Acumen, LLC→
Information Security: Compliance Analyst I at Acumen, LLC · Burlingame
Entry LevelOn-siteFull-timeBurlingame, CA$65k–$85k/yr
Skills
information securitycompliance managementrisk managementnist frameworkhipaa compliancecisacism certificationanalytical skillscollaboration skills
Job Description
Summary: Acumen, LLC provides government agencies with high-quality, impartial research and analytical tools to inform decision-making. The Compliance Analyst I will collaborate with various teams to apply security best practices and support risk management efforts by ensuring compliance with internal policies and regulations.
Responsibilities:
- Conduct assessments and gap analyses of compliance activities to support effectiveness indicators provided by government agencies
- Conduct internal audits of the system environment and relevant policies and procedures
- Collect information and evidence for external audits and client inquiries
- Integrate auditing protocols into development cycles and assisting with system architecture and design
- Implement and maintain applicable security and privacy regulatory and legal requirements into company’s Information Security Program
- Research and maintain understanding of policies, regulations & laws at the state and federal levels
- Build understanding of security frameworks and standards for NIST, FedRAMP, FISMA, HIPAA, SOC2 and other relevant information security and privacy regulations
- Contribute to the development and management of comprehensive documentation demonstrating continuous regulatory compliance effectiveness
- Contribute to briefings for senior management of implications of changes to the company’s security & privacy policies, procedures, processes
- Contribute to internal policy recommendations for maintaining compliance
- Develop reports and actionable information pertaining to risk and incident discovery and remediation technologies, techniques, and processes
- Support the creation and delivery of annual Incident Response Tabletop Exercise and Contingency Plan Testing
- Review outputs from vulnerability scanning tools to identify, document, and track vulnerabilities and compliance deviations
- Work closely with cross-functional teams to ensure these issues are remediated in accordance with the Service Level Agreements (SLAs)
- Join a recurring internal team meetings to update the team on the status of progress of ongoing security initiatives and action items
- Monitor and engage with internal communication channels to stay informed and connected to the team
- Attend meetings with employees from IT and Software Development teams to discuss progress on a new security software
Required Qualifications:
- You have a Bachelor's degree in Computer Science, security, compliance, or related field
- You have up to 2 years of experience working in the information security domain serving in a role in supporting and managing security compliance
- You are enthusiastic about learning the data security principles needed to implement security controls and oversee data security practices
- You have excellent organizational, analytical, and problem-solving skills
- You are energized by problem-solving. You're able to maintain a level head when a curveball is thrown your way and you enjoy the challenge of connecting the dots and identifying what's needed to resolve it
- You have reliable interpersonal, oral and written communication skills
- You're able to effectively collaborate with IT system architects, technical project teams, and high-level business managers
- You are a self-starter and are able to take initiative to stay abreast of security developments and threats
- You're able to demonstrate adaptability, prioritize tasks, and meet deadlines in a fast-paced environment
Preferred Qualifications:
- CISA or CISM certificate (in progress or completed)
Required Skills: Information Security, Compliance Management, Risk Management
Important Skills: NIST Framework, HIPAA Compliance, CISA, CISM Certification
Nice-to-Have Skills: Analytical Skills, Collaboration Skills
Benefits: Health, dental, and vision insurance, Retirement savings options, Paid time off, Other employee programs
Benefits
Health, dental, and vision insurance
Retirement savings options
Paid time off
Other employee programs