Posted in

Information Security Compliance Manager

Information Security Compliance Manager

CompanySysdig
LocationSan Francisco, CA, USA
Salary$131000 – $180400
TypeFull-Time
Degrees
Experience LevelSenior, Expert or higher

Requirements

  • 8 plus years of experience relevant work experience in IT Compliance
  • Experience with SOX and ITGC and application control concepts
  • Knowledge of procedures related to SOC 1/2, GDPR, FedRAMP, ISO 27001, ISO 27701, SOX, PCI
  • Familiarity and experience with cloud computing and the acronyms that come with it – Amazon Web Services (AWS), Google Cloud Platform (GCP), SaaS, IaaS, PaaS.
  • Experience with GRC (Governance, Risk, Compliance) and ITSM (IT Service Management) desired.
  • Knowledge of ITSM and IT Change Control Processes CISA, CIA, CISSP or other related certifications a plus

Responsibilities

  • Report to the Head of Security & Compliance
  • Work with our 3PAO, Government Accreditors, Sales Team, and Accreditors to communicate our compliance position and program
  • Manage detailed testing of controls to ensure risks are identified, associated audit procedures are applied, related controls are designed and operating, and mitigate the identified risks
  • Ensure execution of required testing and auditing activities for IT by internal and external parties leading to successful certification of the company on an ongoing basis
  • Manage IT process and control documentation for SOX (ITGC, risk control matrix, process flowcharts, controls testing procedures) and support regulatory requirements for Systems
  • Participate in the full delivery of cyber risk and security engagements serving multiple clients across different industries
  • Conduct information security risk assessments, including risk/issue intake/identification, evaluation and treatment plan preparation and tracking
  • Engage with regulators and provide walkthroughs of testing and validation work performed
  • Improve existing processes and develop efficient solutions

Preferred Qualifications

  • A ‘can do’ attitude
  • Ability to pivot quickly when needed, and enjoy building processes that scale a growing business
  • Comfortable collaborating within a dynamic, fast-paced, rapid-growth environment
  • Independent who operates with a strong sense of ownership for projects and results, excellent business judgment