Compliance Lead

Infojini Inc

Denver (CO)

On-site

USD 90,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A technology solutions provider in Colorado is looking for a Data Compliance Lead. This role involves ensuring the secure operation of systems in line with laws and conducting audits. The ideal candidate has over 7 years of experience in Information Security and at least 5 years in enterprise software development, along with strong leadership and communication skills. This position offers an exciting opportunity to shape security practices and policies within a dynamic team environment.

Qualifications

  • 7+ years in Information Security.
  • 5+ years in enterprise software development.
  • Strong oral, written, and presentation skills.

Responsibilities

  • Ensure secure operation of in-house systems and compliance with laws.
  • Conduct regular audits on internal systems.
  • Develop and oversee internal security policies.

Skills

Data Compliance
Security Awareness
Secure Software Development Life Cycle
Threat Modeling
Web Application Security

Job description

The Data Compliance Lead’s role is to ensure the secure operation of the in‑house systems, servers, and network connections in accordance with internal processes, procedures, and compliance requirements as well as Federal, State and Local laws. Tasks also includes conducting regularly scheduled audits on internal systems and hosting third‑party and/or Cloud audits as required in order to maintain certifications and compliance certificates. The data compliance lead also develops implements, maintains, and oversees remediation and enforcement of internal security policies and procedures.

Top 3 Must Have Skills:

Data Compliance Lead is responsible for designing, publishing and reviewing technology designs, security controls and solutions to reduce the risk of unauthorized access, transmission and storage of confidential data (ex: IRS 1075, IRS Pub 1075, TOP, SSA, DHS, and PII and FTI data). Partner with security architects, other functional‑area architecture, engineering, and security specialists to ensure adequate security solutions and controls are in place throughout the IT systems and platforms to mitigate identified risks sufficiently and to meet business objectives and regulatory requirements. Provide expert‑level guidance to security analysts, testers, and development teams during application security assessments. Must be able to identify, re‑create, and remediate security defects.

Other Desired Skills
  • As and an expert/lead technical will define the information security architecture and design for the application.
  • Providing training for development and QA teams on how to implement Secure Software Development Life Cycle S‑SDLC into their existing practices
  • In‑depth knowledge on common web application security flaws and secure coding practices and the ability to clearly explain security issues to project and development staff
  • Ability to prioritize and track security issues and work with the necessary teams to ensure remediation
  • Serve as a leader by promoting security awareness, mentoring other team members, and staying up‑to‑date on current development methodologies (Agile/DevOps)
  • Understand HTTP, REST, SOAP, XML and JSON as it relates to APIs and AJAX, Experience using and compliance testing REST and/or SOAP APIs
  • Understanding of AWS, Azure, and other cloud solutions, security issues and security controls in those environments
Desired knowledge and experience includes
  • 7+ years in Information Security space
  • 5+ years in enterprise software development
  • Strong development background with prominent web or mobile development languages and frameworks, provide security remediation advice to development and testing teams;
  • Strong experience with Threat Modeling in an enterprise, not just theoretical
  • Strong oral, written, and presentation abilities — able to convey risk to all levels of the business, from C‑level executives to operations and development teams
  • Strong understanding of web applications and architectures, relational and non‑relational databases, and hardware architectures, and effectively applying the principles of information security to IT environments
  • Strong experience working in a multi‑platform, multi‑protocol, distributed enterprise computing environment
  • Experience with Unix/Linux and Windows system administration
  • Some understanding of governance frameworks such as ITIL and ISO 27001;
  • Some project management experience: Able to assess needs, define objectives, identify resources needed to achieve objectives and begin implementation towards goal completion;
  • Must be able to work effectively alone and as part of a larger project team.
  • Current understanding of Industry trends and emerging threats
Additional Information

All your information will be kept confidential according to EEO guidelines.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Manager of Risk and Compliance
Senior Manager of Risk and Compliance

PTR Global • United States

On-site
USD 100,000 - 130,000
Security Compliance Analyst
Security Compliance Analyst

Managed IT & Security Provider • Alexandria (VA)

On-site
USD 75,000 - 100,000
401(k)
401(k) matching
Bonus based on performance
+3
Information Security Analyst
Information Security Analyst

Sylvan, Inc. • Detroit (MI)

On-site
USD 90,000 - 130,000
Sr. Application Engineer, Cyber Security
Sr. Application Engineer, Cyber Security

inmar • Winston-Salem (NC)

On-site
USD 120,000 - 180,000
Manager of Information Security and Compliance
Manager of Information Security and Compliance

iboss • United States

On-site
USD 100,000 - 130,000
Health, Vision, Dental
401(k) with company match
Unlimited Paid Time Off
+1
Senior Information Security Engineer
Senior Information Security Engineer

Grayson Search Partners • Nashville (TN)

On-site
USD 120,000 - 150,000
Information Security Consultant
Information Security Consultant

Jobtailor • West Des Moines (IA)

On-site
USD 85,000 - 120,000
Principal Security Architect/Engineer
Principal Security Architect/Engineer

Harvard Partners, LLP, Trusted Advisors to IT • Woodbridge Township (NJ)

On-site
USD 90,000 - 120,000
Data Privacy and Compliance Analyst
Data Privacy and Compliance Analyst

Comtech LLC • Atlanta (GA)

On-site
USD 80,000 - 100,000
Information Security and Compliance Manager
Information Security and Compliance Manager

Transhield, Inc. • Elkhart (IN)

On-site
USD 120,000 - 180,000