Information Security GRC Consultant
Serenity Info Tech, Inc.
United States
about 1 month ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Working hours
Regular working hours
Job source
Tech stack
Cyber Security
PCI Data Security Standards
Information Security Management System
Job description
This position with be perform duties as part of DIS execution of its responsibilities under the statewide information security program. DIS Responsibilities include:
- Supporting agencies during their development of the information security program with direct tactical implementation assistance.
- Developing and tracking agency information security implementation plans.
- Interview administrators, managers and third parties to aid in development of program artifacts.
- Ensuring high-level assessments of agencies infosec work to ensure progress is made.
- Providing high-level analysis of process and procedures work to ensure compliance with state standards.
Daily Duties / Responsibilities: Duties include, but are not limited to:
- Interviewing business and technical owners to determine policies and procedures used for each agency process.
- Developing and tracking infosec implementation plan progress.
- Documenting information gathered during both interviews and
- Document reviews to assist with developing formal process and procedures.
- Assessing agency documentation to ensure adequate approaches are used to comply with controls.
Requirements
Required skills (must include years of experience, in order of importance)
- 10+ Years of Experience in Information Security and Compliance.
- 2+ Years of Experience with security audits based on a standard control set as an auditor or responding information system security officer
- Must Have a Strong Working Knowledge of NIST 800-53 (2 Years of Experience)
- Prior Experience POA&M or CAP.
- Strong Communication Experience.
- Experience With Using A GRC Tool (Archer or Similar) (3 Years of Experience)
Preferred Skills (Rank in order of I
- Have completed an information security plan or system security plan notebook.
- Simultaneously, manage multiple infosec work efforts.
- Knowledge of IRS 1075, HIPAA, CJIS, MARS-E and/or PCI-DSS.
- Government sector experience
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on dice.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
DC
Daniel Cranney
6 months ago
AF
Ava Faulkner
7 Important Tips That Every Software Developer Should Know
about 4 years ago
LM
Luis Minvielle
9 Ways to Make Money Hacking
about 2 years ago
HS
Harman Singh
11 Best Practices For PHP Security
about 4 years ago
DC
Daniel Cranney
Understanding and Mitigating Common Web Vulnerabilities
over 1 year ago
AJ
Austin Joy
What Are The Top Skills Required For Azure Developers?
over 4 years ago