-
Information Security Compliance Specialist
- OVHcloud (Reston, VA)
-
Job Summary
The Information Security (IS) Compliance Specialist will be responsible for supporting the management of compliance processes to help OVHcloud meet industry standard cloud computing certifications and applicable legal and regulatory compliance requirements with a high concentration on information security. As a part of the compliance team, you will play a strategic role in coordinating and executing OVHcloud US certification & compliance strategy for programs like ISO 27001, PCI-DSS, HIPAA, and SOC.
Essential Duties & Responsibilities
+ Support the execution of certification & compliance roadmap working with cross-functional teams and external auditing agencies.
+ Accurately interpret, map, and communicate information systems compliance regulations and requirements within the organization, leveraging best practices.
+ Conduct internal assessments and audits at planned intervals and on an ad hoc basis to evaluate and validate the design and operational effectiveness of policies, standards, and internal control framework to help reduce risk in the organization.
+ Organize and support internal audits and external compliance/certification audits for the organization.
+ Monitor open audit items from internal audits and external compliance/certification audits to ensure completion of remediation activities defined in the agreed action plans and risk treatment plans.
+ Continuously search for ways to improve and optimize current processes related to compliance policies, standards, and external requirements.
+ Provide compliance-focused support to sales, product, and legal teams.
Minimum Requirements
+ Bachelor’s degree in information systems or a related technical field preferred; equivalent experience considered in lieu of degree.
+ 3+ years of experience working in an information security, information technology or information risk management related field possessing thorough understanding of industry standards and regulations including ISO 27001, SSAE18 SOC 1, 2 & 3, Payment Card Industry (PCI-DSS), HIPAA, Cloud Star Alliance (CSA) and Sarbanes-Oxley (SOX).
+ Experience with compliance programs in a service provider market preferred.
+ Must be a self-starter and possess the qualities to work efficiently, effectively, and autonomously with general supervision
+ Demonstrated ability to multi-task, respond to needs quickly and efficiently and prioritize work with a strong attention to detail
+ Ability to work well under pressure and respond to tight deadlines while exercising sound judgment
+ Demonstrated experience in managing compliance programs for financial services organization or organizations with similar information security needs and requirements
+ Familiarity and understanding of broad range of IT technical controls, hardware and software products, cloud computing, or hosting services
+ Must have excellent analytical skills; extensive Microsoft Excel experience a plus
Working Conditions
Standard office environment
Company Description – About OVHcloud
OVHcloud US is a subsidiary of OVHcloud, a global cloud provider that specializes in delivering industry-leading performance and cost-effective solutions to better manage, secure, and scale data. OVHcloud US delivers bare metal servers, hosted private cloud, hybrid and public cloud solutions. OVHcloud manages 43 data centers across 12 sites on four continents, manufacturing its own servers, building its own data centers and deploying its own fiber-optic global network to achieve maximum efficiency. Through the OVHcloud spirit of challenging the status quo, the company brings freedom, security and innovation to solve data challenges – today and tomorrow. With a 25-year heritage, OVHcloud is committed to developing responsible technology and strives to be the driving force behind the next cloud evolution. https://us.ovhcloud.com .
EEO Statement
OVHcloud is committed to providing equal employment opportunities to all employees and applicants without regard to race, ethnicity, religion, color, sex (including childbirth, breast feeding, and related medical conditions), gender identity or expression, sexual orientation, national origin, ancestry, citizenship status, uniform service member and veteran status, marital status, pregnancy, age, protected medical condition, genetic information, disability, or any other protected status in accordance with all applicable federal, state and local laws.
Powered by JazzHR
-
Recent Searches
- Engineering Program Buyer early (California)
- Associate Director DSNP Encounter (Texas)
- Cyber Range Project Manager (United States)
- Electrical Assistant Project Manager (North Carolina)
Recent Jobs
-
Information Security Compliance Specialist
- OVHcloud (Reston, VA)
-
Quality Engineer III
- Marotta Controls, Inc. (Parsippany, NJ)