Cybersecurity Compliance Consultant
Description
DOT Security’s mission is to improve the security posture of client organizations by providing detection, response, risk management, and compliance services as identified and required. DOT Security will implement processes, technology, and subject matter expert personnel to monitor and respond to client needs in the cybersecurity and compliance space. Working with client organizations, DOT Security will continuously measure and improve internal processes and technology, which will translate to improved services provided to the client.
DOT Security is seeking team members who are passionate about Cybersecurity, detailed-oriented, desire for continuous learning, and enjoys working in a collaborative environment. We provide our employees with a career progression path, that challenges our team to grow as cybersecurity professionals with strong cybersecurity skills. As a member of Dot Security, you will get the opportunity to work from a brand-new, state of the art Security Operations Center (SOC) facility.
DOT Security is seeking team members who are passionate about Cybersecurity, detailed-oriented, desire for continuous learning, and enjoys working in a collaborative environment. We provide our employees with a career progression path, that challenges our team to grow as cybersecurity professionals with strong cybersecurity skills. As a member of Dot Security, you will get the opportunity to work from a brand-new, state of the art Security Operations Center (SOC) facility.
What you will be doing:
A Cybersecurity Compliance Consultant, internally titled as a Virtual Compliance Manager, performs point-in-time Gap Analysis & advises clients on an ongoing basis to improve or maintain their adherence to regulatory compliance requirements. This involves continuously monitoring state & federal regulations & working with clients to proactively modify their compliance programs to accommodate new regulatory requirements as they take effect. Compliance program modification entails Compliance Consultant coordination with client stakeholders to design & analyze the impact of changes & modify compliance plans in a timely manner.
The Cybersecurity Compliance Consultant is not a remote position. This role is required to be on-site at the DOT Security- Security Operations Center.
Responsibilities
- Act as point of contact for client resources in relation to reported compliance violations
- Advise clients on appropriate use of compliance reporting tools and related technology
- Aid external auditors & authorities with client compliance reviews & investigations
- Assist with client business associate contract maintenance & respond if problems arise
- Develop a vision & roadmap for client compliance controls, processes, & risks
- Facilitate allocation of appropriate resources for effective compliance policy implementation
- Perform periodic gap analysis & ongoing compliance monitoring for client organizations
- Remain up-to-date on compliance laws, rules, & regulations & inform clients about changes
- Support the development & implementation of written compliance policies & procedures
- Track client compliance documents & support the filing of compliance reports as needed
- Act with a sense of urgency, identify alternatives, & set realistic timeframes for resolution
- Complete work based on priority, follow through as promised, & set expectations
- Contribute to & perform both new & pre-existing plans, instructions, & procedures
- Demonstrate active listening & critical thinking skills & comprehend received information
- Interpret & understand complex & evolving concepts in a dynamic, fast-paced environment
- Maintain awareness of technology advancements & their cybersecurity implications
- Understand & present technical concepts to non-technical audiences
- Provide exceptional customer service & remain calm under pressure
- Resolve problems in early stages & ticket labor, notes, & details in a ticketing system
Qualifications & Experience
- Client relationship management (listening, setting expectations, delivering results)
- Feedback interpretation for process, product, & service improvement
- Policy, process, & procedure writing & review concepts
- Project Management principles & techniques
- Risk assessment methodologies & management processes (scoring, mitigation)
- Supply chain risk management standards, processes, & practices
- Ability to work independently & as part of a team
- Adaptability to situations in which data is incomplete or where no precedent exists
- Communicate & collaborate in a clear, professional, & concise manner using technology, tools, & workspaces
- Critical thinking, customer service skills, & passion for cybersecurity
- Documenting & communicating complex technical concepts, incidents, problems, & events
- Knowledge of IT assets (apps/data/devices/networks/users) & related security concepts (monitoring/hardening)
- Preparation & delivery of reports, plans, & briefings using presentation technology
- System administration and cybersecurity theories, concepts, & methods
- System resiliency, redundancy, continuity, & disaster recovery concepts
- The ability to work ethically & with integrity
Other Desire Attributes
- Public Trust background check (Limited Requirement)
- Relevant work experience in managed services industry
- Cyber community participation (conferences/groups/tool authoring/CTFs)
- Understanding of CIS Controls, CMMC, NIST 800-171, NIST 800-53, FedRAMP
- Relevant college degrees
- Certifications including GRCP, CRISC, Cyber-AB CCP, Cyber-AB CCA, IAPP CIPP/US, IAPP CIPM
The typical base salary for this role is $110,000-$140,000. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to skillset, experience and training, licensures and/or certifications, and other organizational needs.
DOT Security may offer applicable incentive compensation plans depending on role and/or department.
Full compensation details can be discussed with an Impact Talent Acquisition team member at the start of the interview process.
Benefits
- Up to 20 days of PTO
- Up to 7 Paid Sick Days
- 12+ paid holidays
- Paid Parental Leave
- Comprehensive Health, Disability Life, Dental and Vision Plans
- 401(K) & retirement plans
- Tenure incentives at 5- (Tiffany & Co. Gift Card), 10- (Rolex watch), and 20- ($20,000 check) year mark(s)
- Continued education reimbursement
- On-going training & development opportunities
Work Authorization & Immigration Sponsorship
Candidates must be authorized to work in the United States at the time of application. Immigration sponsorship may be considered in limited circumstances based on business need, cost, workforce planning, and applicable government requirements. DOT Security does not guarantee sponsorship for any visa category and may decline certain petitions based on associated costs or regulatory requirements.
#LI-Onsite