Pittsburgh, United States | Posted on 05/15/2025
We are a technology services company focused on data, analytics andintelligent robotic processes.
Job Description
- Support the delivery ofprojects for ISG and the broader GTO function.
- Act as a technical SMEregarding SOC 2 assessments and security control framework.
- Support FederatedHermes’s SOC 2 assessment, working with internal stakeholders to evidencesecurity controls in operation.
- Work with stakeholdersacross GTO to review and update Federated Hermes’s security controlsframework in line with recent changes to NIST and CIS controls.
- Co-ordinate stakeholdersacross GTO to disseminate assessment findings and coordinate remediation.
- Work closely withproject managers on outlining key tasks, refining delivery plans.
Requirements
- Experience workinginternally to deliver a SOC 2 certification, working with internalstakeholders to evidence controls and interfacing with external auditor.
- Experience working withvirtual server and desktop environments such as VMware and Citrix.
- Familiarity withsecurity frameworks such as NIST800, CIS, ISO27001.
- Industry recognizedtechnical certifications are desirable (CISSP, CCSP, CompTIA Security+,GIAC security essentials).
- Familiarity withsecurity and privacy regulations impacting financial services such as SOXand GDPR.
- Excellent written andverbal communications skills.