Senior Cybersecurity Risk & Compliance Analyst - Albany,NY (Hybrid)

Overview

On Site
$Market
Accepts corp to corp applications
Contract - W2
75% Travel

Skills

CISSP
NIST
COMPTIA
Risk Assessments
mitigation
AI
forensics
CSSLP
Security Policies
Artificial Intelligence
Incident Response

Job Details

In Person Interview:
Duties include, but are not limited to:
Implement information security and compliance programs for Information Technology (IT) systems and Operational Technology (OT) systems.
Conducting written risk assessments (security, privacy, Artificial Intelligence) for existing systems/solutions, new systems/solutions, and services in use or to be used by the business.
Assist with management and resolution of security risks and/or threats to business information and operational systems.
Serve as information security analyst and evaluate systems and contracts for alignment with Business and State information security policies and standards as well as other laws, regulations, and industry best practices, as applicable.
Assist with risk register management and vulnerability management
Monitor and remain aware of information security industry trends, tools, and techniques.
Perform additional duties as required.
Requested Qualification Number Requested Qualification
Notes to Agency:
Points assigned will change depending on the number of Qualifications
submitted
There is no requirement to have 10 Qualifications.
Only Number of Months is an allowable unit of measurement for
experience.
Experience you have
1 84 months experience evaluating information security, privacy, and compliance for Information Technology systems and/or Operational Technology systems.
2 84 months experience conducting written risk and compliance assessments for security, privacy, and/or Artificial Intelligence using industry standards and frameworks such as NIST, CIS Critical Controls, ISO 27001, etc.
3 60 months experience triaging and determining mitigation plans (with and without Vendor) to resolve security risks and/or threats to business information systems and operational technology systems
4 60 months experience evaluating business systems (Commercial Off the Shelf and Custom Developed) for alignment with Information Technology and/or Operational Technology security policies, standards, laws, regulations, and industry best practices.
5 60 months experience in evaluating security controls for cloud environments
6 60 months experience working with cross functional teams to mitigate or remediate system and application vulnerabilities
7 48 months experience in risk management (including third-party), vulnerability management, and security program management
8 48 months experience in threat assessment and/or Incident Response management for information security and/or operational technology systems.
9 Bachelor's Degree (or higher) in one or more of the following: Information Security, Information Assurance, Cybersecurity, Computer Science, Information Science, Information System Management, Digital Forensics, Compliance and Risk Management
10 One or more of the following certifications: GICSP, GSEC, CISSP, CCSP, CCSK, CompTIA Cloud+, GCSA, CompTIA Network+, CompTIA Security+, CompTIA CySA+, CIPT, CIPP, CIPM, CISSP, CRISC, ISSAP, ISSEP, CGRC, CSSLP, SSCP, or other applicable information and/or cybersecurity, privacy, artificial intelligence, or risk management certifications
Required Documentation R sum
Copy of Candidate Identification
(i.e., Driver's License//Visa and Passport if applicable)
Any documents referenced in the above Requested Qualifications
(i.e., professional certifications, degrees, etc.)

Brandon Consulting Associates, Inc. is an EQUAL OPPORTUNITY EMPLOYER and has been in business for 29years.

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.