Cybersecurity Compliance Analyst

25 Mar 2024

Vacancy expired!

Greetings from Ampcus!Ampcus Inc. is a Global leader in end-to-end IT Business Solutions and Services with latest technologies. We are listed among the top 50 fastest growing companies in USA. We work closely with our clients for Talent acquisition.Manager’s Note:It’s no secret that Client provides a critical resource to millions of customers. What’s not always known is what goes on behind the scenes to ensure that we do so reliably and securely. If you follow the news, you've probably noticed the increasing number of cyber-attacks on critical infrastructure like ours and how impactful it can be to our communities and economy. In this role, you will join us in our mission to protect some of our most critical systems from cyber-attacks and other potential threats by ensuring our adherence to NERC CIP regulatory compliance requirements.You will become part of a cross-functional team of talented and diverse IT professionals who are passionate about the work that they do and embrace teamwork to achieve success. You will have an opportunity to gain exposure to unique technologies and interact with many other teams across IT, Security and Power Generation. Most importantly, you will be doing meaningful work that plays a role in keeping our communities energized and thriving each day. If you have a background in compliance/cybersecurity, a questioning mindset, keen attention to detail, and great communication and organizational skills, this may be a great fit for you. No NERC CIP experience, but a quick learner? We'll work with you to get up to speed.Here's what some of our analysts have to say: "I love bringing my attention to detail, writing skills, and organizational thinking into a fast paced environment to improve my team’s processes. I get to bridge the gap between technical subject matter experts and regulatory requirements by documenting the intersection of technical boundaries and NERC requirements. Every day is a new set of challenges and although there are some repetitive tasks during the year, this job provides ample variety to keep me learning new skills.""I personally enjoy and look forward to the audits associated with NERC Compliance as it is my way to say “challenge accepted”. The ongoing audits provide an opportunity to prove and showcase the results of our day-to-day evidence collection and really shine. You have to a passion for this type of work and be willing to put yourself on top of that virtual wall and say, nothing is going to get through today, not on my watch.""This job is more about being a Swiss army knife than being a specialist. If you’re good at switching between people, documentation, technical discussions, and writing, it’s a job you’ll love."Job Summary:Maintains compliance for various IT system(s) and supporting operational processes. The position leverages regulatory guidelines and business best practices to meet current and ever-changing requirements, improve processes, and strengthen compliance within the organization. Responsibilities include but are not limited to the creation and maintenance of documented technical procedures, contributions to reducing human performance errors, and elimination of audit findings. Ideal candidate must be a team player and comfortable working in an IT operations area governed by regulatory requirements.Leads compliance related system operations tasks utilizing comprehension of regulatory requirements. Strong knowledge of cyber security architecture & technology best practices is essential to ensure effective compliance processes and procedures are implemented for systems supported. Expectation is process improvement by continuous evaluation of existing processes and tools for failure points resulting in the implementation of controls to mitigate future potential failures. Position is responsible for generation and collection of compliance evidence required to demonstrate compliance with regulatory requirements.Coordinates with cyber security, compliance & application teams to recognize and implement technical solutions to comply with regulatory standards while identifying and implementing automation of repetitive tasks prone to human performance error.Perform other duties as requested or assigned.Certifications: Preferred, not requiredEducation:• High School Diploma required• 3-5 years’ experience in lieu of Bachelor'sRequired Knowledge, Skills, Abilities & Experience• 3+ years of hands on experience with common IT system platforms/operating systems.• 2+ years of cyber or IT audit, compliance experience. (Note: A Master's degree can count towards one year of experience).• Strong problem-solving skills and detail oriented.• Experience with configuration or baseline management principles.• Experience with vulnerability and patch management.• Comfortable with Cyber regulatory standards and requirements with a desire to master it.• Ability to navigate through complex technologies with subject matter experts.• Understands IT Technology to successfully improve and maintain a compliance program.• Strong communication skills (written and verbal).• Must work well with others.• Understands current security architecture best practices.• Possesses strong drive to independently learn and adapt to new system administration responsibilities.• Proactively identifies & leads implementation efforts to improve processes and/or automate functions to better support compliance tasks.• Demonstrated ability to handle multiple deadlines and associated pressures.• Must possess a strong desire and aptitude to learn technical compliance concepts.• Ability to work independently, set goals and prioritize, to achieve desired results.Additional skills desired:• Prior experience with NERC CIP• Knowledge or experience with ICS (Industrial Control System) environments• Technical project coordination/management in an operations setting.• Root cause analysis understanding and/or training.• Human performance failure analysis training and/or understanding.Education RequirementsDegree or an equivalent combination of education and demonstrated related experience may be accepted in lieu of preferred level of education: BachelorDisciplines: Preferred: Computer Science; Information Systems; Information Systems Security; Information Technology - Cyber SecurityThank you!

  • ID: #49545032
  • State: Virginia Richmond 23219 Richmond USA
  • City: Richmond
  • Salary: Depends on Experience
  • Job type: Contract
  • Showed: 2023-03-25
  • Deadline: 2023-05-16
  • Category: Security