IT Governance, Risk, & Compliance Specialist

iboss
Massachusetts
Full-time

Description

Company Overview iboss is a cloud security company that enables the modern workforce to connect securely and directly to all applications from wherever they work.

Built on a containerized cloud architecture, iboss delivers security capabilities such as SWG, malware defense, RBI, CASB and data loss prevention to all connections via the cloud, instantaneously and at scale.

This eliminates the need for traditional network security appliances, such as VPNs, firewalls and web gateway proxies, which are ineffective at protecting a cloud-first and mobile world.

Leveraging a purpose-built cloud architecture backed by 230+ issued and pending patents and more than 100 points of presence globally, iboss processes over 150 billion transactions daily, blocking 4 billion threats per day.

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.

To learn more, visit / At iboss, we believe that exceptional employees are the key to our success. Our teams are hands on, diverse, nimble, and highly empowered to drive excellence.

Be a part of the team that will transform the way cybersecurity is delivered! Job Description The IT Governance, Risk, and Compliance Specialist will play a key role on the iboss team by aligning security initiatives with enterprise programs and business objectives.

In this role, you will be a part of the team responsible for information security assessments of cloud environments, information systems, risk management and security tool configurations to ensure adherence to applicable frameworks, laws, and regulations.

The IT GRC Specialist will make an impact on iboss’ security program and services through experience with various areas including data governance, risk management, metrics, audit, policy, and standards development. Responsibilities

  • Develop and oversee IT compliance and IT Risk strategies, ensuring alignment with regulatory requirements and industry standards
  • Lead the implementation and maintenance of IT governance frameworks, risk, policies, and procedures
  • Design and enforce IT controls to mitigate risks and ensure data security and regulatory compliance
  • Facilitate and support the gathering, reviewing, assembling, and maintaining of internal and external audit evidence and related documentation
  • Conduct thorough risk assessments and provide strategic recommendations for risk management
  • Act as liaison / main of contract with internal and external auditors for regulatory inquiries and compliance related matters.
  • Collaborate with cross-functional teams to integrate compliance requirements
  • Monitor and review regulatory updates and issues relative to pertinent security regulatory requirements.
  • Drive continuous improvement efforts to enhance IT compliance and governance practices.

Skills / Qualifications

  • Bachelor's degree in Computer Science, Information Security, or related field
  • 5+ years of experience in IT compliance, governance, or related roles
  • Working experience with Business continuity plans (BCPs)
  • Expert knowledge on industry specific regulatory requirements and compliance frameworks for cloud providers (FedRAMP / DoD, SOC, ISO, HIPAA, PCI-DSS)
  • Deep understanding of IT governance frameworks and risk management methodologies
  • Prior experience with cloud providers and / or data centers a plus
  • CISA required and other industry certifications such as CISSP, CISM, or equivalent a plus
  • High level of verbal and written communication skills

Benefits :

  • Health, Vision, Dental - open to domestic partners
  • 401K with company match
  • Paid Time Off (PTO)
  • Company paid holidays
  • 17 days ago
Related jobs
iboss
Massachusetts

The IT Governance, Risk, and Compliance Specialist will play a key role on the iboss team by aligning security initiatives with enterprise programs and business objectives. The IT GRC Specialist will make an impact on iboss’ security program and services through experience with various areas includi...

Promoted
WEX Inc
Boston, Massachusetts

The WEX Information Security Governance Rick & Compliance Team promotes security policy and standards throughout WEX by establishing and maintaining security policies and standards, delivering cybersecurity awareness and training activities and anti-spear phishing simulation campaigns and execut...

Promoted
FRESENIUS MEDICAL CENTER
Lexington, Massachusetts

IT Audit/SOX IT experience within an external firm or relevant IT Audit experience within private industry; or a Master’s degree with 3 years’ experience; or a PhD without experience; or equivalent directly related work experience. Supports IT compliance management as the principal interface with th...

Promoted
Federal Reserve System
Boston, Massachusetts

The Information Technology (IT) Risk Specialist participates in reviews and examinations that evaluate the effectiveness of IT risk management practices primarily for a large financial institution within the large and foreign banking organization (LFBO) portfolio of institutions supervised by the Fe...

SGA
Boston, Massachusetts

This includes assisting business lines completing security control self-assessments, preparing System Security Plan documentation, conducting analysis of security control deficiencies, and monitoring risk management activities. Assisting peers within the Information Security function with ad hoc ris...

Jazz Pharmaceuticals
Boston, Massachusetts

Collaborate with stakeholders on remediation and risk mitigation activities, including tracking and progress of action plans across compliance, policy, and process gap remediation activities and risk mitigation activities in partnership with internal business partners. Be the advocate for informatio...

The Hanover Insurance Group
Worcester, Massachusetts
Remote

The GRC team is responsible for providing oversight and governance of information security risk related activities and to ensure management awareness through transparent reporting of our security risk and compliance posture. Take end to end ownership of information security owned programs and relate...

Federal Reserve System
Boston, Massachusetts

The Information Technology (IT) Risk Specialist participates in reviews and examinations that evaluate the effectiveness of IT risk management practices primarily for a large financial institution within the large and foreign banking organization (LFBO) portfolio of institutions supervised by the Fe...

State Street
Boston, Massachusetts

Possess sound judgment, Cybersecurity risk awareness, and inquisitive personality; ability to think critically and critic event and outcomes professionally. Conduct Cybersecurity reviews and identify security gaps in the technology ecosystem resulting in recommendations for inclusion in the Cybersec...

Promoted
New Directions IT Staffing
Westborough, Massachusetts

This is a quasi-hybrid career opportunity with required on-site responsibilities. Work with applications development teams and/or Vendor partners to understand the end user requirements and to prioritize the work of the developers within the team. Collaborate with end users, vendors and management t...