IT Security Risk Analyst - Oklahoma City...

TWO95 International, Inc
Oklahoma City, OK, United States
2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Shift work
Job source

Tech stack

Cyber Security Information Technology Audit

Job description

Under senior staff supervision, assist in information security policy development, maintenance and auditing; security policy education, training, and awareness activities; monitor compliance with security policy and applicable law. Participate in risk assessment reviews, and assist with audit/compliance activities., + Review policies and procedures related to Information Security and regulatory compliance.

  • Engage in IT SOX, ISO 27001/2, and other compliance activities.

  • Assist in implementation of SANS 20 Critical Security Controls.

  • Participate in risk assessments for projects.

  • Engage in process review and improvement, document as required.

  • Be prepared to deliver security awareness and policy training.

  • Actively seek to expand individual skills through research, training, and collaboration with peers.

  • Monitor information security news for emerging threats, technologies, and regulations that could have an impact on the security of Client’s processes, systems, and applications.

  • Update job knowledge by participating in educational opportunities; reading professional publications; maintaining personal networks; participating in professional organizations.

  • Work flexible hours, including weekends and evenings.

  • Availability to respond to emergency situations.

  • Perform additional duties and assignments as requested.

Requirements

  • Bachelor’s Degree required, CS, MIS or related field preferred

  • Industry Certification (ISACA, ISC2, GIAC) highly preferred

  • Experience with SOX/SOC/ISO/Privacy Shield/GDPR compliance highly preferred

Experience Required:

  • 3 years of IT risk management, IT audit or regulatory compliance, business continuity, and/or policy and procedure experience

Knowledge/Skills/Abilities:

  • Information security standards such as ISO 27001/2, SANS 20 Critical Controls

  • Strong analytical and problem solving skills

  • Excellent written and verbal communication skills

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on juju.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:14 min

Establishing legal admissibility through immutable blockchain attestations

Frederik Gregaard Frederik Gregaard +1 · WWC Europe 2026

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

59 sec

Proving regulatory compliance to auditors and chief officers

Mike Bursell Mike Bursell · WWC Europe 2026

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

4:27 min

Embracing a new perspective on mobile cyber attacks

Tom Tovar · WWC 2023

Videos

See all

Related articles

See all