Springdale, AR, USA
28 days ago
IT - Consultant | Information Security | Governance Risk and Compliance, Audits , Workflow
Job Seekers, Please send resumes to resumes@hireitpeople.com

Detailed Job Description:

10+ years' experience in the IT Vendor Risk assessment/or IT risk management related activities. CISA/CISSP/CRISC accreditation preferred. Understanding of the VRM practices, including different lifecycle phases of risk identification, treatment, mitigation, acceptance, remediation as well as inherent and residual risks. 6+ years experience conducting IT compliance assessments (Sarbanes-Oxley, PCI, etc.) Prior experience performing security reviews and Vendor Risk Assessments/Risk Assessments, and interaction with client and business owners. Good oral and written skills on a business level in English. Good managerial skills relating to employees, planning and policy formulation. Substantive and diverse knowledge of security-related regulatory compliance. Knack of conducting research to provide documentation and evidence with internal and external inquiries. Experience in Food Industry is an added advantage

Job Responsibilities:

Gathers and reviews documentation; Conducts the risk assessments for assigned vendor with respect to the Methodology/policy/processes. Creating Security Risk Assessment Questionnaires with expected evidences Creating IT Security Risk Model Better understanding of the organization line of business and associated risks Reviewing Assessment Responses and identifying Risks and managing findings and tracking for logical closure Provide recommendations as appropriate based on the identified risks Monitors, Reports and Tracks the status of findings and communicates with the relevant stakeholders to obtain missing items within the prescribed timelines. Completes review in a timely and accurate manner. Collaborate with vendors to address queries and concerns on VRM questionnaires and guide them on remediations Report findings/gaps and monitor the remediate of issues. Monitors trends in the industry, competitive insights, and ensure compliance with regulatory/compliance expectations and requirements. Support in coming-up with a set of actionable reporting viz., KRIs and KPIs.

Minimum years of experience*: 10

Does this position require Visa independent candidates only? No

Confirm your E-mail: Send Email