What are the responsibilities and job description for the Security Risk Manager position at Encore Talent Solutions?
Encore Talent Solutions has partnered with a local client in search of an IT Security, Risk and Compliance Manager on a contract-to-hire basis.
This role does not have any direct reports, just manages the clients internal environment.
Essential Functions :
- Develop and recommend security policies, standards, procedures and controls for maintaining data security
- Conduct reviews to measure compliance with NIST, PCI, and ISO standards, regulations and frameworks
- Monitor compliance with state, federal and international laws regarding data privacy and security breaches
- Develop a security strategy, security awareness program, security architecture, and security incident response
- Develop and maintain up-to-date security policies, standards and guidelines
- Oversees training and dissemination of security policies and practices
- Coordinate information security efforts of all internal IT groups, to ensure that organization-wide information security efforts are consistent across the company, and that duplication of effort is minimized
- Manage audit gaps, identifies those within IT, and responsible for remediating or closing audit findings, negotiate dates for closure, and track / report progress
- Assist management in conceptualizing all compliance related risks that the client faces, and how best to deal with these risks using an integrated risk management approach
- Provides strategic risk guidance for IT projects, including evaluation and recommendation of technical controls
- Perform other duties as assigned
- Up to 10% travel required
Essential Skills and Experience :