IT Governance, Risk, & Compliance Specialist

iboss
Pennsylvania
Full-time

Description

Company Overview iboss is a cloud security company that enables the modern workforce to connect securely and directly to all applications from wherever they work.

Built on a containerized cloud architecture, iboss delivers security capabilities such as SWG, malware defense, RBI, CASB and data loss prevention to all connections via the cloud, instantaneously and at scale.

This eliminates the need for traditional network security appliances, such as VPNs, firewalls and web gateway proxies, which are ineffective at protecting a cloud-first and mobile world.

Leveraging a purpose-built cloud architecture backed by 230+ issued and pending patents and more than 100 points of presence globally, iboss processes over 150 billion transactions daily, blocking 4 billion threats per day.

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.

To learn more, visit / At iboss, we believe that exceptional employees are the key to our success. Our teams are hands on, diverse, nimble, and highly empowered to drive excellence.

Be a part of the team that will transform the way cybersecurity is delivered! Job Description The IT Governance, Risk, and Compliance Specialist will play a key role on the iboss team by aligning security initiatives with enterprise programs and business objectives.

In this role, you will be a part of the team responsible for information security assessments of cloud environments, information systems, risk management and security tool configurations to ensure adherence to applicable frameworks, laws, and regulations.

The IT GRC Specialist will make an impact on iboss’ security program and services through experience with various areas including data governance, risk management, metrics, audit, policy, and standards development. Responsibilities

  • Develop and oversee IT compliance and IT Risk strategies, ensuring alignment with regulatory requirements and industry standards
  • Lead the implementation and maintenance of IT governance frameworks, risk, policies, and procedures
  • Design and enforce IT controls to mitigate risks and ensure data security and regulatory compliance
  • Facilitate and support the gathering, reviewing, assembling, and maintaining of internal and external audit evidence and related documentation
  • Conduct thorough risk assessments and provide strategic recommendations for risk management
  • Act as liaison / main of contract with internal and external auditors for regulatory inquiries and compliance related matters.
  • Collaborate with cross-functional teams to integrate compliance requirements
  • Monitor and review regulatory updates and issues relative to pertinent security regulatory requirements.
  • Drive continuous improvement efforts to enhance IT compliance and governance practices.

Skills / Qualifications

  • Bachelor's degree in Computer Science, Information Security, or related field
  • 5+ years of experience in IT compliance, governance, or related roles
  • Working experience with Business continuity plans (BCPs)
  • Expert knowledge on industry specific regulatory requirements and compliance frameworks for cloud providers (FedRAMP / DoD, SOC, ISO, HIPAA, PCI-DSS)
  • Deep understanding of IT governance frameworks and risk management methodologies
  • Prior experience with cloud providers and / or data centers a plus
  • CISA required and other industry certifications such as CISSP, CISM, or equivalent a plus
  • High level of verbal and written communication skills

Benefits :

  • Health, Vision, Dental - open to domestic partners
  • 401K with company match
  • Paid Time Off (PTO)
  • Company paid holidays
  • 30+ days ago
Related jobs
Promoted
Berkley
Philadelphia, Pennsylvania

Proven track record of at least 5-8 years of progressive experience in IT Audit, Information Security and/or GRC, with core responsibilities focused on IT Governance, IT Controls testing, Finding remediation and IT Risk Assessments. This role will own ensure our IT Compliance and Cyber Security Risk...

iboss
Pennsylvania

The IT Governance, Risk, and Compliance Specialist will play a key role on the iboss team by aligning security initiatives with enterprise programs and business objectives. The IT GRC Specialist will make an impact on iboss’ security program and services through experience with various areas includi...

Bentley Systems
Exton, Pennsylvania

We are looking for an IT GRC Internal Auditor to join our team and help us ensure compliance with controls of various security certifications in our internal audit program. You will be responsible for planning, executing, and reporting on internal audits and compliance reviews, as well as collaborat...

Ikea
Pittsburgh, Pennsylvania

As a Risk & Compliance Specialist, driving function performance and development within the unit, you will:. Support the Risk Manager in analyzing Safety & Security trends to identify, manage, and mitigate key risks in the unit. Promote risk awareness in the unit to support informed decision-making a...

Bentley Systems
Exton, Pennsylvania

The Senior IT GRC Manager will also oversee and coordinate IT audits, assessments, and remediation activities, as well as provide guidance and support to the Global IT GRC Team and leadership on compliance-related matters supporting corporate priorities. Collaborate with the IT leadership, legal, ri...

Carnegie Mellon University
Pittsburgh, Pennsylvania

The successful candidate will be responsible for ensuring that our organization adheres to all relevant IT compliance standards and regulations, with a focus on NIST 800-171 and Cybersecurity Maturity Model Certification (CMMC). You will coordinate with external auditors and regulatory agencies duri...

Indotronix International Corporation
Pittsburgh, Pennsylvania

Indotronix is seeking a IT - Risk Specialist Senior in Pittsburgh, PA, Strongsville, OH, Birmingham, AL, and Farmers Branch, TX. Experience with technology risk within Financial institutions. Indotronix upholds good corporate citizenship by complying with all applicable laws, including taxation, equ...

Carnegie Mellon University
Pittsburgh, Pennsylvania

The successful candidate will be responsible for ensuring that our organization adheres to all relevant IT compliance standards and regulations, with a focus on NIST 800-171 and Cybersecurity Maturity Model Certification (CMMC). You will coordinate with external auditors and regulatory agencies duri...

V2Soft
Pittsburgh, Pennsylvania

Experience with technology risk within Financial institutions. Experience with the creation review/maintenance in the operational/technology risk programs. Development and management of internal risks and controls. Experience with KYP (know your third party). ...

Jazz Pharmaceuticals
Philadelphia, Pennsylvania

Collaborate with stakeholders on remediation and risk mitigation activities, including tracking and progress of action plans across compliance, policy, and process gap remediation activities and risk mitigation activities in partnership with internal business partners. Be the advocate for informatio...