IT Security Compliance Specialist
- Full-Time
- Broomfield, CO
- Stantec
- Posted 2 years ago – Accepting applications
IT Security Compliance Specialist - ( 220000I7 )
Description
Grow with the best. Join a smart, creative, and inspired team that works behind the scenes to support operational excellence. Our functional services teams (FSTs) provide services to 25,000 employees in over 400 locations worldwide. Bringing together individuals with diverse backgrounds, talents, and expertise, our FSTs are vital to making our Company stronger. Explore opportunities in Information Technology Services.
Your Opportunity
The IT Security Compliance Specialist will work closely with the Senior IT Security Compliance Specialist and the Senior IT Security Project Manager to support all company compliance needs including annual GDPR, NIST and ISO 27001 certifications. The ideal candidate brings experience in regulatory frameworks. The analyst will also review and provide guidance to IT Operations teams around security best practices as they relate to compliance with Stantec's regulatory and contractual frameworks, and act as an advocate for company policies.
Your Key Responsibilities
- Develops, implements, maintains, and oversees enforcement of internal security policies and procedures.
- Assists with IT documentation management.
- Assists with risk assessments and advises on treatment options based on compliance requirements.
- Participates in security certification efforts, such as DFARS, CMMC, and ISO 27001.
- Supports third-party audits as required to maintain certifications and compliance certificates.
- Conducts regularly scheduled internal audits on IT systems and coordinates remediation efforts on non-conformities.
- Assists with answering client security questionnaires and evaluating compliance with contractual requirements.
- Organizes supplier and vendor security posture information.
- Ensures awareness of Stantec security policies and procedures as they apply to all staff by developing and maintaining a communication strategy.
Qualifications
Your Capabilities and Credentials
- Good understanding of IT Security frameworks and relevant regulatory obligations (GDPR, SOX, NIST, ISO 27001, CMMC)
- Demonstrated knowledge and understanding of information technology industry trends and emerging technologies and an ability to relate them to the company and its objectives
- Strong written and verbal communication skills. Demonstrates an outstanding “customer orientation” to service management
- Self-starter – Shows initiative, is solutions-focused and can work with minimal supervision
- Awareness of the challenges and benefits of working in geographically and culturally dispersed, global, virtual teams, and willingness to work cooperatively with others on such teams, which sometimes entails working outside normal business hours.
- Demonstrate diligence in documenting activities and actions taken during incidents and activities to ensure accountability of actions
- Promote innovation and continual process improvement
- Prefer certification related to Information Security (e.g., CISSP, CSA etc.)
Education and Experience
Prefer Bachelor’s degree or technical diploma in related field.
1 – 2 years of experience supporting IT security compliance preferably in a large enterprise, and/or commensurate combination of education and experience.This description is not a comprehensive listing of activities, duties or responsibilities that may be required of the employee and other duties, responsibilities and activities may be assigned or may be changed at any time with or without notice.
Stantec is a place where the best and brightest come to build on each other’s talents, do exciting work, and make an impact on the world around us. Join us and redefine your personal best.
Primary Location : United States-Colorado-Broomfield
Other Locations : United States
Job : IT Security Development
Organization : BC-1973 IT Services-Corporate-US
Employee Status : Regular
Job Level : Individual Contributor
Travel : No
Schedule : Full-time
Job Posting : Feb 9, 2022, 3:46:53 PM
Colorado’s Equal Pay for Equal Work Act: Requires employers to provide the following information for positions that may be in Colorado:
- Hiring Salary Range: $40.14 - $49.18 — Colorado locations only. The final agreed upon compensation is based on individual education, qualifications, experience, and work location.
- Benefit Clause: Medical, dental & Vision plans, wellness program, health saving account, flexible spending account, 401(k) plans, employee stock purchase program, life & AD&D insurance, short/long term disability plans & PTO (vacation, sick & holidays).
Req ID: 220000I7
Vaccine Policy: Beginning December 8, 2021, Stantec requires North America employees in many positions to be fully vaccinated against COVID-19 except those for whom a reasonable accommodation has been granted because a medical reason or a sincerely held religious belief, as required by law.
Stantec provides equal employment opportunities to all qualified employees and applicants for future and current employment and prohibit discrimination on the grounds of race, color, religion, sex, national origin, age, marital status, genetic information, disability, protected veteran status, sexual orientation, gender identity or gender expression. We prohibit discrimination in decisions concerning recruitment, hiring, referral, promotion, compensation, fringe benefits, job training, terminations or any other condition of employment. Stantec is in compliance with local, state and federal laws and regulations and ensures equitable opportunities in all aspects of employment. EEO including Disability/Protected Veterans