IT Security Risk Analyst - Oklahoma City - Full-time
Two95 International Inc.
Posted: June 13, 2019
Interested in this position?
Create a free account to apply with AI-powered matching
Quick Summary
Assist in information security policy development, maintenance, and auditing; security policy education, training, and awareness activities; monitor compliance with security policy and applicable law.
Required Skills
Job Description
Title: Information Security Risk Analyst
Location: Oklahoma City, OK
Type: Full-time
Salary: DOE
Requirement:
Under senior staff supervision, assist in information security policy development, maintenance and auditing; security policy education, training, and awareness activities; monitor compliance with security policy and applicable law. Participate in risk assessment reviews, and assist with audit/compliance activities.
Requirements:
RESPONSIBILITIES:
• Review policies and procedures related to Information Security and regulatory compliance.
• Engage in IT SOX, ISO 27001/2, and other compliance activities.
• Assist in implementation of SANS 20 Critical Security Controls.
• Participate in risk assessments for projects.
• Engage in process review and improvement, document as required.
• Be prepared to deliver security awareness and policy training.
• Actively seek to expand individual skills through research, training, and collaboration with peers.
• Monitor information security news for emerging threats, technologies, and regulations that could have an impact on the security of Client’s processes, systems, and applications.
• Update job knowledge by participating in educational opportunities; reading professional publications; maintaining personal networks; participating in professional organizations.
• Work flexible hours, including weekends and evenings.
• Availability to respond to emergency situations.
• Perform additional duties and assignments as requested.
Education/Certification:
• Bachelor’s Degree required, CS, MIS or related field preferred
• Industry Certification (ISACA, ISC2, GIAC) highly preferred
• Experience with SOX/SOC/ISO/Privacy Shield/GDPR compliance highly preferred
Experience Required:
• 3 years of IT risk management, IT audit or regulatory compliance, business continuity, and/or policy and procedure experience
Knowledge/Skills/Abilities:
• Information security standards such as ISO 27001/2, SANS 20 Critical Controls
• Strong analytical and problem solving skills
• Excellent written and verbal communication skills
Note: If interested please send your updated resume and include your rate requirement along with your contact details with a suitable time when we can reach you. If you know of anyone in your sphere of contacts, who would be a perfect match for this job then, we would appreciate if you can forward this posting to them with a copy to us.
We look forward to hearing from you at the earliest!