Anthology Inc

Power of Together™

Director, Governance, Risk and Compliance

ComplianceComplianceFull TimeRemoteTeam 1,001-5,000H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

36 days ago

Salary

$154K - $200K / year

Bachelor Degree10 yrs expEnglishCloud

Job Description

• Developing and maintaining the organization's ISMS documentation, including policies, standards, and procedures for risk management, compliance, and information security. • Responsible for recommendations to the CISO, Product Management, Legal and Finance leadership teams that provide security program alignment with compliance requirements. • Responsible for information risk management, collaborative design of information security controls, assessment of effective implementation of applicable controls, including identity and access management. • Staying current on evolving regulatory environments, security threats, and compliance best practices, and updating policies and procedures accordingly. • Responsible for maintaining and improving information security awareness in the organization. • Translating business and information security needs and integrating these with the ISMS. • Coordinating external audit engagements with 3PAO, ISO/SOC auditors, PCI DSS QSA firms and other security assessors, including coordinating responses and remediation efforts. • Conducting vendor risk assessments and ensuring third-party compliance with security and privacy standards. • Reviewing and monitoring the activities of the Security Incident Response and Business Continuity Management teams to ensure that the information security controls are used effectively during the complete life cycle of business continuity and disaster recovery response. • Managing the recurring measurement of the effectiveness of ISMS controls implemented and communicate findings with senior management. • Enforcing document control management processes for the Information Security Management System. • Assisting with forecasting, planning and risk assessment relevant to evolving security control coverage in alignment with the company’s technology strategy. • Maintaining and applying current industry knowledge and best practices. • Researching and recommending use of new technologies. • Project management including analysis of business requirements, creating and updating project plans, and tracking projects to successful completion. • Assisting with vendor management, forecasting and program budget management. • Managing personnel including mentoring and cross-training of team members to achieve business objectives.

Job Requirements

  • US Citizenship
  • 10+ years of hands-on experience in IT audit and/or compliance
  • Strong documentation and communication skills
  • Strong understanding of security standards and frameworks including ISO27000 series, NIST Special Publication 800 series, SOC audits, and security requirements of Data Privacy laws
  • Previous experience gaining an ATO or P-ATO for a cloud implementation under the FedRAMP, GovRAMP or IL-4 programs
  • Understanding of software development lifecycle methodologies, cloud and server infrastructure, network technologies
  • Experience managing security staff, collaboration and relationship building with global teams
  • Current CISA, CISM, CISSP or equivalent certification is strongly preferred

Benefits

  • Health insurance
  • Professional development opportunities

Related Categories

Related Job Pages

More Compliance Jobs

Full TimeRemoteTeam 1-10H1B No Sponsor

Director managing Governance Risk and Compliance in global EdTech company

Cloud
United States
$154K - $200K / year
Full TimeRemoteTeam 5,001-10,000Since 1971H1B Sponsor

Government Regulatory Director managing regulatory activities and stakeholder collaboration at Verisk.

New Jersey
$150K - $190K / year
Full TimeRemoteTeam 10,001+H1B Sponsor

Lead Specialist overseeing personal trading and compliance at Empower

United States
$96.1K - $135.7K / year
Full TimeRemoteTeam 5,001-10,000Since 1913H1B Sponsor

Global Trade Compliance Manager managing GTC programs for imports and exports

United States
$106.7K - $204.9K / year