Job Overview:
We are seeking an experienced Cybersecurity professional to lead the development and implementation of a comprehensive cybersecurity program, establishing a specialized cybersecurity team. The role involves overseeing the implementation of SOC2 Type 2 compliance and preparing for fieldwork associated with the audit. This is a strategic and practical and active role, requiring collaboration across IT operations and security functions to ensure the organization’s infrastructure and data are secure, resilient, and compliant.
Primary Job Responsibilities:
- Cybersecurity Leadership: Build, lead, and mentor a cybersecurity team, fostering a culture of security awareness and best practices.
- SOC2 Implementation: Develop and implement the SOC2 Type 2 program, ensuring all policies, controls, and documentation meet audit requirements.
- Audit Preparation: Coordinate with auditors and internal teams to facilitate successful completion of SOC2 Type 2 audits.
- Infrastructure Security: Collaborate with IT teams to design and implement secure infrastructure systems in cloud and on-premise environments.
- Risk Assessment: Conduct regular security risk assessments and develop mitigation strategies.
- Policy Development: Create and enforce cybersecurity policies and procedures aligned with organizational objectives and compliance requirements.
- Monitoring and Detection: Implement tools and processes for real-time threat detection, monitoring, and response.
- Incident Response: Lead the development and execution of an incident response plan to address security breaches and vulnerabilities.
- Training: Provide training and guidance to staff on cybersecurity protocols and best practices.
- Stakeholder Communication: Serve as a key advisor to senior leadership on cybersecurity trends, risks, and solutions.
- Vendor Management: Evaluate and manage vendor solutions to ensure alignment with cybersecurity objectives.
- Perform other duties as needed or required.