Junior Information Systems Security Officer
CurrentKey Contributions:Compliance and Policy Support:Assist in developing, implementing, and enforcing security policies and procedures.Help ensure the organization complies with regulatory frameworks (e.g., NIST 800-53, ISO 27001, or HIPAA).Conduct periodic reviews and audits to ensure compliance with security standards.Risk Assessment:Support risk assessments and vulnerability analyses to identify potential security gaps.Collaborate with teams to mitigate identified risks.Security Documentation:Maintain and update System Security Plans (SSPs), Plan of Actions and Milestones (POA&Ms), and other key documents.Track and document security incidents and system changes.Incident Response:Assist in responding to and analyzing security incidents.Help create reports detailing the root cause of incidents and recommend measures to prevent recurrence.Access Control:Monitor and review access controls to ensure only authorized personnel have access to sensitive systems and data.Support Identity and Access Management (IAM) processes.Security Monitoring and Reporting:Utilize Security Information and Event Management (SIEM) tools to monitor for suspicious activity.Prepare reports on security metrics, trends, and incidents for senior management.