What are the responsibilities and job description for the IT Compliance Coordinator (Hybrid) position at NYCM Insurance?
The IT Compliance Coordinator will assist in the implementation and maintenance of an effective IT Compliance Program. They will also ensure NYCM cyber policies and processes are compliant to standards and regulations, as well as assist in vendor management security and compliance.
Duties & Responsibilities:
- Collaborate with other divisions to ensure adherence to corporate cyber policies and guidelines.
- Oversee IT policy management program.
- Support compliance assessments and complete semiannual review of policy and regulation compliance and adherence.
- Report to management on compliance gaps found and collaborate with business units to find solutions to common compliance issues.
- Conduct and present research including review of potential new systems or vendors.
- Mentor and guide IT Compliance Support with employee security awareness training and phishing education and exercises.
- Documentation of all work processes and reports for management.
- Review, document, and update current IT data flows in all business units to best understand how IT systems are used in order to ensure regulatory compliance.
- Track implementation of corrective actions and perform follow up reviews.
- Collaborate with divisions to perform system user access permission reviews and make necessary changes to protect sensitive information.
- Support review, audit, monitoring, and enforcement of regulatory requirements.
- Assist vendor risk management.
- Assist with instruction to business units on the proper use and disclosure of sensitive information.
- Actively participate in team meetings and discussions.
- Maintain basic understanding of IT business continuity and disaster recovery through collaboration with risk and IT management to assist in compliance.
- Stay informed of current regulatory, compliance and information security related topics.
- Be available to work additional hours, as the business need dictates.
- Other duties as assigned.
Requirements:
- High School Diploma
- 2 years information technology, compliance, audit or risk management experience.
Qualifications & Skills:
- General understanding of underlying IT infrastructure, architecture, and concepts.
- Knowledge of regulations (such as PCI-DSS and 23NYCRR500) and industry best practices (such as CIS Top 20, NIST CSF and NIST 800-53).
- Good organization, prioritization, and attention to detail skills.
- Good documentation and communication skills.
- Project management and time management skills.
- Ability to take direction and accept constructive feedback.
- Investigation and audit skills for deep dive into company IT processes and records.
- Ability to work both independently and as part of a team.
- Ability to multi-task and organize diverse activities.
- Ability to take direction and accept constructive feedback.
- Good interpersonal skills for tactful interactions with customers.
Payband 4 / 37.5 hours per week
Salary Range: $35,997 - $53,995.50
Accepting applications through: 3/11/25
Salary : $35,997 - $53,996