Itr Co. Ltd - Oak Ridge, TN

posted 3 days ago

Full-time
Remote - Oak Ridge, TN
Food Services and Drinking Places

About the position

The Cyber Governance Analyst role is focused on ensuring compliance with cybersecurity policies while managing governance and risk to support business objectives. The analyst will collaborate with various teams to develop policy documents, security control strategies, and risk mitigation strategies, ensuring adherence to regulatory requirements and industry standards.

Responsibilities

  • Identify, review, and provide analysis and recommendations to meet requirements of applicable laws, regulations, orders, and the contract, translating them into policies and procedures.
  • Provide guidance on policies and controls to support appropriate levels of risk and facilitate risk tolerance discussions.
  • Assist in risk management efforts including risk assessment processes and identification of risk mitigation strategies.
  • Participate in internal/external compliance audits, reviews, self-assessments, and data calls.
  • Identify, promote, and implement process improvements.
  • Perform Security Control assessments per NIST SP 80053A Rev.5 guidance.

Requirements

  • Bachelor's degree in IT, Cyber, or related field and at least 5 years of experience in cyber policy, risk management, governance, and compliance.
  • Experience in security control assessments, Master Plans, and Cybersecurity program plans.
  • Strong analytical and organizational skills with problem-solving capabilities to understand Cyber risk and exposure.
  • Demonstrated experience implementing compliance frameworks (NIST, A123, Privacy).
  • Facilitation and project management knowledge, skills, and abilities; lead program implementations.
  • Excellent interpersonal, verbal, written, and presentation communication skills.
  • Strong customer service, networking, and teamwork skills with all levels of personnel.
  • Thorough understanding of industry standards and regulations including PCI, HIPAA, Privacy Act, NIST 800-53, NIST Risk Management Framework, FAIR.
  • Working knowledge of privacy regulations and impacts.
  • Experience integrating risk, compliance, and governance groups within an organization.
  • Ability to work independently and meet deadlines.
  • Exceptional communication, problem-solving, and negotiation skills.
  • High ethical standards and operates with integrity and professionalism.
  • Must be able to obtain and maintain a DOE Q security clearance.

Nice-to-haves

  • Master's Degree in Information Assurance or related field.
  • Minimum seven years experience in information security, information technology, or information risk management.
  • Cyber Security certifications (CISA, CISM, CRISC, CISSP).
  • Project Management certification (PgMP, PMP, PMI-ACP).
  • Experience gaining an Authority to Operate (ATO) for a government system.
  • Active DOE Q or TS clearance.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service