Sr Information Security Compliance & Audit Analyst supporting ISO27001 compliance and audit activities. Manage IT compliance activities across North and Central America at Ingram Micro.
Responsibilities
Manage and Support IT compliance activities for regional information security support of ISO27001 auditing, reporting and remediation where appropriate
Coordinate and communicate IT compliance activities to align with Global Information Security leadership in support and improvement of ISO27001 management system
Ensure regional Information Security compliance to Information security standards (ISO27001) requirements
Plan and conduct complex IS and integrated audit/compliance projects, including preparation of an objective risk-based assessment and an effective audit/compliance approach
Leads and/or participates on audit/compliance activities of various locations and departments for compliance with plans, policies and procedures
Execute operational activities to support IS audit and compliance activities including technical validation processes
Execute collection of evidence to support compliance status
Provide and present reporting including monthly metric delivery
Manage escalation and enforcement for unresolved noncompliance issues
Manage and Support External Audit activities and reporting
Work with Information Security staff to ensure tools and reporting mechanisms are satisfactorily meeting statutory objectives
Support compliance and security validation of all 3rd party IT providers
Maintain strong working relationships with internal and external support teams including Global, Regional and Country Information Security associates
Work on special projects as required by management
Stay abreast of changes within the Information Security compliance areas including business change requirements and regulatory changes from an international perspective
Support and enforce Information Security Policy, Standards, and Guidelines for business operations and technology implementations
Work as the Subject Matter Expert (SME) on assigned projects and offers council regarding the intent of Compliance requirements
Requirements
Bachelor’s degree in computer science, engineering, or related science and math discipline with an information security or business emphasis
A minimum of 5 years of experience with IS compliance projects (specifically ISO27001)
Understands key security concepts such as access management, vulnerability and patch management, security information event management, and encryption
Strong understanding of TCP/ IP and other network protocols
Understanding of the basic audit best practices, standards and methodologies
Ability to formulate detailed technical documentation preferred
ASQ Certified Engineer, Auditor or OE Managers preferred
Experience using SharePoint, MS Excel, Word, PowerPoint and Visio
Must possess a valid passport and be legally allowed to leave and return to originating country.
Benefits
Healthcare benefits
Paid time off
Parental leave
401(k) plan and company match
Short-term and long-term disability coverage
Basic life insurance
Wellbeing benefits
Job title
Senior Information Security Compliance and Audit Analyst
Cyber Security Analyst Senior at GDIT focusing on 24/7 monitoring and threat intelligence analysis. Integral in safeguarding government systems and anticipating future threats.
Senior Information Security Analyst responsible for protecting Omni's technology environment. Focus areas: Monitoring, Defense, Operations across on - premises, cloud, and endpoints.
Alternate Information System Security Officer overseeing security compliance for classified information systems. Evaluating security solutions and assisting in system security documentation and procedures.
IT - Systemadministrator managing physical security systems and multimedia solutions. Administration, support, and project involvement in multimedia and surveillance technologies in Roding.
Security Officer performing patrols, emergency response, and customer service at Climax Molybdenum. Managing site security and assisting with emergency situations at various locations.
Security Officer leading safety inspections and facility patrols at Crown Equipment Corporation. Assigning duties and responding to security incidents efficiently.
Security Officer overseeing safety inspections and personnel training for Crown Equipment Corporation. Responsible for monitoring facilities and responding to security incidents.
Manager of Security Risk at Grainger overseeing Information Security Risk team and managing security risk programs. Focused on regulatory compliance, leadership, and risk assessment integration.
SAP Security GRC Consultant involved in designing and implementing security architectures for Swiss clients. Collaborating with project teams on compliance and security solutions.
Senior Consultant with Wavestone providing SAP Security and IAM solutions in Switzerland. Collaborating on security architectures and supporting clients on SAP security transformations.