InfoSec Risk & Compliance Analyst supporting Governance, Risk & Compliance at Reward Gateway. Ensuring ISO compliance and supporting information security operations in a growing company.
Responsibilities
Support our control framework covering ISO 27001, SOC2 Type II, PCI DSS, Cyber Essentials Plus and (in the future) ISO 9001
Ensure ISO readiness/compliance by conducting/supporting periodic internal audits and participating in hosting ISO registrar audits
Assist with analysis, documentation and remediation actions for detected audit observations
Verify implementation and effectiveness of the corrective/preventative actions
Support the Head of GRC and process owners in developing, documenting, reviewing, and communicating company processes and procedures to incorporate best practices in Quality Management and Information Security Management
Maintain the compliance automation platform for achieving streamlined compliance activities
Support the Director of Information Security and Risk Owners with the risk management process
Requirements
At least 1+ year of experience working in Information Security Compliance/Internal Audit
Experience with at least one compliance framework (e.g., ISO 27001, ISO 9001, ISO 22301, SOC 2 Type II, PCI DSS).
Understanding of information security concepts and technology
Previous exposure to cloud technologies and cloud security will be beneficial
Experience in Document Management (incl. Good Documentation Practices) and procedure review
Excellent English communication skills
Comfortable with working across multiple projects, geographical locations, and assignments at once
Have a risk-based approach to problem-solving
Benefits
A 30-minute online interview with the Senior Talent Partner
First stage online interview with the Head of Governance Risk & Compliance
Final stage interview with the Director of Information Security and the Head of Governance Risk & Compliance
Be comfortable. Be you. At Reward Gateway, we want all of our employees to feel comfortable bringing their passion, creativity and individuality to work. We value all cultures, backgrounds and experiences, as we truly believe that diversity drives innovation. Express yourself, join our community and help us Make the World a Better Place to Work.
Commercial Security Service Sales Executive promoting and selling security services at Johnson Controls. Building relationships and delivering solutions to protect people and property within assigned territories.
Security Incident Responder in a leading IT service company in Germany, responsible for analyzing and responding to IT security incidents while developing technological solutions.
Deputy ISSO leading compliance and security activities for NOAA systems at RCG. Requires active Secret clearance and CISSP certification with 8+ years of experience.
Technical Recruiter hiring for Snap Inc.'s security and machine learning teams. Full life cycle recruiting support for technical talent across Snap's innovations.
Cloud Security Architect integrating cyber defense strategies across cloud platforms for Elevance Health. Lead collaboration with infrastructure and engineering teams to enhance security in cloud environments.
Senior Security Advisor designing advanced security solutions for Optiv’s clients. Driving sales and building relationships in a competitive cyber security landscape.
Personnel Security Specialist leading intake operations at PSI. Focused on case coordination, quality assurance, and team training for security suitability tasks.
Security Coordinator overseeing supervision and training of security personnel for BronxWorks' homeless services programs. Ensuring compliance, safety, and coordination with social services directors in Bronx area.
Part - Time Security Officer safeguarding personnel and property at Kaman Air Vehicles. Providing access control, monitoring systems, and responding to incidents in Bloomfield, CT.