Cybersecurity and Compliance Professional
- Perform vulnerability testing and reporting
- Perform various cybersecurity functions
- You will support the organization’s cybersecurity, compliance, and consulting practice in delivering various IS027K, HITRUST, HIPAA, and NIST Compliant governance and security services.
- Assist in performing Risk Assessments to ensure compliance with IS027K, HITRUST, PCI DSS, HIPAA, and NIST.
- You will assist in writing and updating IS027K, HITRUST, PCI DSS, HIPAA, and NIST Compliant Policies and Procedures.
- Interpretation of industry or regulatory requirements and apply them to business operations
- Required to create or choose an approach or procedure from a variety of complex options for addressing a work task.
- Interfaces with clients, analysts, and project managers to clarify requirements and documentation.
- Review’s literature and documentation and compares such to current practices relevant to the solution of assigned projects.
- Works with various Quality Assurance standards to review detailed documents, policies, procedures, and related materials.
- Assists other team members with their assignments as required.
- Orchestrate the planning of various reports, preparation of audit and compliance programs, performing testing procedures, drafting respective reports for presentation, and assessing management action plans.
- Develop status and analysis reports and presentations for regular review.
- Create other highly detailed documentation for internal and external use.
Required
- Experience in Compliance or Cybersecurity
- Office skills sets including working with Microsoft Word, Excel, PowerPoint, and Outlook.
- Excellent organizational and communication skills.
- Excellent decision making and critical-thinking skills.
- Displays knowledge of, and ability to apply, logic to complex scenarios
- Analyzes and determines task needs.
- Displays in-depth knowledge of, and ability to apply, basic project management skills.
- Consistent exercise of independent judgment and discretion in matters of significance.
- Maintains productive and professional relationship with all customers and staff members.
- Possess exceptional written/verbal communications skills, presentation skills, and organizational time management skills
- Must be self-motivated and have a positive attitude.
- Must be detail oriented and the ability to multi-task.
- Ability to meet deadlines with Projects and Assignments.
- Ability to learn and support new processes and train others as applicable.
- Ability to articulate the requirements for technical, contractual, commercial and management responses.
- Experience excelling in a dynamic culture that requires adaptability to changes in procedures, processes, technologies, responsibilities, assignments, schedules and unknown evolutions of team requirements.
Preferred
- Previous Cybersecurity experience
- Penetration Testing skillsets
- Vulnerability Testing skillsets
- CISSP or equivalent certification
- PCI QSA Certification
- Knowledge of HIPAA, HITRUST, ISO 27001, NIST, PCI DSS, or SSAE SOC standards.
- Experience with creating and maintaining IT Policies and Procedures that are HIPAA, HITRUST, ISO 27001, NIST, PCI DSS, or SSAE SOC standards.
- Experience with Healthcare technology environments or and related compliance.
- Paralegal skillsets would prove valuable in this position
Benefits and Compensation
- Salary based on Skill sets, Capability, and Experience
- Flexible hours and Remote Work Friendly
- Comprehensive Health Insurance
- Prescription Coverage
- Dental Coverage
- Vision Coverage
- Short-Term Disability
- 401K Retirement Plan
- Paid Time Off
- Paid Training
- Paid Certification Testing