Information Security Risk and Compliance

Atlanta, GA, United States

Applications have closed

PurpleBox, Inc.

Manage Risk and Start Digital Transformation for your business through PurpleBox’s Cybersecurity and DevOps services. Contact Us now!

View company page

Company Description

PurpleBox is the leading management consulting company that focuses on solving business problems utilizing new technologies.  We provide Cloud Computing, DevOps, and Cybersecurity consulting and managed services that help businesses run their business more efficiently. 

Job Description

Multiple Information Security Risk and Compliance Positions are available.

  • Entry-level to mid-senior level
  • Internship, Part-Time, Full Time

We are seeking to hire multiple Information Security, Risk and Compliance professionals to work with our customers on risk assessment, compliance and cybersecurity projects.  As part of project delivery teams, these professionals are responsible for execution, monitoring and enforcement of the information security governance, risk management, compliance projects.  The successful candidate will oversee day to day execution of operational information security risk and compliance initiatives at PurpleBox and/or our clients. 

Responsibilities:

  • Manage and execute the day-to-day information security risk and compliance operational activities
  • Develop and recommend appropriate information security policies, standards, procedures, checklists, and guidelines using generally-recognized security concepts tailored to meet the requirements of the organization
  • Identify and document specific security issues, propose resolution options, and interpret matters from the perspective of involved stakeholders
  • Communicate regularly with teams and staff as part of risk assessments, follow-up on open issues, status tracking, and other miscellaneous items.
  • Independently design, recommend, plan, develop and support implementation of project-specific security solutions to meet requirements
  • Manage remediation of identified risks and vulnerabilities; identify those within the organization responsible for remediation tasks; track progress on remediation of identified risks and vulnerabilities and provide appropriate reporting to all constituents
  • Provides regular reporting metrics on the current state of the program.
  • Other duties as assigned

Qualifications

  • Bachelor’s degree in Computer Science, Information Technology, Business Administration, or related field 
  • Experience in information security risk assessment, compliance and/or security operations
  • Previous experience in one or more of the areas below is a plus:
  • --- IT Security Strategy and Management
  • --- Risk Management, IT Audit, and Compliance
  • --- Network, System, Database administration, support and/or help-desk experience
  • --- Application Security, Software Development
  • --- Security Monitoring, Data Loss Prevention, Incident Response
  • Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate security and risk-related concepts to technical and nontechnical audiences. 
  • Strong analytical skills to analyze security requirements and relate them to appropriate security controls.
  • Working knowledge of relevant security regulations, standards and frameworks, including SOC2, ISO27000, PCI, HIPAA, and NIST CSF.

Professional certifications such as CISM (Certified Information Security Manager), CISA (Certified Information Systems Auditor) or other similar credential is a plus.

Additional Information

All your information will be kept confidential according to EEO guidelines.

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: Application security Audits CISA CISM Cloud Compliance Computer Science DevOps Governance HIPAA Incident response ISO 27000 Monitoring NIST Risk assessment Risk management Security strategy SOC 2 Strategy Vulnerabilities

Region: North America
Country: United States
Job stats:  62  16  0
Category: Compliance Jobs

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.