Job Description
Supports the strategy, goals, and objectives of the Security organization. May perform multiple, self-guided technical and functional tasks. The Security team develops policies, standards and guidelines and provides services to mitigate cyber and physical risks to company information, IT systems, electronic products, facilities, and physical assets. The Security team works with the business to assess risk and to ensure that appropriate security measures are implemented. The Security team also enables business opportunities by leveraging security capabilities.
Essential Functions :
- Compliance Management - Assess and facilitate compliance of the organization with external regulatory and security certification (PCI, HIPAA, SOC2) requirements that relate to security. Active participation with external consortia and agencies (25%)
- Third Party Management Complete customer security questionnaires and help maintain an information security question / answer database. Evaluate third party vendors and partners to meet company security requirements (25%)
- Security Management - Establishment, facilitation or directing of cyber and physical security processes to protect an organization's facilities, assets, information, and services Drive organizational alignment to the company's chosen security framework and perform regular reviews(15%)
- Risk Management - Identifies and mitigates potential cyber and physical security risks (10%)
- Policies and standards - Develop and deliver commercially acceptable policies and standards that mitigate physical and cyber risks to Cincinnati Bell information, IT systems, electronic products, facilities, and physical assets (10%)
- Security Implementation and Operations - Operationalize documented solutions and deliver day-to-day security operations and support (10%)
- People Management - Direct and indirect management of employees, teams and stakeholders. Sets direction of cross-functional teams and stakeholders and mentors department staff (5%)
- Four years of College resulting in a Bachelor's Degree or equivalent
Security+, CISSP, PSP, CIPP, CISA or relevant Cert preferred
3-5 years3 years Security experience with at least 1 year security compliance experienceExcellent communications and presentation skillsTeam playerPlanning and organizingInitiating action and prioritizing workTechnical knowledge (security and compliance)Familiarity with NIST or ISO, PCI, HIPAA security standardsIT Security Audit experienceThis position does not have employee direct reports but does serve as a "lead" role for others doing similar work.
Work is typically performed in an office environment