Dutech’s Job

Security Policy and Compliance Specialist

Austin,TX

DatePosted : 3/26/2024 7:15:45 AM

JobNumber : DTS101766054
JobType : W2
Skills: Security Policy Development, Compliance Management, Regulatory Compliance, Security Awareness
Job Description

As a Security Policy and Compliance Specialist, your primary responsibility is to ensure that an organization adheres to security policies, standards, and regulatory requirements. You will work closely with stakeholders to develop, implement, and enforce security policies and procedures that mitigate risks, protect sensitive data, and maintain compliance with relevant regulations and industry standards. Your role involves assessing security controls, conducting audits, and providing guidance on security best practices to enhance the organization's overall security posture.

We are only considering candidates who reside locally in Austin, TX.

Key Responsibilities:

  1. Security Policy Development: Collaborate with stakeholders to develop, review, and update security policies, standards, and procedures based on industry best practices, regulatory requirements, and organizational needs.

  2. Translate security requirements into clear and actionable policy statements, guidelines, and controls that align with business objectives and risk tolerance.

  3. Compliance Management: Monitor regulatory developments, industry standards, and legal requirements to ensure the organization's security policies and procedures remain up-to-date and compliant.

  4. Conduct gap analyses and risk assessments to identify areas of non-compliance and develop remediation plans to address deficiencies.

  5. Regulatory Compliance: Ensure compliance with relevant regulations, standards, and frameworks, such as GDPR, HIPAA, PCI DSS, ISO 27001, NIST, and CIS Controls.

  6. Interpret regulatory requirements and provide guidance on how to implement controls and measures to meet compliance obligations.

  7. Security Awareness and Training: Develop and deliver security awareness training programs and materials to educate employees about security policies, procedures, and best practices.

  8. Promote a culture of security awareness and compliance throughout the organization by conducting regular training sessions, workshops, and simulations.

  9. Policy Enforcement and Governance: Enforce security policies and procedures through regular audits, assessments, and compliance checks to ensure adherence to established standards.

  10. Establish governance mechanisms, controls, and metrics to monitor policy compliance and track progress towards security objectives.

  11. Incident Response and Reporting: Assist in incident response activities by providing guidance on security policies and procedures, conducting post-incident reviews, and identifying areas for improvement.

  12. Prepare and distribute security compliance reports, metrics, and dashboards to management, stakeholders, and regulatory authorities as required.

SHARE THIS JOB

;