IT Compliance & Risk Management Specialist

  • Boston, MA
  • Posted 16 days ago | Updated 11 hours ago

Overview

On Site
USD 42.00 - 52.00 per hour
Full Time

Skills

Regulatory Compliance
Risk management
NIST SP 800 Series
IT security
Risk assessment
Corrective and preventive action
Information security
Security controls
System security
Status reports
Continuous monitoring
Information Technology
Computer science
Data Analysis
IT service management
Apex
Mergers and acquisitions
Publications
Screening
FBI
OFAC
Documentation
Reporting
IMPACT
Testing
Policies
Management
Computer hardware
FISMA
Evaluation
Communication
Security clearance
Law
SAP BASIS
Innovation
Collaboration
Training
Recruiting

Job Details

Job#: 2024885

Job Description:
Apex Systems is a world class technology services business that incorporates industry insights and experience to deliver solutions that fulfill our clients' digital visions.
If you are interested, please reach out to Kevin Durkin, .
Apex has an opportunity for an IT Compliance & Risk Management Specialist. Here are the details:

Position: IT Compliance & Risk Management Specialist
Location: Hybrid onsite in Boston, MA

Rate: $42.00 - $52.00/hr
Duration: Until 12/31/24; Strong potential for extension into 2025
Qualifications:
Working knowledge of NIST 800 series Special Publications and IT Security Program. Knowledge and experience normally acquired through, or equivalent to, the completion of a bachelors degree and 3 - 5 years of job-related experience. Certification in related technical discipline desirable. Commencing an engagement with our client is contingent upon successful completion of a background screening that includes a drug screening, credit check, FBI criminal history, Patriot Act / Office of Foreign Assets Control (OFAC) / Prohibited Parties watch list check, professional reference check, employment history verification, and educational history verification.
Responsibilities:
The Specialist will develop, update, and maintain IT compliance documentation based on our clients compliance standards. The individual will conduct regular reviews and assessments to coordinate Enterprise Risk Management and Security Assurance for reporting requirements. Responsibilities - Perform IT compliance, risk assessment, and mitigation. Provide business and technical expertise for compliance including impact level and vulnerability corrective action recommendations and follow-up. Develop, update, and maintain IT compliance documentation based on IT compliance standards. Conduct regular reviews and assessments to coordinate IT compliance testing and reporting requirements. Analyze IT compliance and risk related policies and standards.
Principal Accountabilities:
Performing activities associated with the Bank's information security framework. This includes assisting business lines completing security control self-assessments, preparing System Security Plan documentation, conducting analysis of security control deficiencies, and monitoring risk management activities. Providing status reports of progress.
Optionally and skills dependent, candidate could participate in independent security controls testing activities such as technical scanning or management/operational reviews.
Executing continuous monitoring activities, including recurring access reviews, and preparing security-related documentation.
Assisting peers within the Information Security function with ad hoc risk assessments, such as software/hardware compliance reviews.
Knowledge and Experience:
Working knowledge of NIST 800 series Special Publications, FISMA, or equivalent IT security programs. Background in information technology, information security, computer science, data analysis or equivalent preferred.
Knowledge and experience with risk assessments, security plans, and test and evaluation activities.
Ability to recommend corrective action plans.
Ability to interpret security policies and standards and understand how they can be best applied within an organization.
Good organization skills with the ability to exercise discretion and ingenuity to determine the proper course of action while following established standards.
Ability to be innovative with resourcefulness and a strong drive for results.
Strong communication skills to support team members within the Information Security function and business lines in FRB Boston.
Excellent written and verbal communication skills.
Other:
Staff working within the Information Security function are expected to obtain an enhanced clearance (NACI level 2 or equivalent).
Additional Benefits:
For this opportunity, you will also be eligible for benefits through Apex for the contract period, 401K, medical/health benefits options, a W2 hourly rate, weekly pay, and direct deposit!
EEO Employer
Apex is an Equal Employment Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other characteristic protected by law. Apex will consider qualified applicants with criminal histories in a manner consistent with the requirements of applicable law. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation in using our website for a search or application, please contact our Employee Services Department at or .

EEO Employer

Apex Systems is an equal opportunity employer. We do not discriminate or allow discrimination on the basis of race, color, religion, creed, sex (including pregnancy, childbirth, breastfeeding, or related medical conditions), age, sexual orientation, gender identity, national origin, ancestry, citizenship, genetic information, registered domestic partner status, marital status, disability, status as a crime victim, protected veteran status, political affiliation, union membership, or any other characteristic protected by law. Apex will consider qualified applicants with criminal histories in a manner consistent with the requirements of applicable law. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation in using our website for a search or application, please contact our Employee Services Department at or .

Apex Systems is a world-class IT services company that serves thousands of clients across the globe. When you join Apex, you become part of a team that values innovation, collaboration, and continuous learning. We offer quality career resources, training, certifications, development opportunities, and a comprehensive benefits package. Our commitment to excellence is reflected in many awards, including ClearlyRated's Best of Staffing in Talent Satisfaction in the United States and Great Place to Work in the United Kingdom and Mexico.

About Apex Systems