Listing Description
Overview
The Security Team at Recharge is responsible for providing best practice guidance regarding the security of all of our products, data and systems. We are looking for team members who love to collaborate with other team members around the business. In this role, you will monitor, evaluate and maintain Information Security systems and procedures to ensure the security of Recharge.
What you’ll do
Provide quality assurance of all IT General Controls through assessment, walkthroughs and audits to ensure operational effectiveness of those controls.
Monitor the control environment and ensure that controls are operational and in-line with established policies and procedures.
Identify risks and gaps and facilitate remediation to address observations raised in internal and external audits.
Collaborate with external auditors to provide required evidence after ensuring the quality of the information obtained.
Manage and track findings from identification to closure. Ability to evaluate and review a plan of action and determine if the proposed plan meets control requirements.
Provide awareness training to control owners.
Design, implement, maintain and improve programs to address key company risks and prepare internal teams for assessments against a variety of regulatory and compliance frameworks (PCI, SOC2, SOX, ISO27001, etc).
Conduct and coordinate third party risk assessments and collaborate with stakeholders to identify critical risks to the organization.
Help develop and maintain security policies, procedures and guidelines and ensure cross functional teams are trained.
Manage and monitor security tools and technologies such as penetration testing, vulnerability scanning and reporting.
Assist with other compliance and security priorities as needed.
What you’ll bring
Skills:
Basic working knowledge of information security concepts
Self-starter and flexible team player able to effectively manage independent workloads asynchronously with stakeholders across multiple time zones
Project Management capabilities
Ability to effectively communicate and educate others on the need and value-add of security and compliance efforts
Education and experience:
Four-year degree or relevant professional certifications (CISA, CISSP, GSEC, etc) preferred, but will also consider candidates with relevant experience
2+ years experience as a security/compliance analyst
A general understanding of compliance frameworks such as ISO, NIST, OWASP, SANS Top 20, PCI-DSS, GDPR, SOX and SOC2
Listing Details
- Citizenship: Not Provided
- Incentives: Not Provided
- Education: Not Provided
- Travel: Not Provided
- Telework: Not Provided