ISO 27001 SME (Part Time & Remote)

TestPros, Inc.
Sterling, VA, United States
3 months ago
Apply on juju.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Part-time (≤ 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$124,800.0 - $218,400.0
Working hours
Regular working hours
Job source

Tech stack

Cyber Security Information Security Management Information Security Management System Information Technology

Job description

The ISO 27001 SME will be responsible for leading and managing the development, implementation, and maintenance of our ISMS in accordance with ISO 27001 standards. The ideal candidate will have extensive experience in information security management, a deep understanding of ISO 27001 requirements, and a proven track record of achieving and maintaining certification., + Lead the design, implementation, and maintenance of the ISMS in compliance with ISO 27001 standards.

  • Conduct risk assessments and develop risk treatment plans to mitigate information security risks.

  • Coordinate and conduct internal audits to ensure ongoing compliance with ISO 27001 and prepare the organization for external audits.

  • Develop and deliver training programs to raise awareness of information security policies and procedures across the organization.

  • Work closely with cross-functional teams to ensure information security is integrated into all business processes and projects.

  • Maintain up-to-date documentation of the ISMS, including policies, procedures, and audit records.

  • Monitor and report on the performance of the ISMS, including metrics and key performance indicators (KPIs).

  • Stay current with the latest developments in information security and ISO 27001 standards to ensure continuous improvement of the ISMS.

  • Provide expert guidance and support to the organization on all matters related to ISO 27001 and information security.

  • Collaborate with external auditors and regulatory bodies as needed.

Requirements

  • Bachelor’s degree in Information Security, Computer Science, Information Technology, or a related field.

  • Minimum of 5 years of experience in information security management, with a focus on ISO 27001.

  • In-depth knowledge of ISO 27001 standards and best practices for information security management.

  • Experience conducting risk assessments and managing risk treatment plans.

  • Strong project management skills with the ability to lead cross-functional teams.

  • Excellent communication and interpersonal skills, with the ability to effectively train and educate employees on information security practices.

  • Strong analytical and problem-solving skills.

  • Ability to stay current with the latest industry trends and developments in information security.

Preferred Qualifications:

  • Master’s degree in Information Security, Computer Science, Information Technology, or a related field.

  • ISO 27001 Lead Auditor or Lead Implementer certification

  • Additional certifications such as CISSP, CISM, or CISA.

  • Experience working in a [specific industry, e.g., finance, healthcare, technology] environment.

Benefits & conditions

Rate: $60-105/hr (1099 or Corp. To Corp.). This range represents a good-faith estimate and is not a guarantee; final compensation is determined by factors such as experience, qualifications, and government contract labor rate requirements and may fall outside the stated range.

About the company

TestPros delivers innovative independent IT assessment solutions to critical challenges facing the nation and the world. We support the U.S. Federal Government and Commercial clients within the continental USA. TestPros is dedicated to making lives better, safer and more secure.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on juju.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

42 sec

Energy forecasts and resource demands of information technology

Marjolein Pordon · LIVE

4:25 min

The growing power and security responsibility of developers

Tino Sokic · World Congress 2023

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

2:03 min

Platform compliance and security certifications for sensitive data

Chad Carlson · World Congress 2021

Videos

See all

Related articles

See all