Cyber Security Assurance Specialist
Current• Provide advice to client management with regard to moderately complex security issues. • Assists in the review, development, testing and implementation of security plans, products and control techniques. • Coordinates the reporting data security incidents. • Provides technical support to the client and management and staff in risk assessments and implementation of appropriate data security procedures and products. • Monitors existing and proposed security standard setting groups. • State and Federal legislation and regulations. • Identifies and escalates changes that will affect information security policy, standards and procedures. • Executes security controls to prevent hackers from infiltrating company information or jeopardizing e-commerce programs. • Researches attempted efforts to compromise security protocols. Administers security policies to control access to systems and maintains the company firewall. • Works on complex problems where analysis of situations or data requires an in-depth evaluation of various factors. • Exercises judgment within broadly defined practices and policies in selecting methods, techniques, and evaluation criterion for obtaining results. • Work leadership may be provided by assigning work and resolving problems. • Strong written and verbal communication skills • Ability to communicate clearly and concisely to various levels, up to and including executive level management. • Explain the need for key controls to technical and non-technical resources.• Technical skills include the domains of information security and business continuity including:• Information Security Controls (Infrastructure Security, Access Management, Physical Security, Application Security, etc.)• IT Compliance, SOX Compliance• Change Management• Enterprise Risk Management• Solid grasp of NIST, PCI, ISO, SDLC, COBIT, and ITIL standards