Cvent Inc. Seeks Principal Analyst, Security Risk & Compliance in McLean, VA.
Responsible for all activities within the security compliance and risk management lifecycle. These activities include: risk analysis, tracking, auditing, mitigation, and governance & policy. Develop, update, and monitor compliance with information security policies designed to ensure the confidentiality, integrity, and availability of Cvent's systems and data. Conduct 3rd party vendor risk assessments and track timely gap remediation. Administer and lead periodic independent security audits, i.e. ISO, PCI, SSAE16, SOX. Execute internal and client information security audits. Administer contract security terms and negotiation as needed. Oversee company GRC platform and provide timely metrics and reports to management and stakeholders. Oversee Cvent's Product Security programs to ensure products are developed in compliance with security standards and practices. Oversee due diligence, auditing, and monitoring of vendors and suppliers. Oversee Cvent's periodic penetration tests and triage remediation for vulnerabilities identified. Lead efforts in developing/improving process, procedures, and documentation for all aspects of security. This position does not supervise other employees or involve any managerial level function.
Requires a Master's degree in Information Security or a related field, plus 2 years of Information Security, or related professional technology experience. In lieu of a Master's degree, employer will accept a Bachelor's degree in Information Security or related field plus 5 years of Information Security or related professional technology experience. At least 1 year of leadership experience in a progressive security practice. Experience in four or more of the following areas: compliance, risk management, incident response, threat intelligence, network/host intrusion detection, security operations. Demonstrated experience helping an organization successfully complete independent compliance audits. Knowledge of recognized security industry standards and leading practices, i.e. ISO, PCI, NIST, CIS, FedRamp. Knowledge of network protocols and operating systems (Windows, Unix, Linux, Databases).
To apply: Visit https://www.jobpostingtoday.com/application/98874/apply
JOBS.NOW Note: To tap into these hidden job opportunities, it's crucial to adhere strictly to the application process outlined in each job ad. At JOBS.NOW, we ensure that every listing includes detailed employer instructions. Follow them precisely to be considered for these unique positions!
The "Log Application" button simply allows you to log the application for your records - JOBS.NOW does not submit any applications to employers directly. Remember to still apply through the method indicated in the job ad (mail, email, or via link).
Please note that JOBS.NOW is an independent website and does not post this listings on behalf of any employers nor do we receive any compensation for these listings. All listings are sourced via media or internet channels required by the PERM process.