IT Risk and Compliance Analyst II

Overview

On Site
$40.00 - $55.44 hourly
Contract - W2
Contract - Temp

Skills

Real-time
Process Improvement
Partnership
Cyber Security
IT Audit
Risk Management
IT Security
Internal Control
Auditing
ISO/IEC 27001:2005
System On A Chip
PCI DSS
Sarbanes-Oxley
NIST 800-53
Reporting
Management
Product Development
Regulatory Compliance
Mapping
Database
Continuous Monitoring
Security Controls
Artificial Intelligence
Messaging

Job Details

RESPONSIBILITIES:
A client with Kforce is seeking an IT Risk and Compliance Analyst II to join their team in San Diego, California (CA). The Manager is also open to their Atlanta, GA location.

Overview:
Come join our Compliance team to design and develop the next generation of controls and protections for businesses around the world. We are looking for a passionate technology leader to join a world-class team. We are looking for a motivated, innovative, and passionate people who are driven by identifying ways to automate controls oversight through real-time monitoring and reporting. This professional will help improve client's overall compliance program by identifying and driving process improvement opportunities and advocating for change; continuously monitoring the control environment for non-compliance; and reducing audit fatigue; all while establishing trusted partnerships with our global stakeholders to efficiently drive compliance by design. This is an exciting opportunity that will be supporting some of our most important and visible compliance initiatives. You will have the opportunity to work within a constantly rapidly evolving technology landscape and re-imagine compliance posture management across the firm.

Responsibilities:
* Lead scope expansion opportunities by developing and leveraging a risk-based methodology when introducing new and existing service offerings and their underlying infrastructure components within the scope of applicable audits
* Lead and manage all aspects of applicable cybersecurity audits, such as scope expansion, audit readiness, walkthroughs, evidence collection, and liaising with internal and external auditors
* Drive adoption of emerging compliance framework requirements (e.g., ISO 27001:2022) through thorough analysis and prescriptive guidance

REQUIREMENTS:
* 5+ years of working experience in a technology audit, security risk management, and/or security compliance role
* Demonstrated experience with IT/security internal control definition, development, automation, implementation, and monitoring
* Extensive experience driving auditing compliance programs in accordance with security frameworks (such as ISO 27001, SOC 1/2/3, PCI-DSS, IFI/NYDFS, SOX, and/or NIST 800-53) across multiple business units with differing business requirements
* Understanding of cyber risks management practices, covering the full lifecycle of activities, including risk identification, assessment, mitigation, monitoring, and reporting
* Have customer obsession and empathy for the needs of our small business customers and stakeholders; Be a valued business partner, ensuring we are meeting all compliance commitments, and provide periodic updates on their compliance status to management
* Work closely with the Product Development teams to define requirements within the automate compliance platform tooling, such as control definitions, attribution, evidence, framework mapping, etc.
* Support the controls lifecycle process through periodic assessments of Intuit's unified controls database
* Identify control deficiencies through risk-based continuous monitoring assessments and security controls campaigns and provide recommendations that can be reasonably adopted

The pay range is the lowest to highest compensation we reasonably in good faith believe we would pay at posting for this role. We may ultimately pay more or less than this range. Employee pay is based on factors like relevant education, qualifications, certifications, experience, skills, seniority, location, performance, union contract and business needs. This range may be modified in the future.

We offer comprehensive benefits including medical/dental/vision insurance, HSA, FSA, 401(k), and life, disability & ADD insurance to eligible employees. Salaried personnel receive paid time off. Hourly employees are not eligible for paid time off unless required by law. Hourly employees on a Service Contract Act project are eligible for paid sick leave.

Note: Pay is not considered compensation until it is earned, vested and determinable. The amount and availability of any compensation remains in Kforce's sole discretion unless and until paid and may be modified in its discretion consistent with the law.

This job is not eligible for bonuses, incentives or commissions.

Kforce is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.

By clicking ?Apply Today? you agree to receive calls, AI-generated calls, text messages or emails from Kforce and its affiliates, and service providers. Note that if you choose to communicate with Kforce via text messaging the frequency may vary, and message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You will always have the right to cease communicating via text by using key words such as STOP.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.

About Kforce Technology Staffing