Recherche d'emploi > Burnaby, BC > Compliance analyst

Infosec Compliance Analyst

Fortinet
Burnaby, BC
currency_variable_a_biweekly (estimé)
Temps plein

We are seeking an InfoSec Certification and Compliance Analyst to join our InfoSec team. In this role, you will help on various certification projects.

You will review certification requirements, map the requirements to security controls, perform gap analysis, and work with internal teams to remediate risks and close the security gaps.

You will work with team members to ensure the Information Security Management System (ISMS) adherence to industry standards, laws, best practices, and various certification requirements.

Additionally, you will help to support company-wide compliance and regularity requirements, maintain and improve the ISMS to uphold the confidentiality, integrity, and availability of sensitive information.

Responsibilities :

  • Work with team members to achieve and maintain compliance with ISO 27K, SOC2, NIST, SCRM, GDPR, and other security standards and regulatory frameworks.
  • Review various security certification and compliance requirements, perform requirement mapping, and prepare gap analysis report.
  • Develop action plans and follow up with internal teams to close the security control gaps.
  • Contribute to the continuous improvement of the ISMS in accordance with ISO 27001 and NIST SP800-53 Standards.
  • Develop IT policies, procedures and guidelines, and provide improvement recommendations to current ones.
  • Conduct risk assessment to information systems and business processes.
  • Collaborate with operation teams to ensure that appropriate controls are implemented, operating properly, in accordance with the corporate policies and compliance requirements.
  • Conduct audit readiness assessments and coordinate with internal and external functions and audit resources.
  • Develop, collect and analyze security metrics to determine compliance and risk levels, as well as trends in systems and processes, and make recommendations on improvements and decisions based on information from the metrics.
  • Work closely with Corporate Information Security Team and other business units as required to understand IS-related challenges and develop plans aimed at addressing these challenges.
  • Respond to request for information on security compliance from customers and partners.

Qualifications and Experience :

  • Bachelor degree in Information Security, Cybersecurity, Information Technology, or a related field
  • 3+ years of hands-on experience in information security, audit, compliance, risk management, or a related field.
  • Extensive expertise in managing compliance frameworks such as ISO 27001, SOC2, NIST, SCRM, and GDPR.
  • Proven track record in designing and implementing information security policies, procedures, and controls.
  • Experience with key security technologies including Security Information and Event Management (SIEM) systems, firewalls, network and host intrusion prevention and detection systems, proxies, vulnerability scanners, and endpoint protection solutions.
  • Experience or deep knowledge in cloud security, including cloud-specific security frameworks such as the Cloud Security Alliance's (CSA) Cloud Controls Matrix (CCM), FedRAMP and ISO / IEC 27017, 27018.
  • Demonstrated ability to comprehend and interpret audit and security requirements effectively.
  • One or more of the following certifications preferred : ISO 27001 LA, CISA, CISM, CISSP and CCSP; The ISO 27001 LA and CISA certifications are highly desirable.
  • Proficient in Microsoft Office applications (Word, Excel, and PowerPoint), collaboration platforms (SharePoint, Outlook, and Teams), and GRC / Compliance Management tools.
  • Soft Skills : Exceptional interpersonal and communication abilities; meticulous attention to detail and accuracy; strong organizational and project management acumen.

Join our team and contribute to the safeguarding of our organization's sensitive information while ensuring compliance with the latest industry standards and regulations.

Apply your expertise to enhance our security posture and maintain the integrity of our systems and processes.

LI-KL1

Il y a plus de 30 jours
Emplois reliés
Offre sponsorisée
Fortinet
Burnaby, Colombie-Britannique

We are seeking an InfoSec Certification and Compliance Analyst to join our InfoSec team. Additionally, you will help to support company-wide compliance and regularity requirements, maintain and improve the ISMS to uphold the confidentiality, integrity, and availability of sensitive information. Work...

Fortinet
Burnaby, Colombie-Britannique

We are seeking an InfoSec Certification and Compliance Analyst to join our InfoSec team. Additionally, you will help to support company-wide compliance and regularity requirements, maintain and improve the ISMS to uphold the confidentiality, integrity, and availability of sensitive information. Work...

Fortinet
Burnaby, Colombie-Britannique

We are seeking an InfoSec Certification and Compliance Analyst to join our InfoSec team. Additionally, you will help to support company-wide compliance and regularity requirements, maintain and improve the ISMS to uphold the confidentiality, integrity, and availability of sensitive information. Work...

Fortinet
Burnaby, Colombie-Britannique

We are seeking an InfoSec Certification and Compliance Analyst to join our InfoSec team. Additionally, you will help to support company-wide compliance and regularity requirements, maintain and improve the ISMS to uphold the confidentiality, integrity, and availability of sensitive information. Work...

Offre sponsorisée
H&R Block Canada
Canada

As a Senior Tax Compliance Analyst reporting to the Lead, Tax Compliance, you will be part of a collaborative, agile team responsible for the end-to-end design, testing, maintenance, compliance, and accuracy of the tax software. Are you passionate about revolutionizing the digital tax preparation so...

Offre sponsorisée
Brainhunter Systems Ltd
Canada

Responsibility 1a: Facilitating Risk Identification, Risk Measurement (Qualitative Analysis), and Risk Management (Risk Response Planning, Risk Monitoring and Control, and Risk Close Out). The Risk Analyst is accountable to the Manager, Risk & Schedule, within the ERM Program Management Office. Seni...

Offre sponsorisée
TECO Energy Inc.
Canada

Network & Systems Security Engineer, Cisco & Switch Focus, Progression. Mgr Network Engineering & Cyber Security Operations. This position can be hired at any level within the Analyst job family of progression, based on education and number of years of experience. The Network & Systems Security Engi...

Offre sponsorisée
TransLink Security Mgmt Ltd
BC, Canada

Applies a senior level of technical system security expertise on Transit Police operational network, systems, and assets, aligning with TransLink’s cybersecurity Policy and Standards; leads security activities, conducts security audits, research, and investigations on all internal Information System...

Offre sponsorisée
Imperva
Canada

Imperva’s Security Analyst is tasked with tackling and solving our most complex field issues for enterprise customers in combating automated threats targeting their web applications, API’s, and mobile applications. As a Security Analyst, you will be analyzing large amounts of traffic to websites to ...

Offre sponsorisée
Horizon Recruitment Inc.
Vancouver, Colombie-Britannique

Business / Data Analyst with ref. Manage large volumes of data from various legacy systems to produce meaningful department reporting. Complete data analysis to assist in evaluating performance against strategic, operating and budget plans. Source, gather and analyze data from multiple sources to pr...