Information Security Specialist

Boston Consulting Group
Sherborn, MA, US
Full-time
We are sorry. The job offer you are looking for is no longer available.

WHAT YOU'LL DO

The right candidate is responsible for managing security compliance for BCG’s software and data offerings in alignment with AICPA’s SOC 1 and SOC 2 framework and ISO 27001 standards.

The right candidate must be able to demonstrate understanding of the fundamental security compliance frameworks, understand security and compliance audit processes and be able to collaborate with the team.

The candidate must be a proactive team player, be able to communicate information and explanation to guide solutions. Additionally, the candidate must demonstrate strong customer service to set of internal stakeholders and develop positive and collaborative relationships within own area.

The successful candidate possesses excellent interpersonal and communication skills, both written and oral, required to partner with team members and stakeholders across the business to identify compliance gaps, issues and risks.

The role will report to the head of Governance & Risk Management for BCG X and sit within BCG’s information Security team.

YOU'RE GOOD AT

Understanding cybersecurity compliance frameworks - SOC 1, SOC 2, ISO 27k.

Have a risk mindset, eye for detail, and can apply critical thinking.

Working with auditors, audit request lists and taking ownership of gathering security audit evidence.

Coordinating audits and conducting reviews of deliverable to verify compliance with internal policies and industry best practices.

Thorough with an eye for detail to ensure completeness of audit and compliance requests.

Ensuring clear and expedient escalations with informed recommendations to management.

Being a team player and working to achieve common goal in a dynamic setting.

Identify and leverage lessons learned and best practices from audits, fostering the culture of continuous improvement within BCG.

YOU BRING (EXPERIENCE & QUALIFICATIONS)

Broad working knowledge in key areas of security compliance frameworks (SOC 1, SOC 2, HITRUST, ISO 27k).

Minimum of 2 years’ experience working with security compliance audits.

A minimum bachelor’s degree in any discipline. Computer science, cyber security and risk or technology degrees preferred.

Fluent in English (verbal and written) Strong communication.

Flexibility in scheduling, capable and willing to attend conference calls outside of regular working hours to accommodate the geographical requirements and time zones of our stakeholders, and team members.

Flexibility in scheduling, capable and willing to attend conference calls outside of regular working hours to accommodate the geographical requirements and time zones of our stakeholders, and team members.

Strong work management, and work ethics required.

Ability to work successfully within a cohesive and matrixed team environment.

Superior interpersonal and communication skills; projects confidence and trust.

YOU'LL WORK WITH

The role will report to the head of Governance & Risk Management for BCG X and sit within BCG’s information Security risk management team, working closely with product and engineering, security and IT teams.

10 days ago
Related jobs
Promoted
GeoLogics Corporation
Dedham, Massachusetts

Sr Advanced Information Assurance Engineer with ACTIVE Secret Clearance (US Citizenship REQUIRED). Proficient understanding of cyber security specifications such as Risk Management Framework (RMF), DIACAP, STIGs and other government security specifications and guidelines. ACTIVE Secret security clea...

Promoted
Needham Bank
Needham, Massachusetts

Coordinates system upgrades with all stakeholders (Business line, IT Ops, IT Support, IT Security, Vendor). Needham Bank offers a competitive salary and an amazing benefit package for a full-time employee which includes fully paid medical and dental insurance, HRA, 401(k) plan with an 8% bank match,...

Promoted
Tufts University
Somerville, Massachusetts

Responsibilities include: responding to suspicious cyber security activities, incidents, and tickets; analyzing information from a wide range of sources including logs and data from network devices, applications, and security tools, from other security and IT professionals, and from Internet sources...

Promoted
Moderna, Inc.
Cambridge, Massachusetts

CyberArk and Privileged Cloud technologies including hands-on experience with account and safe management, CyberArk administration and configuration, management and troubleshooting of the various CyberArk Privileged Cloud components. Engineering SME for the privileged access management program, mana...

Promoted
Ignyte AI
Canton, Massachusetts

The Director, Cyber & Information Security - Identity & Threat Management, will report into the Chief Information Security Officer (CISO) for Point32Health. Maintain up-to-date knowledge of the cyber and information security industry, including awareness of new or revised security capabiliti...

Promoted
Viasat
Marlborough, Massachusetts

Provide technical support and oversight as part of a program team's system engineering effort for IA design and development, including security architecture analysis, security requirements definition and allocation and identification of potential security vulnerabilities. This is a role for a Inform...

Promoted
Olympus Corporation of the Americas
Westborough, Massachusetts

Under direction of the Senior Cyber Security Manager R&D, this position is supporting the local cybersecurity design, development, documentation and execution of product design and test strategies. Minimum 4 years of working knowledge and understanding of security engineering, system and network...

Promoted
Doble Engineering Company
Marlborough, Massachusetts

We are seeking a Cyber Security Engineer II to join our Cyber Security team in Marlborough, MA. This role provides an opportunity to apply your technical skills across various security initiatives while collaborating with IT, engineering, and product teams. Our environment provides opportunities to ...

Promoted
ST MARK'S SCHOOL
Southborough, Massachusetts

The head security officer will lead the oversight of the entire security function working closely with the Director of Facilities and Chief Financial & Operations Officer. Serve as the point person for security concerns from community members and from other security officers during other shifts ...

Promoted
Target
Framingham, Massachusetts

The role of a Target Security Specialist can provide you with the:. As a Target Security Specialist, no two days are ever the same, but a typical day will most likely include the following responsibilities:. The good news is that we have some amazing training that will help teach you everything you ...