBT) - ABA Therapy for Children with Autism Spectrum Disorder

Remote Full-time

Experienced Registered Nurse - Telehealth: Providing Remote Care Coordination and Patient Support

Remote Full-time

Experienced Substitute Teacher for Riverside County Schools - Join Scoot Education's Innovative Team

Remote Full-time

Experienced Substitute Teacher for San Bernardino County - Flexible Schedules & Competitive Pay

Remote Full-time

Experienced School Year Instructional Coach for High-Dosage Tutoring Programs in Edgewater Park, NJ

Remote Full-time

Experienced School Year Tutor for K-8 Students in Math and Literacy - Mickleton, NJ

Remote Full-time

Experienced Secondary Social Studies Teacher for Kansas - Flexible Hybrid Remote Arrangement

Remote Full-time

USPS Office Helper

Remote Full-time

Digital Marketing Intern, Chartwells Higher Ed + Boost / Abilene Christian University

Remote Full-time

Remote E-Commerce Beauty Specialist / Order Support Agent

Remote Full-time

Junior Consultant - Public Health

Remote Full-time

Arenaflex Cloud Customer Engineer – Technical Support, Customer Experience & Cloud Infrastructure Excellence

Remote Full-time

Experienced Customer Advocate - Transforming Healthcare through Personalized Service and Clinical Support

Remote Full-time

Senior Engineer - Microsoft System Administration and Managed Services

Remote Full-time

Strategic Account Manager - West

Remote Full-time

ES California Scoring Assistant – Home Economics

Remote Full-time

**Experienced Data Entry Specialist – Live Chat Support for arenaflex's Global Operations**

Remote Full-time

Labor and Delivery, Clinical Triage Nurse job at Sutter Health in UT, ID, AR, AZ, TN, MO, MT, SC

Remote Full-time
← Back to Home