Senior Security Assurance Officer
宁夏西云数据科技有限公司
- 公司性质:民营公司
- 公司行业:多元化业务集团公司
职位信息
- 发布日期:2020-10-20
- 工作地点:北京-朝阳区
- 招聘人数:1人
- 工作经验:3-4年经验
- 学历要求:本科
- 职位月薪:5-7万/月
- 职位类别:合规经理 合规主管/专员
职位描述
- Developing a working knowledge of the operational processes and controls supporting our certification programs by linking policy, standard operating procedures, controls, monitoring, and reporting.
- Conducting risk assessments, improving documentation, tracking progress, coordinating improvement efforts, and monitoring process improvement effectiveness.
- Operating a rhythm of business for managing changes to the control environment and in preparing for audits, documenting activities on behalf of control owners, and confirming readiness of controls for audit/certification.
- Driving process improvements and control implementation projects in coordination with NWCD service teams, including tracking and mitigating risk and executing projects originating from assessments.
- Developing external documentation to support NWCD & AWS local and global customers in understanding and leveraging the security and compliance environment during their own external due diligence activities.
- Able to lead project based team structure to plan, execute and deliver business impact.
任职要求:
- Bachelor's Degree in Computer Science, Information Systems Management, Mathematics, Informatics, Accounting/Auditing, or other related fields.
- 3+ years of experience in security or compliance consulting or advisory work in in support of a highly technical environment.
- 3+ years of assessing/developing/documenting security or compliance environment in a technical field
- Experience in performing and/or participating in technical assessments in direct support of a major compliance effort supporting attestation project (e.g. MLPS, PCI, SOC1, or SOC 2, ISO, or other related standards and frameworks).
- Strong written communication skills demonstrating ability to clearly distill complicated, technical subjects into easily understood explanations.
- Own at least one active industry recognized information security professional certification, such as CISA, CISM, CISSP.
公司介绍
联系方式
- Email:campus@nwcdcloud.cn