Cyber Security Compliance Analyst | Remote, USA
Denver, CO
Optiv
Optiv manages cyber risk so you can secure your full potential. Cybersecurity advisory services and solutions. Powered by the best minds in cyber.In your role at Optiv, you’ll be inspired by a team of the brightest business and technical minds in cybersecurity. We are passionate champions for our clients and know from experience that the best solutions for our clients’ needs come from working hard together. As part of our team, your voice matters, and you will do important work that has an impact, on people, businesses, and nations. Our industry and our company move fast, and you can be sure that you will always have room to learn and grow. We’re proud of our team and the important work we do to build confidence for a more connected world.
Optiv is the leading security solutions integrator creating confidence for a more connected world. Optiv’s corporate security team is tasked with protecting company resources and client data in a dynamic industry with expanding threats. To meet the challenging needs of Optiv’s growing business, the corporate security team is expanding their information security governance and compliance program.
The security compliance analyst will report directly to the Director of Governance and Compliance. This position is responsible for assisting with the collection and analysis of key performance metrics, conducting internal audits and assessments, assisting with third-party assessments and internal risk management reviews to help ensure the confidentiality, integrity, and availability of Optiv data and systems. The security compliance analyst must possess strong analytical skills, research capabilities, and an attention to detail to ensure Optiv can efficiently and effectively handle its compliance requirements. This position is highly business-facing, with frequent collaboration and interaction with all Optiv business units.
Primary Duties and Responsibilities:
- Participate in all phases of internal and external assessments and audits.
- Respond to client third-party assessment requests to facilitate business transactions and maintain strategic business relationships.
- Positively interact with multiple internal Optiv business units to develop standardized assessment responses for external clients.
- Perform compliance assessments to determine if business systems are aligned with regulatory requirements, industry standards, best practices and all corporate information security policy, procedures, and standards.
- Actively review, test, analyze and report on the effectiveness and state of all required controls.
- Monitor and report on the status of compliance activities and remediation efforts escalating potentially risky situations as needed.
- Provide recommendations to improve the effectiveness and efficiency of our risk-based audit program to ensure that it is repeatable, sustainable and cost effective.
- Establish ongoing relationships with business managers and key functional stakeholders.
- Stay informed of new compliance regulations, assist in the assessment of the impact to the organization, and collaborate to ensure compliance.
- Share experience, knowledge, and ideas with management and co-workers to maintain a kind and respectful team-based environment.
- Promote a corporate culture that is committed to Governance, Risk, and Compliance and information security best practices.
Qualifications:
- An undergraduate degree preferably in IT or STEM discipline.
- Proficient working with a variety of technology platforms (Microsoft, Apple) and common business applications such as MS Office, Teams, Zoom and so forth.
- Excellent interpersonal, verbal and written communication, presentation, and problem-solving skills.
- Passionate about security, client satisfaction and process improvement.
- Ability to balance being flexible and collaborative with following the rules.
- Able to work with minimal supervision, take initiative and follow through on assignments.
- Capable of working multiple tasks of varying priorities while maintaining tight deadlines.
- A cybersecurity degree or graduate degree.
- An additional 1-3 years of related work experience.
- Any cybersecurity related certification such as A+, CISSP, CISA, SANS-GSEC or so forth.
- Good understanding of security governance, compliance, and risk management principles.
- Possesses and demonstrates a strong understanding of controls assessment techniques.
- Solid business acumen and judgment to evaluate issues/problems of high complexity.
- Able to function independently and perform routine task such as: Facilitate meetings, organize conference calls, deliver presentations and so forth
- Familiarity with common standards, frameworks and regulations such as: NIST, ISO, COBIT, SIG, CCM, SOC-2, FAIR, HITRUST, PCI, GDPR.
- Ability to travel (minimal travel anticipated).
Optiv is an equal opportunity employer. All qualified applicants for employment will be considered without regard to race, color, religion, sex, gender identity, sexual orientation, national origin, status as an individual with a disability, veteran status, or any other basis protected by federal, state, or local law.
Tags: Audits CISA CISSP COBIT Compliance GDPR Governance GSEC HITRUST NIST Risk management SANS STEM Travel
Perks/benefits: Career development Flex hours Flex vacation Health care Insurance Startup environment
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Senior Security Analyst jobs
- Open Information Security Specialist jobs
- Open Staff Security Engineer jobs
- Open Cyber Security Architect jobs
- Open Manager Pentest H/F jobs
- Open Senior Information Security Analyst jobs
- Open Senior Cyber Security Engineer jobs
- Open Cyber Security Specialist jobs
- Open Principal Security Engineer jobs
- Open Product Security Engineer jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open IT Security Analyst jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Cybersecurity Analyst jobs
- Open Senior Information Security Engineer jobs
- Open Chief Information Security Officer jobs
- Open Cybersecurity Consultant jobs
- Open Consultant SOC / CERT H/F jobs
- Open Security Specialist jobs
- Open Cybersecurity Specialist jobs
- Open Senior Penetration Tester jobs
- Open Sr. Security Engineer jobs
- Open Security Researcher jobs
- Open Senior Security Architect jobs
- Open Security Operations Analyst jobs
- Open ISO 27001-related jobs
- Open Clearance-related jobs
- Open Network security-related jobs
- Open Windows-related jobs
- Open Application security-related jobs
- Open Agile-related jobs
- Open Pentesting-related jobs
- Open Vulnerability management-related jobs
- Open GCP-related jobs
- Open Analytics-related jobs
- Open SaaS-related jobs
- Open CISA-related jobs
- Open IAM-related jobs
- Open Threat intelligence-related jobs
- Open APIs-related jobs
- Open Java-related jobs
- Open Security assessment-related jobs
- Open DevOps-related jobs
- Open Malware-related jobs
- Open Kubernetes-related jobs
- Open Security Clearance-related jobs
- Open CI/CD-related jobs
- Open IDS-related jobs
- Open CEH-related jobs
- Open EDR-related jobs