Information Security and Compliance Specialist

Remote Full-time
Work collaboratively with internal Idera technology stakeholders regarding technology controls reviews and assessments. The scope of these activities will include participating with any related teams on a consultative basis. ● Design, test, and document controls related to compliance with AICPA Trust Principles (SOC2) and ISO 27001 and 27701 requirements; ● Gather audit evidence from company stakeholders to provide to assessors, coordinate scheduling of meetings between assessors and company stakeholders for audits; ● Plan and execute internal and external audits to assess and evaluate potential technology risks and controls issues; ● Curate audit findings into management reports and provide recommendations to stakeholders regarding remediation or mitigation of identified risks; ● Work collaboratively to drive Idera’s risk management program which includes the identification, assessment, tracking and reporting of technology risks and status; ● Execute continuous audit testing program and refine controls to support Testing automation; ● Coordinate pentest scheduling with DevOps team and third-party or internal penetration testing team, vulnerability scans with Product Management and DevOps, and remediation of any findings with applicable teams; ● Assist with risk assessments of third-party vendors; ● Any other infosec-related compliance tasks identified. Experience Required: Experience with SOC 2 Type 2 and ISO 27001 and 27701 audits (must Have or obtain at the time of hire - ISO 27001 internal auditor certification), performing internal audits (user access reviews, risk assessments; evaluating findings of penetration tests and vulnerability scans). Apply tot his job
Apply Now →

Similar Jobs

Information Services Group – CyberSecurity, Consulting Manager – USA

Remote

Consultant- Cybersecurity

Remote

Cybersecurity Director (Remote)

Remote

Division Director, Cybersecurity

Remote

Cybersecurity Consultant – Energy Providers

Remote

Senior Director, Cybersecurity Governance, Risk, and Compliance

Remote

DIRECTOR, INFORMATION SECURITY OFFICE CONSULTANT (, TX, United States)

Remote

Cybersecurity GRC Program Manager - Remote

Remote

Senior Manager, Cyber Defense

Remote

Director Cybersecurity Workday Government - US Federal

Remote

Experienced Remote Data Entry Specialist – Flexible Work from Home Opportunities with Competitive Compensation and Professional Growth

Remote

**Experienced Data Entry Clerk – Remote Work Opportunity for Flexibility and Growth at blithequark**

Remote

**Experienced Remote Product Tester - Immediate Start: Earn $35/Hour Testing Games, Apps, Movies & Software from Home**

Remote

**Experienced Part-Time Remote Data Entry Clerk - Typing - Entry Level Opportunity at blithequark**

Remote

Experienced Customer Service Representative - Part Time Remote Focus Group Panelist with High Salary Opportunities and Flexible Work Arrangements

Remote

Principal Engineer, Endpoint Protection Product, Windows Technical Leadership

Remote

Principal Consultant – S/4 HANA Solutions, FICO

Remote

Experienced Remote Customer Support Specialist for Pet Care Services – Delivering Exceptional Support to Pet Parents at blithequark

Remote

Mental Health Therapist - Telehealth (Remote)

Remote

**Experienced Senior Customer Success Manager – Virtual Customer Experience Management and Business Partnership Development**

Remote
← Back